Senior Product Security Engineer

Verily Life Sciences LLC
  • Boston, MA
    7 days ago

    Job Description

    Who We Are

    Verily Health is a data platform and technology company purpose-built to power AI-enabled precision health solutions that accelerate research and improve care for individuals and communities. Uniquely positioned at the intersection of technology, data science, and healthcare, Verily transforms multimodal health data into insights, models, and actions that make healthcare more personalized, predictive, and precise.

    Description

    Verily is seeking an exceptional information security engineer to support our Information Security and Privacy Risk Management function. The Information Security Engineer position combines a deep understanding of common information security technologies with a strong information security background. This individual will work closely with Verily's Governance, Risk and Compliance team to ensure weekly/monthly/annual contractual compliance is established and maintained, especially as it relates to vulnerability management.

    Responsibilities

    • Manage tools and inputs that are part of the Vulnerability Management program.

    • Track remediation tasks, engage with systems/services owners and stakeholders to ensure vulnerability management compliance.

    • Ensure that regulator weekly/monthly reports are provided for continual FedRAMP certifications and/or necessarily remediations (e.g., POA&M).

    • Apply prior understanding and experience of federal government compliance (e.g., FISMA, FedRAMP) to regularly report on process and operational readiness.

    • Keep abreast of new threats and vulnerabilities, and validate the risk of reported threats using vulnerability management, scanning and red team operations.

    Qualifications

    Minimum Qualifications

    • BA/BS degree in Computer Science, Engineering, Management Information Systems.

    • 5 years of experience in the Information Security or related domain(s).

    • 3 years experience with NIST/FedRAMP compliance audits.

    • Strong knowledge of cloud security architecture, web application security, Vulnerability management, and security engineering.

    • Excellent written and verbal communication skills.

    Preferred Qualifications

    • Experience with FedRAMP Moderate or higher.

    • Experience with GCP (preferred) or AWS, and also containerized environments (Kubernetes).

    • Experience with vulnerability management tools such as bug bounty programs, scanning and offensive security frameworks.

    Qualified applicants must not require employer sponsored work authorization now or in the future for employment in the United States.

    The US base salary range for this full-time position is $165,500 - $185,500 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.

    Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus or benefits.

    Verily Health Inc. is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here. If you'd like more information on your EEO rights under the law, please click here.

    If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form.

    Numbers & Facts

    LocationBoston, MA

    Skills

    • Applications Securityunmatched
    • Artificial Intelligence (AI)unmatched
    • Cloud Architectureunmatched
    • Communication Skillsunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Data Scienceunmatched
    • FISMA - Federal Information Security Management Actunmatched
    • Federal Governmentunmatched
    • Healthcareunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Applicationunmatched
    • Internet Securityunmatched
    • Maintain Complianceunmatched
    • Management of Information Systems/Technology (MIS)unmatched
    • Operations Processesunmatched
    • Presentation/Verbal Skillsunmatched
    • Privacy Controlsunmatched
    • Product Engineeringunmatched
    • Regulatory Complianceunmatched
    • Riskunmatched
    • Risk Managementunmatched
    • Security Architectureunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • Vulnerability Scannersunmatched
    • Writing Skillsunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder