Founding Security Engineer

ForusNew York, NY
Onsite

About The Position

As a Founding Security Engineer at Forus, you will own how we protect the sensitive healthcare data at the core of our business. We automate the access workflows that determine whether patients get the care they need, which means we operate on protected health information at scale. Earning the trust of providers, payers, and life sciences partners depends on getting security right, and you will build that foundation. This is a broad, deeply technical role. You will own cloud and infrastructure security across AWS and GCP, build security into the product, secure how our AI systems handle sensitive data, and stand up detection and incident response, including the audit trails that prove how protected data is accessed. As the first security engineer, you set the technical bar for how Forus builds securely as we scale. This is a demanding role, with a high level of autonomy and responsibility. You will be expected to act like an owner and commit yourself to Forus’ success. If you are low-ego, hungry to learn, and excited about intense, impactful work that drives both company growth and accelerated career progression, we want to hear from you.

Requirements

  • 7+ years in security engineering built on a strong software engineering foundation. You design and implement, not just review.
  • Deep, hands-on cloud security across AWS and/or GCP with real infrastructure-as-code experience. You have built security foundations, not just configured managed services.
  • Range across multiple security domains - infrastructure, application, identity, and detection and response - with the judgment to operate as the first and only security engineer.
  • Experience protecting sensitive data at scale; familiarity working with PHI and HIPAA is a strong plus.
  • Comfort designing security for LLMs and AI agents.
  • A track record of moving quickly, finding shortcuts, and going to unreasonable lengths to deliver on goals.
  • High NPS with your former teammates.

Responsibilities

  • Own cloud and infrastructure security (AWS, GCP): build guardrails, identity and network architecture, secrets management, and secure-by-default primitives.
  • Build security into the product: lead secure design and code reviews, harden authentication and authorization, and ship libraries and tooling that make the secure path the easiest one.
  • Own detection, logging, and incident response, including audit trails for how protected health information is accessed, and lead the technical response when something goes wrong.
  • Secure our corporate and identity surface: SSO, device and endpoint security, SaaS hardening, and access across the employee lifecycle.
  • Secure how our agentic AI systems handle sensitive data: designing isolation and data-flow controls and defending against leakage across our model pipelines.
  • Build the automation and "security as code" that lets engineers move fast, and implement the technical controls behind SOC 2, HIPAA, and HITRUST.
  • Partner with legal and GTM teams to translate compliance and customer requirements into controls that actually ship.

Benefits

  • Competitive compensation with meaningful equity
  • Fully covered medical, vision, and dental insurance
  • Memberships for One Medical, Talkspace, Teladoc, and Kindbody
  • Unlimited paid time off (PTO)
  • 16 weeks of parental leave
  • 401K plan setup
  • FSA option
  • Commuter benefits
  • DashPass
  • Lunch at the office every day
  • Dinner at the office after 7 pm
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service