Cybersecurity Engineer positions focus on delivering results in their domain. This page aggregates open Cybersecurity Engineer roles and what employers typically expect.
WHAT WE’RE ABOUT At Harrison.ai http://Harrison.ai, we’re redefining what’s possible in healthcare. Through our diagnostic AI solutions, we’re building tools that support clinicians to deliver earlier, more accurate diagnoses and raise the standard of care for millions of patients worldwide. Our mission is bold but simple: to scale global healthcare capacity and create a fairer, healthier world. By using AI as a co-pilot for clinicians, we’re tackling one of healthcare’s biggest challenges, the shortage of human expertise, and giving every patient the chance to access timely, high-quality care, no matter where they live. Because while we’re building cutting-edge AI, what we’re really building is hope—that everyone can access the healthcare they deserve. And we’re just getting started. ABOUT YOUR ROLE As Cybersecurity Engineer, you will be a core contributor to the cybersecurity posture of a company where the stakes are real: our products are regulated, our data is sensitive, and the people who depend on our software are patients. You will work across Cybersecurity Governance, Risk & Compliance (GRC), technical security operations, and product-adjacent security activities, which means no two weeks look the same. The ideal candidate brings a foundation in either cybersecurity engineering or GRC, genuine curiosity about the streams you haven’t lived yet, and the drive to build things properly in a lean team. This is a broad, hands-on role sits within the Compliance RAQA squad and works closely with engineering, product, IT, privacy and legal teams across the business. The role reports directly to the Head of Compliance & RAQA and has direct access to the CEO with meaningful visibility into strategic decisions from day one. WHAT YOU'LL DO: - ISMS management and compliance. Manage and maintain the Information Security Management System, ensuring ongoing compliance with ISO 27001, GDPR, HIPAA, and other applicable frameworks. - Cybersecurity assessments and risk remediation. Conduct cybersecurity assessments and audits; triage and drive remediation of identified risks in collaboration with engineering teams. - Policies and documentation. Author and maintain cybersecurity policies, procedures, and controls documentation to support Cybersecurity and Governance requirements. - Technical security operations. Support cybersecurity operations and IT on technical security tooling, firewalls, networking, endpoint protection, and SIEM. - Security questionnaires and third-party vetting. Respond to bids, tenders, and third-party security vetting. - Security culture and awareness. Champion a security first culture across the organisation: create awareness programs, run training, and embed security-by-design thinking into how teams work. - Data security and governance. Support data security and data governance initiatives across the organisation. - Demonstrably AI-forward. Uses AI in their own workflows and can point to concrete automations they have built or commissioned to take work out of IT and operations. WHAT YOU'LL BRING: - Relevant degree in Engineering, Science, or Information Systems, or 5+ years of demonstrated experience owning security programs or workstreams in an Information Security, Network Engineering, or System Administration capacity - Demonstrated technical foundation in at least one of: SOC / security operations, networking, system administration, or software development, with the ability to provide credible security consulting to engineering teams - Experience managing or contributing substantially to an ISMS aligned with ISO 27001, including audit support and control evidence - Experience with GRC activities: risk assessments, control frameworks, policy development, and compliance monitoring - At least one security certification: CISA, CISM, CISSP, SANS, BSI, or equivalent - Strong written and verbal communication; able to translate technical risk for stakeholders at every level Nice to have skills and characteristics: -…