IT et développement
DevOps & Security Engineer - AI-Native Healthcare SaaS - poste à distance
Zenara Health
DevOps & Security Engineer - AI-Native Healthcare SaaS - IT et développement, à distance
L'entreprise Zenara Health recrute : DevOps & Security Engineer - AI-Native Healthcare SaaS. Le poste relève de la catégorie IT et développement et se fait entièrement à distance. Aucune restriction n'est posée sur le lieu de résidence du candidat, vous pouvez donc postuler de partout.
L'entreprise n'a publié aucun chiffre, cela se règle en entretien. L'annonce ne pose aucune condition d'horaires.
Cette offre a passé un contrôle automatique : les annonces qui exigent un permis de travail étranger, un parrainage de visa, une nationalité précise ou une résidence dans un pays nommé n'entrent pas dans la liste.
En bref
- Entreprise
- Zenara Health
- Catégorie
- IT et développement
- Qui peut postuler
- De n'importe quel pays du monde
- Mode de travail
- Entièrement à distance
- Publiée
- 19 août 2026 (il y a 6 jours)
- Validité
- jusqu'au 28 septembre 2026
- Origine
- We Work Remotely
Nouvelles offres par e-mail : IT et développement
Le tableau est actualisé plusieurs fois par jour. Nous n'écrivons que lorsqu'une nouvelle offre vérifiée paraît. Pas de spam, aucun compte à créer.
Déjà abonné ? Gérer vos préférences
La description de l'entreprise
Headquarters: India
About the Company Zenara Health is a mental healthcare organization driven by technology, aiming to improve the accessibility and quality of mental wellness services. By integrating AI-driven platforms with professional clinical care, we deliver personalized and effective mental health solutions, creating a smooth digital experience for both patients and providers. We operate as a startup, distinct from a mere department. Why This Role Exists This position serves as the company's foremost line of defense. You will operate under the assumption that systems are constantly under threat, crafting infrastructure that is resilient, auditable, and inherently secure. You will be the most risk-aware individual in the startup - and that’s exactly what we require. While others concentrate on feature rollout, you will prioritize the security of patient data, regulatory compliance, and system integrity. About the Role If your understanding of DevOps is limited to "I occasionally execute kubectl apply," this position is likely not for you. This role is not suited for those who prioritize speed over safety or view security as an afterthought to be addressed later. At Zenara, safeguarding patient data and maintaining system integrity takes precedence over rapid deployment. Our team is in the process of developing a platform that manages clinical data, operates AI workflows, and processes insurance billing - all within a HIPAA-regulated environment catering to real psychiatric practices. Our infrastructure is operational; however, we lack an individual who will take ownership with a security-first perspective. We currently do not have a dedicated CI/CD owner, a comprehensive security posture, or monitoring that extends beyond simple uptime checks. If HIPAA auditors were to arrive tomorrow, we could withstand the scrutiny - but it wouldn’t be a pleasant experience. You will be responsible for Zenara’s infrastructure, security posture, and compliance engineering - everything from the ground up. This includes CI/CD pipelines, HIPAA-compliant deployment automation, monitoring and alerting systems, cybersecurity measures and threat defense, access controls, and audit logging - the complete spectrum of "essential elements that ensure the safe operation of a healthcare company." However, your role will go beyond mere maintenance. You will also develop infrastructure for our AI platform, encompassing model serving, scaling AI workloads, and supporting production AI pipelines. You will have a dual mandate: ensure the stability and security of the platform while also building the necessary infrastructure for AI at scale. This represents a unique opportunity for greenfield infrastructure engineering within a healthcare AI company with genuine compliance obligations and real users. You will devise systems from fundamental principles, make architectural choices, establish best practices to guide us through growth and compliance audits, and serve as the ultimate security gatekeeper. What You Will Own 1. Cybersecurity & Threat Defense You will manage threat modeling, reduce attack surfaces, oversee intrusion detection, handle vulnerability management, and plan incident responses. You will be the final reviewer for infrastructure and security risks, possessing the authority to halt releases that do not satisfy security or compliance criteria. The security of patient data is non-negotiable. 2. CI/CD and Deployment Automation You will design and implement CI/CD pipelines for all Zenara products, establishing deployment automation, managing environments, and setting quality thresholds. Your goal is to eliminate chaotic releases and establish a system that enables the team to deploy confidently and consistently - without compromising security. 3. Security Posture and HIPAA Compliance You will develop and uphold a HIPAA-compliant security posture across all Zenara systems. This involves implementing access controls, managing secrets, maintaining audit logs, and enforcing encryption standards. You will ensure our adherence to regulatory requirements while avoiding bureaucratic slowdowns. 4. Monitoring, Alerting, and Incident Response You will create monitoring and alerting capabilities to proactively identify issues before they affect users. You will establish incident response protocols, define service level objectives (SLOs), and monitor reliability metrics. You will lead the on-call rotation and develop runbooks for common incidents. 5. AI Infrastructure Support You will address the AI infrastructure needs, including model serving, GPU provisioning (if necessary), and autoscaling for AI workloads. You will collaborate with the Head of AI to ensure that the infrastructure supports production AI efficiently and securely. 