EXPLORE PREMIER
OPPORTUNITIES

As a skilled professional seeking career growth, you deserve access to the best job opportunities available. Join Outdefine's Trusted community today and apply to premier job openings with leading enterprises globally. Set your own rate, keep all your pay, and enjoy the benefits of a fee-free experience.

career-heroJoin now
Back to jobs
logo
Senior Engineer, App Security

Healthie

51-200
United States
Apply Now

About the job

Overview:

Our mission
Healthie powers virtual-first care delivery while improving access to healthcare and enabling better healthcare outcomes through technology.
We build infrastructure that all healthcare organizations need to perform virtual-first care. Between our EHR, scheduling, and patient engagement solutions, Healthie’s API-first approach makes it easy for organizations of every size to build, customize, and scale their business.
Today, we power thousands of organizations ranging from small private practices, to digital health startups and multi-billion-dollar healthcare companies. Leveraging Healthie, our customers deliver care to millions of patients, across the full spectrum of healthcare services—from preventative health and wellness to complex chronic care management. We believe that the future of healthcare delivery is virtual-first, longitudinal, and collaborative.
Learn more at: https://www.gethealthie.com/
About the role
We are hiring a Senior Application Security Engineer to join our Platform Engineering team at Healthie! In this role, you will serve as a security and technical contributor, responsible for safeguarding our application layer and driving security best practices across the engineering organization.
You’ll partner closely with platform, infrastructure and core engineering teams to design secure-by-default systems, embed security into our SDLC, and proactively identify and remediate vulnerabilities in our code and cloud infrastructure. This is a hands-on role, ideal for someone who is excited to contribute to security programs in a fast-moving startup environment and help shape the future of security at Healthie.
As our first dedicated AppSec hire, you’ll have the opportunity to continue to refine our secure development lifecycle, influence architectural decisions, and champion a culture of security awareness across the company.
If you're passionate about building impactful systems, driving innovation, and making a difference in healthcare — we’d love to hear from you.
Details, details
This is a full-time, remote position located in the United States
The base salary for this role is $180,000-$200,000 per year plus equity & company bonus, benefits
U.S. work authorization is required and Healthie does not provide sponsorship.
What You'll Do
Design and implement secure coding standards and tooling for application-layer security
Conduct threat modeling and secure design reviews; manage ethical hacker program and third-party vulnerability reports
Lead regular code reviews, internal audits, and dynamic/static analysis efforts
Proficient at performing internal pentests
Contribute to the definition and design of Healthie’s secure development lifecycle (S-SDLC), including integration of security into CI/CD workflows
Administer, configure, and maintain Semgrep and other static and dynamic application security testing (SAST/DAST) tools to ensure continuous and effective code security
Partner with Engineering and Product teams to triage and remediate vulnerabilities quickly and safely
Build incident response playbooks for application-layer threats and support security investigations
Help build and promote a security champions program
Help ensure Healthie remains compliant with relevant standards (e.g., HIPAA, SOC 2, GDPR) from a software security perspective
About You
5+ years of experience in application or product security roles, preferably in high-growth, cloud-native environments
Deep understanding of web application security, secure architecture patterns, and common vulnerabilities (e.g., OWASP Top 10, CIS controls, SANS Secure Coding Practices, etc.)
Strong background in secure software development practices, particularly in GraphQL, Ruby on Rails, React, or similar web frameworks
Experience with DevSecOps practices and security tooling
Experience building or maturing application-layer security programs, policies, or guidelines
Comfortable working across cross-functional teams and influencing security decisions without formal authority
You are mission-driven, passionate about healthcare, and motivated to build systems that improve patient safety and data integrity
Bonus: Experience with healthcare-specific security practices and compliance audits (e.g., SOC 2, HIPAA)
Skills required
Security coding standardsThreat modelingDesign reviewsInternal auditsDynamic/static analysisCross-functional collaborationResilienceMission-drivenSecurity awarenessEthical hacking
Employee location
United States
Experience level
5 Years - 10 Years
Workplace type
Remote
Job type
full time
Compensation
$180K-$200K(Yearly)
Currency
🇺🇲USD

Become a trusted member, apply to jobs, and earn token rewards

backgroundtopCreate a profile

Create and customize your member profile.

backgroundtopComplete assessment

Earn 500 Outdefine tokens for becoming trusted member and completing your assessment.

backgroundtopApply for jobs

Once you are a Trusted Member you can start applying to jobs.

Apply Now