高级安全工程师
Senior Security Engineer
SmarterDx 正在改变医疗系统使用临床 AI 的方式,以实现患者护理的全部价值。由医生-数据科学家打造,并基于经过临床验证的电子健康记录(EHR)数据进行训练,我们的临床 AI 平台能够解读每个患者故事背后的细微差别,并为收入周期团队提供具有临床依据的建议——帮助医院追回应得收入,提高质量指标,减少拒付,并简化收入周期运营。作为 SmarterDx 的一员,你将参与构建让医疗更精准、可持续和高效的科技。了解更多请访问 [smarterdx.com/careers](http://smarterdx.com/careers)。
**职位**
SmarterDx 安全工程的职责范围广泛:涵盖 AI、云安全和企业安全,以及对公司内新设计和代码的审查。该职位是检测工程和安全运营的实际负责人。你将把我们的检测平台转化为真正的覆盖能力:在 Panther 中编写和调优检测规则,保持警报的高信号性,随着 SIEM 的增长运行它,并在警报升级为调查时成为核心人员。你还将处理日常的云安全运营工作,并协助开展事件响应。
你将与我们的高级安全工程师紧密合作,该工程师负责检测和 AI 安全策略。你的任务是将这些策略在生产环境中落地并保持其有效性。在一支重视员工成长的团队中,你有空间深入发展检测工程、云安全和安全自动化。
_**该职位为美国境内远程办公**_
**你将负责**
- 在我们的 SIEM(Panther)中编写、调优和维护检测规则,覆盖云、容器和 SaaS 日志源,保持广泛的覆盖范围和高信号的警报。
- 日常运行 SIEM:接入日志源,管理检测质量,并减少误报,使真实信号更加突出。
- 处理和调查安全警报,从原始日志到结论,协助执行我们的事件响应剧本。
- 在 AWS 中运行云安全运营:调查 GuardDuty 和 Wiz 的发现,收紧配置,并修复云配置错误。
- 管理 GitHub 组织的安全控制措施并以代码形式持续改进。
- 与网络和基础设施安全团队合作:协助接入网络遥测数据,支持出站监控,并与我们的基础设施安全工程师协同提供额外的安全深度。
- 协助构建和扩展团队的安全自动化工具。
- 编写操作手册,确保检测和响应流程可重复执行
查看英文原文
SmarterDx is transforming how health systems use clinical AI to capture the full value of patient care delivered. Built by physician-data scientists and trained on clinically-validated EHR data, our clinical AI platform interprets the nuances behind every patient story and makes clinically-sound recommendations for revenue cycle teams — helping hospitals recover earned revenue, improve quality metrics, reduce denials, and streamline revenue cycle operations. As a Smartian, you’ll help build technology that makes healthcare more accurate, sustainable, and effective for everyone. Learn more at [smarterdx.com/careers](http://smarterdx.com/careers).
**Role**
SmarterDx Security Engineering has a broad scope: AI, cloud, and enterprise security, plus reviews of new designs and code across the company. This role is our hands-on owner of detection engineering and security operations. You will turn our detection platform into real coverage: writing and tuning detections in Panther, keeping alerts high-signal, running the SIEM as it grows, and being on point when an alert turns into an investigation. You will also handle the day-to-day work of cloud security operations and help run incident response.
You will work closely with our Staff Security Engineer, who sets detection and AI-security strategy. Your job is to make that strategy real in production and keep it sharp. There is room to grow into deeper detection engineering, cloud security, and security automation, on a team that invests in leveling people up.
_**This role is fully remote within the US**_
**What You’ll Do**
- Write, tune, and maintain detections in our SIEM (Panther) across cloud, container, and SaaS log sources, keeping coverage broad and alerts high-signal.
- Run the SIEM day to day: onboard log sources, manage detection quality, and reduce false positives so real signals stand out.
- Triage and investigate security alerts from raw log to conclusion, and help execute our incident-response playbooks.
- Run cloud security operations in AWS: investigate GuardDuty and Wiz findings, tighten configurations, and close cloud misconfigurations.
- Own and improve GitHub organization security controls as code.
- Partner on network and infrastructure security: help onboard network telemetry, support egress monitoring, and provide backup depth alongside our infrastructure security engineer.
- Help build and extend the team's security-automation tooling.
- Write runbooks so detection and response are repeatable rather than tribal knowledge.
- Contribute to security design reviews and RFCs, and give substantive security feedback on pull requests.
- Support the Vulnerability Management program with triage and exploitability assessment as volume requires.
**What You Bring**
- 4+ years in security engineering, with solid hands-on experience in AWS and cloud-native infrastructure.
- Direct experience writing and tuning detections in a modern SIEM (Panther or similar) and reasoning about detection coverage.
- Experience investigating security alerts from raw log to a defensible conclusion.
- The ability to design and deliver medium-complexity security work independently.
- Code fluency in Python or TypeScript to automate your work.
- Familiarity with cloud logging and observability (CloudTrail, VPC Flow Logs) and AWS security services (GuardDuty, AWS Config).
- Solid AWS network security fundamentals (VPC, security groups, egress controls) and Terraform, enough to partner on and back up our network and infrastructure security work.
- Clear writing; you leave behind runbooks and tickets others can follow.
- Design detections and operational tooling for maintainability, so the work stays reliable and easy for the team to extend.
- An ownership mindset: you close loops rather than drop them.
**Nice To Haves**
- Startup experience, especially in health tech or another regulated, data-sensitive environment.
- Incident-response experience, or a strong interest in growing into it.
- Network security depth beyond fundamentals (VPC design, segmentation, Transit Gateway, firewall/egress architecture).
- Kubernetes (EKS) and container security exposure.
- Interest in AI and agentic security and in building security automation.
**Our Tech Stack**
- Cloud and infrastructure: AWS, Kubernetes (EKS), Terraform, Postgres
- Detection and security tooling: Panther (SIEM), GuardDuty, AWS Config, Wiz, Snyk, GitHub Advanced Security, CrowdStrike, Nightfall, Drata
- Languages: Python, TypeScript, Go
- AI and automation: Claude, MCP, and agentic tooling used across engineering
#### **Compensation**
_$190k to 220k base salary_
_#LI-Remote_
_#LI-DNP_
#### Benefits
- **Medical, Dental & Vision** – Comprehensive plans with leading insurance providers, covering 75% of your premiums, depending on the plan.
- **Paid Parental Leave** – Generous paid leave to support families through birth or adoption: Up to 12 weeks for parents.
- **Remote-First Team** – Work from anywhere in the U.S.
- **Unlimited PTO & 11 Holidays** – So you can relax and recharge.
- **401(k) with Traditional & Roth Options**– Tax-advantaged retirement savings through Fidelity with a 4% match.
- **Minimal Bureaucracy** – A fast-moving, high-impact environment where you can focus on what matters.
- **Incredible Teammates!** – Work alongside smart, supportive, and mission-driven colleagues.