Jobs
>
New York City

    Application Security Engineer - New York, United States - Capital Rx

    Default job background
    Description

    Location: Remote (For Non-Local) or Hybrid (Local to NYC area)

    Position Summary:

    As a application security engineer, you will help build and manage services that detect and automate the mitigation of cybersecurity threats across Capital Rx infrastructure. You will work with software engineers, DevOps engineers, and other security engineers across multiple teams to develop innovative security solutions.

    Position Responsibilities:

    • Lead large security engineering projects from design to conclusion.
    • Have a deep understanding of secure coding in Python and Javascript languages
    • Establish and collaborate on the standardization of security practices amongst the development teams.
    • Drive strategic systemic solutions to solve, remediate, and automate recurring issues.
    • Interface with internal partner teams to drive secure coding practices and adherence to modern application security principles.
    • Design security into the SDLC pipeline to ensure developers receive early feedback around security practices.
    • An internal evangelist of the DevSecOps paradigm.
    • Evaluate new secure software solutions with internal partners.
    • Write documentation for end-users as needed to facilitate growth and improvements.
    • Evaluate, identify, and remediate risks associated with current vendors, new vendor acquisitions, and consumer data exchanges.
    • Actively participate in SDLC code-to-cloud and cloud-to-code integrations.
    • Help run Internal, external and vendor related red-team exercises.
    • Conduct security analysis of AWS and deployed software and drive recommendations.
    • Identify, maintain, and publish the requirements for the IT department to achieve compliance and privacy standards in SOC 2, HITRUST, FISMA, FedRamp, ISO 27001, and other standards.
    • Assist in developing, tracking and report threat intelligence metrics and KPI's to senior leadership.
    • Experience with incident management and defense coordination against emerging cyber threats and critical vulnerabilities.
    • Drive use cases to enable threat detection and hunting based on threat intelligence frameworks.
    • Embrace Agile and Scrum practices and concepts.
    • Coordinate with the team to ensure security alerts are monitored 24x7 via on-call rotation.
    • Provide security consultation to teams across the company.
    Required Qualifications:
    • 3+ years secure coding experience in Python, React/Redux, JavaScript
    • 3+ years designing secure software solutions.
    • Extensive experience in AWS services related to security engineering.
    • Experience in serverless application architecture.
    • Experience writing and updating code via HashiCorp Terraform.
    • Extensive experience with DLP, SIEM, DAST/SAST and cloud security vendors and services.
    • A customer-oriented approach to problem resolution.
    • Experience with Slack, Okta, Zoom, Teams, MDM, OneDrive, Lacework (or similar).
    • Excellent written and verbal communication skills
    • Highly self-motivated with an ability to work independently.
    • Desire to work at a rapidly growing organization.
    • Experience supporting remote users in a distributed environment.
    Desired Qualifications:
    • CACE
    • CISSP
    • CCSP
    • AWS Security Specialty
    • AWS Cloud Practitioner
    Nothing in this position description restricts management's right to assign or reassign duties and responsibilities to this job at any time.

    About Capital Rx

    Capital Rx is a full-service pharmacy benefit manager (PBM) and pharmacy benefit administrator (PBA), advancing our nation's electronic healthcare infrastructure to improve drug price visibility and patient outcomes. As a Certified B CorpTM, Capital Rx is executing its mission through the deployment of JUDI, the company's cloud-native enterprise health platform, and a Single-Ledger ModelTM, which increases visibility and reduces variability in drug prices. JUDI connects every aspect of the pharmacy ecosystem in one efficient, scalable platform, servicing millions of members for Medicare, Medicaid, and commercial plans. Together with its clients, Capital Rx is reimagining the administration of pharmacy benefits and rebuilding trust in healthcare.

    Capital Rx values a diverse workplace and celebrates the diversity that each employee brings to the table. We are proud to provide equal employment opportunities to all employees and applicants for employment and prohibit discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, medical condition, genetic information, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

    #LI-SE1


  • Deutsche Telekom AG New York, United States

    Aufgabe · Als Web Application Security Engineer (w/m/d) unterstützt Du unser Betriebsteam bei folgenden Aufgaben: · Konzeption, Implementierung und Betrieb der WAF- (Web Application Firewall), Reverse-Proxy- und Loadbalancing-Systeme · Unterstützung bei Netzwerk- und Security-Th ...


  • HDI Service AG New York, United States

    Ihre Aufgaben: · Betrieb und Weiterentwicklung der technischen Cyber Security Lösungen (z.B. EDR, NDR, SIEM, Vulnerability-Scanning) · Administration von Security Agenten auf Endsystemen · Unterstützung bei der Planung, Installation, Konfiguration und Migration von innovativen ...


  • HDI Service AG New York, United States

    Ihre Aufgaben: · Verantwortung für den Betrieb und die Architektur der Splunk Infrastruktur · Weiterentwicklung der Splunk Plattform · Technische Beratung und Umsetzung von (Security) Use Cases · Ausbau der Interkonnektivität der Splunk Plattform · Integration, regelmäßige Ü ...

  • Alchemy

    Security Engineer

    4 weeks ago


    Alchemy New York, United States

    is to bring blockchain to a billion people. The Alchemy Platform is a world class developer platform designed to make building on the blockchain easy. We've built leading infrastructure in the space, powering over $105 billion in transactions for tens of millions of users in 99% ...

