FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior Security Engineer – Secure SDLC
Highmark Health. Design and implement shift-left security guardrails across AI-assisted development workflows, IDEs, commits, and CI/CD pipelines .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in implementing security guardrails and policies for AI-assisted development workflows, with a strong focus on vulnerability management, secure coding practices, and compliance with industry standards. Proficient in leading security initiatives, mentoring teams, and conducting thorough security reviews and audits.
Highest-signal resume keywords
Information Security ManagementVulnerability Triage and RemediationSecure Coding PracticesAI Security ConsultationRisk Management and Compliance
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
PythonGoBashCI/CDSASTDASTContainer SecuritySecurity Architecture ReviewsSecure SDLCSoftware Supply Chain Security
Soft Skills
MentoringCommunicationCollaborationTraining DeliveryProblem Solving
Tools & Technologies
GitLabGitHub ActionsJenkinsDockerKubernetesSIEMIPSFirewallsEndpoint ProtectionVirtualization Platforms
Certifications & Qualifications
CISSPSecurity+
Industry Keywords
HITRUST CSFNIST 800-83PCIHIPAACOBITISO 27001/2OWASP Top 10 for LLM ApplicationsOWASP SAMMBSIMMNIST SSDF
Tech Stack
Tools & technologiesCloudDockerFirewallsJenkinsKubernetesPythonSDLCGo
About the role
Key responsibilities & impact- Design and implement shift-left security guardrails across AI-assisted development workflows, IDEs, commits, and CI/CD pipelines
- Configure and enforce security gates for code, AI-generated code, infrastructure-as-code, and deployment artifacts
- Deploy and manage SAST, dependency, container, secret detection, DAST, API security, and AI/LLM security scanners
- Develop security-as-code policies and governance controls for AI coding assistants, agents, and developer tooling
- Lead risk-based vulnerability triage, prioritization, remediation SLAs, root-cause analysis, and risk reduction
- Identify and remediate risks in AI-generated code, AI applications, model integrations, prompt injection, agent behavior, and sensitive data exposure
- Architect, maintain, integrate, tune, and optimize the enterprise application security toolchain
- Build automation for vulnerability triage, escalation, assignment, and reporting
- Develop dashboards and reporting pipelines for application security posture, AI security adoption, and policy compliance
- Advise engineering teams through code reviews, AI security consultation, and remediation guidance
- Deliver secure coding, secure AI development, and responsible AI tooling training and workshops
- Build and grow a Security Champions program and maintain secure coding and AI development standards
- Define, track, and report AppSec and AI security KPIs and metrics
- Conduct security posture reviews and support audit, risk, compliance, and governance activities
- Benchmark maturity against OWASP SAMM, BSIMM, OWASP Top 10 for LLM Applications, and emerging AI security practices
- Conduct security reviews and threat modeling for AI-enabled applications, LLM integrations, AI agents, and AI-assisted development platforms
- Collaborate with Architecture, Software Delivery Enablement, Engineering, and Risk Management teams
- Lead teams in defining requirements, deliverables, and timeframes; escalate issues and make recommendations
- Mentor less senior staff and deliver technical training
- Implement, monitor, configure, and maintain security systems
- Complete ISRM Infrastructure project tasks on time, within budget and scope
- Assure compliance with required standards, procedures, guidelines, and processes
Requirements
What you’ll need- U.S. citizenship required due to contractual/access requirements
- Bachelor's Degree in Computer Science, Information Systems, or closely related field
- 7 years with Information Security and Systems Analysis
- 7 years with Information Security and/or Information Risk Management and/or Information Technology
- 7 years with Operating Systems and Software Administration
- 7 years developing, communicating and presenting Information Security and Risk Management concepts to varying audiences
- 7 years with IPS, firewalls, endpoint protection, web/email filtering, DLP, digital rights management, encryption, SIEM, and virtualization platforms
- Knowledge of HITRUST CSF, NIST 800-83, PCI, HIPAA, HITECH, COBIT, ISO 27001/2, and ITIL 3
- Familiarity with secure SDLC best practices
- Knowledge of Microsoft Apps and Suites, Windows Server, SharePoint, or equivalent
- Hands-on CI/CD experience with GitLab, GitHub Actions, Jenkins, or equivalent
- Proficiency in Python, Go, Bash, or equivalent
- Familiarity with Docker, Kubernetes, cloud provider security services, and platform engineering
- Ability to conduct secure code reviews and security architecture reviews for human-authored and AI-generated code
- Experience evaluating AI coding assistants, AI agents, MCP-enabled tooling, and AI-powered developer platforms
- Understanding of secure AI development principles, governance controls, prompt handling, data protection, and human review requirements
- Experience configuring and managing SCA tools across package ecosystems
