Home › Companies › Hinge Health › Lead Security Engineer
Lead Security Engineer
Hinge Health · Remote US · Remote · Active · Ashby
Job facts
| Field | Value |
|---|---|
| Company | Hinge Health |
| Title | Lead Security Engineer |
| Normalized title | - |
| Department / team | RnD / RnD, Security |
| Location | United States |
| Work model | Remote / Remote |
| Employment type | Full Time |
| Salary | - |
| Status | active |
| ATS provider | Ashby |
| Posted / first seen | — / 2026-05-29 |
| Changed / last seen | 2026-06-04 / 2026-06-06 |
Related slices
| Page | What it contains | Open |
|---|---|---|
| Company jobs | Active postings from Hinge Health. | Open |
| Company breakdowns | Role, location, ATS, and work model facets for this company. | Open |
| ATS provider jobs | Active postings observed through Ashby. | Open |
| Provider filtered search | The same provider as a filtered job collection. | Open |
| Department jobs | Active postings in RnD. | Open |
| Work model jobs | Active Remote postings. | Open |
| Lifecycle events | Open, update, close, and reopen events for this posting. | Open |
| Original posting | Canonical source or apply URL captured from the ATS. | Open |
Linked records
| Company | Hinge Health |
| Source | 3db575b9-6248-4090-a5be-0c0fcb62703e |
| ATS provider | Ashby |
Description
The Opportunity Join the team securing the platform that helps millions of people move beyond musculoskeletal pain. As Hinge Health's engineering organization embraces AI-assisted development — including AI-powered code generation, automated PR review workflows, agent sandboxing, and MCP gateway integrations — we need a Lead Security Engineer who will build the security guardrails, tooling, and standards that ensure we ship with confidence. You'll sit at the critical intersection of cloud security , AI-enabled engineering , and identity & access management , partnering closely with Application Security, SRE, and R&D Engineering to design and enforce security-by-design principles across our AWS environment, CI/CD pipelines, and developer tooling. This is your chance to make a real impact on the lives of millions by driving advancements in healthcare security — ensuring utmost compliance and privacy while enabling engineers to move fast and safely.
Candidates must be within commuting distance to New York City
Who You Are A Security-First Thinker : You instinctively design systems that are secure by default, and you know how to balance security rigor with engineering velocity.
An AI-Savvy Engineer : You're energized (not intimidated) by the rapid adoption of AI-assisted development and see it as an opportunity to build novel security frameworks.
A Trust Builder : You communicate effectively across engineering, compliance, and leadership teams — authoring clear, plain-spoken technical proposals that drive alignment.
A Learn-it-all : You stay ahead of emerging threats and continuously evolve your approach — from adversarial ML to supply chain attacks on AI pipelines.
A Leader at All Levels : You're hands-on in code and architecture, but you also mentor others and help the team self-organize around measurable outcomes.
Basic Qualifications Bachelor's degree in a technical, engineering, or scientific field — or comparable education/experience
7+ years in cybersecurity, with 3+ years focused on security operations or IAM
5+ years of experience in cloud security operations, specifically AWS
3+ years of coding experience (e.g., Python, Go, or TypeScript) with hands-on experience developing Terraform and infrastructure-as-code
Hands-on experience securing AI/ML systems, including data pipelines, model deployments, API integrations, and their security challenges
Preferred Qualifications AWS Solutions Architect or Security Specialty certification
AI/ML security certifications or familiarity with adversarial machine learning threats and mitigation strategies
Experience building or integrating security controls into CI/CD pipelines and AI-assisted development workflows
Experience managing an Enterprise IdP, especially Okta, with deep understanding of OAuth 2.0 and SAML
SOC 2, PCI, or HIPAA audit/training certifications
Knowledge of low-level networking principles
What You'll Accomplish In your first 3 months:
Audit current cloud security posture and IAM architecture across our AWS environment; build relationships with key stakeholders in Application Security, SRE, and R&D Engineering.
Assess existing AI-assisted development tooling (Claude Code, Cursor, MCP gateway) for security risks and begin developing a governance framework.
In your first 6 months:
Design and implement AI-driven tools and workflows to enhance security monitoring, threat detection, incident response, and IAM governance.
Develop and enforce policies and protocols to protect AI tools and platforms from misuse, data breaches, and external threats — including secure agent sandboxing and MCP server governance.
Deliver IAM solutions enabling secure, granular access controls that enforce least privilege principles, utilizing automation and AI for privilege escalation and approvals.
In your first year:
Own the security strategy for AI-enabled development and cloud infrastructure, acting as the primary subject matter expert for security engineering across the organization.
Ensure all compliance regulations — including HIPAA, privacy, and relevant security frameworks — are met for new services, AI tooling, and infrastructure.
Develop and drive cybersecurity initiatives related to incident response, threat intelligence, vulnerability management, and monitoring tools.
Mentor team members in adopting new security tools and processes; educate the broader organization through knowledge-sharing sessions and author clear technical proposals with measurable security OKRs.
About Hinge Health At Hinge Health, we're using technology to scale and automate the delivery of healthcare – starting with musculoskeletal (MSK) conditions, which affect over 1.7 billion people worldwide. With an AI-powered human-centered care model, Hinge Health leverages cutting-edge technology to improve outcomes, experiences and costs to help people move beyond their pain. The platform addresses a broad spectrum of MSK care – from acute injury, to chronic pain, to post-surgical rehabilitation – through personalized, evidence-based care. As the preferred partner to 50+ health plans, PBMs and other ecosystem partners, Hinge Health is available to over 20 million people across more than 2,550 employers. The company is headquartered in San Francisco with additional offices in Montreal and Bangalore.
Learn more at hingehealth.com
What You'll Love About Us Inclusive healthcare and benefits : On top of comprehensive medical, dental, and vision coverage, we offer employees and their family members help with gender-affirming care, tools for family and fertility planning, and travel reimbursements if healthcare isn't available where you live.
Planning for the future : Start saving for the future with our traditional or Roth 401k retirement plan options which include a 2% company match.
Modern life stipends : Manage your own learning and development.
Culture & Engagement Hinge Health is an equal opportunity employer and prohibits discrimination and harassment of any kind. We make employment decisions without regards to race, color, religion, sex, sexual orientation, gender identity, national origin, age, veteran status, disability status, pregnancy, or any other basis protected by federal, state or local law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. We provide reasonable accommodations for candidates with disabilities. If you feel you need assistance or an accommodation due to a disability, let us know by reaching out to your recruiter. By submitting your application you are acknowledging we are using your personal data as outlined in the personnel and candidate privacy policy .
Beware of Phishing Attempts: We've noticed an increase in phishing where fraudsters impersonate employees and send fake job offers to steal sensitive information. We'll never ask for financial details during the hiring process and only use "@ hingehealth.com " emails. If you receive a suspicious offer, stop communication and report it to the US FBI Internet Crime Complaint Center. To verify an email from our recruiting team, forward it to [email protected] .
Full job record
| Job ID | a4f24d38a457e2218ff2e8fb9cd559c64fe7b083 |
| Org ID | 22380f24-eebb-4e73-babf-53265596000a |
| Source ID | 3db575b9-6248-4090-a5be-0c0fcb62703e |
| Board ID | 3db575b9-6248-4090-a5be-0c0fcb62703e |
| Provider | ashby |
| Provider Job Key | da7155c4-75c7-418a-a693-2171d6095d4b |
| Title | Lead Security Engineer |
| Normalized Title | — |
| Status | active |
| Active | yes |
| Location Text | Remote US |
| Department | RnD |
| Team | RnD, Security |
| Employment Type | full_time |
| Workplace Type | remote |
| Remote Policy | remote |
| Country | United States |
| Region | — |
| City | — |
| Salary Raw | — |
| Salary Min | — |
| Salary Max | — |
| Salary Currency | — |
| Salary Period | — |
| Source URL | https://jobs.ashbyhq.com/hinge-health/da7155c4-75c7-418a-a693-2171d6095d4b |
| Apply URL | https://jobs.ashbyhq.com/hinge-health/da7155c4-75c7-418a-a693-2171d6095d4b/application |
| First Seen At | 2026-05-29 05:49:10Z |
| Last Seen At | 2026-06-06 20:00:31Z |
| Last Checked At | 2026-06-06 20:00:31Z |
| Last Changed At | 2026-06-04 13:18:13Z |
| Inactive At | — |
| Source Posted At | — |
| Source Updated At | — |
| Raw Payload Uri | s3://job-postings-prod-raw-590183727216/raw/provider=ashby/board=hinge-health/date=2026-06-06/2026-06-06T20-00-22-594Z-98ee4b96c75a1f850c3eb2d28c8d04182f1f8f1757ac1f23225859b8ea2a9380.json |
Event Fields
{
"content_hash": "bd7bef969b31969b89caeb3dc7e4522f7dbccdc853e066e2981e2b28515db235",
"source_hash": "7d74bc98fed845324348fd6d78a4ff4a96635acf2f279ef3e6a2643476efc3d4",
"last_changed_at": "2026-06-04T13:18:13.767Z",
"active_status": "active"
}Parsed Structured
{
"language": "en",
"location": {
"raw": "Remote US",
"city": null,
"region": null,
"country": "United States",
"is_remote": true,
"confidence": 0.95
},
"salary_max": null,
"salary_min": null,
"inferred_at": "2026-06-06T20:00:31.527Z",
"launch_scope": {
"reason": "english_us_canada",
"included": true,
"language": "en",
"location": {
"raw": "Remote US",
"city": null,
"region": null,
"country": "United States",
"is_remote": true,
"confidence": 0.95
},
"countries": [
"United States"
]
},
"remote_policy": "remote",
"salary_period": null,
"workplace_type": "remote",
"salary_currency": null
}Extensions
{}Native Structured
{
"id": "da7155c4-75c7-418a-a693-2171d6095d4b",
"team": "RnD, Security",
"title": "Lead Security Engineer",
"jobUrl": "https://jobs.ashbyhq.com/hinge-health/da7155c4-75c7-418a-a693-2171d6095d4b",
"address": null,
"applyUrl": "https://jobs.ashbyhq.com/hinge-health/da7155c4-75c7-418a-a693-2171d6095d4b/application",
"isListed": true,
"isRemote": true,
"location": "Remote US",
"updatedAt": null,
"apiVersion": "ashby-non-user-graphql-v1",
"department": "RnD",
"publishedAt": null,
"workplaceType": "Remote",
"employmentType": "FullTime",
"secondaryLocations": [
{
"location": "Remote US"
}
]
}Get this page with API
Rendered from the bluedoor Job Postings API. Reproduce it:
GET https://api.bluedoor.sh/job-postings/v1/jobs/a4f24d38a457e2218ff2e8fb9cd559c64fe7b083?include=descriptionJSONGET https://api.bluedoor.sh/job-postings/v1/orgs/22380f24-eebb-4e73-babf-53265596000aJSONGET https://api.bluedoor.sh/job-postings/v1/sources/3db575b9-6248-4090-a5be-0c0fcb62703eJSONGET https://api.bluedoor.sh/job-postings/v1/jobs/a4f24d38a457e2218ff2e8fb9cd559c64fe7b083/eventsJSON