Staff Security Engineer
Company: Hispanic Alliance for Career Enhancement
Location: Boston
Posted on: May 24, 2025
|
|
Job Description:
At CVS Health, we're building a world of health around every
consumer and surrounding ourselves with dedicated colleagues who
are passionate about transforming health care.
As the nation's leading health solutions company, we reach millions
of Americans through our local presence, digital channels and more
than 300,000 purpose-driven colleagues - caring for people where,
when and how they choose in a way that is uniquely more connected,
more convenient and more compassionate. And we do it all with
heart, each and every day.
Who You Are
- Lead the development and integration if AL/ML models and
automated testing frameworks across both modern and legacy tech
stacks.
- Adopt the design, development, and optimization of AI/ML models
for a variety of security use cases.
- Perform model training, evaluation, and fine-tuning while
considering the constraints and opportunities posed by legacy
architectures.
- Partner with teams and serve as cross-functional expert to
provide bench-marked solutions to multiple, complex technical
projects/initiatives using multiple interlocking technologies.
- Ramp up fast to gather multiple domain knowledge and build
inherent subject matter expertise to advise and guide technical
leads and peers.
- Establish and drive execution of technical direction, standards,
guidelines, methodologies and advocate best practices.
- Work to enhance existing test automation processes, improving
efficiency, and reducing manual intervention across both
environments.
- Develop and improve strategic and enterprise-wide technical
direction.
- Create or revise operating procedures relating to specific
technologies or IS processes.
- Deeply experienced in coding with a nuanced understanding of
Object-Oriented and Functional programming concepts, capable of
writing and reviewing code across multiple languages and
paradigms.
- Demonstrated ability to innovate and automate security processes
and functions through code, enhancing efficiency and
effectiveness.
- Strong technical expertise with multi-cloud environments,
including container/serverless and other microservice
architectures.
- Strong technical expertise with SDLC, CI/CD tools, and Deployment
Automation.
- Strong experience with implementing security measures for both
applications and data, with an understanding of the unique security
requirements of data warehouse technologies such as Snowflake.
Role Responsibilities
Development & Enforcement
- Incorporate AI/ML technologies into security frameworks to
enhance threat detection, automate security processes, and improve
incident response capabilities.
- Develop and enforce engineering security policies and
standards.
- Develop and enforce data security policies and standards.
- Drive security awareness across the organization.
- Lead the development and enforcement of comprehensive security
policies and standards, integrating advanced security practices
throughout the software development lifecycle to mitigate risks and
align with industry-leading security protocols.
Collaboration & Expertise
- Work with data scientists and machine learning engineers to
implement AI-driven security solutions that proactively identify
vulnerabilities and anomalies in real-time.
- Collaborate with Engineering and Business teams to develop secure
engineering practices.
- Act as a pivotal security leader, driving the integration of
secure engineering practices across the organization while liaising
with senior management to ensure a cohesive security strategy that
aligns with business objectives.
Analysis & Configuration
- Work with data scientists and machine learning engineers to
implement AI-driven security solutions that proactively identify
vulnerabilities and anomalies in real-time.
- Analyze, develop, and configure security solutions across
multi-cloud, on-premises, and colocation environments, ensuring
application security, integrity, confidentiality, and availability
of data.
- Lead security testing, vulnerability analysis, and
documentation.
- Spearhead the evaluation and strategic deployment of cutting-edge
security solutions, emphasizing scalability, performance, and
adaptability, to fortify the organization's defense against
evolving threats.
Operational Support
- Work with data scientists and machine learning engineers to
implement AI-driven security solutions that proactively identify
vulnerabilities and anomalies in real-time.
- Participate in operational on-call duties to support a 24/7
infrastructure across multiple regions and environments (cloud,
on-premises, colocation).
- Lead by example in incident response situations, orchestrating
rapid and effective responses while leveraging these experiences to
bolster future resilience and response strategies.
Mentorship and Training
- Provide training on AI/ML security applications and best
practices, ensuring the team is equipped to leverage these
technologies effectively.
- Demonstrated leadership skills with developing a comprehensive
mentorship program for junior engineers, including organizing
regular training sessions to elevate the team's technical and
security skills. This role requires a commitment to fostering a
culture of continuous improvement and knowledge sharing.
Innovation and Research
- Research and evaluate emerging AI/ML technologies that can be
applied to enhance security measures, staying ahead of potential
threats and vulnerabilities.
- Proven track record with participation in security research and
the exploration of next-generation security tools and practices.
This includes encouraging the team to engage with the wider
security community, contributing to open-source projects, and
staying well-informed of emerging threats and innovative defense
mechanisms.
