FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Lead Cybersecurity Engineer
OptiMantra. Lead the company’s cybersecurity program across Cerbo and OptiMantra .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in leading cybersecurity programs, implementing security controls aligned with frameworks such as SOC 2 and HIPAA, and managing cloud security in AWS environments. Proven ability to coordinate audits, manage third-party security risks, and establish security standards across organizations.
Highest-signal resume keywords
Cybersecurity Program LeadershipAWS Security Ecosystem ExpertiseCompliance with SOC 2 and HIPAAKubernetes and Container SecurityThird-Party Security Audit Management
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
CybersecurityInformation SecurityCloud SecuritySecurity Controls ImplementationVulnerability ManagementIncident ResponsePenetration TestingIdentity and Access ManagementNetwork SecurityData Protection
Soft Skills
LeadershipCollaborationCommunicationProblem-SolvingTechnical Subject-Matter Expertise
Tools & Technologies
AWSKubernetesEDRSIEMWAFIAMCloudTrailGuardDutySecurity HubKMS
Certifications & Qualifications
Bachelor's Degree in CybersecurityHIPAA Compliance Training
Industry Keywords
Healthcare TechnologySaaSB2BPE-Backed OrganizationsMulti-Tenant Environments
Tech Stack
Tools & technologiesAWSCloudCyber SecurityKubernetes
About the role
Key responsibilities & impact- Lead the company’s cybersecurity program across Cerbo and OptiMantra
- Protect protected health information (PHI) and production platforms serving thousands of clinicians and millions of patients
- Develop, implement, and continuously improve a unified security program across both products
- Own the technical implementation and ongoing management of SOC 2 Trust Services Criteria and HIPAA Security Rule requirements across AWS environments
- Lead compliance documentation, remediation, control narratives, system and data-flow documentation, scope determinations, and security gap closure
- Serve as technical point of contact for auditors and assessors and coordinate audit activities and milestones
- Secure and harden production AWS environments, including cloud infrastructure, Kubernetes and container environments, databases, networking, web application security, and disaster recovery environments
- Implement and operate AWS security controls and tooling, including IAM, privileged access management, MFA, least-privilege access, security monitoring, encryption and key management, vulnerability management, and audit logging
- Establish common standards for access, tenant isolation, data protection, backup, and disaster recovery
- Establish and operate centralized logging, alerting, threat detection, and security response processes
- Own security incident response and vulnerability management programs, including playbooks, tabletop exercises, breach assessment, vulnerability scanning, remediation tracking, and coordination with Engineering and external security providers
- Lead penetration testing, DAST, security assessments, findings remediation, and retesting
- Own security policies, procedures, workforce security, security awareness, phishing simulations, HIPAA training, and compliance tracking
- Lead identity and endpoint security practices for corporate systems, users, and sensitive data
- Manage third-party security and vendor risk, including security assessments, business associate agreements, subprocessor diligence, and vendor oversight
- Serve as technical security partner for customers and strategic partners, leading security questionnaires, architecture reviews, and security discussions
- Support customer and partner security requirements during sales and contracting, including incident notification, data retention and export, backup and disaster recovery, AI, and subprocessors
- Report to the Chief Technology Officer and collaborate with DevOps, Engineering, IT, Product, and other stakeholders
Requirements
What you’ll need- 5+ years of experience in cybersecurity or information security, with increasing responsibility in security engineering
- 2+ years of experience securing production cloud environments, preferably AWS, including cloud identity and access management, network security, logging/monitoring, and security controls
- Demonstrated experience with the AWS security ecosystem, including IAM, CloudTrail, GuardDuty, Security Hub, KMS, VPC security and related AWS security services
- Experience implementing, maintaining and evidencing security controls aligned with frameworks and standards such as NIST, HITRUST, ISO 27001, HIPAA, SOC 2, or similar
- Experience securing Kubernetes and containerized production environments, including identity, network security, image security, and runtime controls
- Experience serving as a technical owner during a third-party security audit, assessment, or certification
- Experience deploying, configuring, and operating cybersecurity tools in production, such as EDR, SIEM/log management, vulnerability management, WAF, or similar technologies
- Demonstrated ability to lead complex cybersecurity initiatives, establish security standards and processes, and serve as a technical subject-matter expert across the organization
- Bachelor's degree in cybersecurity, information security or relevant field (preferred)
- Experience working in a PE-backed, high-growth, or rapidly scaling organization (preferred)
- Experience working with healthcare technology, SaaS or other technology-enabled B2B businesses (preferred)
- Experience securing multi-tenant SaaS environments, including tenant isolation, access controls, and shared infrastructure (preferred)
- Experience working across cloud, DevOps, SRE, or application security environments, with exposure to infrastructure as code, CI/CD, Kubernetes, secure code practices, or vulnerability remediation (preferred)
Benefits
Comp & perks- Competitive compensation based on experience
- Paid Time Off and company holidays
- Comprehensive health, dental and vision benefits
- Short-term and long-term disability Insurance
- 401k plan with matching company contribution
- Real ownership and impact in a fast-growing health tech company