Information Security Application Vulnerability Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Alignment Health · 3 months ago

Information Security Application Vulnerability Engineer

Alignment Health is breaking the mold in conventional health care, committed to serving seniors and those who need it most. The Information Security Application Vulnerability Engineer will be responsible for identifying, analyzing, and helping to remediate security vulnerabilities within applications, requiring strong application security knowledge and collaboration with development teams.

Health CareHospitalMedicalMedical DeviceWellness
check
H1B Sponsor Likelynote

Responsibilities

Conduct static application security testing (SAST), dynamic application security testing (DAST), and interactive application security testing (IAST) on a continuous basis
Identify, triage, and validate security vulnerabilities using both automated tools and manual review
Work closely with software development and DevOps teams to provide clear, actionable guidance on how to fix vulnerabilities and implement secure coding practices
Help integrate security controls and checks into the software development lifecycle (SDLC) and CI/CD pipelines
Drive and support application security reviews and threat modeling
Manage and configure a suite of application security tools, ensuring their effective use and reporting
Stay up-to-date with the latest security threats, trends, and technologies, and conduct research on new vulnerabilities and attack vectors
Contribute to the creation and maintenance of application security policies, standards, and procedures to guide development teams and ensure compliance
Develop and deliver security awareness and secure coding training to engineering teams
Support and lead third-party penetration testing

Qualification

Application security testingVulnerability managementSecurity testing methodologiesOffensive Security Certified Professional (OSCP)GIAC Web Application Penetration Tester (GWAPT)Certified Secure Software Lifecycle Professional (CSSLP)C#ScalaPythonThreat hunting techniquesCommunication skills

Required

5-7+ years of progressive experience in information security, with a strong focus on application security testing and vulnerability management
Proven track record of working directly with developers and engineering teams to identify and remediate security vulnerabilities in a fast-paced environment
Experience in a large-scale enterprise environment with complex application portfolios
Bachelor's degree or equivalent work experience in Computer Science, Information Security, or a related technical discipline
Experience with general threat hunting techniques and tools
Experience with one or more programming languages (i.e., C#, Scala, Python)

Preferred

Experience in healthcare or another highly regulated field
Relevant professional certifications such as Offensive Security Certified Professional (OSCP), GIAC Web Application Penetration Tester (GWAPT), or Certified Secure Software Lifecycle Professional (CSSLP) are highly desirable
ISC2 Certified Information Systems Security Professional (CISSP)

Company

Alignment Health

twittertwittertwitter
company-logo
Alignment Health provides eldercare services.

H1B Sponsorship

Alignment Health has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (3)
2024 (12)
2023 (17)
2022 (13)
2021 (11)
2020 (6)

Funding

Current Stage
Public Company
Total Funding
$696.05M
Key Investors
K2 HealthVenturesWarburg PincusGeneral Atlantic
2024-11-15Post Ipo Debt· $321.05M
2024-01-09Private Equity
2021-03-26IPO

Leadership Team

leader-logo
Dawn Maroney
President, Markets & CEO of Alignment Health Plan
linkedin
leader-logo
John Kao
CEO and Founder
linkedin
Company data provided by crunchbase