Skip to main content
SmarterDx

Staff Security Engineer

RemoteUnited States only
Published
Role
Security
Experience
Staff
Employment
Full-time
Company size
Startup
$230k–$250k/yr
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Staff-level security engineer with 8+ years in security/software engineering, deep AWS/cloud-native experience, and strong AI security plus threat detection engineering. Must be US-based remote and able to write production code in Python, Go, or TypeScript. Healthcare/regulatory context includes HIPAA and SOC 2.

Core skills

AWSAI SecurityThreat Detection Engineering

Required skills

EKSTerraformLLMMCPSIEMPython/Go/TypeScriptSOC 2HIPAA

Optional skills

KubernetesEKSHelmInfrastructure-as-codePolicy-as-codeAI-security toolingAI/LLM red-teaming

What you'll do

  • Own our approach to AI and agentic security: guardrails for agentic access to cloud and data, and the security of the AI and ML workloads in our product.
  • Publish the org's AI-security standard and drive its adoption by other engineering teams.
  • Own our detection platform (Panther): detection strategy and coverage across cloud, container, and SaaS log sources, and the standards that keep detections high-signal as we grow.
  • Own incident-response readiness: the plan, the playbooks, and tested tabletops tied to the HIPAA breach-notification timeline, and help lead response when a real incident happens.
  • Lead complex security work across teams from start to finish, resolving ambiguity and coordinating with Platform, Engineering, and Compliance.
  • Act as the senior security resource across cloud security and security reviews, and the security expert other engineering teams seek out for guidance on high-stakes decisions.
  • Mentor teammates who are growing their security depth, set team standards for detection authoring and code review, and help raise our interview and hiring bar.
  • Build and grow security automation that gives a small team more reach, and contribute to the tooling the team runs on.
  • Take part in architecture reviews and threat modeling on our highest-risk designs, and communicate the resulting security architecture so the whole team can understand it and build on it.

What they require

  • 8+ years in security and software engineering, with deep hands-on experience in AWS and cloud-native infrastructure, including working competence with containerized workloads (EKS) and infrastructure-as-code (Terraform).
  • A track record of leading complex security work across teams and making other engineers more effective.
  • Depth in AI and agentic security: securing LLM applications, agentic frameworks, and MCP, plus prompt-injection and agentic-access defenses.
  • Depth in threat detection engineering: designing, authoring, and tuning detections in a modern SIEM, and reasoning about coverage against real threats.
  • Incident-response experience, including building the plan and running the response.
  • The ability to write production code (Python, Go, or TypeScript) and build security tooling, not only configure products.
  • Strong writing and communication; you can publish a standard other teams adopt and explain a hard design to a non-security audience.
  • Working knowledge of SOC 2 and HIPAA, and the judgment to design controls that hold up without stalling delivery.
  • Experience mentoring and leveling up other engineers.
  • Preferred: Recognized AI-security work: published standards or research, contributions to AI-security tooling, or red-teaming of AI/LLM systems.
  • Preferred: Startup experience, especially in health tech or another regulated, data-sensitive environment.
  • Preferred: Deeper specialization in container security (Kubernetes/EKS, Helm) or in infrastructure-as-code and policy-as-code, beyond working competence.
  • Preferred: Experience consolidating or retiring a security platform with a measurable cost or coverage result.

Benefits

  • Medical, Dental & Vision – Comprehensive plans with leading insurance providers, covering 75% of your premiums, depending on the plan.
  • Paid Parental Leave – Generous paid leave to support families through birth or adoption: Up to 12 weeks for parents.
  • Remote-First Team – Work from anywhere in the U.S.
  • Unlimited PTO & 10 Holidays – So you can relax and recharge.
  • 401(k) with Traditional & Roth Options – Tax-advantaged retirement savings through Fidelity with a 4% match.
  • Minimal Bureaucracy – A fast-moving, high-impact environment where you can focus on what matters.
  • Incredible Teammates! – Work alongside smart, supportive, and mission-driven colleagues.

Healthcare Technology

HealthcareStartup

Details

Apply routeGreenhouse
$230k–$250k/yr