Resumen del rol

Lead Engineer- Security

Requisitos y responsabilidades

Contenido del rol extraído en secciones para revisar más rápido.

Client Delivery & Consulting Advisory

  • Lead security discovery workshops with client stakeholders to map out security requirements across all existing and upcoming system interfaces.
  • Translate high-level architectural requirements into actionable security user stories, tasks, and implementation roadmaps for our internal and offshore engineering teams.
  • Evaluate technical tradeoffs between native cloud tools and agnostic platforms to ensure data portability and architectural durability for our clients.

Security Architecture & Documentation

  • Design and document end-to-end cloud security frameworks tailored to client environments.
  • Document existing client controls and packages to put their organization on a clear path toward SOC 2 and HITRUST compliance.

Governance & AI Strategy

  • Establish early-stage governance, security processes, and compliance tracking specifically tailored to Artificial Intelligence.
  • Define long-term maintenance, security guidelines, and architecture health policies for deploying multiple automated agent groups.

Governance & AI Strategy

  • Establish policies for regular code scanning and automated code review workflows using third-party tools.
  • Prioritize and coordinate remediation plans alongside core client development teams.
  • Oversee security preparation for critical next-phase applications, specifically around physician-patient interaction portals.

Success Metrics

  • Delivery Velocity & Technical Enablement: Provision of complete, highly actionable technical work packages and user stories to development teams, ensuring high utilization and smooth project execution.
  • Audit Readiness & Client Trust: Timely and comprehensive compilation of control documentation, resulting in clear paths to SOC 2 and HITRUST validation for our clients.
  • Risk Mitigation: Proactive minimization of security flaws across interfaces through clear architecture reviews and scanning gates.
  • Reusable IP Creation: Successful delivery of repeatable governance policies for agent workflows that can be leveraged across future managed services engagements.

Success Metrics

  • Experience: 6 - 12 years of progressive experience across cybersecurity, security engineering, or security architecture domains.
  • Domain Expertise: Proven understanding of cloud-focused API security, identity access management, network security, and data protection.
  • Tools & Operations: Strong experience with vulnerability scanning platforms, code verification tools, and tracking development remediation.
  • Communication: Exceptional written communication skills with explicit experience converting complex cloud landscapes into clean compliance documentation.

Success Metrics

  • Healthcare Industry Context: Strong domain experience in Healthcare Technology, HIPAA requirements, or patient/provider data security environments is highly desired.
  • Compliance Frameworks: Active experience preparing technical architectures for SOC 2 and HITRUST audit frameworks.
  • Cloud Architecture: Deep familiarity with cloud ecosystems (specifically Google Cloud Platform / GCP), cloud-native security mechanics, and API integration models.
  • Advanced Certifications: Professional security accreditations (e.g., CISSP, CCSP, or cloud-specific security certifications).

Success Metrics

  • Accountability - Demonstrates ownership and responsibility for actions, decisions, and outcomes.
  • Adaptability: Being adaptable to evolving business needs, unplanned challenges, and embodying a collaborative “all hands on-deck” mentality when necessary.
  • Ambition - Exhibits drive, initiative, and a commitment to personal and professional growth.
  • Business Acumen - Understands complex business concepts, challenges, and opportunities, applying insights to make informed decisions and support organizational goals.
  • Detail-Oriented - Pays meticulous attention to every aspect of tasks or situations, ensuring accuracy and thoroughness.
  • Innovative - Demonstrates creativity and openness to unconventional approaches, encouraging new ideas and solutions.
  • Organized - Employs structured, methodical work habits to manage multiple priorities and meet deadlines effectively.
  • Persistence - Maintains focus and determination, overcoming obstacles to achieve objectives.
  • Technical Aptitude - Demonstrates expertise in specialized technical areas, applying knowledge effectively to solve complex problems and innovate.

BENEFITS & PERKS FOR WORKING AT OLLION

  • Benchmarked, competitive, in-market total rewards package including (but not limited to): base salary & short-term incentive for all employees
  • We are a remote-first, globally distributed organization where our people are empowered to learn, grow, and perform at their best. While most roles can be done from anywhere within your home country, some client-facing work may require onsite presence.
  • Retirement planning (i.e. CPF, EPF, company-matched 401(k)
  • Globally, we build benefit plans that offer choices for whatever stage in life our employees are in and allow for flexibility as life happens. Employees have the benefit of medical insurance which is in line with industry benchmarks in their geography. In addition to great healthcare coverage, we also offer all employees mental health resources and additional wellness programs.
  • Generous time off and leave allowances
  • And more!
Roles similares

Mantén una lista de respaldo.

Ver stack
FocoSecurity EngineeringÁrea del rol
Señal de senioritySeniorNivel del candidato
StackGCPSkills principales
Ubicación1 país aceptadoElegibilidad

Stack

Usa estas tags para comparar roles remotos similares.

Elegibilidad de ubicación

Candidatos deberían aplicar solo cuando el país del perfil aparece aquí.

Tu perfilPaís no definidoInicia sesión para comparar tu país con este rol.

Flujo de contratación

WithMira muestra el rol y luego envía candidatos a la aplicación de la empresa.

1Revisa fit del rol, stack y elegibilidad de ubicación en WithMira.
2Abre la página de aplicación de la empresa desde el link rastreado.
3Guarda el rol o suscríbete a oportunidades similares antes de salir.