Verily

Senior Product Security Engineer

Verily Mountain View, California, United States · $166K–$186K/yr

Hospitals and Health Care · 1,001-5,000 employees

Yesterday
security Senior (5-10 yrs) Full-time United States
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

Manage vulnerability management tools and track remediation tasks to ensure compliance with contractual and regulatory standards. Engage with system owners and stakeholders to report on operational readiness and maintain certifications like FedRAMP.

What they look for

Vulnerability management Information security FedRAMP FISMA Cloud security architecture Web application security Security engineering Risk management Compliance audits GCP AWS Kubernetes Bug bounty programs Offensive security Communication skills

Requirements

Requires a bachelor's degree in a technical field and at least 5 years of experience in information security. Candidates must have strong knowledge of cloud security, vulnerability management, and federal compliance frameworks such as NIST and FedRAMP.

Benefits

Bonus Equity Health Insurance

Full description

Who We Are

Verily Health is a data platform and technology company purpose-built to power AI-enabled precision health solutions that accelerate research and improve care for individuals and communities. Uniquely positioned at the intersection of technology, data science, and healthcare, Verily transforms multimodal health data into insights, models, and actions that make healthcare more personalized, predictive, and precise.

Description

Verily is seeking an exceptional information security engineer to support our Information Security and Privacy Risk Management function. The Information Security Engineer position combines a deep understanding of common information security technologies with a strong information security background. This individual will work closely with Verily’s Governance, Risk and Compliance team to ensure weekly/monthly/annual contractual compliance is established and maintained, especially as it relates to vulnerability management. 

Responsibilities 

  • Manage tools and inputs that are part of the Vulnerability Management program. 
  • Track remediation tasks, engage with systems/services owners and stakeholders to ensure vulnerability management compliance.
  • Ensure that regulator weekly/monthly reports are provided for continual FedRAMP certifications and/or necessarily remediations (e.g., POA&M).
  • Apply prior understanding and experience of federal government compliance (e.g., FISMA, FedRAMP) to regularly report on process and operational readiness.
  • Keep abreast of new threats and vulnerabilities, and validate the risk of reported threats using vulnerability management, scanning and red team operations.

Qualifications

Minimum Qualifications 

  • BA/BS degree in Computer Science, Engineering, Management Information Systems.
  • 5 years of experience in the Information Security or related domain(s).
  • 3 years experience with NIST/FedRAMP compliance audits.
  • Strong knowledge of cloud security architecture, web application security, Vulnerability management, and security engineering.
  • Excellent written and verbal communication skills.

Preferred Qualifications

  • Experience with FedRAMP Moderate or higher.
  • Experience with GCP (preferred) or AWS, and also containerized environments (Kubernetes).
  • Experience with vulnerability management tools such as bug bounty programs, scanning and offensive security frameworks.

Qualified applicants must not require employer sponsored work authorization now or in the future for employment in the United States.

The US base salary range for this full-time position is $165,500 - $185,500 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.

Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus or benefits.

Verily Health Inc. is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here. If you'd like more information on your EEO rights under the law, please click here.

If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form.

Similar roles