  • Alchemy

    Security Engineer

    4 days ago


    Alchemy New York, United States

    is to bring blockchain to a billion people. The Alchemy Platform is a world class developer platform designed to make building on the blockchain easy. We've built leading infrastructure in the space, powering over $105 billion in transactions for tens of millions of users in 99% ...

  • Green Key Resources

    Security Engineer

    1 week ago


    Green Key Resources New York, United States

    Department: Infrastructure Services · StaffTitle: Security Engineer · Reportsto: Director of IT · FLSAStatus: Exempt · WorkingConditions: Full-time (M-F), Office Business Settings. This is an On-Premises position. Monday through Thursday (9-5) and remote on Fridays only (No excep ...

  • TSR Consulting

    Security Engineer

    15 hours ago


    TSR Consulting New York, United States

    About TSR: · TSR is a relationship-based, customer-focused IT and technical services staffing company. · For over 40 years TSR, Inc. and its wholly owned subsidiary, TSR Consulting Services, have prospered in the Information Technology staffing business, earning the respect of co ...

  • MedReview Inc.

    Security Engineer

    1 week ago


    MedReview Inc. New York, United States

    WorkingConditions: Full-time (M-F), Office Business Settings. This is an On-Premises position. Monday through Thursday (9-5) and remote on Fridays only . · PositionSummary –The Security Engineer is responsible for securing – maintaining and monitoring MedReview's enterprise infra ...

  • NYC Health Hospitals

    IT Security Engineer

    2 weeks ago


    NYC Health Hospitals New York, United States

    MetroPlus Health provides the highest quality healthcare services to residents of Bronx, Brooklyn, Manhattan, Queens and Staten Island through a comprehensive list of products, including, but not limited to, New York State Medicaid Managed Care, Medicare, Child Health Plus, Excha ...

  • Celonis GmbH

    Security Engineer

    15 hours ago


    Celonis GmbH New York, United States

    We're Celonis, the global leader in Process Mining technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing data and intelligence at the core of business processes - and for that, we need you to join ...

  • Datadog

    Security Engineer

    3 weeks ago


    Datadog New York, United States

    We are looking for a Security Engineer for the Software Integrity and Trust team to build systems that protect Datadog against various forms of supply-chain attacks. · You'll join at an ideal time to make a big impact: supply-chain attacks continue to be one of the fastest growin ...

  • Wallero

    Security Engineer

    2 weeks ago


    Wallero New York, United States

    Title: Security Engineer · Position: Contract · PRIMARY LOCATION: New York · Note: Only who are willing work on our W2 · Description: · Highly motivated self-starter with excellent interpersonal and problem-solving skills · Bachelor s degree or equivalent work experience · Good o ...

  • TSR Consulting

    Security Engineer

    2 weeks ago


    TSR Consulting New York, United States

    About TSR: · Make your application after reading the following skill and qualification requirements for this position. · TSR is a relationship-based, customer-focused IT and technical services staffing company. · For over 40 years TSR, Inc. and its wholly owned subsidiary, TSR ...

  • CyberTec

    IT Security Engineer

    15 hours ago


    CyberTec New York, United States

    IT Security Engineer, 10 + Years · Work Location: ONSITE, Graybar Building, NYC · Desired Start Date: 3/18/2024 · Duration: 12 Months · Work hours: 40.00 · Business Organization:METROPOLITAN TRANSPORTATION AUTHORITY · Pay Rate $65 · Responsibilities include the following: ...


  • E.L.F. Beauty, Inc. New York, United States

    About the Company · e.l.f. Beauty, Inc. stands with every eye, lip, face and paw. Our deep commitment to clean, cruelty free beauty at an incredible value has fueled the success of our flagship brand e.l.f. Cosmetics since 2004 and driven our portfolio expansion. Today, our mult ...

  • Figma

    Security Engineer

    15 hours ago


    Figma New York, United States

    Figma is growing our team of passionate people on a mission to make design accessible to all. Born on the Web, Figma helps entire product teams brainstorm, design and build better products - from start to finish. Whether it's consolidating tools, simplifying workflows, or collabo ...

  • Alchemy

    Security Engineer

    1 day ago


    Alchemy New York, United States

    Our mission is to bring blockchain to a billion people. The Alchemy Platform is a world class developer platform designed to make building on the blockchain easy. We've built leading infrastructure in the space, powering over $105 billion in transactions for tens of millions of u ...

  • MicroData Systems, Inc.

    Security Engineer

    3 weeks ago


    MicroData Systems, Inc. New York, United States

    Job Description · Job DescriptionSecurity Engineer · Your Career · As a Security Engineer you will be responsible for assisting with the log migration and detection strategy of our customers. You will work closely with the technical lead to ensure that all the relevant log sourc ...

  • Datadog

    Security Engineer 2

    2 weeks ago


    Datadog New York, United States

    Security Engineer 2 - Adversary Simulation Operations · New York, New York, USA · We're looking for engineers with a background in offensive security in the areas of Kubernetes and container security, network penetration testing, application security and cloud infrastructure. Ex ...


  • Datadog New York, United States

    Enterprise IT Security Engineer · New York, NY, United States · Description · The Enterprise IT Security team is internally focused with the mission of securing the endpoints, applications, infrastructure, services and networks that Datadog employees rely on on a daily basis. T ...