- Experience generating, maintaining, and interpreting SBOMs in CycloneDX or SPDX formats
- Experience implementing software supply chain security controls
- Knowledge of OWASP Top 10 for LLM Applications, OWASP SAMM, BSIMM, NIST SSDF, and NIST AI RMF
- Preferred certifications include CISSP and Security+
- Language requirement other than English: None
- Physical work site required: Yes
Benefits
Comp & perks- 🌐 Worldwide ❌ Jobs You've Hidden ⭐️ Saved Jobs ✅ Applied Jobs ✉️ Email Alerts 👤 Account Highmark Health Website LinkedIn All Job Openings 10,000+ employees Founded 1852 🛡️ Insurance 💼 Consulting 📦 Logistics 💰 $5M Grant on 2021-05 Insurance
- Consulting
- Logistics Highmark Health is a healthcare company committed to reinventing the healthcare system and improving its services for everyone. The organization offers a broad range of career opportunities across various fields such as clinical care, technology, finance, and marketing. Highmark Health emphasizes diversity, equity, and inclusion in its workforce, creating a supportive environment for employees from all backgrounds. The company has been recognized for its commitment to disability inclusion, diversity, and military-friendly employment. As an independent licensee of the Blue Cross Blue Shield Association, Highmark Health strives to create remarkable healthcare experiences for its customers and employees alike. Senior Security Engineer – Secure SDLC 🔥 1 hour ago 🏢 null – Onsite 💵 $102.7k - $164.6k / year ⏰ Full Time 🟠 Senior 👮♂️ Cybersecurity / Security Engineer 🦅 H1B Visa Sponsor 👻 Ghost score 0% Cloud Docker Firewalls Jenkins Kubernetes Python SDLC Go Apply Now Customize resume + cover letter Report problem ☆ Save ☑️ Mark as applied ❌ Hide 📋 Description
- Design and implement shift-left security guardrails across AI-assisted development workflows, IDEs, commits, and CI/CD pipelines
- Configure and enforce security gates for code, AI-generated code, infrastructure-as-code, and deployment artifacts
- Deploy and manage SAST, dependency, container, secret detection, DAST, API security, and AI/LLM security scanners
- Develop security-as-code policies and governance controls for AI coding assistants, agents, and developer tooling
- Lead risk-based vulnerability triage, prioritization, remediation SLAs, root-cause analysis, and risk reduction
- Identify and remediate risks in AI-generated code, AI applications, model integrations, prompt injection, agent behavior, and sensitive data exposure
- Architect, maintain, integrate, tune, and optimize the enterprise application security toolchain
- Build automation for vulnerability triage, escalation, assignment, and reporting
- Develop dashboards and reporting pipelines for application security posture, AI security adoption, and policy compliance
- Advise engineering teams through code reviews, AI security consultation, and remediation guidance
- Deliver secure coding, secure AI development, and responsible AI tooling training and workshops
- Build and grow a Security Champions program and maintain secure coding and AI development standards
- Define, track, and report AppSec and AI security KPIs and metrics
- Conduct security posture reviews and support audit, risk, compliance, and governance activities
- Benchmark maturity against OWASP SAMM, BSIMM, OWASP Top 10 for LLM Applications, and emerging AI security practices
- Conduct security reviews and threat modeling for AI-enabled applications, LLM integrations, AI agents, and AI-assisted development platforms
- Collaborate with Architecture, Software Delivery Enablement, Engineering, and Risk Management teams
- Lead teams in defining requirements, deliverables, and timeframes; escalate issues and make recommendations
- Mentor less senior staff and deliver technical training
- Implement, monitor, configure, and maintain security systems
- Complete ISRM Infrastructure project tasks on time, within budget and scope
- Assure compliance with required standards, procedures, guidelines, and processes 🎯 Requirements
- U.S. citizenship required due to contractual/access requirements
- Bachelor's Degree in Computer Science, Information Systems, or closely related field
- 7 years with Information Security and Systems Analysis
- 7 years with Information Security and/or Information Risk Management and/or Information Technology
- 7 years with Operating Systems and Software Administration
- 7 years developing, communicating and presenting Information Security and Risk Management concepts to varying audiences
- 7 years with IPS, firewalls, endpoint protection, web/email filtering, DLP, digital rights management, encryption, SIEM, and virtualization platforms
- Knowledge of HITRUST CSF, NIST 800-83, PCI, HIPAA, HITECH, COBIT, ISO 27001/2, and ITIL 3
- Familiarity with secure SDLC best practices
- Knowledge of Microsoft Apps and Suites, Windows Server, SharePoint, or equivalent
- Hands-on CI/CD experience with GitLab, GitHub Actions, Jenkins, or equivalent
- Proficiency in Python, Go, Bash, or equivalent
- Familiarity with Docker, Kubernetes, cloud provider security services, and platform engineering
- Ability to conduct secure code reviews and security architecture reviews for human-authored and AI-generated code
