Back to jobs
Lead Engineer - Security
OllionSeattle, WAPosted just now
Machine Learning Engineer
Job Description
Google Chrome
Microsoft Edge
Apple Safari
Mozilla Firefox
Lead Engineer - SecurityContractPosting Location: Pune, IndiaCompany DescriptionOUR STORYWe are a global technology partner built for problems that lack playbooks. We show up with clarity, confidence, and accountability where AI ambitions outpace execution, data is complex, and cloud environments are fractured. We exist because organizations are drowning in tools, vendors, and buzzwords, while struggling to turn technology into results. Our purpose is to help our clients win by making their toughest business challenges solvable, scalable, and sustainable.WORKING AT OLLIONInnovation demands bold steps and big questions, and that’s the price of making change. We’ve got our head in the cloud and two feet on the ground, channeling tech’s endless potential towards a single goal: making a world of difference. And we’re building a global team to do just that. We are a team capable of making game-changing breakthroughs without ever losing sight of the people it will impact. This is more than consulting. This is the change you can be.THE OLLION DIFFERENCEAt Ollion, we’re all in on your independence. Our teams are seasoned. Our solutions are straightforward, sometimes even groundbreaking. And our engagements are exactly as long as you need them to be. We deliver fresh thinking and hard-earned insight in a way that works for you and your customers, arming our clients’ organization with everything they need to make their transformation truly mean something.WORKING WITH OLLION (our clients’ experiences)Progress matters more than process. Our global team of cloud-native pros is all about creating new and better ways to work, not just by solving your tech challenges, but by using technology to solve your business challenges. We keep the formulas, frameworks, and ten-point plans to a minimum, tackling your most pressing problems with a proprietary mix of good-old-fashioned ingenuity and refreshing humanity.Job DescriptionKey ResponsibilitiesClient Delivery & Consulting AdvisoryLead security discovery workshops with client stakeholders to map out security requirements across all existing and upcoming system interfaces.Translate high-level architectural requirements into actionable security user stories, tasks, and implementation roadmaps for our internal and offshore engineering teams.Evaluate technical tradeoffs between native cloud tools and agnostic platforms to ensure data portability and architectural durability for our clients.Security Architecture & DocumentationDesign and document end-to-end cloud security frameworks tailored to client environments.Document existing client controls and packages to put their organization on a clear path toward SOC 2 and HITRUST compliance.Governance & AI StrategyEstablish early-stage governance, security processes, and compliance tracking specifically tailored to Artificial Intelligence.Define long-term maintenance, security guidelines, and architecture health policies for deploying multiple automated agent groups.Vulnerability, Code Engineering & Risk ManagementEstablish policies for regular code scanning and automated code review workflows using third-party tools.Prioritize and coordinate remediation plans alongside core client development teams.Oversee security preparation for critical next-phase applications, specifically around physician-patient interaction portals.Success MetricsDelivery Velocity & Technical Enablement: Provision of complete, highly actionable technical work packages and user stories to development teams, ensuring high utilization and smooth project execution.Audit Readiness & Client Trust: Timely and comprehensive compilation of control documentation, resulting in clear paths to SOC 2 and HITRUST validation for our clients.Risk Mitigation: Proactive minimization of security flaws across interfaces through clear architecture reviews and scanning gates.Reusable IP Creation: Successful delivery of repeatable governance policies for agent workflows that can be leveraged across future managed services engagements.QualificationsExperience: 6 - 12 years of progressive experience across cybersecurity, security engineering, or security architecture domains.Domain Expertise: Proven understanding of cloud-focused API security, identity access management, network security, and data protection.Tools & Operations: Strong experience with vulnerability scanning platforms, code verification tools, and tracking development remediation.Communication: Exceptional written communication skills with explicit experience converting complex cloud landscapes into clean compliance documentation.Healthcare Industry Context: Strong domain experience in Healthcare Technology, HIPAA requirements, or patient/provider data security environments is highly desired.Compliance Frameworks: Active experience preparing technical architectures for SOC 2 and HITRUST audit frameworks.Cloud Architecture: Deep familiarity with cloud ecosystems (sp