Avatar for Redox
Redox is the modern API for healthcare
  • B2B
  • Scale Stage
    Rapidly increasing operations
  • 4.7
    Highly rated
    Redox is highly rated on Glassdoor, with 4.7 out of 5 stars
  • +2

Staff DevSecOps Engineer

  • $190k – $199k
  • |Remote ()
  • |8 years of exp
  • |Full Time
Posted: 1 month ago
Hires remotely in
Remote Work Policy

Remote only

Company Location
Visa Sponsorship

Not Available

RelocationAllowed
Skills
Python
Node.js
Redis
Kafka
TypeScript
Docker
Vulnerability Management
AWS
InfluxDB
Kubernetes
Terraform
Prometheus
Grafana
Go
Supply Chain Risk
HITRUST
helm
postgres
Sumo Logic
EKS
HCL
GitHub Actions
ArgoCD
SOC 2
Velero
Crossplane
Atlantis
Secrets Management
KEDA
Kyverno
Karpenter
Mimir
CI/CD Systems
VPA
IAM/zero-Trust Patterns

About the job

Redox is on a mission to accelerate healthcare’s transformation with useful data. Redox Engine, a flexible interoperability platform, connects and powers real-time healthcare data exchange. With just one connection, data can be orchestrated across a growing network of 12,000+ systems and organizations, including 100+ electronic health record systems (EHRs). Redox processes over 1.2 billion messages per month across our health tech vendor, provider, payer, EHR, and life sciences customers.

Opportunity & Impact

The Platform Team at Redox Engineering builds the foundations that let application developers ship reliably - the automation, guardrails, and infrastructure that power how healthcare data moves securely through our systems.

We're looking for a Staff DevSecOps Engineer who thinks security is a design constraint, not an afterthought. You'll work at the intersection of platform engineering and security — hardening how we build, ship, and run software on our AWS/EKS platform, and making secure defaults the easy path for every engineer at Redox.

We're a fully remote team within the U.S. that operates with radical transparency and a strong bias toward ownership.

Our Engineering Culture & How We Work

Psychological Safety, Ownership & Autonomy

We make room for everyone to be heard, regardless of level. We work openly, normalize not knowing things, and treat "learning out loud" as a feature, not a liability. You'll be expected to bring your real perspective, push back when you see something wrong, and commit fully once a decision is made. As a Staff Engineer, you help cultivate our culture: you model the behavior, you embrace questions, you acknowledge mistakes.

Radical Transparency

We default to public Slack channels over DMs, post Zoom summaries back in writing, and work async whenever possible. We'd rather expose incomplete thinking in public to get better feedback than protect it in private. That applies to security work too - when you identify a risk or propose a control, you bring it to the table with a recommendation, not just a concern.

Engineering-Driven Ownership

We own the systems we maintain, not just the new features on the roadmap. You'll have latitude to identify and drive platform work - defining scope, consulting on priority, and seeing it through from design to operationalization. We measure ourselves by the value we deliver, not the process we follow.

Job Responsibilities:

  • Champion a security-first mindset within Engineering to help set the security posture of our platform infrastructure — supply chain hardening, secrets management, IAM/IRSA, container image integrity, and vulnerability remediation across our AWS/EKS environment
  • Design and build automation that makes compliance evidence continuous, not manual — translating HITRUST controls into passing tests and structured outputs that flow into our compliance tooling (Vanta)
  • Embed security into the platform by default: make the secure path the easy path for application engineers, through guardrails, policy-as-code, and well-documented patterns
  • Partner with our Security team to translate threat assessments and control gaps into engineering proposals with clear scope, tradeoffs, and recommended paths forward
  • Lead platform security initiatives from design to operationalization — requirements, technical design, code and code review, deployment, and documentation
  • Contribute hands-on to the broader platform: CI/CD pipelines, container orchestration, observability, and developer tooling — this is an IC role, not a governance role
  • Participate in on-call rotation and own the systems you build, including production incidents
  • Mentor engineers on security practices and raise the security baseline across the team

Required Skills & Experience:

  • 8+ years in cloud-native infrastructure or platform engineering roles, with demonstrable progression in technical scope and leadership
  • Hands-on expertise with AWS and Kubernetes (EKS) — you've operated these in production, not just deployed them
  • Security depth: you understand supply chain risk, IAM/zero-trust patterns, secrets management, and vulnerability management at the platform level — not just as concepts
  • Experience translating compliance frameworks (HITRUST, SOC 2, or equivalent) into concrete engineering controls — bonus if you've worked with Vanta or similar compliance automation tooling
  • Fluency in infrastructure-as-code (Terraform/HCL) and at least one scripting language (Python, Go, or Node.js/TypeScript)
  • Experience with modern CI/CD systems and the security surface they introduce — pipeline integrity, artifact signing, registry controls
  • Strong written communication and a track record of driving technical decisions in async, remote environments - you write proposals, not just Slack messages, and convert them to impact

Our stack — you'll be hands-on with these:

  • AWS, Docker, EKS
  • GitHub Actions (CI), ArgoCD (CD)
  • Kyverno, Karpenter, KEDA, VPA, Velero, Crossplane
  • Prometheus, Grafana, InfluxDB, Sumo Logic and Mimir
  • Terraform, helm and Atlantis
  • Postgres, Redis
  • Kafka
  • Security vulnerability reporting tools

Nice to have in your background:

  • Experience in a fully remote, growth-stage, or regulated-industry company
  • Developer enablement work — you've thought about the internal developer experience, not just the ops side
  • Go, Node.js, or TypeScript — we're a TypeScript shop and it helps to be comfortable there
  • Vanta or similar compliance automation tooling
  • VPN administration or enterprise network security experience
  • Dependency management tooling (Renovate, Dependabot)

$190,000 - $199,000 a year

Compensation: The base salary range for this position is expected to be between $190,000- $199,000 per year.

