About the job
At SuperDial, we are revolutionizing revenue cycle management through our cutting-edge automation engine. Collaborating with leading Multi-Service Organizations (MSOs), Dental Service Organizations (DSOs), Revenue Cycle Management (RCM) vendors, and health systems, we aim to streamline administrative processes, allowing clinicians to receive payments more swiftly. As we expand into enterprise-level environments and critical workflows, prioritizing security is paramount.
We are on the lookout for a Senior Platform Security Engineer who will take charge of our security architecture, hardening, and operational safeguards essential for maintaining a trustworthy, compliant, and resilient platform. This pivotal role will involve designing and implementing security controls across our infrastructure, application surfaces, data flows, vendor integrations, and internal processes.
Key Responsibilities:
Security Architecture & Hardening
Craft and execute a comprehensive security architecture for our cloud infrastructure, application services, data pipelines, and machine learning environments.
Lead threat modeling, security design reviews, and risk assessments for new products, features, and integrations.
Establish and uphold secure coding standards, CI/CD controls, and secrets management protocols.
Develop and manage frameworks for identity and access management, ensuring least-privilege access across engineering systems.
Detection, Response & Monitoring
Create monitoring, alerting, and anomaly detection systems for security-critical events across various infrastructure and application layers.
Formulate incident response workflows, playbooks, and runbooks to guarantee swift containment and remediation.
Implement log ingestion and tooling for Security Information and Event Management (SIEM), endpoint security, and intrusion detection.
Data Security & Compliance
Oversee data protection strategies encompassing encryption, tokenization, key management, and secure data lifecycle controls.
Collaborate with compliance teams on HIPAA, SOC 2, and enterprise security assessments.
Establish audit-ready controls and documentation for customer security evaluations.
Vulnerability Management
Implement vulnerability scanning, penetration testing programs, and patch management workflows.
Drive initiatives for prioritizing and resolving vulnerabilities across infrastructure and application dependencies.
Assess and integrate third-party security solutions.
