JOBSEARCHER

Cloud Security Engineer, Operations

WiraaDenver, COL6 LeadOctober 1st, 2026
About The CompanyMedable's mission is to expedite the delivery of effective therapies to patients worldwide. We offer an end-to-end, agentic clinical trial platform equipped with a flexible suite of tools that foster collaboration among patients, healthcare providers, clinical research organizations, and pharmaceutical sponsors. Our innovative solutions aim to streamline clinical research processes, enhance healthcare delivery, and support the advancement of precision and predictive medicine. Serving a diverse audience that includes patients, providers, principal investigators, and healthcare and life sciences innovators, Medable is dedicated to transforming the landscape of medical discovery.Our vision is to accelerate the path to human discovery and medical cures. We are passionate about fostering innovation, empowering consumers, and driving proactive, collaborative, and self-motivated approaches to healthcare challenges. Our team is committed, bold, and tenacious, working tirelessly to make the world a healthier place through technological advancement and dedicated service.About The RoleWe are seeking a highly skilled Cloud Security Engineer to join our dynamic team. In this role, you will be responsible for managing and optimizing the security posture of Medable’s multi-cloud infrastructure, including Google Cloud Platform (GCP) and Amazon Web Services (AWS). You will work closely with Information Security Operations, Infrastructure, and DevOps teams to implement security best practices, respond to vulnerabilities, and ensure compliance across our cloud environments. Your expertise will be instrumental in securing Kubernetes environments, supporting AI integration security, and maintaining robust security controls aligned with industry standards such as CIS, NIST 800-53, and OWASP Top 10.This position offers an exciting opportunity to influence security strategies in a healthcare technology setting, supporting innovative AI solutions and ensuring data privacy and protection in regulated environments. You will participate in incident response, vulnerability management, and contribute to internal security standards, playing a critical role in safeguarding Medable’s infrastructure and client data.QualificationsBachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field (preferred)GCP Professional Cloud Security Engineer, CISSP, CCSP, Security+ certifications (or equivalent)4+ years of hands-on experience in cloud security, DevSecOps, or security operations in cloud environmentsPractical experience with security controls in GCP and AWS, including IAM, logging, encryption/KMS, and network securityProficiency in securing Kubernetes environments, including RBAC, cluster hardening, workload controls, and patch managementStrong vulnerability management skills, including triage, remediation, and validation workflowsExperience supporting secure AI/LLM integrations, with focus on data governance and key managementExcellent cross-functional collaboration skills and ability to translate security requirements into actionable controlsProficiency in programming languages such as Javascript, Python, or BashFamiliarity with Infrastructure-as-Code tools like Terraform, CloudFormation, and CI/CD pipelinesResponsibilitiesCollaborate with Information Security Operations and Infrastructure/DevOps teams to administer and optimize security across multi-cloud environments (GCP/AWS)Manage and respond to cloud security alerts, vulnerabilities, and incidents, implementing timely mitigations and patchesMaintain and enhance security configurations for cloud security consoles such as GCP Security Command Center, Cloud Logging, Cloud Armor, KMS, and IAMPartner with DevOps to establish secure baseline configurations, network segmentation, encryption practices, and key management aligned with industry standardsExecute day-to-day vulnerability workflows including detection, prioritization, remediation, and validation across cloud services, containers, and third-party dependenciesSecure Kubernetes environments through cluster and node hardening, RBAC, network policies, admission controls, and runtime security measuresSupport secure deployment and integration of AI services, ensuring data protection, network controls, and usage monitoringContribute to internal security standards for AI workflows, including prompt/data handling, logging, and third-party risk managementWork with IS Risk and Compliance teams to produce evidence and reports supporting security and privacy compliance (SOC 2, ISO, healthcare regulations)Participate in security incident response activities, including containment and recovery effortsPerform other duties as assigned to support overall security objectivesBenefitsFlexible remote work environment from the startCompetitive base salary with annual performance-based bonusesStock options aligned with company successComprehensive medical, dental, and vision insurance coverageHealth Savings Accounts (HSA) and Flexible Spending Accounts (FSA)Carrot Fertility Program for family planning supportWellness programs focusing on mental, physical, and financial healthPeer-to-peer recognition programs to celebrate achievementsVolunteer time off to support community involvement and causes you care aboutEqual OpportunityMedable is committed to creating an inclusive environment and is proud to be an equal opportunity employer. We do not discriminate on the basis of race, color, religion, national origin, gender, gender identity or expression, sexual orientation, age, disability, or any other protected status under applicable law. We provide reasonable accommodations for qualified individuals with disabilities throughout the application and employment process. If