Security Engineer - SOC 2, HITRUST & HIPAA

eSolutionsFirst LLC
McLean, VA, United States
3 months ago
Apply on dice.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Bash Shell Software as a Service Cloud Computing Security Cyber Security EHealth Intrusion Detection and Prevention Python (Programming Language) Key Management Security Information and Event Management
+8 more
Software Vulnerability Management Scripting Google Cloud Kubernetes Terraform Devsecops Docker Security Orchestration, Automation & Response

Job description

  • Seeking a hands-on Senior Security Engineer to lead security controls, cloud security, compliance initiatives, and audit readiness for SOC 2 Type II, HITRUST, and HIPAA.
  • This role partners with Engineering, Product, and Compliance teams to implement, automate, and maintain security programs across the organization., * Lead implementation and maintenance of SOC 2, HITRUST, and HIPAA security controls.
  • Manage audit readiness, evidence collection, remediation, and assessor coordination.
  • Conduct security risk assessments and ensure protection of sensitive healthcare data.
  • Design and secure AWS, Azure, and/or Google Cloud Platform environments.
  • Integrate security into CI/CD pipelines and automate compliance monitoring.
  • Manage vulnerability management, SIEM monitoring, threat detection, and incident response.
  • Support customer security reviews and technical security assessments.

Requirements

  • 5+ years of experience in Security Engineering, Cloud Security, DevSecops, or Security Architecture.
  • Hands-on experience with SOC 2, HITRUST, and HIPAA compliance programs.
  • Strong knowledge of AWS, Azure, or Google Cloud Platform security.
  • Experience with SIEM, vulnerability management, CSPM, and security automation tools.
  • Proficiency in Python, Bash, or similar scripting languages.
  • Experience with Docker, Kubernetes, Terraform, encryption, and secrets management.

Preferred Qualifications

  • CISSP, CCSP, HITRUST CCSFP, AWS Security Specialty, or similar certifications.
  • Experience in healthcare SaaS, digital health, or health IT environments.
  • Knowledge of FedRAMP, StateRAMP, and AI/ML security.

Core Skills :

  • SOC 2 * HITRUST * HIPAA * Cloud Security * DevSecops * Security Automation * Risk Management * Incident Response * Vulnerability Management * Audit Leadership.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:34 min

Docker sandbox architecture and microVM environment integration

Manuel de la Peña Manuel de la Peña · World Congress 2026 Europe

Videos

See all

Related articles

See all