Garner Health is a fast-growing healthcare technology company aiming to transform the healthcare economy by delivering high-quality and affordable care. They are seeking a Staff Security Engineer to lead technical design reviews, define security standards, and ensure the security posture scales with customer growth.
Responsibilities:
- Lead technical security design: Own the technical design and review process for security-critical systems, ensuring all new features meet Garner's high standards for data protection and resilience
- Master complex domains: Maintain and apply a mastery of one or more technical security domains (e.g., Cloud Security, AppSec, or Data) to solve the most complex business and technical challenges
- Course-correct technical direction: Identify when technical paths are inefficient or insufficient and proactively redirect efforts to capture higher ROI for the firm
- Architect automated defenses: Create and implement advanced tools and automation that increase the efficacy of security monitoring and incident response
- Translate ambiguity into execution: Take broad, complex security objectives and break them down into well-defined deliverables and architectural requirements for the broader engineering team
- Mentor through technical rigor: Raise the bar for the engineering function by providing high-level feedback during code and design reviews, fostering a culture of security-first development
Requirements:
- Proven ability to make high-stakes technical decisions that result in positive long-term outcomes for the company's security posture
- Effectively leverages context and data to analyze root causes and prioritize security initiatives that offer the greatest impact on risk reduction
- Builds strong relationships across the organization, conveying complex security risks in a clear and compelling manner to both technical and non-technical partners
- Continuously identifies and implements creative solutions to pay down technical debt and improve the efficiency of our security infrastructure
- Handles complex escalations and security incidents with discipline, ensuring rigorous analysis and comprehensive resolution without jumping to conclusions
- A desire to be a part of a high-performing, mission-driven team that operates with intense urgency, a strong sense of individual accountability, and a commitment to authentic feedback
- Startup experience
- Master complex domains: Maintain and apply a mastery of one or more technical security domains (e.g., Cloud Security, AppSec, or Data) to solve the most complex business and technical challenges
- Lead technical security design: Own the technical design and review process for security-critical systems, ensuring all new features meet Garner's high standards for data protection and resilience
- Identify when technical paths are inefficient or insufficient and proactively redirect efforts to capture higher ROI for the firm
- Create and implement advanced tools and automation that increase the efficacy of security monitoring and incident response
- Take broad, complex security objectives and break them down into well-defined deliverables and architectural requirements for the broader engineering team
- Raise the bar for the engineering function by providing high-level feedback during code and design reviews, fostering a culture of security-first development