[Remote] Cloud Security Engineer/DevSecOps Engineer

Remote Full-time
Note: The job is a remote job and is open to candidates in USA. Get Well is a company revolutionizing healthcare through connected, AI-native intelligence. They are seeking a Cloud Security Engineer/DevSecOps Engineer to enhance security across AWS and Azure environments and contribute to cloud security architecture decisions.ResponsibilitiesReview, improve, and help design secure architectures across AWS and Microsoft Azure environmentsImplement and maintain cloud security controls related to IAM, network segmentation, encryption, logging, key management, backups, secure configuration, and access controlIdentify and remediate cloud misconfigurations, excessive permissions, insecure storage, public exposure, weak logging, and missing security controlsPartner with engineering and infrastructure teams to integrate security checks and DevSecOps practices into CI/CD workflowsOperate and improve vulnerability management processes, including scanning, validation, prioritization, remediation tracking, reporting, and exception reviewUse security monitoring and telemetry platforms to support alert triage, endpoint visibility, log review, investigation, and detection improvementSupport compliance monitoring, evidence collection, control mapping, and audit readiness activities using Vanta and CompylMap technical controls to compliance requirements, internal policies, customer security expectations, and audit evidence needsParticipate in threat modeling and security reviews for new applications, infrastructure changes, cloud deployments, and third-party integrationsSupport incident response activities, including alert investigation, log analysis, evidence gathering, containment recommendations, and post-incident improvementsImprove identity and access management practices, including least privilege, MFA, conditional access, service principals, role reviews, privileged access controls, and access certification supportCreate and maintain security documentation, cloud security standards, control narratives, runbooks, remediation procedures, and architecture diagramsSupport implementation and maintenance of security benchmarks and frameworks such as CIS, NIST, SOC 2, ISO 27001, HIPAA, FedRAMP Moderate, and HITRUSTTranslate security and compliance requirements into practical technical tasks for engineering, IT, and infrastructure teamsSkills3–5 years of experience in cybersecurity, cloud security, DevOps, infrastructure, systems administration, security operations, compliance operations, or a related technical roleHands-on experience with AWS and/or Microsoft Azure, with the ability to work across both platformsWorking knowledge of cloud security concepts, including IAM, network controls, encryption, logging, monitoring, workload security, and shared responsibility modelsExperience with common AWS security services such as IAM, CloudTrail, CloudWatch, GuardDuty, Security Hub, KMS, Config, S3 security, or VPC controlsExperience with common Azure security services such as Microsoft Entra ID, Azure Policy, Defender for Cloud, Key Vault, Network Security Groups, Log Analytics, Sentinel, or related servicesExperience with vulnerability management tools such as Rapid7 InsightVM, Nexpose, InsightCloudSec, InsightIDR, or similar platformsExperience with SIEM, endpoint monitoring, log analysis, or security telemetry tools such as Wazuh, Rapid7 InsightIDR, Microsoft Sentinel, or similar platformsFamiliarity with compliance automation, GRC, or audit readiness platforms such as Vanta, Compyl, or similar toolsAbility to interpret vulnerability, cloud posture, endpoint, and compliance findings and prioritize remediation based on riskWorking knowledge of secure configuration, patch management, asset inventory, evidence collection, vulnerability remediation, and exception management workflowsBasic to intermediate scripting or automation experience using Python, PowerShell, Bash, Terraform, or similar toolsStrong communication and documentation skills, including the ability to explain technical risks, write clear procedures, and recommend practical remediation optionsAdhere to all organizational information security policies and protect all sensitive information including but not limited to ePHI and PHI in accordance with organizational policy and Federal, State, and local regulationsBachelor's degree in Cybersecurity, Information Systems, Computer Science, Business, Accounting, Risk Management, or equivalent practical experienceExperience supporting compliance and security frameworks such as SOC 2, ISO 27001, HIPAA, NIST, CIS, FedRAMP Moderate, and HITRUST, or similar standardsExperience with infrastructure as code tools such as Terraform, CloudFormation, ARM/Bicep, or Azure DevOpsExperience with CI/CD platforms such as GitHub Actions, GitLab CI, Jenkins, Azure DevOps, or similarExperience with container or workload security for Docker, Kubernetes, ECS, EKS, AKS, or Azure Container AppsWorking knowledge of application security concepts, including OWASP Top 10, secrets management, dependency scanning, secure SDLC, and threat modelingExperience with cloud security posture management, vulnerability dashboards, alert tuning, security reporting, and control monitoringFamiliarity with Microsoft 365 security, Microsoft Entra Conditional Access, Defender, Intune, or endpoint managementExperience creating or improving security architecture diagrams, control narratives, remediation guides, operational procedures, and audit evidenceRelevant certifications such as Security+, AWS Certified Security Specialty, AWS Solutions Architect Associate, Azure Security Engineer Associate, Azure Administrator Associate, SC-200, or equivalent practical experienceBenefitsExceptionally generous paid time away from workA variety of paid leave programsSavings opportunities with 401(k) and incentive plansInternal education programsFull array of health benefitsFitness reimbursementCell phone subsidyCasual offices with snacks and drinksPeer recognition programsHealth advocacy and employee assistance programsPet insurance (yes, really)Company OverviewNow part of SAIGroup, Get Well is redefining digital patient engagement by putting patients in control of their healthcare, inside and outside the hospital. It was founded in 1999, and is headquartered in Bethesda, Maryland, USA, with a workforce of 201-500 employees. Its website is http://www.getwellnetwork.com.Company H1B SponsorshipGet Well has a track record of offering H1B sponsorships, with 1 in 2022, 3 in 2020. Please note that this does not guarantee sponsorship for this specific role.

Apply Now →

Similar Jobs

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote

USPS Office Helper

Remote

Experienced Remote Data Entry Clerk – Part-Time Entry-Level Opportunity for Career Growth and Development with blithequark

Remote

Tax Senior (C-Corp/ASC 740) - Any Location

Remote

Experienced Office Clerk/Data Entry Specialist – Remote Opportunity at careerzynith

Remote

[Remote] CSR Call Center - Medicaid Member Support

Remote

Entry level / Data Entry Clerk (Remote)

Remote

**Experienced Part-Time Remote Customer Service Representative – Join arenaflex's Dynamic Team**

Remote

BMV Customer Service Representative 2

Remote

Telehealth Veterinary Technician - Part Time

Remote

Remote Data Entry Specialist – Data Integrity & Information Management Professional

Remote

Accountant (Remote) (Accountant 2) 28535

Remote
← Back