Cedar Logo

Cedar

Product Security Engineer

Job Posted One Month Ago Reposted One Month Ago
Easy Apply
Remote
Hiring Remotely in United States
Mid level
Easy Apply
Remote
Hiring Remotely in United States
Mid level
The Product Security Engineer will enhance application security by assessing risks, providing security guidance, and supporting engineering teams in building secure products.
The summary above was generated by AI

Our healthcare system is the leading cause of personal bankruptcy in the U.S. Every year, over 50 million Americans suffer adverse financial consequences as a result of seeking care, from lower credit scores to garnished wages. The challenge is only getting worse, as high deductible health plans are the fastest growing plan design in the U.S.

Cedar’s mission is to leverage data science, smart product design and personalization to make healthcare more affordable and accessible. Today, healthcare providers still engage with its consumers in a “one-size-fits-all” approach; and Cedar is excited to leverage consumer best practices to deliver a superior experience.

The Role

U.S. healthcare is frustrating and deeply flawed. Cedar’s mission is to drive better outcomes for everyone involved, including providers, insurance companies and the people they serve. At a time when consumer-friendly healthcare experiences are more critical than ever, our platform is uniquely equipped to solve problems that lead to billing issues and administrative waste. 

The Product Security team at Cedar combines deep application security expertise with software development in order to help build our patient-focused solutions efficiently and safely. As a Product Security Engineer at Cedar, you will work with an inquisitive, diverse, and experienced team on a platform that is rapidly scaling. You’ll help solve problems that matter, affecting tens of millions of patients annually.

Our core tenets include using good judgment and having the autonomy to be successful. Your role will be to assess risk across the company and make decisions about the risk we should prioritize. On an average day you might participate in a security-focused design review, write code to create new security tooling, or create educational materials to improve security awareness across the company. At Cedar, we don’t require experience with particular languages, but deep familiarity with modern and industry-standard technologies in our tech stack is always a plus.

About You

  • You’re an application security engineer who prioritizes addressing security challenges with technology, not process
  • You have a demonstrated history of enabling software developers with actionable security guidance
  • You’re comfortable communicating security risks and controls to technical and non-technical partners
  • You have experience with security code review, threat modeling or security architecture reviews. You can identify vulnerability paths, explain how they could be exploited, and are familiar with options for mitigation. 
  • You have a working proficiency with a general-purpose programming language (ideally Python)

Bonus Points if you have

  • Familiarity with HIPAA, PCI, and the unique considerations around securing health and payments data
  • Experience creating developer focused security tooling or libraries
  • Participation in security capture-the-flag events

Responsibilities

  • Support services and tools that help product and platform engineers build, deploy, and maintain Cedar products safely and efficiently.
  • Serve as a Security Partner for multiple engineering teams across the SSDLC, evangelizing security and helping threat model features, bake security into designs, and review code and implementations
  • Contribute to security automation projects, such as static analysis, vulnerability management, and asset inventory

Applicants must be currently authorized to work in the United States on a full-time basis.

Compensation Range and Benefits

  • Salary/Hourly Rate Range*: $157,250 - $185,000
  • This role is equity eligible
  • This role offers a competitive benefits and wellness package

*Subject to location, experience, and education

#LI-VG1

#LI-REMOTE

What do we offer to the ideal candidate?

  • A chance to improve the U.S. healthcare system at a high-growth company! Our leading healthcare financial platform is scaling rapidly, helping millions of patients per year
  • Unless stated otherwise, most roles have flexibility to work from home or in the office, depending on what works best for you
  • For exempt employees: Unlimited PTO for vacation, sick and mental health days–we encourage everyone to take at least 20 days of vacation per year to ensure dedicated time to spend with loved ones, explore, rest and recharge
  • 16 weeks paid parental leave with health benefits for all parents, plus flexible re-entry schedules for returning to work
  • Diversity initiatives that encourage Cedarians to bring their whole selves to work, including three employee resource groups: be@cedar (for BIPOC-identifying Cedarians and their allies), Pridecones (for LGBTQIA+ Cedarians and their allies) and Cedar Women+ (for female-identifying Cedarians) 
  • Competitive pay, equity (for qualifying roles) and health benefits that start on the first of the month following your start date (or on your start date if your start date coincides with the first of the month)
  • Cedar matches 100% of your 401(k) contributions, up to 3% of your annual compensation
  • Access to hands-on mentorship, employee and management coaching, and a team discretionary budget for learning and development resources to help you grow both professionally and personally

About us

Cedar was co-founded by Florian Otto and Arel Lidow in 2016 after a negative medical billing experience inspired them to help improve our healthcare system. With a commitment to solving billing and patient experience issues, Cedar has become a leading healthcare technology company fueled by remarkable growth. "Over the past several years, we've raised more than $350 million in funding & have the active support of Thrive and Andreessen Horowitz (a16z).


As of November 2024, Cedar is engaging with 30 million patients annually and is on target to process $3.5 billion in patient payments annually. Cedar partners with more than 55 leading healthcare providers and payers including Highmark Inc., Allegheny Health Network, Novant Health, Allina Health and Providence.

Top Skills

Python
Security Architecture
Security Tooling
Static Analysis
Threat Modeling
Vulnerability Management

Cedar San Francisco, California, USA Office

San Francisco, California, United States, 94123

Similar Jobs at Cedar

17 Hours Ago
Easy Apply
Remote
Hybrid
United States
Easy Apply
Senior level
Senior level
Fintech • Healthtech • Software
As a Machine Learning Engineer III, you will develop and optimize ML solutions, analyze data to support product features, and collaborate with teams for continuous improvement.
Top Skills: AWSPythonSQL
2 Days Ago
Easy Apply
Remote
Hybrid
United States
Easy Apply
Senior level
Senior level
Fintech • Healthtech • Software
The Sr. Manager of Marketing Automation oversees the technical marketing infrastructure, ensures execution of marketing strategies through automation, and optimizes marketing performance using analytics and reporting.
Top Skills: AsanaCSSGrooveHTMLHubspotJIRAMarketing ApisSalesforceWordpress
4 Days Ago
Easy Apply
Remote
Hybrid
United States
Easy Apply
Mid level
Mid level
Fintech • Healthtech • Software
Cedar seeks a Software Engineer to enhance patient financial experiences by developing full stack features, collaborating across teams, and improving application reliability.
Top Skills: Code Quality StandardsData ScienceFull Stack DevelopmentProduct Design

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account