CVS Health - New York, NY

posted 14 days ago

Full-time - Senior
Remote - New York, NY
Health and Personal Care Retailers

About the position

The Distinguished Engineer in Application Security Engineering at CVS Health is a highly technical thought leader responsible for defining and enforcing application security best practices, mentoring junior engineers, and driving the integration of secure engineering practices across the organization. This role requires deep expertise in coding, security technologies, and the ability to innovate and automate security processes to enhance efficiency and effectiveness in a rapidly changing healthcare environment.

Responsibilities

  • Define application security coding, design, and development best practices.
  • Develop and drive application security awareness training programs across the organization.
  • Review hands-on application implementations and engage in high-risk, complex application designs.
  • Lead the development of comprehensive application and data security policies and standards.
  • Collaborate with Engineering and Business teams to develop secure engineering practices.
  • Analyze novel security attack vectors and design countermeasures.
  • Lead pen-testing and incident post-mortem analysis to improve application security posture.
  • Participate in operational on-call duties to support a 24/7 infrastructure.
  • Develop a comprehensive mentorship program for junior engineers.
  • Engage in security research and explore next-generation security tools.

Requirements

  • 15+ years of experience in developing and deploying security technologies.
  • 12+ years of experience with programming/script languages such as Java, C/C++, C#, Python, JavaScript, Shell Script, PowerShell.
  • Proficiency in Public Cloud (AWS/Azure/Google Cloud Platform) & Network Security.
  • Experience with Docker, Kubernetes, Security-as-Code, and Infrastructure-as-Code.
  • Strong experience with implementing data protection measures and compliance with regulations like GDPR and CCPA.
  • Proven track record in leading security initiatives from inception to deployment.

Nice-to-haves

  • Strong technical expertise with Architecting Public Cloud solutions.
  • Understanding of compliance frameworks like HIPAA, HITRUST, PCI, NIST, CSA.
  • Experience with security solutions for data warehouses and big data platforms, particularly Snowflake.
  • Experience in influencing industry security standards and contributing to open-source projects.

Benefits

  • Full range of medical, dental, and vision benefits.
  • 401(k) retirement savings plan with company match.
  • Employee Stock Purchase Plan available.
  • Fully-paid term life insurance plan.
  • Short-term and long-term disability benefits.
  • Well-being programs and education assistance.
  • Free development courses and CVS store discounts.
  • Paid Time Off (PTO) and paid holidays.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service