← Back to job listings
AK
IT Security Operations Engineer
AKASA · United States
About The Role
Join AKASA, a fast-paced startup in the healthcare technology sector. As an IT Security Operations Engineer, you will be responsible for maintaining and improving the security configurations that keep AKASA running smoothly. You will implement and tune data loss prevention policies, operate AI-powered email security, configure endpoint detection and response, and lead incident response efforts. This role offers unlimited paid time off, expansive health coverage, and a 401(K) plan.
- Assurer la configuration et la sécurité des systèmes, en mettant en œuvre et en ajustant les politiques de prévention des pertes de données (DLP) et de sécurité des e-mails.
- Automatiser les tests de sécurité, les rapports et la formation, en construisant des rapports qui produisent les métriques nécessaires.
- Diriger la réponse aux incidents, en maintenant les manuels d'exploitation, en rejoignant la rotation d'astreinte et en dirigeant les enquêtes.
- This role is ideal for someone who thrives in startup environments and wants to join a small but mighty team and have immediate impact
- The ideal candidate can context-switch with ease, build scalable solutions from scratch, and genuinely enjoys empowering their colleagues through technology and mentorship
- AKASA is a fast-paced startup environment, and we look for people who are agile, organized, and have an ownership mindset
- Production experience reviewing and configuring security settings in Okta (or an equivalent IdP) and Google Workspace at meaningful scale
- Hands-on experience deploying or operating a DLP product across SaaS and endpoints
- Experience with AI/ML-driven email security tooling or modern SEGs (Abnormal, Material, Sublime, Proofpoint, Mimecast)
- 4+ years in security operations, IT security, or a closely related role
- Strong written communication. You can document a system clearly enough that a teammate can operate it without you
- Comfort writing scripts and small services (Python, Go, or TypeScript) to automate repetitive work and integrate APIs
- Working knowledge of at least one compliance framework relevant to our environment: HIPAA, HITRUST, SOC 2, or ISO 27001
- Ownership mindset. You see something broken and fix it. You don't wait for a ticket to act on a problem you can solve, and you take a project from "idea" to "in production" without needing to be project-managed through it
- Prior experience in healthcare or another regulated industry handling sensitive data
- Familiarity with Terraform, especially for identity and SaaS configuration
- Experience with Mac fleet management (Kandji, Jamf) and modern device trust (Okta Device Trust, SecureW2, EAP-TLS)
- Background running phishing simulation and security awareness programs (KnowBe4, Hoxhunt, Living Security)
- Experience integrating LLM or AI tooling into a security workflow (triage, summarization, evidence collection)
- Incident response experience, including investigations involving SaaS account compromise
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring