Medable Logo

Medable

Cloud Security Operations Engineer (GCP/AWS) - Remote

Posted One Month Ago
Remote
2 Locations
Mid level
Remote
2 Locations
Mid level
Manage and optimize cloud security posture across GCP and AWS, triage and remediate alerts/vulnerabilities, harden Kubernetes environments, implement secure baselines and guardrails, support secure AI/LLM integrations, produce compliance evidence, and participate in cloud incident response.
The summary above was generated by AI

Medable's mission is to get effective therapies to patients faster. We provide an end-to-end, agentic clinical trial platform with a flexible suite of tools that allows patients, healthcare providers, clinical research organizations and pharmaceutical sponsors to work together as a team in clinical trials. Our solutions enable more efficient clinical research, more effective healthcare delivery, and more accurate precision and predictive medicine. Our target audiences are patients, providers, principal investigators, and innovators who work in healthcare and life sciences.

Our vision is to accelerate the path to human discovery and medical cures. We are passionate about driving innovation and empowering consumers. We are proactive, collaborative, self-motivated learners, committed, bold and tenacious. We are dedicated to making this world a healthier place.

1. Responsibilities
  • Work cross-functionally with Information Security Operations and Infrastructure/DevOps teams, to administer and optimize security posture across multi-cloud (GCP/AWS) infrastructure, including native security services, IAM, logging, and threat detection.
  • Triage and respond to cloud security alerts and vulnerabilities; implement timely mitigations, configuration changes, and patches.
  • Own configuration and hygiene for cloud security consoles (examples: GCP Security Command Center, Cloud Logging, Cloud Armor, KMS, IAM, etc.).
  • Partner with DevOps to implement secure baseline configurations and guardrails (network segmentation, least privilege, encryption, key management, secrets handling, egress controls), in alignment with industry standard frameworks such as CIS, NIST 800-53, OWASP Top 10, etc.
  • Run day-to-day vulnerability workflows: detection, prioritization, remediation, and validation across cloud services, hosts, containers, and third-party dependencies.
  • Manage and harden security configurations for Kubernetes Engine environments, including:
    • Cluster and node security settings, RBAC, pod security controls, network policies, admission controls, and runtime security, Image vulnerability scanning, container supply-chain controls, patch cadence and version lifecycle management for clusters/nodes and supporting components.
  • Support secure implementations/integrations of AI within cloud infrastructure, including:
    • Data protection controls (PII/PHI handling, encryption, retention, audit logging).
    • Network controls (private connectivity where feasible, egress restrictions, proxying, allowlists).
    • Usage monitoring, abuse prevention, and security reviews for AI-driven features/workflows.
    • Contributing to internal AI security standards (prompt/data handling guidance, logging strategy, third-party risk considerations).
  • Work cross-functionally with IS Risk and Compliance team to produce evidence and reporting to support internal security requirements and external compliance obligations (e.g., SOC 2 / ISO-aligned controls, healthcare and privacy expectations).
  • Participate in security incident response for cloud-related events, including containment and recovery actions.
  • Other duties as assigned.
2. Experience
  • 4+ years of hands-on experience in cloud security, DevSecOps, cloud engineering with security focus, or security operations in cloud environments or a combination of education and experience.
  • Experience in healthcare technology and/or regulated environments (privacy, audit evidence, security control documentation).
  • Practical experience administering security controls in GCP and AWS (IAM, logging, encryption/KMS, network security, cloud security services).
  • Experience securing Kubernetes environments, including RBAC, cluster hardening, workload controls, and patch/version management.
  • Strong vulnerability management experience (triage, remediation coordination, patching workflows, validation).
  • Experience supporting secure integrations of LLM/AI services (e.g., ChatGPT/Grok) in production systems, including data governance and key management.
3. Skills
  • Ability to work cross-functionally between InfoSec and Infrastructure/DevOps, and translate security requirements into implementable controls.
  • Comfort working from tickets/alerts through to implemented changes in production cloud environments.
  • Comfortable writing code in any one programming language: Javascript/Python/Bash.
  • Familiarity with Infrastructure-as-Code and automation concepts (Terraform/CloudFormation, CI/CD pipelines, scripting).
4. Education, Certifications, Licenses
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science or a related field preferred.
  • Security certifications (one or more): GCP Professional Cloud Security Engineer, CISSP, CCSP, Security+.
5. Travel Requirements

As required.

At Medable, we believe that our team of Medaballers is our greatest asset. That is why we are committed to your personal and professional well-being. Our rewards are more than just benefits - they demonstrate our commitment to providing an inclusive, healthy and rewarding experience for all our team members.

Flexible Work

  • Remote from the start, we believe in a flexible employee experience

Compensation

  • Competitive base salaries

  • Annual performance-based bonus

  • Stock options for employees, aligning personal achievements to Medable's success

Health and Wellness

  • Comprehensive medical, dental, and vision insurance coverage

  • Carrot Fertility Program

  • Health Saving Accounts (HSA) and Flexible Spending Accounts (FSA)

  • Wellness program (Mental, Physical and Financial) 

Recognition

  • Peer-to-peer recognition program, celebrating achievements and milestones

Community Involvement

  • Volunteer time off to support causes you care about

Medable is committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or would like to request an accommodation due to a disability, please contact us at [email protected].

Similar Jobs

11 Minutes Ago
Remote or Hybrid
US
156K-241K Annually
Expert/Leader
156K-241K Annually
Expert/Leader
Information Technology
Leads AWS consulting engagements, designing and deploying cloud, DevOps, automation, infrastructure-as-code, and Kubernetes solutions for enterprise clients. Provides technical oversight across projects, supports presales and SOW reviews, develops cloud service offerings, and delivers workshops and training. Mentors engineers and architects, guides technical growth, ensures delivery excellence, and acts as an escalation point. The role also requires expertise in public cloud architecture, AI and machine learning, automation, CI/CD, and client relationship management.
Top Skills: AnsibleAWSChefCloudFormationDockerGitlab Ci/CdJenkinsKubernetesPuppetTerraform
12 Minutes Ago
Remote
United States
188K-254K Annually
Senior level
188K-254K Annually
Senior level
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
Own the full B2B SaaS sales cycle across LATAM, from outbound pipeline creation through closing. Generate demand through prospecting, account mapping, events, and partners; qualify and advance complex mid-market and enterprise opportunities using MEDDICC, SPICED, and value-selling methods. Forecast accurately, meet revenue targets, engage executive stakeholders, and help shape Dropbox’s go-to-market strategy, messaging, use cases, and sales motion.
Top Skills: Salesforce
14 Minutes Ago
Remote
USA
32-40 Hourly
Mid level
32-40 Hourly
Mid level
eCommerce • Retail
Creates performance-driven creative for paid social, YouTube, demand generation, email, and CTV campaigns. Develops video and image advertising assets, collaborates with growth and marketing teams, manages creative workflows, iterates rapidly based on testing, monitors industry trends, and maintains brand consistency while optimizing creative performance in a fast-paced e-commerce environment.
Top Skills: Adobe Creative SuiteAdobe FireflyAfter EffectsCapcutCtvFigmaGoogle AdsIllustratorMeta Ads ManagerPhotoshopPremiereTiktok AdsYoutube

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account