SCAN logo

Senior Cyber Security Engineer

SCAN

On-siteLong Beach, CAseniorPosted 18h ago

Job description

Founded in 1977 as the Senior Care Action Network, SCAN began with a simple but radical idea: that older adults deserve to stay healthy and independent. That belief was championed by a group of community activists we still honor today as the “12 Angry Seniors.” Their mission continues to guide everything we do.

Today, SCAN is a nonprofit health organization serving more than 500,000 people across Arizona, California, Nevada, New Mexico, Texas, and Washington, with over $8 billion in annual revenue. With nearly five decades of experience, we have built a distinctive, values-driven platform dedicated to improving care for older adults.

Our work spans Medicare Advantage, fully integrated care models, primary care, care for the most medically and socially complex populations, and next-generation care delivery models. Across all of this, we are united by a shared commitment: combining compassion with discipline, innovation with stewardship, and growth with integrity.

At SCAN, we believe scale should strengthen—not dilute—our mission. We are building the future of care for older adults, grounded in purpose, accountability, and respect for the people and communities we serve.

The Job

We are seeking a skilled Cloud/App Security Engineer with expertise in Microsoft Azure to design, deploy, and secure our cloud infrastructure with detail to regulatory compliance (HIPAA, HITRUST), high availability, and data security for patient-centric solutions. The ideal candidate will have a deep understanding of cloud security and application security, including experience with APIs, DevSec, and Cloud applications. They will be responsible for designing, implementing, and testing security solutions and controls for our organization's applications and integrations.

Essential Job Results

  • 6+ years of experience in cloud/app security, with at least 3 years focused on Microsoft Azure. Proven experience with Azure DevOps for CI/CD pipelines and Infrastructure as Code (IaC) implementation.

  • Strong knowledge of coding best practices and alignment with OWASP and OWASP for AI.

  • Design and implement scalable, secure, and resilient security solutions for Azure cloud infrastructure solutions tailored to healthcare applications and sensitive patient data.

  • Secure Azure resources such as Virtual Machines, App Services, Azure SQL, Entra ID, Azure Storage Accounts, Azure Container Registry, Azure Kubernetes, Azure Data Factory, Private Endpoints, Linux/Unix VMs, and Virtual Networks.

  • Strong understanding of IAM, RBAC, and Managed Identities and experience with creating and provisioning least privileged roles in alignment with Zero Trust.

  • Develop and manage Infrastructure as Code (IaC) using tools such as ARM templates, Bicep, or Terraform within Azure DevOps CI/CD pipelines.

  • Familiarity with Azure security and networking components, such as Azure Firewall, Network Security Groups (NSGs), and Virtual Networks (VNets).

  • Automate cloud security and deployments using Azure DevOps, GitHub, or PowerShell.

  • Monitor system performance and availability using Azure Monitor, Log Analytics, and other monitoring tools.

  • Working knowledge of Vulnerability and Application Security using Static Application Security Testing (SAST), and Dynamic Application Security Testing (DAST).

  • Work collaboratively with cross-functional teams to support DevOps practices and CI/CD pipelines and implement best practices.

  • Extensive hands-on experience in securing and support of Microsoft Technology stack for example: Azure Resources, Defender for Cloud, Azure DevOps, Azure Advanced Security, M365, O365, Power platform/Dynamics, SharePoint Online, Intune, and Windows 365 Cloud PC/DaaS.

  • Supports Microsoft and Linux technologies - design, architecture, and Implementation, Active Directory/EntraID, Intune, and IIS) including 32-bit and 64-bit architecture.

  • Skills in API usage for integration and CLI and SDKs for application troubleshooting are desirable.

  • Wear multiple hats and work in a team with team members having similar skills sets.

  • Project and task management that includes planning, prioritizing, organizing, gathering facts, exercising sound judgment in problem solving, decision making and facilitating solutions.

  • Maintains data integrity in the organization’s systems while keeping strict confidentiality of the information within.

  • Adapts to frequently changing priorities and deadlines.

  • Detail oriented with ability to follow through to completion, along with the ability to focus on tasks and maintain concentration to complete tasks and assignments.

  • Maintains professional and technical knowledge by attending educational workshops; reviewing professional publications; establishing personal networks; participating in professional societies.

  • Provides escalation support for various development and infrastructure teams as well as other groups within IT. Contributes team effort by accomplishing related results as needed. Ensure accurate and timely completion of all the work assigned.

Preferred Qualifications

  • Bachelor’s degree in computer science or equivalent experience (minimum 10 years).

  • Active Azure and/or AWS cloud Engineer certification required.

  • Relevant certifications (preferred but not required), such as Microsoft Certified: Cybersecurity Architect Certified, CISSP, CSSP

  • Experience in Agile/Scrum environments.

  • Knowledge of securing hybrid cloud architectures integrating Azure with on-premises infrastructure.

  • SAFE/Agile experience preferred but not required.

  • Strong verbal and written communication skills.

  • Experience with Change/Release Management.

  • Experience with HIPAA compliance and HITRUST certification.

  • Technical knowledge of Configuring Identity Management and Roles.

  • 5+ years of experience with Application Security.

  • Experience with application monitoring of Windows systems and services.

  • Dev Experience and hands on with experience with coding languages such as Python.

  • Must be able to provide exceptional technical documentation.

  • Demonstrate problem solving skills and troubleshooting techniques.

  • Ability to multi-task and handle a variety of work assignments.

  • Ability to maintain data integrity in the organization’s systems and strict confidentiality of information.

  • Must be able to work under frequently changing priorities and deadlines.

  • Detail oriented with ability to follow through to completion, along with the ability to focus on tasks and maintain concentration to complete tasks and assignments.

Conditions Of Work

  • Office Hours: Monday-Friday, 8am to 5pm. Extended work hours, as needed.

  • On call responsibility.

  • May require travel to SCAN remote offices.

  • May require after hours and weekend work for security incidents, as approved.

What's in it for you?

  • Base salary range: $106,200 to $182,983 annually

  • An annual employee bonus program

  • Robust Wellness Program

  • Generous paid-time-off (PTO)

  • 11 paid holidays per year, 1 floating holiday, birthday off, and 2 volunteer days

  • Excellent 401(k) Retirement Saving Plan with employer match

  • Robust employee recognition program

  • Tuition reimbursement

  • An opportunity to become part of a team that makes a difference to our members and our community every day!

We're always looking for talented people to join our team! Qualified applicants are encouraged to apply now!

At SCAN we believe that it is our business to improve the state of our world. Each of us has a responsibility to drive Equality in our communities and workplaces. We are committed to creating a workforce that reflects our community through inclusive programs and initiatives such as equal pay, employee resource groups, inclusive benefits, and more.

SCAN is proud to be an Equal Employment Opportunity and Affirmative Action workplace. Individuals seeking employment will receive consideration for employment without regard to race, color, national origin, religion, age, sex (including pregnancy, childbirth or related medical conditions), sexual orientation, gender perception or identity, age, marital status, disability, protected veteran status or any other status protected by law. A background check is required.

Equal Opportunity Employer/Protected Veterans/Individuals With Disabilities

The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information. 41 CFR 60-1.35(c)