Security Engineer
About the product
Our client is a US-based healthcare technology company that develops medical-device technology and provides remote cardiac monitoring services. Its environment combines connected medical devices, cloud software, and clinical workflows, with a strong focus on service reliability, patient-data security, and regulatory compliance.
Your team
You’ll be part of the security function of a US-based company and will report directly to the CISO. Day to day, you’ll work with the DevOps team and with colleagues from software engineering, Corporate IT, Clinical Operations, and Quality/Regulatory. Your shift covers the hours when the US team is offline, so you’ll own your coverage window and hand over to the US Central team with clear written updates.
Tech stack
- AWS: IAM, Identity Center, EC2, VPC, S3, RDS/Aurora, CloudWatch, CloudTrail, GuardDuty, Inspector, KMS, Systems Manager, Secrets Manager
- Microsoft: Microsoft 365, Entra ID, Intune, Windows Autopilot, Microsoft Defender
- Systems: Windows and Linux administration
- IaC and automation: Terraform and/or CloudFormation, PowerShell, Python or Bash, Microsoft Graph and AWS APIs
- Security platforms: Cloudflare Zero Trust, Purview, MDR platforms
- Fundamentals: networking, DNS, TLS, identity, logging, cloud security
You’re not expected to know every tool on this list. Your ability to learn fast and close gaps on your own matters more.
Your responsibilities
- Operate, secure, and troubleshoot AWS infrastructure across multiple accounts
- Administer Microsoft 365, Entra ID, Intune, Defender, Exchange Online, Teams, SharePoint, and OneDrive
- Manage identity, access, endpoint compliance, and secure SaaS integrations
- Monitor security and service health, investigate alerts, and coordinate incident response
- Support backup, recovery, patching, capacity management, and infrastructure as code
- Maintain controls and audit-ready evidence for HIPAA, SOC 2, HITRUST, and other regulatory requirements
- Create automation, operational documentation, and runbooks
- Prepare clear handoffs to the US team at the end of each shift
- Participate in planned maintenance
It’s about you
Must have:
- Experience working in a SOC 2-compliant organization, including at least one audit or assessment cycle
- Hands-on experience with MDR/SIEM tools
- Experience with tools similar to Cloudflare Zero Trust
- Hands-on AWS administration (AWS should be your strongest platform)
- 5+ years of experience in infrastructure engineering, systems administration, cloud operations, or security operations, with independent ownership of production systems
- Working-level experience with Microsoft 365 and Entra ID, plus a basic understanding of Intune
- Experience with Windows endpoints and Windows/Linux servers
- Strong troubleshooting skills across cloud infrastructure, networking, identity, and security
- Experience with incident response, endpoint security, vulnerability management, and patching
- Strong PowerShell and practical Python or Bash skills
- Good written English, independent ownership, and effective remote collaboration
- Ability to learn fast and fill knowledge gaps on your own
Nice to have:
- Knowledge of HIPAA and HITRUST practices
- Hands-on experience with Cloudflare Zero Trust and Purview
- Deeper Intune and Windows Autopilot experience
- Terraform and/or CloudFormation
- Experience in healthcare, medical devices, or another regulated industry
How to join Techstack
- Pre-screening with a recruiter
- Review of your resume by experts
- English check
- Interview with our experts
- Interview with our client
- Technical test task (optional)
Culture:
At Techstack, we care about how we build products — not only about the result, but also about the quality of the engineering process and the way we work together.
We encourage people to keep learning, share what they know, and take ownership of their work.
Tech Guilds — communities where specialists share knowledge, discuss technical solutions and approaches, and keep up with industry trends.
Meetups and knowledge sharing — opportunities to share your experience with colleagues and the wider tech community.
Mentoring and leadership — opportunities to grow as a mentor, technical lead, or take on other roles where you can support others and share your expertise.
We believe that good products come from people who care about what they build, keep developing their expertise, and are comfortable both challenging ideas and being challenged.
What we have for you:
- Flexible work format — remote work or one of our hubs in Kyiv, Lviv, Kharkiv, or Wrocław, plus flexible working hours.
- Professional growth — Tech Guilds, mentoring, meetups, knowledge sharing, and other development opportunities.
- Education support — 50% compensation for professional courses, trainings, webinars, and certifications.
- English — free General English, Business English, and speaking clubs.
- Time off — 20 paid days off and 7 paid sick days per year, plus additional days off.
- Support — legal and accounting support.
- Community — online and offline team activities, professional events, and appreciation gifts.