6. Cloud Infrastructure Management You will oversee cloud infrastructure (AWS/Azure), focusing on cost optimization, reliability, disaster recovery, and capacity planning. You will make architectural decisions that find a balance between cost, performance, and compliance obligations. 7. SOC 2 Readiness You will spearhead SOC 2 Type II preparedness as we approach fundraising, implementing necessary controls, organizing evidence collection, and liaising with auditors. You will ensure compliance becomes an integrated process rather than an ad-hoc measure. 8. Security Incident Response You will take charge of security incident response, establishing procedures, conducting regular security evaluations, and responding to incidents as they arise. Your efforts will help the organization recognize security as an essential discipline rather than an afterthought. Your First 90 Days Week 1-2: Fully immerse yourself in the current infrastructure, deployment processes, and security posture. Identify the most significant security vulnerabilities and critical gaps. Build rapport through active listening and insightful inquiries. Month 1: Set up basic monitoring and alerting systems. Outline the CI/CD roadmap. Begin documenting existing systems and security protocols. Establish communication channels with engineering leadership. Conduct initial threat assessments. Month 2-3: Develop CI/CD pipelines for high-priority services with security gates. Implement secrets management and access controls. Create the first set of operational and security runbooks. Initiate SOC 2 gap analysis and planning for remediation. Introduce intrusion detection and vulnerability scanning. Ongoing: Take on full ownership of infrastructure and security. Deliver reliable and secure systems. Establish compliance practices and enhance security standards. Assertively say “no” when risks are unacceptable. Inspire confidence in the CEO that infrastructure and security are in capable hands. Values & Vibe (Who You Are) You perceive infrastructure primarily through the lens of security and reliability , rather than merely uptime. You are the one who enters an unmanaged infrastructure landscape and brings order - not through an excess of tools, but through clarity, automation, and effective monitoring. For you, security is not a mere checklist; it shapes your worldview. You possess an innate sense of paranoia - assuming systems are under threat and designing with that understanding. You find an infrastructure environment that functions like a black box, relying on heroic measures rather than standard practices, to be unacceptable. You recognize that healthcare compliance is mandatory and understand how to implement it practically, without hindering development speed. You are hands-on enough to diagnose production issues, write Terraform modules, and review security configurations - yet you know that your primary responsibility lies in creating systems that are both reliable and secure, rather than solely reacting to incidents. You have successfully built infrastructure in regulated sectors while adhering to compliance constraints.…
Le texte est conservé dans la langue d'origine de l'entreprise, car c'est dans cette langue que vous postulerez.
Questions fréquentes sur cette offre
Puis-je postuler au poste de DevOps & Security Engineer - AI-Native Healthcare SaaS depuis là où je vis ?
Oui. Pour cette offre, Zenara Health accepte des candidats de n'importe quel pays du monde, vous n'avez donc besoin d'aucun permis de travail pour un autre pays. L'annonce a passé un contrôle automatique : si l'entreprise avait exigé un permis de travail, un parrainage de visa ou une résidence dans un pays précis, elle ne figurerait pas sur ce tableau.
Quelle rémunération est indiquée ?
Pour cette offre, Zenara Health n'a publié aucune rémunération. La plupart des annonces à distance ne donnent aucun chiffre, cela se règle en entretien.
Comment postuler ?
Vous postulez directement auprès de l'entreprise, via l'annonce d'origine publiée sur We Work Remotely. Donator ne reçoit aucune candidature, ne prend aucune commission et ne conserve aucun CV.
De quel type d'offre s'agit-il ?
Un poste entièrement à distance dans la catégorie IT et développement. Les annonces hybrides et tout ce qui impose une présence au bureau ne sont pas publiés sur ce tableau.
Certificats gratuits pour cette offre
Les certificats gratuits qui pèsent le plus dans ce domaine. Chacun est vérifié sur la page du fournisseur lui-même.
Applied Skills (scenario-based credentials)
exam is free tooMicrosoft · ~1 h
Microsoft's only free verifiable credential: a lab task in 30-45 minutes, with no proctor, no ID check and no card. Retakes are allowed.
It has to be finished in one session; there is no save and resume.
strong brandOCI Foundations Associate
exam is free tooOracle · ~12 h
A rare case where the certification exam itself is free and needs no Pearson VUE: you sit it inside MyLearn. Take the 2026 track, not the 2025 one.
Oracle's pages load via JS; confirm the $0 on the final step of registration.
strong brandValid: 18-24 monthsCS50x: Introduction to Computer Science
certificateHarvard CS50 · ~100 h
Harvard's own branded certificate is free once you pass every problem set and the final project. The edX verified certificate is a separate paid product and is not needed.
strong brandCS50P: Programming with Python
certificateHarvard CS50 · ~60 h
Same mechanism as CS50x: at least 70% on every assignment plus a final project. The certificate does not expire.
strong brand
Offres similaires
MCP Expert
$60 - $120 par heuremicro1 · aujourd'hui
NouveauDepuis partoutPythonTypeScriptSenior QA Engineer
Lemon.io · aujourd'hui
NouveauDepuis l'EuropeReactNode.jsGTM AI Engineer
$140k - $170k par anCustomer.io · aujourd'hui
NouveauDepuis partoutDon’t see what you’re looking for?
RelationalAI · hier
Depuis partout
