USA remote
Security Engineer
About this role
Who We Are Imagine Pediatrics is a tech enabled, pediatrician led medical group reimagining care for children with special health care needs. We deliver 24/7 virtual first and in home medical, behavioral, and social care, working alongside families, providers, and health plans to break down barriers to quality care. We do not replace existing care teams; we enhance them, providing an extra layer of support with compassion, creativity, and an unwavering commitment to children with medical complexity.
What You’ll Do As a Security Engineer, you will help operate, tune, and improve the technologies and processes that protect Imagine Pediatrics’ systems, data, and patients from cyber security threats. You will work hands-on across our cloud, endpoint, identity, and application security tooling as part of a small, collaborative security team that values curiosity as much as credentials. You will partner day to day with our Senior Security Engineer.
This is a genuinely collaborative pairing rather than a hand-off of tickets: you will brainstorm together, whiteboard approaches, pressure-test each other’s thinking, and jointly own the outcome of what you build. We expect you to bring ideas and push back when something doesn’t look right. You will: Collaborate closely with the Senior Security Engineer to scope, design, and solution security initiatives, from early brainstorming through implementation and validation Participate in peer review of security configurations, policies, and automation, and contribute to shared documentation, runbooks, and design decisions Administer and tune core security platforms across endpoint detection and response, endpoint management and device compliance, email security, cloud access and network traffic monitoring, data loss prevention, and vulnerability management Support the security of our cloud infrastructure in Microsoft Azure/EntraID and Amazon Web Services (AWS), including identity and access management, logging and monitoring, network controls, encryption and key management, and configuration baselines Respond to alerts and escalations from our managed detection and response (MDR) provider and other security systems as part of the on-call rotation Interpret log outputs from a wide selection of IT, security, and cloud infrastructure, and help route the right telemetry into our centralized logging and SIEM solution Ensure configurations and deployments are aligned with relevant industry standards such as HITRUST, NIST, CIS Benchmarks, HIPAA, and the OWASP Top 10 Translate framework requirements into practical technical controls, and apply them to new systems, cloud accounts, and services as the company grows rather than retrofitting them later Create, implement, and test incident response procedures for new threat content and alerts Respond to and resolve cyber security threats that may impact the confidentiality, integrity, or availability of Imagine Pediatrics systems and personnel Use AI tooling thoughtfully to reduce manual effort in areas such as log review, documentation, evidence preparation, scripting, and alert triage Ensure security control initiatives are executed on schedule and in line with Imagine Pediatrics Information Security program objectives and corporate policies Apply professional discretion and judgement when viewing sensitive and personal data or information in the process of conducting work Other duties as assigned What You Bring & How You Qualify First and foremost, you’re passionate and committed to reimagining pediatric health care and creating a world where every child with complex medical conditions gets the care and support they deserve.