Security Engineer

Security Engineer

Full-Time 36000 - 60000 £ / year (est.) No home office possible
S

At a Glance

  • Tasks: Secure our AWS infrastructure and enhance application security in a fast-paced environment.
  • Company: Join Stedi, the world's only programmable healthcare clearinghouse, ranked #3 fastest-growing SaaS vendor.
  • Benefits: Competitive salary, remote work options, and opportunities for professional growth.
  • Other info: Dynamic team culture focused on innovation and continuous improvement.
  • Why this job: Make a real impact on healthcare technology while working with cutting-edge tools and a passionate team.
  • Qualifications: 4+ years in security engineering, AWS expertise, and familiarity with compliance frameworks.

The predicted salary is between 36000 - 60000 £ per year.

We are building a new healthcare clearinghouse. In the healthcare sector, the Health Insurance Portability and Accountability Act of 1996 (HIPAA) requires that all insurance payers exchange transactions such as claims, eligibility checks, prior authorizations, and remittances using a standardized EDI format called X12 HIPAA. A small group of legacy clearinghouses process the majority of these transactions, offering consolidated connectivity to carriers and providers. Stedi is the world's only programmable healthcare clearinghouse. By offering modern API interfaces alongside traditional real-time and batch EDI processes, we enable both healthcare technology businesses and established players to exchange mission-critical transactions.

Our clearinghouse product and customer-first approach have set us apart. Stedi was ranked as Ramp’s #3 fastest-growing SaaS vendor. Stedi has lightning in a bottle: engineers and designers shipping products week in and week out; a lean business team supporting the company’s infrastructure; passion for automation and eliminating toil; $92 million in funding from top investors like Stripe, Addition, USV, Bloomberg Beta, First Round Capital, and more.

What we’re looking for:

We are seeking an experienced Security Engineer to join our Platform Team. This team is at the core of our infrastructure, responsible for managing multiple AWS Organizations and providing the foundational tools and services that enable our engineering teams to build reliable, secure, and compliant applications. The Platform Team’s responsibilities span a wide range of areas, including:

  • The AWS infrastructure that our engineering teams rely on.
  • Management of our GitHub organization and IT operations.
  • Supporting compliance efforts to ensure alignment with industry standards (SOC, HIPAA, HITRUST).

As a Security Engineer, you will play an active role in how we set up our AWS infrastructure, software development lifecycle, and endpoint security. Your contributions will help ensure our engineering teams build applications in a way where it is easy to demonstrate alignment with regulatory and compliance requirements.

How we build:

We use AWS exclusively for our backend infrastructure that processes customer data. We use tools like GitHub, Stripe, Vanta, and PagerDuty, but all of our application work happens on AWS. We use serverless technologies almost exclusively: Lambda, API Gateway, SQS, SNS, DynamoDB, Aurora Serverless, and more. We don’t run a single server on prem or in the cloud. We use the CDK (TypeScript) to define infrastructure-as-code. We have a strong preference for using AWS products over 3rd party solutions. This simplifies vendor management and compliance, and ensures we can benefit from AWS's integration capabilities and innovations now and in the future.

What you'll do:

  • Develop playbooks and address security-related tasks in our AWS serverless environments.
  • Drive improvements in our broader security posture, including application security, endpoint security, access management / just-in-time access, email and web gateways, browser security, and data loss prevention.
  • Collaborate with product engineering teams to raise the bar for security, supporting CI/CD pipelines, dependency management, and secure application design reviews.
  • Help secure and improve our AWS organization using infrastructure as code (CDK), enforcing security controls, and ensuring strong tenant isolation.
  • Continuously assess vulnerabilities and perform regular risk assessments.

Who you are:

  • 4+ years of experience in engineering, working as a security engineer or in security-adjacent roles.
  • Familiarity with compliance frameworks such as SOC, HIPAA, and/or HITRUST.
  • 4+ years working with AWS services, including compliance and governance services like AWS Organizations, AWS CloudTrail, AWS Config, Security Hub, and GuardDuty.
  • Proficiency in TypeScript.
  • Ability to prioritize your work based on the needs of the business and the customers.
  • High bandwidth; thoughtful attention to many areas simultaneously.
  • Ability to context switch throughout the course of the day or week as priorities shift.
  • Philosophical alignment with the Stedi Standards and the Unwritten laws of engineering.

We’ve been made aware of individuals impersonating the Stedi recruiting team. Please note: All official communication about roles at Stedi will only come from an @stedi.com email address. If you’re unsure whether a message is legitimate or have any concerns, feel free to contact us directly at careers@stedi.com.

We appreciate your attention to this and your interest in joining Stedi. At Stedi, we're looking for people who are deeply curious and aligned to our ways of working. You're encouraged to apply even if your experience doesn’t perfectly match the job description.

Security Engineer employer: Stedi

Stedi is an exceptional employer, offering a dynamic work environment where innovation thrives and engineers are empowered to make impactful contributions. With a strong focus on employee growth, Stedi provides opportunities for continuous learning and development in the rapidly evolving healthcare technology sector, all while fostering a collaborative culture that values curiosity and creativity. Located in a vibrant tech hub, employees benefit from a supportive atmosphere and the chance to work with cutting-edge technologies in a company recognised as one of the fastest-growing SaaS vendors.
S

Contact Detail:

Stedi Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Security Engineer

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current Stedi employees on LinkedIn. A friendly chat can sometimes lead to opportunities that aren’t even advertised.

✨Tip Number 2

Show off your skills! If you’ve got a GitHub profile or any projects that highlight your security engineering expertise, make sure to share them during interviews. It’s a great way to demonstrate your hands-on experience.

✨Tip Number 3

Prepare for those technical interviews! Brush up on AWS services, compliance frameworks, and security best practices. We want to see how you think through problems, so practice explaining your thought process clearly.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Stedi team.

We think you need these skills to ace Security Engineer

AWS Services
Security Engineering
Compliance Frameworks (SOC, HIPAA, HITRUST)
Infrastructure as Code (CDK, TypeScript)
Application Security
Endpoint Security
Access Management
Risk Assessment
Vulnerability Assessment
CI/CD Pipelines
Dependency Management
Secure Application Design
Attention to Detail
Collaboration Skills
Problem-Solving Skills

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience with AWS and security frameworks like HIPAA. We want to see how your skills align with what we do at Stedi!

Show Your Passion: Let us know why you’re excited about working in the healthcare tech space. Share any personal projects or experiences that demonstrate your enthusiasm for security engineering and compliance.

Be Clear and Concise: When writing your application, keep it straightforward. Use bullet points where possible and avoid jargon. We appreciate clarity and want to quickly understand your qualifications.

Apply Through Our Website: Don’t forget to submit your application through our official website! It’s the best way for us to receive your details and ensure you’re considered for the role.

How to prepare for a job interview at Stedi

✨Know Your AWS Inside Out

As a Security Engineer, you'll be working extensively with AWS services. Make sure you brush up on your knowledge of AWS Organizations, CloudTrail, and Security Hub. Be ready to discuss how you've used these tools in past roles and how they can enhance security in serverless environments.

✨Familiarise Yourself with Compliance Frameworks

Since compliance is a big part of the role, get comfortable with SOC, HIPAA, and HITRUST standards. Prepare examples of how you've ensured compliance in previous positions, and think about how you would approach compliance challenges at Stedi.

✨Showcase Your Problem-Solving Skills

Security issues can be complex, so be prepared to demonstrate your analytical thinking. Think of specific scenarios where you've identified vulnerabilities or improved security postures. Use the STAR method (Situation, Task, Action, Result) to structure your answers.

✨Align with Stedi's Culture

Stedi values curiosity and a customer-first approach. Research their products and culture, and be ready to discuss how your personal values align with theirs. Show enthusiasm for their mission and how you can contribute to their innovative environment.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>