Jobs and Careers
KY
Staff Application Security Engineer
Kyruus HealthRemote - United States, United StatesRemotefull_timeVerifiedPosted 31 Jul 2025
💰 $175,000/yr($156,000/yr – $175,000/yr)
About the role
At Kyruus Health, our mission is to connect people to the right care, in pursuit of our vision: a better healthcare system- one that's transparent and accessible- where everyone gets the care they need. Our values are at the heart of everything we do:
We care deeply – We do the right thing even if it’s the harder thing. We are fiercely driven – We harness our curiosity to pursue continuous improvement and create simple solutions to complex problems.We lead with respect – We celebrate the individual traits that make each of us unique and seek out different voices to listen and learn.We are accountable – We do what we promise for each other and our customers.
Here’s what that would mean for you in the Staff Application Security Engineer role. Care: You care about our patients, our customers, our employees and our company. You want to do everything you can to keep them and their data safe. Driven: You want to build the best Information Security program possible. Respect: You respect the other departments at Kyruus Health. Security should be an enabler of their success. Accountable: You value our compliance certifications and look to improve with each assessment cycle.
We care deeply – We do the right thing even if it’s the harder thing. We are fiercely driven – We harness our curiosity to pursue continuous improvement and create simple solutions to complex problems.We lead with respect – We celebrate the individual traits that make each of us unique and seek out different voices to listen and learn.We are accountable – We do what we promise for each other and our customers.
Here’s what that would mean for you in the Staff Application Security Engineer role. Care: You care about our patients, our customers, our employees and our company. You want to do everything you can to keep them and their data safe. Driven: You want to build the best Information Security program possible. Respect: You respect the other departments at Kyruus Health. Security should be an enabler of their success. Accountable: You value our compliance certifications and look to improve with each assessment cycle.
What you will do in a Staff Application Security Engineer role at Kyruus Health:
- Application Security Strategy: Lead and champion the Kyruus Health strategy for Application Security as it relates to our product portfolio for Payers, Providers, and Medical Groups.
- Leadership & Influence: Act as the internal expert, leading key outcomes and solutions within application security. You'll effectively communicate with and influence senior stakeholders and all organizational levels, providing expert guidance on complex application security challenges. You'll also influence and drive security initiatives across the organization, contributing to the overall organizational security strategy.
- Application Security Architecture & Design: Leverage your deep understanding of application security architecture and design principles to design and implement secure coding standards and guidelines. You'll provide expert security guidance to development teams, ensuring security is baked in from the ground up.
- Security Assessments & Remediation: Lead complex security assessments and penetration testing engagements, performing in-depth code reviews and basic skills in threat modeling and risk assessment. You'll proactively monitor relevant threat intelligence and communicate critical findings to the Information Security Team and other stakeholders.
- Secure Development Lifecycle (SDLC): Drive the implementation and enhancement of our Secure SDLC, ensuring security is integrated seamlessly throughout.
- Mentorship & Training: Mentor other application security engineers, as well as software engineers, fostering a culture of continuous learning and growth. You'll also develop and deliver tailored security training and awareness programs, specifically focused on AppSec best practices, to various audiences across the organization.
- Risk Management & Communication: Effectively communicate complex security concepts, risks, and recommendations to various audiences, including senior management. You'll leverage your understanding of security governance, risk, and compliance (GRC) to ensure our applications meet rigorous security standards.
- Innovation & Best Practices: Introduce improvements based on fact-based analysis or benchmarking, leading to higher levels of performance. You'll demonstrate in-depth knowledge of security best practices and industry standards, consistently challenging the status quo to accelerate disruption and foster an environment where innovation and calculated risks are encouraged.
- Independent Judgment & Ownership: Exercise independent judgment in methods and techniques, creating formal networks for cross-group coordination. You'll positively and productively own failures, displaying ownership for others to witness, and prioritize and deliver on commitments efficiently to build trust with stakeholders.
- Adaptability & Resilience: React quickly, synthesize diverse feedback, and align relevant stakeholders to urgent, ever-changing priorities. You'll exhibit mental fortitude and grit, maintaining passion, perseverance, and consistency when facing adversity and difficult challenges.
- You’ll report to the Senior Director, Information Security in the Information Security Department within the Engineering & Technology
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s