Chartahealth

Chartahealth

Founding Security Reliability Engineer

San Francisco, USA

Sponsorship not specified$150k-$250kDetected 90 days ago
SwiftCode ReviewAWSCloud PlatformsTerraformAnsibleCI/CDSite Reliability EngineeringRESTData EngineeringLLMsCybersecurityPenetration TestingNetwork SecuritySIEMSOC OperationsIncident ResponseComplianceFirewallHIPAAPatient CareResearchCommunicationCollaboration

About the role

  • Our innovative AI technology enables these professionals to operate at an astounding 10x to 100x more efficiently, while significantly reducing operational costs to just 2% of the standard expense.
  • You'll be crucial in engineering security into every layer from day one within a highly regulated healthcare environment.
  • Able to write basic code independently or with AI assistance - capable of stitching together a script, querying a dataset, or prototyping a quick tool when the situation calls for it.

Responsibilities

  • Engineer Secure & Resilient Infrastructure: Design, develop, and implement highly scalable, resilient, and inherently secure cloud infrastructure and application architectures to support our AI platform and data pipelines, prioritizing security-by-design and resilience against attacks.
  • Security Automation & DevSecOps: Lead efforts to automate security controls, infrastructure provisioning, deployment, and operational tasks using tools like Terraform, Ansible, and CI/CD pipelines.
  • Cloud Security Engineering: Implement and manage security best practices for our cloud environments (primarily AWS), including network security, identity and access management (IAM), data encryption at rest and in transit, secrets management, and secure configuration baselines.
  • Application Security: Partner with development teams to conduct threat modeling, perform security code reviews, and implement secure coding practices.
  • Integrate application security testing tools into CI/CD pipelines and drive vulnerability remediation.
  • Security Reliability Metrics & Incident Response: Define, implement, and monitor key security-focused metrics (e.g., Mean Time To Detect (MTTD) security incidents, Mean Time To Respond (MTTR) security incidents, vulnerability remediation SLAs).
  • Design and lead robust incident response plans and procedures for security incidents and breaches, ensuring swift and effective containment, eradication, recovery, and thorough post-incident analysis (blameless post-mortems) focused on improving system security and resilience.
  • Vulnerability Management: Establish and manage a comprehensive vulnerability management program, including regular scanning, penetration testing coordination, analysis of findings, and driving timely remediation efforts across infrastructure and applications.
  • Cross-Functional Security Collaboration: Partner closely with Engineering, Product, and IT teams to embed security requirements as first-class citizens into business processes, new projects, and system development lifecycles.
  • Develop and deliver engaging security awareness and secure coding training programs for all employees to promote a security-conscious and proactive mindset.

Requirements

  • Solid understanding of common web application vulnerabilities, secure coding practices, and experience with application security testing tools.
  • Solid understanding and practical experience with container technologies and orchestration platforms, including container security best practices and runtime protection.
  • Experience setting up and managing robust security monitoring, logging, and alerting solutions (e.g., SIEM, EDR, IDS/IPS).
  • Experience with established security frameworks and standards (e.g., NIST CSF, ISO 27001, SOC 2, CIS Benchmarks, MITRE ATT&CK).
  • Bachelor's degree in Computer Science, Engineering, Information Security, or a related field
  • Application Security Fundamentals: Solid understanding of common web application vulnerabilities, secure coding practices, and experience with application security testing tools.
  • Containerization & Orchestration Security: Solid understanding and practical experience with container technologies and orchestration platforms, including container security best practices and runtime protection.
  • Security Frameworks: Experience with established security frameworks and standards (e.g., NIST CSF, ISO 27001, SOC 2, CIS Benchmarks, MITRE ATT&CK).

Skills

  • Strategically plan for future security needs and technological advancements.

Compensation

  • $150k-$250k

Benefits

  • Competitive salary and comprehensive benefits package, including health, dental, and vision.
  • Equity & growth opportunities in a fast-growing, innovative tech startup.
  • Ongoing professional development and access to cutting-edge AI and healthcare tools.
  • Lively, in-person work culture at our SF Headquarters. $150,000 - $250,000 depending on experience + Equity + Benefits Join us in our mission to transform healthcare through innovation!
  • We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
  • Interested in applying or learning more?
  • About Charta Health
  • At Charta, we're pioneering a transformative approach to healthcare billing through the power of generative AI.
  • Our mission is to revolutionize this critical yet often cumbersome aspect of healthcare, empowering medical billers and coders with tools that elevate their efficiency by leaps and bounds.
  • In an industry where the focus should rightly be on patient care and clinical services, Charta steps in to ensure that healthcare providers are unburdened from the complexities of non-clinical operations.
  • Our cutting-edge solutions are designed to handle the intricacies of the revenue cycle, freeing up healthcare professionals to concentrate on what they do best - caring for patients.
  • Our vision at Charta is to create a seamless, efficient, and cost-effective billing process that is invisible yet indispensable.

Company info

  • Champion a strong security-first culture.
  • Our Commitment to Diversity We are an

Equal opportunity

  • equal opportunity employer and value diversity at our company.

This listing is sourced directly from Chartahealth's careers page and normalized into a canonical job model.