*The base salary range is subject to change and may be modified in the future. The actual offer may vary depending on multiple factors unique to each candidate, including but not limited to the level of job-related knowledge, skills, qualifications, education/certification, and interview assessment.

Please note that the compensation details listed above reflect the base salary only. Redox offers a total rewards package that includes stock options and employee benefits for full-time employees. Our total rewards package includes the following:

Benefits & Perks

• 100% remote first culture (must be based in the US)

• Unlimited Flexible Time Off

• 15+ Observed Holidays

• Rest & R^Charge days (guaranteed a 3-day weekend each month)

• R^Charge (6 weeks paid sabbatical + stipend)

• 401k match 50% for up to 8% on Day 1

• Medical/Dental/Vision Benefits on Day 1

• HSA & FSA, Life, Disability, Medical Travel & Employee Assistance Program

• Paid Parental Leave (16 weeks)

• Productivity Stipend & Wellness Fund

• Redox Issued MacBook

• Virtual and/or in-person Team & Company Events

• Stock Options

• Employee Referral Bonus Program

About Redox - Take a look here: https://youtu.be/4OjENXR6UXA

What We Do

Healthcare organizations and technology vendors connect to Redox once, then authorize what data they send to and receive from partners through a centralized hub. Redox's cloud-based platform is vendor and standards-agnostic and enables the secure and efficient exchange of healthcare data.

This approach eradicates the need for point-to-point integrations and accelerates the discovery, adoption, and distribution of patient and provider-facing technology solutions. With hundreds of healthcare organizations and technology vendors exchanging data today, Redox represents the largest interoperable network in healthcare. Learn how you can leverage the Redox platform at www.redoxengine.com.

Other Stuff About Us

Redox is an EEO company. We fully support the diversity of our team. As part of our ongoing work to build more diverse teams at Redox, you will be asked to complete a voluntary EEO survey when applying. This survey is anonymous, we cannot link your application record with your survey responses. We request that you complete this voluntary survey as we run monthly reports for each team which provides data for diversity in terms of gender and ethnic background in our Applicants and our Hired Redoxers. We take this data very seriously and appreciate your willingness and time to complete this step in the process.

Successful candidates must be eligible to be employed in the U.S. and must reside & work in the continental U.S.

Thank you for your interest in Redox!

#LI-TA1

About the company

Redox company logo
Redox is the modern API for healthcare51-200 Employees
  • B2B
  • Scale Stage
    Rapidly increasing operations
  • 4.7
    Highly rated
    Redox is highly rated on Glassdoor, with 4.7 out of 5 stars
  • 5.0
    Work / Life Balance
    Employees rate Redox 5.0/5 on Glassdoor for work / life balance
  • 5.0
    Strong Leadership
    Employees rate Redox 5.0/5 on Glassdoor for faith in leadership
Learn more about Redox image

Funding

AMOUNT RAISED
$90.9M
FUNDED OVER
5 rounds
Rounds
D
$45000000
Series D - Feb 2021+4

Perks

Healthcare Insurance from Day 1
We provide health and dental insurance for employees, spouses, domestic partners, and dependents along with 100% of premiums for Disability & Life Insurance.
401k Match
We offer a 401k plan with employer matching of 50% for the first 8% of your salary. Vesting begins immediately, and there is no waiting period.
Paid Parental Leave
As your family grows, it’s important that you’re there and have time to figure out what your family’s new norm is. You can take 12 weeks of paid time off within the first year of your new addition arriving.
Stock Options
We provide all R^ Employees an opportunity for ownership through Stock Options and want you to share in the company’s success.
Work Anywhere
We are remote first. We want to have the best people at Redox—no matter where you call home in the US. All Redox employees are encouraged to live and work wherever they’re happiest.
Unlimited PTO
We encourage you to take the time off you need to live a full, healthy, rich life. We do not limit the time off you take. We trust you to balance what is right for you with your responsibilities to the team.
Rest & R^ Charge
A R^charge is a sabbatical of 6 consecutive weeks of paid leave, plus a stipend for you to use as you enjoy your time away. Each full-time R^ is eligible for a R^charge at their 5-year anniversary and each subsequently completed 5 years.
R^R Days
1 Friday off for every month with no observed holiday
Wellness Fund
We provide a Wellness Fund for you to spend on anything you feel benefits your mental and/or physical wellness.
Team Week & Retreats
Annually, R^ hosts an all-company Team Week & retreats specific to your individual team. These events bring the team together to discuss company strategy and initiatives, smaller team meetings, working sessions, and a whole lot of fun.
Productivity Stipend
We want you to be able to set up a workspace that allows you to perform at your very best. All R^ employees receive an annual discretionary stipend so you can select what helps you be productive.
Fifteen+ Observed Holidays

Founders

Luke Bonney
CEO
Madison
image
James Lloyd
Founder
Madison
image
Niko Skievaski
Founder
image
View the team image