Qualifications
Key ResponsibilitiesLead the secure architecture initiatives early in the development process: conduct threat modeling for features, define security requirements, and suggest viable architectural options.Develop and standardize secure authentication, session management, and token handling patterns for services and client applications.Design and assess authorization models and access control patterns, ensuring policy enforcement and fine-grained controls.Establish secure API architecture patterns focusing on validation, normalization, rate limiting, abuse resistance, and observability signals.Create libraries, templates, and reference implementations to facilitate the adoption of secure patterns with minimal disruption.Enhance security testing processes and feedback loops, including static and dynamic testing as well as dependency scanning, to support architectural decisions and maintain actionability.Contribute to the broader security program by transforming recurring application risks into standards, shared components, and engineering guidelines.
About the job
About Us
At Heidi, we believe healthcare deserves a harmonious approach that prioritizes continuity and humanity. Our innovative AI Care Partner collaborates with clinicians to revolutionize patient care.
Our diverse team, comprised of doctors, engineers, designers, researchers, and creatives, is dedicated to developing tools that allow clinicians to concentrate on what truly matters: their patients.
In just 18 months, we have empowered healthcare professionals by reclaiming over 18 million hours, facilitating 73 million patient visits across 116 countries. Currently, Heidi supports over two million patient visits each week globally.
With nearly $100 million in funding, we are expanding our reach into the US, UK, Canada, and Europe, forming partnerships with leading health systems including the NHS, Beth Israel Lahey Health, and Monash Health.
The Role
As a Senior Staff Application Security Engineer, you will play a critical role in designing security systems for medical technologies that manage sensitive information and support vital healthcare decisions. Your expertise in security and data protection will be foundational to our development efforts.
In this position, you will collaborate with product and engineering teams to craft secure architectures and establish standardized practices that can be consistently applied across our services and client applications.
About Heidi Health
Heidi is at the forefront of healthcare innovation, leveraging artificial intelligence to create solutions that enhance patient care. With a commitment to continuous improvement and a deep understanding of the healthcare sector, we are dedicated to empowering clinicians and transforming the delivery of care globally.