Senior DevSecOps Engineer

Vida Health
72d$145,000 - $175,000

About The Position

At Vida, we help people get better- and we're helping the healthcare system get better, too. Vida is a virtual, personalized obesity care provider that uses evidence-based treatment to help patients manage obesity and related conditions like diabetes, high blood pressure, anxiety and depression. Vida's team of Obesity Medicine-Certified Physicians, Registered Dietitians, Expert Coaches and Licensed Therapists takes a whole-person approach to care, helping people lose weight, reduce stress and improve their overall health. By combining advanced technology with top-notch healthcare providers, Vida is breaking down the barriers that have historically kept people from getting the best care. It's trusted by Fortune 100 companies, major national payers and large providers to enable their employees to live their healthiest lives. We’re seeking a Senior DevSecOps Engineer to strengthen the security, resilience and reliability of Vida’s cloud-based healthcare platform. This role is ideal for an engineer who thrives at the intersection of security, cloud infrastructure and automation- building scalable, compliant systems that protect regulated data while enabling developer velocity. You will work closely with our infrastructure, application and compliance teams to ensure that Vida’s systems meet the highest standards for security, observability and operational excellence across our public cloud environment (Google Cloud Platform).

Requirements

  • Bachelor’s Degree in Computer Science, Engineering or related field- or equivalent practical experience.
  • 6+ years of experience in DevOps, Cloud Infrastructure or Security Engineering roles, including production support.
  • Strong hands-on expertise with GCP (preferred) or another major public cloud (AWS, Azure).
  • Deep experience managing infrastructure via Terraform or similar IaC tools.
  • Demonstrated knowledge of container orchestration and Kubernetes security best practices.
  • Experience securing CI/CD pipelines using tools like GitHub Actions, Jenkins or GitLab CI.
  • Strong familiarity with application and dependency scanning tools (e.g., Snyk, Trivy, Dependabot).
  • Proficiency in Python, Go or Bash scripting for automation and tooling.
  • Experience implementing Zero Trust, network segmentation and service identity-based access controls.
  • Hands-on knowledge of monitoring and observability platforms (e.g., Datadog, Prometheus, Grafana).
  • Understanding of security compliance frameworks (HIPAA, HITRUST, NIST 800-53).

Nice To Haves

  • Experience in GCP-native security services (Cloud Armor, SCC, IAM Analyzer, Cloud KMS).
  • Familiarity with automated compliance and policy-as-code (e.g., OPA, Conftest, Checkov).
  • Exposure to incident detection and response tools, including Cloud IDS and SIEM platforms.
  • Background in healthcare or other regulated data environments.

Responsibilities

  • Own the security posture of Vida’s cloud infrastructure, implementing best practices for regulated environments (HIPAA, HITRUST).
  • Manage and enhance infrastructure-as-code (Terraform) for GCP, ensuring configurations adhere to least privilege and zero trust principles.
  • Implement and maintain monitoring, logging and alerting frameworks across production systems using tools like Datadog, Prometheus and GCP Cloud Logging.
  • Oversee vulnerability management, including patching, dependency scanning and automated remediation workflows.
  • Partner with engineering teams to embed security controls within CI/CD pipelines (GitHub Actions or similar), aligning with secure software development lifecycle (SSDLC) practices.
  • Conduct threat modeling and risk assessments for new services and architecture changes.
  • Manage and optimize container security in Kubernetes (GKE), including image scanning, runtime protection and secrets management.
  • Collaborate with compliance teams on audit evidence automation and support for security certifications (HITRUST, SOC 2, etc.).
  • Lead incident response and postmortem analysis for security-related events.
  • Mentor Engineers on secure development and deployment practices, fostering a culture of security by design.

Benefits

  • $145,000 - $175,000 a year
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service