远程工作雷达

高级安全运营工程师

Senior Security Operations Engineer

开发工程职能支持全球可投
公司includedhealth
薪资未公开
工作地点Remote
地域资格全球可投
时区要求无特别要求
用工类型Full-Time
发布时间未知
数据来源Lever
前往企业招聘页投递 →
全球可投:该职位未限制候选人所在地区。仍需注意薪资可能按地区折算,以及实际签约方式(正式雇佣 / 独立合同)。

Senior Security Operations Engineer

远程 · 安全与网络安全 · 全职

在Included Health,安全是我们的会员、客户、合作伙伴和护理团队对我们信任的核心。我们通过将安全融入架构、工程实践和日常运营来保护敏感的健康信息和支撑我们产品的系统。我们的安全工程团队与IT、平台工程和产品团队紧密合作,构建实用且可扩展的安全控制措施,通过自动化、默认安全模式、强大的技术合作以及团队可以在真实生产环境中实际操作的控制措施来降低风险。

作为高级安全运营工程师,您将负责设计、实施和改进Included Health企业及云环境中的数据防泄漏(DLP)保护。您将主导在终端、网络和SaaS上进行DLP控制的部署和调优;调查并响应潜在的数据泄露事件;并根据真实事件和检测结果推动修复和加固。您将负责DLP堆栈的运维生命周期——制定和优化策略,与相关方合作验证业务安全的控制措施,自动化响应剧本,并将警报和日志中的信号转化为持久的安全改进。您还将参与相关的安全运营职能,包括事件响应和漏洞管理,特别是在与数据保护交叉的领域。

这是一个全职远程职位,向安全工程高级经理汇报。该职位需要具备动手执行技术任务的能力,同时能够影响IT、工程和业务相关方,以采用实用且业务安全的数据保护控制措施。

薪资:

此全职职位在美国的新员工基本薪资目标范围如下:

A区:128,130 - 180,990美元+股权+福利

B区:140,943 - 199,089美元+股权+福利

C区:153,756 - 217,188美元+股权+福利

D区:166,569 - 235,287美元+股权+福利

该范围反映了基于各自区域的新员工薪资的最低和最高目标。以下是关于Included Health在不同地理区域保持透明和公平薪酬实践的承诺的更多信息。

您的起始基本薪资将取决于多种与工作相关因素,包括...

查看英文原文

Senior Security Operations Engineer

Remote · Security & Cyber Security · Full-Time

At Included Health, security is central to the trust our members, customers, partners, and care teams place in us. We protect sensitive health information and the systems that support our products by building security into architecture, engineering practices, and day-to-day operations. Our Security Engineering team works closely with IT, platform engineering, and product teams to build practical, scalable security controls that reduce risk through automation, secure-by-default patterns, strong technical partnerships, and controls that teams can actually operate in real production environments.

As the Senior Security Operations Engineer, you'll be responsible for designing, implementing, and improving Data Loss Prevention (DLP) protections across Included Health's corporate and cloud environments. You'll lead hands-on deployment and tuning of DLP controls across endpoint, network, and SaaS; investigate and respond to potential data exfiltration events; and drive remediation and hardening based on real-world incidents and detections. You'll own the operational lifecycle of our DLP stack — building and refining policies, partnering with stakeholders to validate business-safe controls, automating response playbooks, and turning signals from alerts and logs into durable security improvements. You'll also contribute to adjacent security operations functions, including incident response and vulnerability management, where they intersect with data protection.

This is a full-time, remote role reporting to the Senior Manager, Security Engineering. The role requires hands-on technical execution as well as the ability to influence IT, engineering, and business stakeholders to adopt practical, business-safe data protection controls.
Pay:

The United States new hire base salary target ranges for this full-time position are:

Zone A: $128,130 - $180,990+ equity + benefits

Zone B: $140,943 - $199,089 + equity + benefits

Zone C: $153,756 - $217,188 + equity + benefits

Zone D: $166,569 - $235,287 + equity + benefits

This range reflects the minimum and maximum target for new hire salaries for candidates based on their respective Zone. Below is additional information on Included Health's commitment to maintaining transparent and equitable compensation practices across our distinct geographic zones.

Starting base salary for you will depend on several job-related factors, unique to each candidate, which may include education; training; skills; years and depth of experience; certifications and licensure; our needs; internal peer equity; organizational considerations; and understanding of geographic and market data. Compensation structures and ranges are tailored to each zone's unique market conditions to ensure that all employees receive fair and great compensation package based on their roles and locations. Your Recruiter can share your geographic zone upon inquiry.

Benefits & Perks:

In addition to receiving a great compensation package, the compensation package may include, depending on the role, the following and more:

Remote-first culture

401(k) savings plan through Fidelity

Comprehensive medical, vision, and dental coverage through multiple medical plan options (including disability insurance)

Paid Time Off ("PTO") and Discretionary Time Off ("DTO")

12 weeks of 100% Paid Parental leave

Family Building & Compassionate Leave: Fertility coverage, $25,000 for surrogacy/adoption, and paid leave for failed treatments, adoption or pregnancies.

Work-From-Home reimbursement to support team collaboration home office work

Your recruiter will share more about the salary range and benefits package for your role during the hiring process.

About Included Health

Included Health is a new kind of healthcare company, delivering integrated virtual care and navigation. We’re on a mission to raise the standard of healthcare for everyone. We break down barriers to provide high-quality care for every person in every community — no matter where they are in their health journey or what type of care they need, from acute to chronic, behavioral to physical. We offer our members care guidance, advocacy, and access to personalized virtual and in-person care for everyday and urgent care, primary care, behavioral health, and specialty care. It’s all included. Learn more at includedhealth.com.

-----
Included Health is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics or any other basis forbidden under federal, state, or local law. Included Health considers all qualified applicants with arrest or conviction records in accordance with the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance, and California law.

Who You Are

  • You are a practical, hands-on security operations engineer who can bring structure to ambiguous data risks or control gaps without waiting for perfect clarity.
  • You clarify the desired outcome, stakeholders, constraints, and available facts, then make a reasonable first move and adapt as you learn.
  • You are comfortable going deep in logs, alerts, endpoint and network telemetry, SaaS configurations, and cloud storage to find the signal in the noise.
  • You use evidence to test hypotheses and turn findings into durable fixes, reusable automation, clear documentation, or repeatable processes.
  • You build trust through preparation, responsiveness, direct communication, technical credibility, and follow-through.
  • You listen to operational realities, explain risks and tradeoffs clearly, and work with teams toward practical controls they can operate in production.
  • You take ownership through the full loop: investigation, containment, remediation, root cause analysis, and knowledge sharing.
  • You know when to investigate independently, when to involve the right expertise, and when broader organizational alignment is needed.

What You'll Do

  • Lead the response to DLP and data security incidents, including investigation, containment, remediation, and root cause analysis for suspected data exfiltration or improper data handling.
  • Own the deployment, configuration, and continuous tuning of DLP controls across endpoints, network egress, SaaS applications, and cloud storage to protect PHI, PII, PCI, and other sensitive data.
  • Develop and maintain DLP policies, rules, and classifications that balance security, usability, and regulatory/client requirements.
  • Build and refine automated response playbooks and workflows that enrich, triage, and respond to alerts, reducing manual effort and mean time to respond.
  • Perform proactive hunting for anomalous data movement, including unusual destinations, channels, or volumes.
  • Define and track key DLP metrics (coverage, detection quality, MTTD/MTTR, false positive rate) and communicate progress to security leadership and cross-functional partners.

What You Bring

  • Minimum 5+ years of hands-on experience in security operations, incident response, or security engineering roles, with a strong emphasis on data protection and DLP.
  • Direct, hands-on experience deploying, tuning, and operating:

·

  • DLP tools (endpoint, network, SaaS, and/or cloud)
  • Cloud Access Security Broker (CASB) or similar SaaS security controls in a production environment
  • DLP signals into SIEM/SOAR workflows (e.g., CrowdStrike, Splunk, Sentinel)
  • Advanced scripting/automation skills (e.g., Python, PowerShell, KQL/SQL) used to enrich, tune, and report on DLP/IR telemetry at scale.
  • Experience designing and maintaining data classification and policy frameworks for PHI, PII, PCI, and other sensitive data types.
本页面信息整理自 Lever,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位