Sr. Security Analyst – Cloud Security & Application Security

2 Months ago • 5 Years + • Cyber Security

Job Summary

Job Description

Blink Health seeks a Sr. Security Analyst to design and implement a Threat and Vulnerability Management program for AWS cloud and applications. Responsibilities include threat modeling, security architecture reviews, managing security tools (SAST, SCA, DAST, API security, data security, SIEM), conducting penetration tests, responding to security incidents, monitoring identity security, and preparing status reports. The ideal candidate possesses 5+ years of experience in information security, AWS cloud security, OWASP Top 10, API security, and data security. Experience with various security tools and compliance frameworks (HIPAA, PCI) is essential. The role also involves developing security content and assisting with audits and assessments.
Must have:
  • 5+ years InfoSec experience
  • AWS Cloud Security expertise
  • OWASP Top 10, API & Data Security knowledge
  • SAST, SCA, DAST experience
  • SIEM, incident response skills
Good to have:
  • CISSP or equivalent
  • AWS Security certification
  • Experience with WAF, IAM, DLP
  • Familiarity with GitHub, Kubernetes
  • HIPAA, PCI compliance knowledge

Job Details

Company Overview:

Blink Health is the fastest growing healthcare technology company that builds products to make prescriptions accessible and affordable to everybody.  Our two primary products – BlinkRx and Quick Save – remove traditional roadblocks within the current prescription supply chain, resulting in better access to critical medications and improved health outcomes for patients. 

BlinkRx is the world’s first pharma-to-patient cloud that offers a digital concierge service for patients who are prescribed branded medications. Patients benefit from transparent low prices, free home delivery, and world-class support on this first-of-its-kind centralized platform. With BlinkRx, never again will a patient show up at the pharmacy only to discover that they can’t afford their medication, their doctor needs to fill out a form for them, or the pharmacy doesn’t have the medication in stock. 

We are a highly collaborative team of builders and operators who invent new ways of working in an industry that historically has resisted innovation. Join us!

Responsibilities

  • Design and implement Threat and Vulnerability Management program for AWS cloud and Engineering applications.
  • Ensure alignment with the Security Pillar of AWS Well Architected Framework.
  • Facilitate and review Threat modeling with Applications teams.
  • Conduct Security architecture review of key application enhancements.
  • Manage the operations of cloud security tools, triage and prioritize findings, work with stakeholders to fix defects.
  • Manage the operations of source code scanning security tools (SAST), 3rd party modules scanning security tools (SCA), runtime application scanning security tools (DAST). Triage and prioritize findings, work with stakeholders to fix defects.
  • Manage the operations of API security tools. Triage and prioritize findings, work with stakeholders to fix defects.
  • Manage the operations of Data Security tools. Monitor, Identify, triage, and prioritize findings. Work with stakeholders to fix defects.
  • Manage the operations of SIEM, ensure security logs are being sent to the SIEM, configure and find fund thresholds and alerts.
  • Perform internal application pen tests. Identify, triage, and prioritize findings. Work with stakeholders to fix defects.
  • Monitor alerts and respond to security incidents according to incident response plan.
  • Monitor identity security including Periodic review of access logs, anomaly access and account review, excessive and outlier permissions, inactive accounts with high privileges.
  • Prepare relevant metrics and status reports related to Cloud Security and Engineering Application Security
  • Develop and maintain content for Cloud Security and Engineering Applications for Infosec CoE (Center of Excellence) and Product Security Baselines.
  • Assists in the review and update of cyber security policies, architectures and standards.
  • Assists in responding to audits, penetration tests and vulnerability assessments.

Requirements

  • Bachelor’s degree in computer science, cybersecurity or a related field
  • 5+ years of experience in Information Security 
  • Certifications (CISSP) or equivalent is a plus. AWS Security certification is a plus.
  • Experience in AWS Cloud Security
  • Experience in OWASP Top Ten, API Security, Data Security, SAST, SCA, DAST
  • Experience in WAF, IAM, DLP
  • Experience in XDR, SIEM, SOC
  • Familiarity with GitHub, Kubernetes
  • Familiarity with Networking, VPN, Firewall
  • Familiarity with Compliance Frameworks & Controls (HIPAA, PCI)

Why Join Us:

It is rare to have a company that both deeply impacts its customers and is able to provide its services across a massive population.  At Blink, we have a huge impact on people when they are most vulnerable: at the intersection of their healthcare and finances. We are also the fastest growing healthcare company in the country and are driving that impact across millions of new patients every year.  Our business model not only helps people, but drives economics that allow us to build a generational company. We are a relentlessly learning, constantly curious, and aggressively collaborative cross-functional team dedicated to inventing new ways to improve the lives of our customers.

We are an equal opportunity employer and value diversity of all kinds. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Similar Jobs

Playrix - Senior Release Engineer

Playrix

Ukraine (Remote)
3 Months ago
Playrix - Lead Location Designer

Playrix

Ireland (Remote)
3 Months ago
Microsoft - Research Intern - Computational Social Science

Microsoft

New York, New York, United States (On-Site)
1 Month ago
Seedify - Intermediate Frontend Engineer

Seedify

Hanoi, Hanoi, Vietnam (Remote)
3 Weeks ago
Mettler-Toledo International,  Inc  - Software Engineer Test – Senior

Mettler-Toledo International, Inc

Karnataka, India (Hybrid)
4 Months ago
Palo Alto Networks - Domain Consultant - Cortex - France

Palo Alto Networks

Paris, Île-de-France, France (Remote)
2 Months ago
Microsoft - Software Engineer II

Microsoft

Reston, Virginia, United States (On-Site)
2 Weeks ago
Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation

Hillsboro, Oregon, United States (On-Site)
3 Months ago
ION - Pen Tester, Italy

ION

Italy (Hybrid)
4 Months ago
PwC - Workday - Senior Consultant-  Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

GT - QE Automation Engineer | Feeld, UK

GT

(Remote)
1 Month ago
ION - Senior Java Developer - Italy

ION

Collecchio, Emilia-Romagna, Italy (On-Site)
4 Months ago
seeking alpha - Senior Backend Data Developer

seeking alpha

Poland (Remote)
1 Month ago
Luxoft - Senior Python Developer with Networking

Luxoft

(Remote)
2 Months ago
Playrix - Senior Release Engineer

Playrix

Cyprus (Remote)
3 Months ago
Zynga - Data Analyst

Zynga

London, England, United Kingdom (On-Site)
1 Month ago
CloudHire - Frontend Automation Engineer - Testing

CloudHire

London, England, United Kingdom (Hybrid)
3 Months ago
AbZorba Games  - Unity Game Developer

AbZorba Games

Attica, Indiana, United States (On-Site)
5 Months ago
Day[9]'s Game Studio - Senior Software Engineer - Tools (Unreal Engine)

Day[9]'s Game Studio

(Remote)
3 Weeks ago
Rockstar Games - Senior Technical Artist: Rigging

Rockstar Games

London, England, United Kingdom (On-Site)
5 Months ago

Get notifed when new similar jobs are uploaded

Jobs in India

Xentrix Studios - Animation – Team Lead

Xentrix Studios

India (On-Site)
3 Months ago
CloudHire - Sr. Developer - Angular & NestJS

CloudHire

India (Remote)
3 Months ago
InMobiInMobi - Senior Associate -Content Marketing

InMobiInMobi

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Hunting Cube Recruitment Solutions - Full Stack Engineer

Hunting Cube Recruitment Solutions

Pune, Maharashtra, India (On-Site)
4 Months ago
PwC - IN-Senior Associate_Azure Data Enginer_Advisory Corporate_Advisory_Gurgaon

PwC

Gurugram, Haryana, India (On-Site)
4 Months ago
PwC - Senior Associate _SAP CPI_Enterprise Apps-SAP_Advisory_Kolkata

PwC

Kolkata, West Bengal, India (On-Site)
4 Months ago
Quizizz - Customer Success Manager- ROW

Quizizz

Bengaluru, Karnataka, India (On-Site)
1 Month ago
CleverTap - Customer Success Manager (SEA)

CleverTap

Mumbai, Maharashtra, India (Hybrid)
3 Months ago
Sporty Group - IN Associate - Operations Support

Sporty Group

Mumbai, Maharashtra, India (On-Site)
8 Months ago
Coddle Technologies   - UI/UX Designer

Coddle Technologies

Bengaluru, Karnataka, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Wind River Systems - Star Lab - Field Applications Engineer, System Architect

Wind River Systems

Huntsville, Ontario, Canada (Hybrid)
3 Months ago
Scientific Games  - Senior Information Security Analyst

Scientific Games

Bengaluru, Karnataka, India (On-Site)
2 Weeks ago
Luminar Technologies - Product Security Lead

Luminar Technologies

Bengaluru, Karnataka, India (On-Site)
2 Months ago
ByteDance - Privacy and Security Manager - Information System -Singapore

ByteDance

Singapore (On-Site)
1 Month ago
Wind River Systems - Star Lab - Field Applications Engineer, System Architect

Wind River Systems

San Antonio, Texas, United States (Hybrid)
3 Months ago
Rackspace Technology - Policy Management Specialist  (Security Risk & Compliance)

Rackspace Technology

Aguascalientes, Aguascalientes, Mexico (On-Site)
3 Months ago
Britive - STRATEGIC ACCOUNT EXECUTIVE

Britive

(Remote)
2 Months ago
Scale AI - Security Compliance Analyst

Scale AI

San Francisco, California, United States (On-Site)
3 Months ago
ByteDance - Threat Intelligence Engineer, Security Assurance

ByteDance

Singapore (On-Site)
3 Months ago
Terralogic - THREAT HUNTER

Terralogic

Mumbai, Maharashtra, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded