Jobedly Post a Job

Sr. Staff Security Engineer

openloophealth · Remote
RemoteFull-timeGeneral and AdministrativeTransportation$128,000–$173,000/yr
Apply on Jobedly ⚡ One-click AI Apply

About the Senior Staff Security Engineer role

Senior Staff Security Engineer positions focus on delivering results in their domain. This page aggregates open Senior Staff Security Engineer roles and what employers typically expect.

ABOUT OPENLOOP OpenLoop was co-founded by CEO, Dr. Jon Lensing, and COO, Christian Williams, with the vision to bring care anywhere. Our telehealth support solutions are thoughtfully designed to streamline and simplify go-to-market care delivery for companies offering meaningful virtual support to patients across an expansive array of specialties, in all 50 states. ABOUT THE ROLE OpenLoop's mission is to bring care anywhere by powering telehealth solutions at scale. The Security Architecture & Engineering team defines how security is designed into every system that supports virtual care delivery across all 50 states. As Sr Staff Security Engineer, you will be the most senior technical authority on security architecture at OpenLoop, with approval authority over architecture decisions and responsibility for leading architecture reviews, driving threat modeling, and defining the standards and reference designs that engineering builds against. WHAT YOU'LL DO - Own and continuously evolve OpenLoop's security architecture across cloud infrastructure, applications, and corporate systems — defining standards, patterns, and reference architectures that teams build to. - Lead threat modeling across product, engineering, and infrastructure initiatives, with particular attention to PHI data flows, patient-facing interfaces, and virtual care delivery systems — and coach engineers to threat model their own work. - Conduct architecture reviews for new and existing systems, evaluating designs against security principles and regulatory requirements and producing actionable recommendations. - Design and continuously improve the architecture review process itself so that it scales with engineering velocity — including self-service patterns, risk-tiered review paths, and clear criteria for when full review is required. - Partner with the CTO and enterprise architecture function, embedding security review within existing technical governance rather than running a parallel process. - Define and champion application security standards, including secure design principles, API security, authentication and authorization patterns (OAuth/OIDC, SAML), and data protection controls — including healthcare interoperability standards such as HL7 and FHIR. - Establish and maintain a zero trust architecture strategy across identity, network, endpoint, and data layers. - Architect and govern key management, secrets management, and certificate lifecycle practices across cloud-native environments. - Own the security architecture for third-party integrations, defining how external systems connect to OpenLoop's environment and ensuring supply chain risk is controlled at the design stage. - Serve as the primary security partner for product and engineering leaders, embedded in design and planning cycles to shape secure-by-default systems. - Maintain security architecture documentation, including architecture decision records (ADRs), reference designs, and control frameworks. - Take security and compliance requirements from GRC, Privacy, and audit partners and translate them into concrete architectural controls — with particular depth in the HIPAA Security Rule's technical safeguards as they apply to PHI architecture. - Partner with the CISO and security leadership on the long-term architecture roadmap, producing clear metrics and executive-ready reporting on architecture risk posture. - Mentor and elevate the broader security team, raising architectural thinking and design quality across all security domains. - Research emerging threats and attack techniques — including threat actors actively targeting healthcare — to keep OpenLoop ahead of the threat landscape. - Other duties as assigned. WHO YOU ARE - An architect who has owned the function, not contributed to it — you've built standards other teams actually adopted. - Someone who scales themselves rather than becoming the queue everyone waits in. You'd rather teach ten engineers to threat model than review ten thre…

Salary estimate

$128,000 – $173,000/yr
Provided by the employer.

Skills for this role

GOLeadershipSecurity

Resume tips for Senior Staff Security Engineer applicants

Interview preparation

Prepare concrete STAR-format stories that show Senior Staff Security Engineer outcomes you drove.

Research the employer's product and recent news before the interview.

Be ready to explain how you'd approach a typical Senior Staff Security Engineer problem end to end.

Have thoughtful questions ready about the team, tools and success metrics.

About openloophealth

openloophealth is actively hiring on Jobedly. Explore their open roles and what it's like to work there.

Apply on Jobedly ⚡ One-click AI Apply

Similar jobs

Companies hiring for similar roles