FlexHired LogoFlexHired
Logo of Thirty Madison

Thirty Madison

Senior Engineer ll, Security

Job Summary

The Senior Security Engineer - Incident Response is responsible for building and enhancing detection programs, responding to security incidents across various systems, and improving cloud security posture through collaboration with multiple teams. The role requires expertise in detection engineering, cloud security (especially AWS), and incident response, with a focus on risk assessment and threat research. Candidates should have experience with security tools like SIEM, EDR, CSPM, and Infrastructure as Code, and possess strong problem-solving and collaboration skills. The position emphasizes proactive security design, automation, and supporting a safe healthcare environment for patients and staff.

Required Skills

Problem Solving
Collaboration
Risk Assessment
Automation
Cloud Security
Infrastructure as Code
Security Architecture
Security Incident Response
IAM
SIEM
EDR
Threat Analysis
Detection Engineering
AWS Security
CSPM
Threat Landscape
Secure Configuration

Benefits

Medical Insurance
Dental Insurance
Vision Insurance
Flexible Time Off
FSA
Commuter Benefits
401(k) with Match
Happiness Stipend
Vacation Stipend

Job Description

As our Senior Security Engineer - Incident Response, you will be working alongside an existing team of experienced security engineers and partnering closely with technologists across the company to help build digital health security and protect our patients here at Thirty Madison! We serve our patients from start to finish, and security works the same way, all the way from the deepest infrastructure to the patient experience, we want our patients to be safer by being with Thirty Madison. Above all, you embody the Thirty Madison mission of providing access to healthcare for all who suffer from chronic conditions.

Comp | Perks | Benefits

  • The base pay range for this position is $174,400 - $239,800 per year.**
  • Annual Incentive Plan + Stock Option Package
  • Robust and affordable Medical, Dental, and Vision plan options
  • 401(k) with a match, commuter benefits, and FSA
  • Annual $750 vacation stipend and $500 happiness stipend
  • Flexible time off policy

**Base pay offered may vary depending on job-related knowledge, skills, and experience. An annual incentive plan and stock options may be provided as part of the compensation package, in addition to a full range of medical, financial, and/or other benefits, dependent on the position offered.

What you get to do every day

  • Build and mature a detection engineering program
  • Detect and respond to security incidents and participate in an incident on-call rotation
  • Develop innovative ways to detect security incidents.
  • Design and build the security for the future of our infrastructure.
  • Partner with the infrastructure team, engineering team, compliance team and within security teams to maintain and further improve our cloud security posture.
  • Create solutions and processes to identify, resolve and mitigate security vulnerabilities and risks.
  • Research threats and attack vectors that impact Thirty Madison’s applications and infrastructure.
  • Devise and bolster defense-in-depth through secure-by-default frameworks, architectures and processes.
  • Mentor and share security standards and processes with all parts of the organization.
  • Other duties as assigned

What you bring to the role

  • Expertise responding to complex incidents across endpoint, network, and cloud.
  • Capable of understanding an unfamiliar system enough to successfully respond to an incident involving the system.
  • Expertise in detection engineering.
  • Experience with SIEM, EDR, and CSPM tools.
  • Deep understanding of the threat landscape.
  • Experience with assessing risks.
  • Experience in cloud security, especially for AWS, anything to do with IAM, secure configuration of services, AWS native security services like AWS Cloudtrail, SCP’s, AWS Org, Config etc.
  • Ability to understand the whole solution, not just the technology.
  • Focus on the end to end lifecycle of solving a problem and solutioning for it and not just implementing a security technology. Have a well-rounded view for problem solving.
  • Deep care for the patient and your fellow employees experience as you surpass security challenges.
  • Hunger to drive decision making, collaboration and to have deeper opinions on security design.
  • You can review different design choices and can understand/discuss pros and cons for each.
  • Ability to code to automate tedious tasks.
  • Experience with Infrastructure as Code. We use terraform!
  • Strong collaboration skills with the wider security team and engineering at Thirty Madison

All Company policies and procedures are subject to change without notice based on business needs. This includes, but is not limited to, the locations where we hire remote, hybrid, or onsite employees.

U.S. Applicants Only

Don’t meet every single requirement? Studies have shown that women and people of color are less likely to apply to jobs unless they meet every single qualification. At Thirty Madison we are dedicated to building a diverse, inclusive and authentic workplace, so if you’re excited about this role but your past experience doesn’t align perfectly with every qualification in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions. Contact us at [email protected] to request accommodation.

