FraudScope is an AI-assisted platform that accelerates the identification of fraud, waste, and abuse in Healthcare which costs the nation $270B annually. FraudScope is rapidly growing and has won numerous awards. We are seeking exceptional talent to achieve our goal of ensuring that our scarce healthcare dollars go to real patient care.


Job Description:

 

FraudScope is seeking a highly motivated Security Engineer to further expand the security functionality across our SaaS products, cloud environments, and IT infrastructure. This position is a hands-on, multifaceted role, and requires working with AWS services, IT networking, Risk and Compliance Frameworks, and many Security tools. Applicants should be excellent critical thinkers and must be able to diagnose incidents across a highly dynamic environment.  The Security Engineer will be a part of the Security and Compliance team and will work closely with the Engineering, Data Science, and Product business units. This role will play an integral part in building out FraudScopes security posture across our AWS environments, SaaS products, and IT systems.

 

Responsibilities:

  • Optimize and Automate security tool deployments throughout AWS environments.
  • Analyze security aspects of the AWS Environment and Product Architecture, including vulnerability assessment, design, access, and authentication
  • Works closely with other teams to ensure adequate security solutions are in place throughout all systems, platforms, and products
  • Coordinates the mitigation of identified risks sufficiently
  • Reduce attack surface and corresponding response times
  • Provide IT support as needed to other teams and business units
  • Configures, secures, and deploys the MDM solution for managing company information systems.
  • Assists Compliance Officer in meeting business objectives and regulatory requirements
  • Assists in the creation and adherence to an information security strategy
  • Evaluates, deploys, and maintains secure solutions
  • Researches, designs, and advocates new technologies, architectures, and products
  • Produces the technical artifacts that constitute the information security architecture
  • Designs security architecture elements to mitigate threats as they emerge and change
  • Performs audits of systems relative to security policies and procedures
  • Communicates security risks and solutions to partners, staff, and leadership
  • Supports Red Team initiatives to eliminate risks
  • Performs Threat Modeling for attack vectors and procedures
  • Researches and recommends new industry security models, organizational strategies, and resources for presentation to Senior Leadership
  • Provides post-mortem analysis and corrective action for significant security-related incidents
  • Maintains systems and tools directly related to security threat protection
  • Creates and delivers knowledge documentation for Data Science, Customer Success, and Engineering teams
  • Performs other duties as assigned

 

Requirements

  • 2-3  years of hands-on experience working in an IT Security, Security Engineering, or Cloud Security (DevSecOps) role.
  • Bachelor’s degree in Information Technology, Computer Science, or related field of study.
  • Experience working with at least one risk framework or compliance standard, such as HITRUST, HIPAA, NIST 800-53, SOC-2, FedRamp, or PCI,
  • Advanced understanding of Apple OSX and proficient knowledge with Linux operating systems.
  • Hands-on experience working within AWS, preferably in operations, security, or admin role
  • Proficient understanding across the AWS technology stack and AWS security offerings
  • Hands-on experience working with networking solutions (i.e. VPN, Subnets, LAN, WAN, DHCP, and wireless technologies)
  • Hands-on experience working in Splunk or similar SIEM solution
  • Excellent customer service skills
  • Must have strong analytical and problem-solving skills.
  • Ability to multitask and work well under pressure.

 

Strongly preferred

  • Professional certification of GIAC, SSCP, CISSP, CCSP, or AWS Security Specialization is a plus.
  • Familiarity with web-related technologies (web applications, web services, service-oriented architectures) and network/web related protocols is a plus.
  • Experience implementing access controls (SAML, OAUTH2, OpenID Connect)
  • Jamf Pro (or similar MDM solution) experience.
  • IT support or customer support experience is a plus
  • Understanding of API and container security
  • Prior admin experience with Office365 (or GSuite)
  • Hands-on experience working in Splunk or similar SIEM solution
  • Experience with DevOps IaC tools like Terraform, AWS CloudFormation, or AWS CDK is a plus.
  • Understanding of the DevOps CI/CD process and culture.
  • Product or Application security experience is a plus
  • Experience with managing, creating, or editing security policies.
This position has been filled. Would you like to see our other open positions?