Lead Security Engineer | AirStrip

NantHealth, Inc.

$120K — $166K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Cyber Security, or related field preferred (or equivalent experience)
  • Minimum 8 years in IT and 5 years in cyber security or IT security
  • Knowledge of AWS, Azure, or similar cloud security
  • Familiarity with compliance frameworks like ISO 27001, NIST, HIPAA, HITRUST
  • Experience with threat hunting and incident response
  • IT certifications such as CISSP, CISA, GIAC are advantageous
  • Strong understanding of MITRE ATT&CK Framework and SIEM tools.

Responsibilities

  • Design and implement robust security architectures
  • Mentor and serve as an escalation point for team members
  • Iterate security posture to enhance protection against attacks
  • Participate in mitigating and investigating security incidents
  • Evaluate new vendor and in-house initiatives for security vulnerabilities
  • Promote security best practices across engineering teams
  • Safeguard infrastructure through active defense operations.

Benefits

  • Paid Time Off / Flex Time Off programs
  • Growth and Development opportunities
  • 401(k) plan with a 3% company match
  • Paid Parental Leave with flexible return-to-work options
  • Employee Assistance Program
  • Discounts on popular cell phone plans
  • Life & Disability Insurance
  • Comprehensive medical, dental, and vision insurance
Full Job Description
AirStrip is seeking a Senior Security Engineer to design, implement, and continuously strengthen enterprise security architecture across cloud, application, and network environments. This role serves as a hands-on technical leader, partnering closely with engineering teams to embed security best practices, proactively hunt threats, and respond to incidents. The ideal candidate brings deep expertise in cloud security, threat detection, incident response, and healthcare compliance frameworks, and is passionate about protecting critical systems in a fast-paced, mission-driven environment.

Remote work may be allowed with approval. This role may require travel of up to 25%.

Responsibilities include, but are not limited to:
  • Design and implement robust security architectures
  • Act as a mentor and escalation point to other members of the team
  • Iterate security posture to better protect against attacks and detect new vectors
  • Participate in efforts to mitigate and investigate security incidents
  • Evaluate and test new vendor and in-house network initiatives for security issues
  • Evangelize security practices through cross-functional work with engineering teams throughout the enterprise
  • Safeguard the enterprise through active operation and defense of critical infrastructure
  • Other duties as assigned

Education & Experience Requirements:
  • Bachelor's degree in Computer Science, Management Information Systems, Cyber Security, Engineering, or a related field preferred (commensurate experience will be considered in lieu of a degree)
  • Minimum 8 years of experience in IT (information technology)
  • Minimum 5 years of experience in cyber security / IT security
  • IT certifications a plus: CISSP, CISA, CompTIA, GIAC

Required Knowledge, Skills, and Abilities:
  • Knowledge of securing AWS, Azure, or similar cloud environments
  • Excellent documentation practices
  • Perform vulnerability management, coordinating with other teams to resolve findings
  • Knowledge of compliance frameworks: ISO 27001, NIST, HIPAA, HITRUST
  • Understanding of ITIL, Zero Trust, HITRUST, and ISO 27000 series frameworks
  • Experience researching, building, and implementing defensive security systems that are used against internal and external attack vectors
  • Experience designing and building out application and network security monitoring to aid in detection or forensic investigations
  • Background in intrusion detection, security investigations, and incident response
  • Deep understanding of the MITRE ATT&CK Framework and associated threat actor techniques
  • Experience "threat hunting," i.e. using threat intel to proactively and iteratively investigate potential risks and finding suspicious behavior in the environment
  • Experience investigating data for anomalies in order to identify suspicious behavior
  • Experience with Identity and Access Management (IAM), provisioning user accounts and access
  • Solid understanding of SIEM tools (LogRhythm, Splunk, etc.)

The salary range for applicable US-based applicants to this position is below. The specific rate will depend on the successful candidate's qualifications, prior experience as well as geographic location.
  • $120,200 - $166,000 base salary plus bonus potential.


We value each of our employee's total wellness. From robust medical, dental, and vision insurance, to financial planning assistance, to physical and mental wellness discounts, and unlimited access to our online learning platform, we understand that our company succeeds when our employees succeed as individuals.

Additional notable US-employee benefits include:
  • Paid Time Off (hourly) / Flex Time Off (salaried) programs for Full Time employees
  • Growth and Development opportunities
  • 401(k), including a 3% company match
  • Paid Holidays
  • Paid Parental Leave, including a flexible return-to-work program
  • Employee Assistance Program
  • Discounts on popular cell phone plan providers
  • Life & Disability Insurance
  • And more!

Similar Jobs

More Jobs at NantHealth, Inc.

More Information Technology Jobs

Find similar Lead Security Engineer | AirStrip jobs: