KHealth is an AI-driven primary care company on a mission to give everyone access to high-quality healthcare. Backed by Primary Venture Partners.
About the role
As a Security Engineer at K Health, you will serve as a foundational force in securing our healthcare technology ecosystem. Reporting directly to the Director of Security, this is a deeply hands-on individual contributor role focused primarily on Security Operations (SecOps) and IT Security projects. You will be responsible for building, automating, and maintaining our security controls while acting as a key responder to security incidents.
What they're looking for
- Experience: 3–5 years of dedicated hands-on experience in Security Operations, IT Security, or System Administration with a strong security focus
- Incident Response: Proven background in actively detecting, investigating, and remediating security incidents in a modern cloud/hybrid environment
- Technical Depth: Deep foundational IT background spanning endpoint administration (macOS/Windows), identity management, and network security
- Compliance Standards: Demonstrated experience maintaining controls for SOC2 and/or HIPAA frameworks in an operational setting
- Automation Mindset: Hands-on experience automating security operations or IT tasks using SOAR platforms, scripting (Python, PowerShell, Bash), or API integrations
More about this role
As a Security Engineer at K Health, you will serve as a foundational force in securing our healthcare technology ecosystem. Reporting directly to the Director of Security, this is a deeply hands-on individual contributor role focused primarily on Security Operations (SecOps) and IT Security projects. You will be responsible for building, automating, and maintaining our security controls while acting as a key responder to security incidents. If you thrive in a fast-paced environment where you are empowered to own your domain, automate repetitive tasks, and directly safeguard patient and organizational data, this role is for you.
- Design, implement, and maintain hands-on SecOps workflows, threat detection, and incident response procedures across our corporate and cloud infrastructure.
- Build low-code and custom automations (using tools like Torq) to streamline security alerts, routine IT security tasks, and incident triage.
- Administer, optimize, and manage key security and endpoint management tools, including Sumo Logic, Jamf, Intune, Slack Enterprise, CrowdStrike, and related platforms.
- Maintain and support continuous compliance with SOC2 and HIPAA security controls, actively...
Browse similar: Startup jobs · New York