远程工作雷达

云工程师,安全

Cloud Engineer, Security

开发工程全球可投
公司includedhealth
薪资未公开
工作地点Remote
地域资格全球可投
时区要求无特别要求
用工类型未标注
发布时间未知
数据来源Lever
前往企业招聘页投递 →
全球可投:该职位未限制候选人所在地区。仍需注意薪资可能按地区折算,以及实际签约方式(正式雇佣 / 独立合同)。

在Included Health,安全是我们的成员、客户、合作伙伴和护理团队对我们信任的核心。我们通过将安全融入架构、工程实践和日常运营来保护敏感的健康信息和支撑我们产品的系统。

我们的安全工程团队与平台工程和产品团队紧密合作,构建实用且可扩展的安全控制措施,特别是针对我们的基础设施即代码(infrastructure-as-code)。我们专注于通过自动化、默认安全模式、强大的技术合作以及团队可以在实际生产环境中操作的控制措施来降低风险。

作为安全团队的云工程师,你将帮助提升Included Health在AWS环境中的云安全态势,同时考虑GCP。你将设计、实施并自动化保护产品基础设施的控制措施,防止未经授权的受保护健康信息(PHI)泄露。

这是一个全职远程职位,向安全工程高级经理汇报。我们考虑Senior和Staff级别的候选人。

该职位需要具备实际的技术执行能力,以及影响基础设施、DevOps、工程和产品团队的能力。

薪资:

我们考虑Senior和Staff级别的候选人。
美国新员工的基准薪资范围如下:

  • 区域A:130,050–249,930美元 + 股权 + 福利
  • 区域B:143,055–274,923美元 + 股权 + 福利
  • 区域C:156,060–299,616美元 + 股权 + 福利
  • 区域D:169,065–324,909美元 + 股权 + 福利

此范围反映了各区域新员工薪资的最低和最高目标。以下是Included Health对在不同地理区域保持透明和公平薪酬实践的承诺的更多信息。

你的起始基本薪资将取决于多个与工作相关因素,每个候选人各有不同,可能包括教育背景;培训;技能;工作经验年限和深度;认证和执照;我们的需求;内部同级公平性;组织考量;以及对地理和市场数据的理解。薪酬结构和范围根据各区域独特的市场条件进行定制,以确保所有员工根据其职位和所在地获得公平且优厚的薪酬包。你的招聘经理可以与你分享更多相关信息。

查看英文原文

At Included Health, security is central to the trust our members, customers, partners, and care teams place in us. We protect sensitive health information and the systems that support our products by building security into architecture, engineering practices, and day-to-day operations.

Our Security Engineering team works closely with platform engineering and product teams to build practical, scalable security controls, especially focused on our infrastructure-as-code. We focus on reducing risk through automation, secure-by-default patterns, strong technical partnerships, and controls that teams can operate in real production environments.

As a Cloud Engineer on the Security team, you’ll help mature Included Health’s cloud security posture across primarily AWS environments, with consideration for GCP. You’ll design, implement, and automate controls that protect product infrastructure and help prevent unauthorized Protected Health Information (PHI) exfiltration.

This is a full-time, remote role reporting to the Senior Manager, Security Engineering. We are open to considering candidates at both the Senior and Staff levels.

The role requires hands-on technical execution as well as the ability to influence infrastructure, DevOps, engineering, and product teams.

Pay:

We are open to considering candidates at both the Senior and Staff levels.
The United States new hire base salary target ranges for this full-time position are:

  • Zone A: $130,050–$249,930 + equity + benefits
  • Zone B: $143,055–$274,923 + equity + benefits
  • Zone C: $156,060–$299,616 + equity + benefits
  • Zone D: $169,065–$324,909 + equity + benefits

This range reflects the minimum and maximum target for new hire salaries for candidates based on their respective Zone. Below is additional information on Included Health's commitment to maintaining transparent and equitable compensation practices across our distinct geographic zones.

Starting base salary for you will depend on several job-related factors, unique to each candidate, which may include education; training; skills; years and depth of experience; certifications and licensure; our needs; internal peer equity; organizational considerations; and understanding of geographic and market data. Compensation structures and ranges are tailored to each zone's unique market conditions to ensure that all employees receive fair and great compensation package based on their roles and locations. Your Recruiter can share your geographic zone upon inquiry.

Benefits & Perks:

In addition to receiving a great compensation package, the compensation package may include, depending on the role, the following and more:

Remote-first culture

401(k) savings plan through Fidelity

Comprehensive medical, vision, and dental coverage through multiple medical plan options (including disability insurance)

Paid Time Off ("PTO") and Discretionary Time Off ("DTO")

12 weeks of 100% Paid Parental leave

Family Building & Compassionate Leave: Fertility coverage, $25,000 for surrogacy/adoption, and paid leave for failed treatments, adoption or pregnancies.

Work-From-Home reimbursement to support team collaboration home office work

Your recruiter will share more about the salary range and benefits package for your role during the hiring process.

About Included Health

Included Health is a new kind of healthcare company, delivering integrated virtual care and navigation. We’re on a mission to raise the standard of healthcare for everyone. We break down barriers to provide high-quality care for every person in every community — no matter where they are in their health journey or what type of care they need, from acute to chronic, behavioral to physical. We offer our members care guidance, advocacy, and access to personalized virtual and in-person care for everyday and urgent care, primary care, behavioral health, and specialty care. It’s all included. Learn more at includedhealth.com.

-----
Included Health is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics or any other basis forbidden under federal, state, or local law. Included Health considers all qualified applicants with arrest or conviction records in accordance with the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance, and California law.

What You'll Do

  • Design and automate cloud security controls across Identity & Access Management (IAM), authorization, Just-in-Time access, data access, and platform access.
  • Improve AWS and GCP security posture through Terraform guardrails, risk roadmaps, legacy remediation, and secure infrastructure patterns.
  • Build security tooling in Python, Go, and Lambda for vulnerability management, alerting, PHI logging, and cloud security workflows.
  • Secure containers, workloads, and CI/CD pipelines through practical controls teams can operate in production.
  • Partner with infrastructure, DevOps, engineering, and product teams on sensitive-data handling, incident response, and secure platform initiatives.
  • Document controls, standards, automation, and playbooks that help teams adopt secure workflows.

Who You Are

You are a practical, hands-on cloud security engineer who can bring structure to ambiguous risks or control gaps without waiting for perfect clarity. You clarify the desired outcome, trust boundaries, stakeholders, constraints, and available facts, then make a reasonable first move and adapt as you learn.

You are comfortable going deep in code, cloud APIs, logs, identity policies, network traffic, CI/CD pipelines, and infrastructure configuration. You use evidence to test hypotheses and turn findings into durable fixes, reusable automation, clear documentation, or repeatable processes.

You build trust through preparation, responsiveness, direct communication, technical credibility, and follow-through. You listen to operational realities, explaining risks and tradeoffs clearly, and work with teams toward practical controls they can operate in production.

You take ownership through the full loop: coordination, escalation, validation, closure, and knowledge sharing. You know when to investigate independently, when to involve the right expertise, and when broader organizational alignment is needed.

What You Bring

  • 5+ years of hands-on cloud security experience, with deep AWS expertise and familiarity with GCP.
  • Strong technical depth across cloud infrastructure, identity, authorization, networking, containers, CI/CD, logging, monitoring, and security operations.
  • Experience building security automation and infrastructure tooling in Python, Go, Terraform, and cloud-native services.
  • Experience designing and operating access controls, including RBAC, ABAC, policy-as-code, granular engineering access, and Just-in-Time access.
  • Familiarity applying cloud security frameworks, HIPAA requirements, and related standards to production environments.
  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
本页面信息整理自 Lever,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位