
Job Overview
Location
Remote
Job Type
Full-time
Category
Security Engineer
Date Posted
March 21, 2026
Full Job Description
đź“‹ Description
- • As a Staff Security Engineer at Assured Allies Inc., you will play a pivotal role in safeguarding the company’s mission to modernize insurance by securing the platform that powers claims processing for some of the largest insurers in the world. Your work will directly protect billions of dollars in claim payments and ensure the integrity of systems that serve vulnerable claimants during critical moments.
- • You will lead the design and implementation of scalable security solutions across applications, cloud infrastructure, and development workflows, embedding security early in the lifecycle to reduce risk while enabling engineering velocity. This role blends deep technical execution with strategic influence, allowing you to shape both the security posture and operational efficiency of a fast-growing SaaS platform.
- • Day to day, you will lead security architecture and design reviews for new features, integrations, and infrastructure changes to ensure secure patterns are adopted from the outset.
- • You will conduct and coordinate penetration testing, threat modeling, and security assessments for critical services and third-party integrations, identifying systemic weaknesses before they can be exploited.
- • You will design and implement security automation within CI/CD pipelines, integrating SAST, DAST, IaC scanning, and container security tools to enforce secure coding and infrastructure policies at scale.
- • You will partner closely with DevOps and infrastructure teams to harden AWS environments, focusing on IAM, network segmentation, workload security, and cloud-native protections.
- • You will build security observability and detection capabilities, including SIEM integrations, security data pipelines, and threat intelligence feeds to enable real-time monitoring and response.
- • You will collaborate with developers to improve security practices through code review support, secure architecture guidance, and developer enablement initiatives such as training and tooling.
- • You will lead incident response efforts, including investigation, containment, and post-incident analysis, while helping to refine and mature the company’s IR processes.
- • You will own and evolve the bug bounty program, managing triage, response workflows, and improvements to vulnerability management to increase effectiveness and researcher engagement.
- • You will develop security standards, playbooks, and training programs that make secure practices accessible and adoptable across engineering teams.
- • You will help define the security roadmap by identifying initiatives that reduce risk and improve operational efficiency, aligning security investments with business goals.
- • The security team at Assured Allies is a collaborative, high-impact function embedded within engineering, working closely with product, infrastructure, and DevOps to ensure security is a shared responsibility and a competitive advantage.
- • You will have the opportunity to grow as a technical leader and security strategist, influencing company-wide practices while deepening your expertise in cloud security, application security, and security operations in a mission-driven, remote-first environment.
🎯 Requirements
- • Deep understanding of application security, cloud security, and modern threat landscapes, including OWASP Top 10, MITRE ATT&CK, and common attack techniques.
- • Strong software engineering background with experience writing production-grade code or automation in Python, TypeScript, or similar languages.
- • Hands-on experience securing AWS infrastructure, including IAM, networking, and containerized workloads (ECS/EKS, Fargate).
- • Experience building or integrating DevSecOps pipelines with SAST, DAST, IaC scanning (e.g., Terraform, CloudFormation), and container security tooling.
- • Experience designing security telemetry pipelines using SIEM platforms, observability tools, or data lakes for detection and response.
- • Proven ability to collaborate effectively with engineering, DevOps, and product teams to drive secure design decisions and influence security culture.
- • Excellent communication skills, with the ability to explain complex security risks and trade-offs clearly to both technical and non-technical audiences.
- • Experience with Kubernetes, container security, and infrastructure-as-code tools such as Terraform or Ansible.
- • Familiarity with compliance frameworks such as SOC 2, ISO 27001, NIST, or HIPAA, and experience aligning security controls with these standards.
🏖️ Benefits
- • Competitive salary and equity packages designed to reward top talent in a high-impact, mission-driven role.
- • Platinum medical, dental, and vision healthcare plans for employees and dependents.
- • Company-paid life insurance, including short-term and long-term disability coverage.
- • Unlimited PTO with paid holidays, supporting work-life balance and flexibility.
- • 401(k) plan with a 3% company contribution, regardless of employee contributions.
- • Remote work benefits including lunch stipends (2x/week), monthly phone allowance, and home office support.
- • Health FSAs and HSAs available for pre-tax medical expense management.
- • Regular team events and offsites to foster connection and collaboration despite remote work.
Skills & Technologies
About Assured Allies Inc.
Assured Allies provides a technology platform that predicts and helps prevent age-related disability for insurance carriers and their policyholders. The company uses data science and behavioral science to identify individuals most at risk of future functional decline, then delivers personalized interventions aimed at extending independence and reducing long-term care claims. Its flagship products, AgeAssured and FutureProof, integrate with insurers to offer policyholders coaching, assessments, and support services designed to improve health outcomes while lowering costs for carriers and families.
Subscribe to the weekly newsletter for similar remote roles and curated hiring updates.
Newsletter
Weekly remote jobs and featured talent.
No spam. Only curated remote roles and product updates. You can unsubscribe anytime.