Strategic Planning
- Incorporate AI/ML considerations into the security roadmap,
ensuring that the organization is prepared to adopt and integrate
these technologies as part of its long-term security strategy.
- Play a key role in the strategic planning of the organization's
security roadmap, including conducting thorough risk assessments,
allocating budgets for security initiatives, and aligning long-term
security strategies with overarching business goals. This
responsibility includes advocating for security within the company
and ensuring that security considerations are paramount in all
technology decisions.
Basic Qualifications
- 7+ years of experience in developing and deploying security
technologies.
- 5+ Years of lead experience in Cloud, Java applications with
automation knowledge.
- 3+ years of expertise in machine learning, statistical analysis,
security, and network data to model risk-driven models of workforce
behavior and provide context to security analysts to drive business
decisions.
- 3+ years of experience in AI/ML
- 3+ years of programming experience using Python, pyTorch, and
analytics platforms on various big data platforms, with knowledge
of advanced analytics tools to analyze large datasets from various
sources.
- Hands-on experience with LLMs and Deep Neural Network
architectures, along with SQL expertise.
- Proficiency in Public Cloud (AWS/Azure/GCP) & Network
Security.
- Strong experience with implementing and managing data protection
measures and compliance with data protection regulations (e.g.,
GDPR, CCPA).
- Proven track record in leading security initiatives from
inception through to successful deployment, demonstrating
exceptional project management skills and the ability to navigate
complex stakeholder landscapes.
Preferred Qualifications
- Strong technical expertise with Architecting Public Cloud
solutions and processes.
- Strong technical expertise with Networking and Software-Defined
Networking (SDN) principles.
- Strong technical expertise with developing and interpreting
Network, Sequence, and Dataflow diagrams.
- Experience with direct, remote, and virtual teams.
- Understanding of at least one compliance framework (HIPAA,
HITRUST, PCI, NIST, CSA).
- Strong technical expertise with security solutions for data
warehouses and big data platforms, particularly with technologies
like Snowflake.
- Strong technical expertise in defining and implementing cyber
resilience standards, policies, and programs for distributed cloud
and network infrastructure, ensuring robust redundancy and system
reliability.
- Experience in influencing industry security standards and
contributing to open-source projects or security communities,
highlighting a broader impact beyond the immediate
organization.
Education
- A minimum of a Bachelor's degree in Computer Science, Software
Development, Software Engineering, or a related field, or
equivalent alternative education, skills, and/or practical
experience is required.
Pay Range
The typical pay range for this role is:
$130,295.00 - $260,590.00
This pay range represents the base hourly rate or base annual
full-time salary for all positions in the job grade within which
this position falls. The actual base salary offer will depend on a
variety of factors including experience, education, geography and
other relevant factors. This position is eligible for a CVS Health
bonus, commission or short-term incentive program in addition to
the base pay range listed above. This position also includes an
award target in the company's equity award program.
Our people fuel our future. Our teams reflect the customers,
patients, members and communities we serve and we are committed to
fostering a workplace where every colleague feels valued and that
they belong.
Great benefits for great people
We take pride in our comprehensive and competitive mix of pay and
benefits - investing in the physical, emotional and financial
wellness of our colleagues and their families to help them be the
healthiest they can be. In addition to our competitive wages, our
great benefits include:
- Affordable medical plan options, a 401(k) plan (including
matching company contributions), and an employee stock purchase
plan .
- No-cost programs for all colleagues including wellness
screenings, tobacco cessation and weight management programs,
confidential counseling and financial coaching.
- Benefit solutions that address the different needs and
preferences of our colleagues including paid time off, flexible
work schedules, family leave, dependent care resources, colleague
assistance programs, tuition assistance, retiree medical access and
many other benefits depending on eligibility.
For more information, visit
https://jobs.cvshealth.com/us/en/benefits
We anticipate the application window for this opening will close
on: 06/20/2025
Qualified applicants with arrest or conviction records will be
considered for employment in accordance with all federal, state and
local laws.
We are an equal opportunity and affirmative action employer. We do
not discriminate in recruiting, hiring, promotion, or any other
personnel action based on race, ethnicity, color, national origin,
sex/gender, sexual orientation, gender identity or expression,
religion, age, disability, protected veteran status, or any other
characteristic protected by applicable federal, state, or local
law.
#J-18808-Ljbffr
Keywords: Hispanic Alliance for Career Enhancement, Cambridge , Staff Security Engineer, Engineering , Boston, Massachusetts
Click
here to apply!
|