Please note: This is a hybrid role requiring 3 days in office at our Philadelphia HQ - 1818 Market Street.
How you will help
As a part of our Security team, you will be at the front line of our security operations and security engineering processes. You will deep dive on security alerts, help tune monitoring and alerting systems, and investigate and analyze risks to our people, processes, systems, and data. You will also implement security controls that protect data and systems.
What you will do
- Manage and triage security events and incidents daily
- Own operational administration of security and logging tool(s) and optimization of their settings
- Implement guard rails to improve the security of AWS, Databricks, and SaaS
- Participate in various FedRAMP activities as needed
- Collaborate cross-functionally with guidance to reduce the exposure risk
- Develop and participate in the development of playbooks for incident response, documentation, and procedures
- Contribute towards incident response and contingency planning exercises
- Perform various scanning activities, ensure record creation, remediate the vulnerabilities as appropriate or follow up with teams to remediate them
- Research security trends and threats as they are applicable to HealthVerity systems, and provide education to internal teams on these trends and threats
About You
- You make security a priority in everything you do
- You have a solid grasp of key security concepts such as IAM, encryption, and auditing
- You prioritize keeping yourself abreast on the security trends and threats, and can explain these issues in a simple way to non-security audience
- You know your way around AWS security services such as IAM and CloudTrail
- You are comfortable working in github
- You are comfortable with shell scripting as well as Python or similar languages
- You have a basic familiarity with HIPAA, NIST 800-53 and security frameworks
- You are data driven, and understand the relevance of monitoring and measuring systems
Desired Skills and Experience
- 2-5 years in information security, product security, and/or system administration experience in AWS and Linux environments
- Prior involvement in responding to a publicly declared security incident
- SANS Digital Forensic Analyst, AWS security, ISC2, or similar security certifications
- Working knowledge of SIEM, vulnerability management, and other security related tools, including open source tools
- Prior participation in hackathons and capture the flag events
- Understanding of data network configuration and infrastructure concepts, including TCP/IP, DNS, routers, internet/intranet/extranet, firewalls, web servers and security hierarchy including the application of encryption key infrastructures and authentication processes
- Used Artificial Intelligence to improve your workflows without compromising security
Base salary for the role is commensurate with experience and can range between $75,000 - 95,000 + annual bonus opportunity.
Hiring Locations
Our main office is located in Center City, Philadelphia, where we operate on a hybrid model with in-office work required three days a week for local employees. We believe collaboration is most effective when teams come together, which is why we prioritize hiring in the Philadelphia area.For certain roles, we also hire from hub locations—regions where we have an established presence with multiple team members working remotely. While these employees primarily work from home, we bring them together in person at lease once a year for team-building, collaboration, and strategic planning.Due to tax and labor regulations, we can only hire from specific states.
Remote work is supported in the following key hub locations and approved states:
Hub Locations:
- Philadelphia, Pennsylvania
- Boston, Massachusetts
- New York City, New York
- Baltimore, Maryland
- Washington, D.C.
- Charlotte, North Carolina
- Raleigh-Durham, North Carolina
- Atlanta, Georgia
- Chicago, Illinois
Approved States for Remote Work:
CT, DE, FL, GA, IL, IN, MA, MD, MI, NC, NJ, NY, OH, PA, TN, and VA.
About HealthVerity
HealthVerity synchronizes transformational technologies with the nation’s largest healthcare and consumer data ecosystem to power previously unattainable outcomes and fundamentally advance the science. We offer a comprehensive, yet flexible approach, based on the foundational elements of Identity, Privacy, Governance and Exchange (IPGE), that synchronizes unparalleled Identity management with built-in Privacy compliance and Governance, providing the ability to discover and Exchange a near limitless combination of data at a record pace.
Together with our partners in life sciences, government and insurance, we are Synchronizing the Science. To learn more about HealthVerity, visit healthverity.com.
Why you'll love working here
We are making a difference – Our technology is at the forefront of some of the biggest healthcare challenges in the world. We are one team – Our people define our culture and always will. We take time out to celebrate each other, and acknowledge the value that each of us adds towards our greater mission. Come share all you have to offer.We are learners – Every team member is continually learning, no matter if we've been in a role for one year or much longer. We are committed to learning and implementing what is best for our clients, partners, and each other.
Benefits & Perks
Our benefits package is thoughtfully designed to support and enrich the experience of our full-time employees, with eligibility limited to those in permanent positions.
- Compensation: competitive base salary & annual bonus opportunity (for non-commissioned roles)
- Benefits: We offer a 401(k) plan and stock options. Health, dental, and vision coverage start on day 1, while 401(k) eligibility and stock options follow soon after.
- Flexible location: Remote workdays and 3 days a week of in-office collaboration for team members in the Philadelphia area. Check location requirements with the recruiting team.
- Generous PTO: Take time off as needed, targeted at 4 weeks per year, including vacation, personal and sick time, plus paid parental leave.
- Parental Leave: 12 weeks paid leave for childbearing, surrogacy, and adoption; 6 weeks for non-childbearing parents.
- Comprehensive and individualized onboarding: mentorship program, departmental talks, and a library of resources are available beginning day 1 for each new team member to minimize the stress of starting a new job
- Professional development: biweekly 1:1s, hands-on leadership that is goal-and growth-oriented for each team member, and an annual budget to support professional development pursuits
We believe incorporating different ideas, perspectives and backgrounds make us stronger and encourages an environment where ageism, racism, sexism, ableism, homophobia, transphobia or any other form of discrimination are not tolerated. All qualified job applicants will be given consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or on the basis of disability. At HealthVerity, we’re working towards an innovative and connected future for healthcare data and believe the future is better together.
We can only do that if everyone has a seat at the table. If you require a reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to careers@healthverity.comRemote opportunities are not available in all areas and require team members to work from a fixed location due to tax and labor law implications - specific questions about remote positions can be discussed during the interview process with your recruiter.