Hampton North · 23 hours ago
Security Software Engineer
Hampton North is an established healthcare startup seeking a Software-Focused Security Engineer to shape and scale their security strategy. This technical role involves writing secure code, automating workflows, and embedding security across the infrastructure and development lifecycle.
Responsibilities
Write production-grade code (TypeScript or Python) to automate security tooling, processes, and detections
Lead the integration of security tools (SAST, SCA, secrets scanning) into CI/CD pipelines (GitHub Actions, Jenkins, CircleCI, TravisCI, Earthly)
Secure our AWS cloud infrastructure using tools like SCP, IAM, GuardDuty, Security Hub
Drive secure architecture for systems including auth, service-to-service communication, and RBAC
Oversee and continuously improve the vulnerability management program across engineering
Use observability tools (e.g., SIEM, Scout Suite, Prowler, Cloud Custodian) to proactively surface issues
Apply risk frameworks (OWASP Top 10, CIS AWS Benchmark, CVSS v3) to assess and prioritize threats
Mentor engineers and influence security best practices org-wide
Qualification
Required
5+ years in engineering roles focused on security engineering
Strong, current software development skills—with a focus on TypeScript or Python
Experience automating security solutions, not just configuring them
Deep knowledge of security concepts (threats, vulnerabilities, exploits, TLS, auth, etc.)
Hands-on experience with AWS security tools and infrastructure as code (Terraform)
Familiarity with CVSS v3, OWASP Top 10, and common vulnerability management practices
Proven ability to lead through influence and technical guidance
Preferred
CVE or public security research credits
Experience in fast-paced startup environments
Background working with distributed teams
Interest in leadership or management roles in the future
Benefits
Equity options