- Experience evaluating AI coding assistants, AI agents, MCP-enabled tooling, and AI-powered developer platforms
- Understanding of secure AI development principles, governance controls, prompt handling, data protection, and human review requirements
- Experience configuring and managing SCA tools across package ecosystems
- Experience generating, maintaining, and interpreting SBOMs in CycloneDX or SPDX formats
- Experience implementing software supply chain security controls
- Knowledge of OWASP Top 10 for LLM Applications, OWASP SAMM, BSIMM, NIST SSDF, and NIST AI RMF
- Preferred certifications include CISSP and Security+
- Language requirement other than English: None
- Physical work site required: Yes Apply Now 📊 Check your resume score for this job Improve your chances of getting an interview by checking your resume score before you apply. Check Resume Score Similar Jobs Senior Director – OT Cyber Security 🔥 2 hours ago GE Vernova 10,000+ employees 💼 Consulting 📦 Logistics 🏭 Manufacturing Website LinkedIn All Job Openings Sr Director leading GE Vernova’s global OT cybersecurity program across manufacturing sites and labs. Driving governance, risk reduction, security delivery, and executive alignment. 🏢 Atlanta – Onsite 💵 $155.3k - $258.8k / year ⏰ Full Time 🟠 Senior 👮♂️ Cybersecurity / Security Engineer Cyber Security ServiceNow Splunk Senior Director – OT Cyber Security 🔥 2 hours ago GE Vernova 10,000+ employees 💼 Consulting 📦 Logistics 🏭 Manufacturing Website LinkedIn All Job Openings OT cybersecurity director leading GE Vernova’s global manufacturing and lab security program. Driving governance, network protection, vulnerability management, and enterprise risk reduction. 🏢 Atlanta – Onsite 💵 $155.3k - $258.8k / year ⏰ Full Time 🟠 Senior 👮♂️ Cybersecurity / Security Engineer Cyber Security ServiceNow Splunk Senior ISSO Cybersecurity Engineer 🔥 2 hours ago Booz Allen Hamilton 10,000+ employees 💼 Consulting 🎖️ Defense 🔒 Cybersecurity Website LinkedIn All Job Openings Senior ISSO engineer securing Booz Allen DoD information systems for Booz Allen. Managing RMF governance, eMASS authorization packages, controls, evidence, and remediation. 🏢 Alexandria – Onsite 💵 $99k - $225k / year 💰 $650M Post-IPO Debt - Booz Allen Hamilton on 2025-03 ⏰ Full Time 🟠 Senior 👮♂️ Cybersecurity / Security Engineer AWS Cloud Cyber Security Firewalls Linux TypeScript Principal Engineer, Cyber Security 🔥 4 hours ago Northrop Grumman 10,000+ employees 🏭 Manufacturing 📦 Logistics 🎖️ Defense Website LinkedIn All Job Openings Cybersecurity software engineer securing Northrop Grumman’s next-generation aircraft systems. Implementing RMF, vulnerability management, compliance, and DoD authorization processes. 🏢 San Diego – Onsite 💵 $114k - $213.4k / year ⏰ Full Time 🟠 Senior 👮♂️ Cybersecurity / Security Engineer Cyber Security Unix Lead ISSO Cybersecurity Engineer 🔥 6 hours ago Booz Allen Hamilton 10,000+ employees 💼 Consulting 🎖️ Defense 🔒 Cybersecurity Website LinkedIn All Job Openings Lead ISSO Cybersecurity Engineer securing Booz Allen’s DoD information systems through RMF governance, eMASS administration, and authorization-package management. Analyzing vulnerabilities, controls, interconnections, and remediation evidence. 🏢 Aberdeen Proving Ground – Onsite 💵 $112.8k - $257k / year 💰 $650M Post-IPO Debt - Booz Allen Hamilton on 2025-03 ⏰ Full Time 🟠 Senior 👮♂️ Cybersecurity / Security Engineer AWS Cloud Cyber Security Firewalls Linux TypeScript View More Security Engineer Jobs 🌐 Worldwide Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com Search Remote jobs Search Jobs by country Search jobs by city Search jobs by job title Search entry-level jobs Search junior-level jobs Search senior-level jobs Search jobs by tech stack Search jobs by contract type Search remote internships Search remote part-time jobs Remote jobs Anywhere in the World Companies Hiring Anywhere in the World Companies Hiring Sales People Anywhere in the World Companies Hiring Software Engineers Anywhere in the World Resources About us Advice Tips for finding remote jobs Interview questions and answers Resume examples Cover letter examples Post a job Affiliates Is Remote Rocketship legit? Privacy policy Terms of service Job board SEO course Remote Job Search MasterClass Resume Review AI Apply Copilot OpenClaw job finder API docs Find jobs using your resume Jobs by Country Remote jobs anywhere in the world (Worldwide remote jobs) Remote jobs United States Remote jobs Australia Remote jobs Brazil Remote jobs Canada Remote jobs France Remote jobs Ireland Remote jobs Germany Remote jobs Netherlands Remote jobs Spain Remote jobs UK Popular Jobs Remote data analyst jobs Remote customer support jobs Remote executive assistant jobs Remote marketing jobs Remote product designer jobs Remote product manager jobs Remote project manager jobs Remote recruiter jobs Remote sales jobs Remote software engineer jobs Jobs by Type Remote full-time jobs Remote part-time jobs Remote contract jobs Remote internship jobs Remote entry-level jobs Remote jobs with no experience required Remote junior jobs (1-3 years of experience) Digital nomad jobs Remote jobs with no degree required Freelance remote jobs Temporary remote jobs Remote jobs hiring now Stay at home mom jobs