Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Staff Security Engineer role.
Rezi rewrites your resume against Ambience Healthcare's job description. Free.

Tailor your resume to this Staff Security Engineer role.
Rezi rewrites your resume against Ambience Healthcare's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Staff Security Engineer posting at Ambience Healthcare — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Staff Security Engineer posting at Ambience Healthcare — free, in seconds.
About the Role
This senior technical role focuses on designing, building, and operating secure products, extending impact into cloud security as the AWS environment evolves. You will partner with engineering from design through verification on high-risk changes and foundational product capabilities, owning security analysis, technical requirements, risk decisions, and tooling.
Responsibilities
- Guide initiatives from design proposals and architecture decisions through implementation and verification.
- Define threat models and security requirements, review sensitive implementation paths, and contribute prototypes, automation, or PRs.
- Own findings from product reviews, bug bounty, penetration tests, audits, cloud tooling, and hands-on testing.
- Validate impact, recommend practical mitigations, and drive material issues to verified resolution or explicit risk acceptance.
- Expand security coverage through guidance, developer enablement, automation, and well-operated tooling.
- Own tools across integration, tuning, triage, maintenance, and measurement, and improve or retire those that aren’t reducing risk.
- Partner with Platform and Infrastructure Engineering to reduce risk across IAM, network segmentation, workload isolation, secrets, logging, and configuration.
- Apply strong security fundamentals while building deeper AWS expertise, operationalizing our CNAPP, and establishing practical guardrails.
- Reduce risk across production, development, software delivery, enterprise AI, and internal systems.
- Help scope and remediate incidents, then turn lessons learned into durable improvements and secure paved paths.
Requirements
- Staff-level product security judgment, typically developed through 8+ years of experience.
- Depth to operate independently across complex product security challenges and range to extend into adjacent areas such as cloud security.
- Shipped production code, built meaningful software or automation recently.
- Strong in at least one backend or automation language such as Go, Python, Java, or TypeScript.
- Understanding of authentication and authorization, including OAuth, OIDC, SAML, JWT, RBAC, and ReBAC.
- Understanding of API security, threat modeling, secure code review, vulnerability testing, and multi-tenant SaaS handling sensitive data.
- Working knowledge of cloud security concepts such as IAM, network architecture, workload isolation, secrets, and logging, or a demonstrated ability to develop that expertise quickly.
- Ability to reproduce vulnerabilities, conduct targeted dynamic testing, build proof-of-concept exploits, and distinguish exploitable risk from theoretical concern.
- Demonstrated ability to help engineering teams understand, prioritize, remediate, and verify material security risks.
- Experience owning security tooling or automation beyond deployment, including integration, tuning, triage, maintenance, and evaluation.
- Experience using AI as a force multiplier to develop depth in unfamiliar domains, expand coverage, and move with greater speed.
- Ability to validate AI output against first principles and remain accountable for every technical and security decision.
Skills
- Product Security
- Cloud Security
- AWS
- IAM
- Network Segmentation
- Workload Isolation
- Secrets Management
- Logging
- Configuration Management
- CNAPP
- Go
- Python
- Java
- TypeScript
- OAuth
- OIDC
- SAML
- JWT
- RBAC
- ReBAC
- API Security
- Threat Modeling
- Secure Code Review
- Vulnerability Testing
- Multi-tenant SaaS
- AI-augmented security engineering
Location
- San Francisco, CA
- Remote
Work Type
- Hybrid
- Full-time
Experience Level
- Senior
- Staff-level
Salary/Compensations
- $226k — $283k per year
Benefits
- Comprehensive medical, dental, and vision coverage for you and your dependents
- 401(k) with a company match of up to 3% of base salary
- Full equipment provisioning
- Parental leave
- Annual company-wide off-sites, team off-sites and regular team lunches and all-hands gatherings, with travel, lodging and meals covered
- Flexible time off with no annual cap
- Company-wide holidays
- Annual holiday shutdown from December 24–January 1
About the Company
- Ambience is building the AI intelligence platform that restores humanity to healthcare and drives meaningful ROI for health systems across the country.
- Our technology helps providers focus on delivering great care by removing the administrative burden that pulls them away from patients and away from their most impactful work.
- Ambience delivers real-time coding-aware documentation and clinical workflow support across ambulatory, emergency and inpatient settings at the top health systems in North America.
- Our teams operate relentlessly with extreme ownership to build the best solutions for our health system partners.
- We value candor, positivity and deep thought — and we expect a lot from each other because we know the problems we’re solving truly matter.
- Ambience was ranked #1 for Improving the Clinician Experience in the KLAS Research Emerging Solutions Top 20 Report, recognized by Fast Company as one of the Next Big Things in Tech, named one of the best AI companies in healthcare by Inc., and selected as a LinkedIn Top Startup in 2024 and 2025.
- We’re backed by Oak HC/FT, Andreessen Horowitz (a16z), OpenAI Startup Fund, and Kleiner Perkins.
Equal Opportunity
- Ambience Healthcare is an equal opportunity employer and is committed to building a diverse and inclusive workplace.
- We do not discriminate on the basis of race, color, religion, sex, gender identity or expression, sexual orientation, national origin, age, disability, veteran status, genetic information, or any other legally protected status.
- We encourage applicants from all backgrounds to apply.
- Ambience is committed to supporting every candidate’s ability to fully participate in our hiring process.
- If you need any accommodations during your application or interviews, please reach out to our Recruiting team at accommodations@ambiencehealthcare.com. We’ll handle your request confidentially and work with you to ensure an accessible and equitable experience for all candidates.