Senior Engineer for Vulnerability and Exposure ...
Datavant - Des Moines, IA
Apply NowJob Description
Join Datavant, the innovative data collaboration platform dedicated to transforming healthcare. Our mission is to make health data secure, accessible, and actionable, providing crucial data solutions across the healthcare ecosystem. From managing patient records to enabling advancements in AI for healthcare, the team at Datavant is at the forefront of connecting data for better health outcomes. Your Opportunity: We are on the lookout for a skilled Senior Engineer to enhance and build a cutting-edge vulnerability management program that prioritizes actionable insights derived from vulnerability data. Your focus will be on automation, systems design, and driving practical risk reduction across various environments, including applications, cloud infrastructure, and more. Key Responsibilities: Design, implement, and manage an engineering-driven vulnerability management capability targeting real exploit risks for Datavant's applications and infrastructure. Create and maintain automated data pipelines that gather, normalize, and prioritize vulnerability signals from various sources, treating vendor tools as inputs. Build engineer-friendly dashboards and workflows that emphasize actionable insights rather than mere compliance reporting. Collaborate closely with product and engineering teams to assess and communicate vulnerability risks and recommend effective remediation strategies. Integrate high-confidence vulnerability signals into existing engineering workflows to enhance adoption seamlessly. Ensure remediation and compensating controls significantly mitigate exposure, focusing on real risk reduction rather than just ticket closure. Translate compliance controls into scalable engineering solutions that produce automated, audit-ready evidence. Act as a technical SME during FedRAMP and other assessments to confirm control effectiveness without managing manual audit processes. Lead technical projects to advance Datavant's capabilities in vulnerability management and application security. Provide technical leadership, guiding program direction through effective engineering judgment and cross-functional collaboration. Qualifications for Success: In-depth expertise in vulnerability management and application security, with hands-on experience in risk assessment and mitigation in modern software settings. Strong engineering experience with proven capabilities in designing and automating solutions (e.g., data pipelines, integrations, dashboards) rather than relying on manual processes. Practical knowledge of application, cloud, and container security in AWS and/or Azure, with experience in vulnerability assessment across complex environments. Robust understanding of security controls and the ability to convert standards such as NIST and FedRAMP into scalable, low-friction implementations. Proficient reasoning in exploitability, exposure, and effective compensation controls to prioritize work that significantly reduces risk. Experience working closely with engineering and product teams throughout the software lifecycle. Excellent communication skills to convey security risks and remediation options to diverse stakeholders. Adept at operating in fast-paced environments, delivering impactful results quickly while managing ambiguity. A broad perspective on how various security functions collaborate and the role of vulnerability management in the overall system. Familiarity with commercial cloud security platforms is a bonus; however, the ability to think beyond tool outputs and create custom solutions is critical. Preferred Attributes: Demonstrated thought leadership in vulnerability management, influencing how risk is assessed and mitigated in engineering environments. Hands-on experience architecting and developing automated vulnerability management solutions. Strong systems-level thinking, with experience designing secure, scalable solutions in complex ecosystems. Experience in applying security and compliance in regulated environments, including liaising with auditors. Experience with modern developer tools, including AI-assisted development, to enhance delivery speed and reduce operational toil. Datavant is committed to fostering a diverse team where everyone can thrive and contribute to our high-performance culture. We proudly offer equal employment opportunities to all qualified applicants regardless of their background. The estimated total cash compensation for this role is between $184,000 and $230,000 USD. To ensure a safe working environment, compliance with health screenings and vaccination requirements may be necessary based on client mandates. This position is not eligible for employment sponsorship.
Created: 2026-03-11