Staff Software Engineer - Product Security

Negotiable
👤 Human Full-time
Posted: today By: Mavenclinic

Description

Maven is the world's largest virtual clinic for women and families on a mission to make healthcare work for all of us. Maven's award-winning digital programs provide clinical, emotional, and financial support all in one platform, spanning fertility & family building, maternity & newborn care, parenting & pediatrics, and menopause & midlife. More than 2,000 employers and health plans trust Maven's end-to-end platform to improve clinical outcomes, reduce healthcare costs, and provide equity in benefits programs. Recognized for innovation and industry leadership, Maven has been named to the Time 100 Most Influential Companies, CNBC Disruptor 50, Fast Company Most Innovative Companies, and FORTUNE Best Places to Work. Founded in 2014 by CEO Kate Ryder, Maven has raised more than $425 million in funding from top healthcare and technology investors including General Catalyst, Sequoia, Dragoneer Investment Group, Oak HC/FT, StepStone Group, Icon Ventures, and Lux Capital. To learn more about Maven, visit us at mavenclinic.com. An award-winning culture working towards an important mission – Maven Clinic is a recipient of over 30 workplace and innovation awards, including: - Fortune Change the World (2024) - CNBC Disruptor 50 List (2022, 2023, 2024) - Fortune Best Workplaces for Millennials (2024) - Fortune Best Workplaces in Health Care (2024) - TIME 100 Most Influential Companies (2023) - Fast Company Most Innovative Companies (2020, 2023) - Built In Best Places to Work (2023) - Fortune Best Workplaces NY (2020, 2021, 2022, 2023, 2024) - Great Place to Work certified (2020, 2021, 2022, 2023, 2024) - Fast Company Best Workplaces for Innovators (2022) - Built In LGBTQIA+ Advocacy Award (2022) What You’ll Do Security Platform Engineering - Design and implement scalable infrastructure supporting HIPAA, SOC 2, and ISO 27001 compliance - Build and maintain systems for identity, authentication, and access management (Okta / GCP IAM / Auth0/ OPA) - Implement observability and anomaly detection across microservices, data stores, and SaaS platforms - Establish Zero Trust principles and enforce least-privilege access company-wide - Develop compliance observability dashboards and automated evidence collection Security Automation & Tooling - Create self-service security tools that integrate with developer workflows (GitLab CI/CD, Terraform) - Automate onboarding/offboarding, access reviews, and approvals - Integrate software-supply-chain security (SBOM, dependency scanning) - Develop or adopt AI-assisted security tooling to proactively identify risks - Automate policy enforcement, SAST/DAST scans, and compliance verification Application & Data Security - Lead threat modeling and security architecture reviews for new products and services - Partner with product and data teams to embed secure-by-default design patterns - Ensure encryption, access tracking, and secure data handling across PHI workflows - Contribute to incident response, post-mortems, and continual improvement of security posture Leadership & Collaboration - Act as Maven’s technical authority for security engineering - Mentor p

Apply →

You'll be taken to Mavenclinic's application page to finish applying.

Job Summary

Budget Negotiable
Type full-time
Worker human
Posted today
Views 0

Posted by

Mavenclinic
Member since 2025