See all roles

[Remote] Senior Software Engineer, Product Security

Work from home Full-time role Hiring

Note: The job is a remote job and is open to candidates in USA. Pomelo Care is the leading virtual medical practice for women and children, providing care across various stages of life. They are seeking a Senior Software Engineer, Product Security to build automation and tools that integrate security into the software development lifecycle, ensuring the protection of critical systems and patient data.

Responsibilities

  • Design and implement auth enhancements such as magic link improvements and access/audit log features to monitor access and improve transparency
  • Lead the privacy engineering initiatives including DSAR integration, building automated data deletion capabilities directly into the Pomelo mobile app and our internal platform to ensure seamless compliance
  • Own the end-to-end pentest-to-fix lifecycle, triaging reports, writing code to fix penetration test findings, remediating SAST issues, and building systems for high-volume dependency patching with regression testing
  • Build secure-by-default libraries to reduce the load on core Software Engineering by creating internal libraries and patterns that make security the default path
  • Partner with engineering leads to conduct threat modeling and ensure secure design at the earliest stages of the development process
  • Help engineering squads navigate complex security use cases, translating GRC requirements into elegant code rather than manual checklists

Skills

  • 5+ years of software engineering experience
  • Strong foundation in computer science
  • Track record of shipping production-grade code (Python, Go, Kotlin or similar)
  • Understanding of the OWASP Top 10
  • Understanding of identity flows and prompt injections
  • Ability to build systems that eliminate a class of vulnerability
  • Experience with practical automation
  • Ability to navigate ambiguity and context-switch across various engineering teams
  • Ability to build rapport with different engineering teams
  • Experience with Google Cloud Platform (GCP)
  • Experience with Github Advanced Security (GHAS)
  • Experience with Stytch, Sentry, Fullstory, Statsig or similar technology stack
  • Prior experience in healthcare data, including understanding of HIPAA, SOC 2 Type 2 and HITRUST compliance requirements
  • Experience building data infrastructure that supports AI/ML workloads
  • Experience with internal developer platforms and privacy preserving data de-identification and anonymization techniques
  • Previous work experience in a fast-paced, product-oriented startup environment

Benefits

  • Comprehensive Health, Dental, and Vision coverage for employees and their families
  • High deductible Health Plans with Health Savings Account (HSA) options
  • Flexible Spending Account (FSA)
  • Equity grant participation
  • 401(k) program
  • Competitive vacation policy
  • 16 weeks paid parental leave
  • Fully remote work flexibility (within the US)

Company Overview

  • Pomelo Care is a health technology company that develops evidence-based healthcare solutions for women and children. It was founded in 2021, and is headquartered in New York, New York, USA, with a workforce of 201-500 employees. Its website is https://pomelocare.com.
  • Apply To This Job

    You might like

    [Remote] Remote Healthcare Administrative Supervisor

    Work from home Full-time role

    [Remote] Associate Director- Financial Due Diligence Analytics

    Work from home Full-time role

    [Remote] Content Marketing Manager, Market Research

    Work from home Full-time role

    [Remote] Red Team Engineer - AI Trainer

    Work from home Full-time role

    [Remote] Regional Sales Manager - Carrier Controls

    Work from home Full-time role

    [Remote] Distribution Channel Sales Specialist

    Work from home Full-time role

    [Remote] Senior Strategic Finance Analyst

    Work from home Full-time role

    [Remote] Staff Data Scientist

    Work from home Full-time role

    [Remote] Network Engineer

    Work from home Full-time role

    [Remote] Clinical Revenue Cycle Sr Consultant

    Work from home Full-time role

    Engineering Manager

    Work from home Full-time role

    Experienced Remote Data Entry Specialist – Flexible Work Schedule and Competitive Compensation

    Work from home Full-time role

    Experienced Data Entry Medical Biller – Patient Billing and Insurance Navigation Specialist at arenaflex

    Work from home Full-time role

    Sales Representative II, Deep Brain Stimulation (DBS) - St Louis, MO

    Work from home Full-time role

    Electrical Engineer – Technical Lead - Data Centers (Remote)

    Work from home Full-time role

    Experienced Night Shift Customer Support Specialist – Flexible Remote Careers with Arenaflex

    Work from home Full-time role

    Intern Undergraduate IT (Compliance)

    Work from home Full-time role

    Remote Data Entry Specialist – Accurate Product & Customer Information Management for arenaflex E‑Commerce Platform (Work‑From‑Home, Full‑Time)

    Work from home Full-time role

    Staff Writer, Latin Pop [Remote]

    Work from home Full-time role

    Developer Experience Engineer II

    Work from home Full-time role