Search jobs > Palo Alto, CA > Remote > Security engineer

Security Engineer (Remote) @ Tidepool

Cyber Crime
Palo Alto, California, US
$88.4K-$169.8K a year
Remote
Full-time

Founded in 2013, Tidepool is a 501(c)3 nonprofit organization dedicated to making diabetes data more accessible, actionable, and meaningful for people with diabetes, their care teams, and researchers.

Tidepool Loop is a project to build and support an FDA-regulated version of Loop, to be available in the iOS App Store, intended to work with commercially available insulin pumps and CGMs.

Tidepool Loop is not currently available for use.

Job Description

Candidates must be geographically located within the United States, and eligible to work.

Are you interested in working to secure apps and data that are already improving the lives of people with diabetes and want to help bring it to many more?

As a Security Engineer, you will be responsible for helping Tidepool customers (internal and external) maintain the security of our platform and help drive innovation and performance within the company around DevSecOps practices.

This role reports to Tapani Otala, VP of Engineering.

Essential Duties and Responsibilities :

  • Collaborate with the Tidepool Security Lead and other Tidepool Engineers to establish, focus, and triage priorities and operational security needs.
  • Work across all areas of Tidepool to support and deliver a secure platform and end-user experience.
  • Design and implement new security controls and augment existing ones in multiple environments.
  • Maintain day-to-day security operations, including access requests, security reviews, and internal product implementation.
  • Ensure a HIPAA-compliant security environment.
  • Assess and implement new services and architectures.
  • Participate in SOC-2 Type II maintenance and audit processes.
  • Identify and remediate vulnerabilities through automation, manual assessment, tools, and Tidepool's security disclosure program.
  • Respond to RFIs and questionnaires from clinics and external organizations regarding Tidepool's Security Program.
  • Maintain defenses and implement defense-in-depth security across Tidepool's applications and supporting services, including git repositories, email, dns, and critical collaboration tools.

Qualifications

Required :

  • 2+ years of experience in executing or supporting security functions.
  • Strong experience with cloud service providers (AWS preferred).
  • Familiarity with security frameworks such as NIST, OWASP, CSA, ISO.
  • Knowledge of network ports and services, TLS / SSL infrastructure and protocols.
  • Experience with scripting and configuration languages, including YAML.
  • Familiarity with logging services, assessment, and alerting.
  • Strong understanding of operating system security (Linux and MacOS preferred).

Below covers everything you need to know about what this opportunity entails, as well as what is expected from applicants.

Preferred :

  • CISSP, CCSP, or similar certification.
  • Experience with cloud-native services (Docker, Kubernetes, Go).
  • Experience with IDP's, SSO / SAML,and OAuth.
  • Experience with automated testing and continuous integration tools.
  • Experience with security testing tools (Snyk, Dependabot, Burp Suite).
  • Experience with data pipelines, data lakehouse.
  • Experience with MDM.
  • Experience with Mobile Security and Mobile App Sec tools.

Additional Information

Compensation : The compensation range for this role is $88,400 - $169,761.To learn more about Tidepool's compensation philosophy please seeTidepool's Employee Handbook .

Time Zones and Locations : You can work from anywhere in the United States. You will be required to overlap specific business hours.

  • Excellent Medical, Dental, and Vision health insurance.
  • Health and Dependent CareFSA witha dollar-for-dollar match up to the IRS limit.
  • Flexible PTO with a recommended minimum of at least three weeks per year.
  • Eight weeks of paid new parent leave.
  • Wellness and Productivity Stipend.
  • Continuing Education Reimbursement that encourages team members to spend time on professional development.

Other Information :

At Tidepool, personal experience with diabetes is valued and not required. We seek team members who are empathetic towards chronic conditions and eager to learn about the diabetes experience.

For more insights into our work culture, including our commitment to inclusion and diversity, please refer tothis blog post about working at Tidepool.

Tidepool is an Equal Opportunity Employer. The company supports diversity and inclusion in its core values and does not discriminate against qualified employees or applicants because of race, color, religion, gender identity, sex, sexual preference, sexual identity, pregnancy, national origin, ancestry, citizenship, age, marital status, physical disability, mental disability, medical condition, military status, or any other characteristic protected by U.

S. federal or state law or local ordinance. When necessary, the company will reasonably accommodate employees and applicants with disabilities if the person is otherwise qualified to safely perform all of the essential functions of the position.

Find even more open roles below ordered by popularity of job title or skills / products / technologies used.

J-18808-Ljbffr

Remote working / work at home options are available for this role.

9 hours ago
Related jobs
Promoted
Cyber Crime
Palo Alto, California
Remote

Collaborate with the Tidepool Security Lead and other Tidepool Engineers to establish, focus, and triage priorities and operational security needs. Are you interested in working to secure apps and data that are already improving the lives of people with diabetes and want to help bring it to many mor...

Promoted
RingCentral, Inc
Belmont, California
Remote

Security Engineer, Vulnerability Management. Security Engineer, Vulnerability Management. BS degree in Computer Science, Cyber Security, Information Technology (or related discipline); Graduate degree in Information Assurance (or related discipline) or equivalent formal training and experience in In...

Promoted
GuidePoint Security LLC
Palo Alto, California
Remote

Security Engineers at GuidePoint Security are experienced professionals who are autonomous, experienced, self-driven security fanatics. Our Security Engineers are materially involved in the complete security technologies opportunity lifecycle, from pre-sales through delivery and have the freedom and...

Promoted
RingCentral
Belmont, California
Remote

Security Application Engineer, DAST Scanning (remote US). The area of responsibility of the application security team includes enablement and support for RingCentral’s Security Development Lifecycle (SDL) program. We are looking for a Security Application Engineer with a strong understanding of web ...

RingCentral
Belmont, California
Remote

Security Engineer, Vulnerability Management. Security Engineer, Vulnerability Management. BS degree in Computer Science, Cyber Security, Information Technology (or related discipline); Graduate degree in Information Assurance (or related discipline) or equivalent formal training and experience in In...

Splunk Inc
California, United States
Remote

This role will report to the Manager of Security Platform Engineering within the Splunk Global Security (SGS) organization to join a hardworking team of security engineers. As a member of the Security Engineering team, you will be responsible for designing, developing and deploying tools and solutio...

RingCentral
Belmont, California
Remote

Security Application Engineer, Application Security Team:. The area of responsibility of the application security team includes enablement and support for RingCentral’s Security Development Lifecycle (SDL) program. RingCentral, leading security architecture reviews and threat modelings, developing s...

Tidepool
Palo Alto, California
Remote

This position is entirely remote and reports to Tapani Otala, Tidepool's VP of Engineering. Collaborate with the product management team to understand, analyze, and refine product requirements of Tidepool Web and Tidepool Uploader. While Tidepool can't always provide every benefit we offer full-time...

New Relic, Inc.
San Jose, California
Remote

Principal Software Engineer - Platform Security/Compliance Architect - (Remote). Principal Software Engineer - Platform Security/Compliance Architect - (Remote). You will collaborate with cross-functional teams, including engineering, security, legal and compliance to ensure our software complies wi...

RingCentral
Belmont, California
Remote

Additionally, you will respond to requests from other security teams including vulnerability management, SOC/SIEM security event management, incident response, and application security. SecOps Infrastructure Engineer (Remote US):. RingCentral, your primary responsibilities are to maintain and config...