Lead Security Engineer | AirStrip

NantHealth, Inc.

$120K — $166K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree preferred in Computer Science, Cyber Security, or related field (experience considered in lieu)
  • 8+ years in IT, with 5+ years in cyber/IT security
  • IT certifications like CISSP, CISA, CompTIA, or GIAC advantageous
  • Expertise in securing cloud environments (AWS, Azure, etc.)
  • Deep knowledge of compliance frameworks such as ISO 27001, NIST, HIPAA, HITRUST

Responsibilities

  • Design and implement security architectures
  • Mentor and provide support to team members
  • Enhance security posture against emerging threats
  • Assist with the mitigation and investigation of security incidents
  • Evaluate security for new vendor and internal initiatives
  • Promote security practices across engineering teams
  • Defend critical infrastructure through active security operations

Benefits

  • Robust medical, dental, and vision insurance
  • 401(k) with 3% company match
  • Flexible Paid Time Off programs
  • Growth and Development opportunities
  • Paid Parental Leave with flexible return-to-work
  • Employee Assistance Program
  • Discounts on cell phone plans
  • Life and Disability Insurance
Full Job Description
AirStrip is seeking a Senior Security Engineer to design, implement, and continuously strengthen enterprise security architecture across cloud, application, and network environments. This role serves as a hands-on technical leader, partnering closely with engineering teams to embed security best practices, proactively hunt threats, and respond to incidents. The ideal candidate brings deep expertise in cloud security, threat detection, incident response, and healthcare compliance frameworks, and is passionate about protecting critical systems in a fast-paced, mission-driven environment.

Remote work may be allowed with approval. This role may require travel of up to 25%.

Responsibilities include, but are not limited to:
  • Design and implement robust security architectures
  • Act as a mentor and escalation point to other members of the team
  • Iterate security posture to better protect against attacks and detect new vectors
  • Participate in efforts to mitigate and investigate security incidents
  • Evaluate and test new vendor and in-house network initiatives for security issues
  • Evangelize security practices through cross-functional work with engineering teams throughout the enterprise
  • Safeguard the enterprise through active operation and defense of critical infrastructure
  • Other duties as assigned

Education & Experience Requirements:
  • Bachelor's degree in Computer Science, Management Information Systems, Cyber Security, Engineering, or a related field preferred (commensurate experience will be considered in lieu of a degree)
  • Minimum 8 years of experience in IT (information technology)
  • Minimum 5 years of experience in cyber security / IT security
  • IT certifications a plus: CISSP, CISA, CompTIA, GIAC

Required Knowledge, Skills, and Abilities:
  • Knowledge of securing AWS, Azure, or similar cloud environments
  • Excellent documentation practices
  • Perform vulnerability management, coordinating with other teams to resolve findings
  • Knowledge of compliance frameworks: ISO 27001, NIST, HIPAA, HITRUST
  • Understanding of ITIL, Zero Trust, HITRUST, and ISO 27000 series frameworks
  • Experience researching, building, and implementing defensive security systems that are used against internal and external attack vectors
  • Experience designing and building out application and network security monitoring to aid in detection or forensic investigations
  • Background in intrusion detection, security investigations, and incident response
  • Deep understanding of the MITRE ATT&CK Framework and associated threat actor techniques
  • Experience "threat hunting," i.e. using threat intel to proactively and iteratively investigate potential risks and finding suspicious behavior in the environment
  • Experience investigating data for anomalies in order to identify suspicious behavior
  • Experience with Identity and Access Management (IAM), provisioning user accounts and access
  • Solid understanding of SIEM tools (LogRhythm, Splunk, etc.)

The salary range for applicable US-based applicants to this position is below. The specific rate will depend on the successful candidate's qualifications, prior experience as well as geographic location.
  • $120,200 - $166,000 base salary plus bonus potential.


We value each of our employee's total wellness. From robust medical, dental, and vision insurance, to financial planning assistance, to physical and mental wellness discounts, and unlimited access to our online learning platform, we understand that our company succeeds when our employees succeed as individuals.

Additional notable US-employee benefits include:
  • Paid Time Off (hourly) / Flex Time Off (salaried) programs for Full Time employees
  • Growth and Development opportunities
  • 401(k), including a 3% company match
  • Paid Holidays
  • Paid Parental Leave, including a flexible return-to-work program
  • Employee Assistance Program
  • Discounts on popular cell phone plan providers
  • Life & Disability Insurance
  • And more!

Similar Jobs

More Jobs at NantHealth, Inc.

More Information Technology Jobs

Find similar Lead Security Engineer | AirStrip jobs: