Logo of Huzzle

Specialist Security Engineer

image

Waystar

Aug 3

  • Job
    Full-time
    Junior (1-2 years)
  • Louisville
  • Quick Apply

AI generated summary

  • You should have SDLC knowledge, proficiency in code scanning and vulnerability tools, cloud security expertise, scripting skills, and experience in healthcare compliance and incident response.
  • You will integrate security into design processes, conduct code reviews, analyze vulnerabilities, provide tier 3 support, and collaborate to ensure secure project implementation.

Requirements

  • Has thorough knowledge and experience with SDLC
  • Proficient with testing and code scanning software
  • Proficient with identifying security issues in applications through code review
  • Proficiency with vulnerability assessment tools, code scanning tools (Snyk), and penetration testing tools like Metasploit, Burp Suite, and Kali Linux.
  • Knowledge of cloud security best practices and healthcare data privacy regulations (HIPAA, etc.) or related industries.
  • Familiarity with security frameworks and standards such as OWASP, NIST, and ISO 27001
  • Understanding of cloud security practices and tools for platforms like AWS, Azure, or Google Cloud.
  • Proficiency in scripting languages such as Python, PowerShell, or Bash for automating vulnerability assessments and remediation tasks.
  • Well versed in operating systems such as Linux as well as Windows environments, Active Directory, VPN systems, encryption schemas and algorithms, various authorization and authentication mechanisms/software, network monitoring and sniffing, TCP/IP networks and vulnerability and threat management tools (including network-based scanners).
  • Strong analytical and problem-solving skills with the ability to assess and prioritize vulnerabilities
  • Possesses strong communications skills, both written and oral
  • Be willing to collaborate with other teams in a positive manner
  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, related field or equivalent work experience
  • At least 2 years of experience coding web applications
  • At least 2 years of experience performing manual penetration test
  • At least 1 years of experience performing risk assessments, secure network architecture, and vulnerability management
  • Experience working in the healthcare industry and knowledge of regulatory/compliance systems
  • Experience working as part of an Incident Response team
  • Experience in conducting training sessions with developers
  • Experience in purple teaming exercises
  • Cyber certifications such as Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), or GIAC Penetration Tester (GPEN), CISSP, or related training

Responsibilities

  • Contribute to the security architecture by helping to integrate security into the design and development processes, performing application security reviews, code reviews, and threat modeling
  • Develop and oversee secure code analysis program in conjunction with the development teams
  • Review of full suite of internal, commercial, and open-source applications for vulnerability management
  • Research and analyze application behaviors and improving security and stability
  • Work to ensure that security solutions achieve a balance of performance, security, and compatibility
  • Provide tier 3 engineering support to troubleshoot complex problems
  • Assess and provide feedback on new security sensitive functionality and application infrastructure
  • Review implementation code of critical projects
  • Collaborate with colleagues across a variety of teams to architect & ship projects securely

FAQs

What is the primary role of a Specialist Security Engineer at Waystar?

The primary role is to contribute to the application security strategy, design, and process improvement, while providing guidance to application development teams to enhance overall security posture.

What are the key responsibilities of this position?

Key responsibilities include integrating security into design and development processes, performing application security reviews and threat modeling, overseeing secure code analysis programs, and providing tier 3 engineering support.

What qualifications are required for this role?

A Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field, along with thorough knowledge of the SDLC, proficiency in testing and code scanning software, and strong analytical skills are required.

Is experience in cloud security necessary for this position?

Yes, knowledge of cloud security best practices and understanding cloud security practices and tools for platforms like AWS, Azure, or Google Cloud are necessary.

Are there preferred skills for candidates applying for this role?

Yes, preferred skills include at least 2 years of experience coding web applications, manual penetration testing, and experience in the healthcare industry, among others.

Does the role require proficiency in any specific tools or technologies?

Yes, proficiency with vulnerability assessment tools, code scanning tools like Snyk, and penetration testing tools such as Metasploit and Burp Suite is required.

What types of certifications are beneficial for candidates?

Cybersecurity certifications like Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), or GIAC Penetration Tester (GPEN) are beneficial.

Will the Specialist Security Engineer be involved in training sessions?

Yes, experience in conducting training sessions with developers is preferred for this role.

How does Waystar approach diversity and inclusion?

Waystar is committed to being an equal opportunity workplace, celebrating, valuing, and supporting diversity and inclusion.

What benefits does Waystar offer to employees?

Waystar offers competitive total rewards, customizable benefits packages, generous paid time off, paid parental leave, education assistance, mental health programs, and a 401(K) program, among others.

Simplify healthcare payments so providers + patients can focus on what matters most.

Technology
Industry
1001-5000
Employees

Mission & Purpose

Waystar provides market-leading technology that simplifies and unifies healthcare payments. Our cloud-based platform streamlines workflows and improves financials for healthcare providers of all kinds, and brings more transparency to the patient financial experience. The Waystar platform is used by more than 450k providers, 750 health systems and hospitals, and 5k health plans—and integrates with all major HIS and practice management systems.