Security Lead
Arintra · Bangalore, Karnataka, India
This job has been flagged as a Not American
Pay
Not listed
Setting
On-site
Requirements:
- 7+ years in security, with 3+ years in a regulated environment (HIPAA, finance, or government), must be evidenced in bullets, not just worked at a healthcare company.
- Operational HITRUST or SOC2 experience managed/maintained an ongoing program, not just audit participation or a one-time certification push.
- Structured risk quantification to non-technical leadership (documented cost vs. risk recommendations, not just identified risks).
- Built or significantly improved security infrastructure in a cloud-native environment (GCP, AWS, or Azure).
- Track record evaluating and managing external security vendors/consultants (scoping, risk assessment, delivery accountability).
- Direct hands-on AI/LLM security work assessing risk in an AI product, governing internal LLM tool usage, or building controls for LLM systems.
- Evidenced cost vs. risk judgment: a recommended against decision or a documented tradeoff, not just risk-averse defaults.
- Comfortable as a solo IC with no team to delegate to, recent hands-on security work, not pure people management.
- SOC2 Type II operational experience specifically.
- CISSP / CISM / CCSP or equivalent certification.
- EHR integration security familiarity with HL7 FHIR and Epic/Athena patterns.
- Agentic AI systems experience built with agents (tool-calling, multi-step workflows) or assessed their security posture.
- High-growth startup experience (Series A-C).
- Direct enterprise customer-facing security work (questionnaires, CISO/trust reviews).
Listed by Arintra for a position based in the United States. Employers on this board attest they are hiring domestically.