Cyber Security Engineer (Application Security)

TherapyNotes is the go-to superhero for behavioral health Practice Management and EHR software, offering a top-notch SaaS solution for scheduling, billing, documenting, telehealth, and more.
United States
$90,000 - $130,000
Security
Senior Software Engineer
Remote
5+ years of experience
Healthcare · Enterprise SaaS

Description For Cyber Security Engineer (Application Security)

TherapyNotes, the leading provider of behavioral health Practice Management and EHR software, is seeking an experienced and passionate Application-security focused Cyber Security Engineer. This role involves managing security solutions, conducting threat analysis, implementing Data Loss Prevention strategies, and ensuring compliance with healthcare regulations. Key responsibilities include collaborating with development teams to integrate security into the SDLC, performing security assessments, and enforcing secure coding standards. The ideal candidate will have 5+ years of experience in application security, strong understanding of healthcare regulations, and expertise in securing cloud environments. Benefits include competitive salary, health insurance, retirement plan, and professional development opportunities. Join our dynamic team and help revolutionize behavioral health software while making a real difference!

Responsibilities:

  • Manage security solutions across the organization
  • Monitor alerts and respond to incidents
  • Conduct threat analysis and vulnerability assessments
  • Implement Data Loss Prevention strategies
  • Stay informed about latest cyber threats
  • Align Zero Trust principles with organizational security goals
  • Collaborate with development teams on application security
  • Perform security assessments and code reviews
  • Ensure compliance with healthcare regulations

Requirements:

  • Bachelor's degree in related field (preferred)
  • 5+ years of experience in application security
  • Strong understanding of healthcare regulations (HIPAA, HITECH, HITRUST)
  • Experience with API security and healthcare data standards
  • Expertise in securing cloud environments (Azure, AWS)
  • Industry certifications (e.g., CISSP, SSCP, HCISPP) ideal
  • Proficiency in various security systems and tools

Join TherapyNotes and be part of a team that's revolutionizing behavioral health software while ensuring the highest standards of security and compliance.

Last updated 5 months ago

Responsibilities For Cyber Security Engineer (Application Security)

  • Hands-on management of all security solutions across the organization
  • Monitor security alerts, respond to incidents, and manage escalations
  • Participate in Incident Response on-call rotation
  • Conduct threat analysis, vulnerability assessments, and risk evaluations
  • Manage and secure identities in Microsoft Entra ID
  • Develop and implement strategies for Data Loss Prevention
  • Stay informed about the latest cyber threats
  • Conduct periodic system and network configuration reviews
  • Identify and document cyber risks
  • Align Zero Trust principles with organizational security goals
  • Participate in audits and assessments
  • Collaborate with developmental teams to ensure security in SDLC and CI/CD pipeline
  • Enforce secure coding standards and best practices
  • Perform in-depth security assessments, code reviews, and threat modeling
  • Ensure application security measures align with healthcare regulations
  • Collaborate with developers to remediate vulnerabilities
  • Develop, deploy, and manage security tools and technologies
  • Support application security incident response activities
  • Contribute to security awareness programs for development teams

Requirements For Cyber Security Engineer (Application Security)

  • Bachelor's degree in information security, information technology, computer science, or related field preferred
  • 5+ years of experience in application security or related role
  • Strong understanding of healthcare regulations (HIPAA, HITECH, HITRUST)
  • Experience working in healthcare or other highly regulated industries is preferred
  • Experience with API security, especially for integrations with other healthcare systems
  • Familiarity with HL7, or other healthcare data standards is preferred
  • Familiarity with the unique threat landscape of the healthcare industry
  • Demonstrated experience integrating security in CI/CD pipelines in a SaaS environment
  • Understanding of secure coding practices for applications that process sensitive data
  • Industry certifications such as CISSP, SSCP or Healthcare-specific security certifications (e.g., HCISPP) are ideal
  • Prior experience securing cloud environments (Azure, AWS)
  • Proven ability to conduct security assessments, vulnerability management, and incident response
  • Strong understanding of OS platforms (Windows, Linux) and endpoint security
  • Deep understanding and experience in managing and securing cloud infrastructure and cloud-based applications
  • Expert in the latest security principles, techniques, and standards
  • Proficiency in various security systems: intrusion detection systems, anti-virus software, identity management systems, log management, content filtering, etc.

Benefits For Cyber Security Engineer (Application Security)

Medical Insurance
Dental Insurance
Vision Insurance
401k
Education Budget
  • Competitive salary - $90,000-$130,000
  • Employer sponsored health, dental, vision, life, and disability insurance
  • Retirement plan with company contribution
  • Annual company profit sharing
  • Personal development/training budget
  • Open, collaborative work environment
  • Extensive 2-week onboarding plan
  • Comprehensive mentorship program

Interested in this job?

Jobs Related To TherapyNotes Cyber Security Engineer (Application Security)

Security Engineer III - Java & Cloud

Senior Security Engineer role at JPMorgan Chase focusing on Java and cloud security solutions, requiring 2+ years of experience in security engineering and cloud technologies.

Senior Security Manager - Technology Risk and Controls (all genders)

Senior Security Manager role at JPMorgan Chase focusing on technology risk management and cybersecurity controls in Berlin, Germany.

Software Engineering & Architecture | Cybersecurity Event - Columbus, OH

Senior Security Engineer/Architect role at JPMorgan Chase focusing on cybersecurity solutions and controls implementation within the Technology Controls organization.

Python Developer - Lead Security Engineer (Firmwide Resiliency)

Lead Security Engineer position at JPMorgan Chase focusing on cybersecurity, technology controls, and secure software development using Python and security tools.

Sr. Security Engineer

Senior Security Engineer position at Disney focusing on application security, vulnerability management, and secure software development practices in a remote work environment.