About Thirty Madison

Thirty Madison is a family of specialized healthcare brands devoted to creating exceptional outcomes for all. Each of its specialized brands is focused on a specific ongoing condition, and thoughtfully designed to support the unique needs of its community with personalized treatments and care; with Keeps for men's hair loss, Cove for migraine, Facet for skin conditions, and NURX for sexual health. With empathy at the heart of its innovation, its proprietary care model empowers hundreds of thousands of people with ongoing conditions with the accessible, effective treatments across a lifetime of care. In just four years, we’ve built a number of brands and are continuing to grow rapidly, recently raised a $140m Series C, and are backed by some of the best healthcare and consumer investors, including HealthQuest Capital, Mousse Partners, Bracket Capital, Polaris Partners, Johnson & Johnson, Maveron, Northzone, among others.

We are honored to become Great Place to Work certified and be included on BuiltIn's 2021 list of Best Places To Work in New York City, and Best Midsize Companies To Work For. We've also been recognized by Forbes' Best Startup Employers, being named as one of America's Best Places to Work 2022. This recognition is a true testament to our hardworking team and company culture. As we continue to grow, we pride ourselves on finding passionate individuals who truly embody our core values and mission each and every day. Learn more at ThirtyMadison.com.

*This employer participates in E-Verify and will provide the federal government with your I-9 Form information to confirm that you are authorized to work in the U.S.*

*Please be aware that there are fraudulent entities who are falsely claiming to be or represent Thirty Madison in order to solicit sensitive personal information or payment. Thirty Madison is not in any way associated with these entities or practices. The safety and integrity of those seeking employment with us is of the utmost importance and we actively work with our legal and security teams to prevent future incidents.

Thirty Madison will never ask for sensitive information or payment when engaging with job seekers. The entities use many methods to perpetuate these scams, including but not limited to: participating in a text-only interview, using Thirty Madison’s trademarks on their correspondence, or providing you with a seemingly legitimate offer letter. If you suspect you are a victim of this scamming, we encourage you to cease further contact and report the crime to The Federal Trade Commission.

Interested in this job?

Application deadline: Open until filled

Logo of Thirty Madison

Thirty Madison

Thirty Madison is a family of specialized healthcare brands creating exceptional outcomes for all.

See more jobs
Date PostedJune 26th, 2025
Job TypeFull Time
LocationRemote, US
Salary$174,400 - $239,800
Exciting remote opportunity (requires residency in United States) for a Senior Engineer ll, Security at Thirty Madison. Offering $174,400 - $239,800 (full time). Explore more remote jobs on FlexHired!

Safe Remote Job Search Tips

Verify Employer Thoroughly

Research the company's identity thoroughly before applying. Check for a professional website with contacts, active social media, and LinkedIn profiles. Verify details across platforms and look for reviews on Glassdoor or Trustpilot to confirm legitimacy.

Never Pay to Get a Job

Legitimate employers never require payment for applications, training, background checks, or equipment. Always reject upfront payment requests or demands for bank details, even if they claim it's for purchasing necessary work gear on your behalf.

Safeguard Your Personal Information

Protect sensitive data like SSN, bank details, or ID copies. Share this only after accepting a formal, written job offer. Ensure it's submitted via a secure company system or portal, never through insecure channels like standard email attachments.

Scrutinize Communication & Interviews

Watch for communication red flags: poor grammar, generic emails (@gmail), vague details, or undue pressure. Be highly suspicious of interviews held only via text or chat apps; legitimate companies typically use video or phone calls.

Beware of Unrealistic Offers

If an offer's salary or benefits seem unrealistically high for the work involved, be cautious. Research standard pay for similar roles. Offers that appear 'too good to be true' are often scams designed to lure you into providing information or payment.

Insist on a Formal Contract

Always secure and review a formal, written job offer or employment contract before starting work or sharing final personal details. Ensure it clearly defines your role, compensation, key terms, and conditions to avoid misunderstandings or scams.

Related Jobs

Full Time
$186,065 - $218,900
Remote - USA
Full Time
$190,000 - $240,000
Remote US
Full Time
$190,000 - $240,000
Remote US
Full Time
$186,065 - $218,900
Remote - USA
Full Time
$185,000 - $200,000
Remote - US

Subscribe Newsletter

Never miss a remote job opportunity. Subscribe to our newsletter today and receive exclusive job alerts, career advice, and industry insights delivered straight to your inbox.