Jane
Healthcare
SeniorSecurityEngineer,VulnerabilityAutomation
Neural analysis suggests this role is
optimal for Senior candidates.
“Senior Security Engineer, Vulnerability Automation at Jane. Skills: Vulnerability automation, Security engineering, AI experimentation. Design vulnerability engineering pipeline. Build vulnerability engineering pipeline”
What You'll Achieve.
Make security a service; Ship validated true positives; Keep relationships strong; Keep things moving; Make response faster; Make response sharper
Industry & Context.
Investigate vulnerabilities; False positive filtering; Applicability assessment; Root cause analysis
On-call rotation
What They're Looking For.
Must Have
Demonstrated depth in security engineering, Shipped automation, pipelines, or internal security tooling, Experience across vulnerability lifecycle, Hands-on experience with Python, Hands-on experience with CI/CD security integrations, Active engagement with AI-assisted workflows, Applied knowledge of web and API vulnerability classes, Familiarity with SAST, SCA, secret detection, DAST, ASPM, Track record of cross-team influence, Track record as a force multiplier
Nice to Have
Experience with GitHub Actions, Experience with mobile application vulnerabilities
What You'll Do.
Design vulnerability engineering pipeline
Build vulnerability engineering pipeline
Own vulnerability engineering pipeline
Ingest threat intelligence
Generate automated PRs
Establish technical architecture
Partner with dev teams
Investigate vulnerabilities
Ship validated true positives
Follow up on SLA gaps
Coordinate multi-team findings
Own communication of findings
Track resolution progress
Contribute to on-call rotation
Improve post-incident reviews
How You'll Work.
Team & Collaboration
Cross-team influence; Dev teams; Multi-team findings
Full Job Description
ABOUT THE ROLE Hi, I'm Dave. I lead Security Engineering at Jane - a team of ten spanning AppSec, Cloud Security, Enterprise Security, Red Team, and Enablement, working to protect the health information of hundreds of thousands of patients and the practitioners who care for them. We earn influence through relationships, not authority. Our goal is to make it easy for dev teams to do the right thing, and that has a concrete expression. We're close to a vision where a developer receives a draft, tested PR when a vulnerability is identified in their codebase. We only ship validated true positives to their queues. The investigation, false positive filtering, and applicability assessment are our job, not theirs. We've already built the foundation. You'll be maturing that platform, not starting from scratch. This role sits at the engineering heart of that work, building and iterating on the pipeline that connects threat intelligence, AppSec findings, and Red Team outputs into automated protections and actionable remediation for dev teams. We're a team that experiments with AI constantly and shares what we learn. If that's how you already work, you'll feel right at home here. If you lead with curiosity, earn trust before you expect buy-in, and get energy from building things that make other engineers' lives simpler, I'd love to talk. WHAT IMPACT WE'RE LOOKING FOR YOU TO MAKE - Design, build, and own the vulnerability engineering pipeline - from threat intelligence ingestion through automated PR generation - establishing the technical architecture and standards that the rest of the team builds on as the platform matures. - Raise the team's bar for building with AI by experimenting openly, sharing what works and what doesn't, and helping every member of the security team elevate how they work with AI-powered tooling. - Partner deeply with dev teams across Jane to make security feel like a service, not a burden - doing the investigative work upfront, shipping only validated tr
Applying for this Senior Security Engineer, Vulnerability Automation role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Jane?
Real rants from real employees. Read before you apply.