Application Security Engineer
Quick Summary
Twin Health At Twin Health, we empower people to improve and prevent chronic metabolic diseases, like type 2 diabetes and obesity, with a new standard of care.
At Twin Health, we empower people to improve and prevent chronic metabolic diseases, like type 2 diabetes and obesity, with a new standard of care. Twin Health is the only company applying AI Digital Twin technology exclusively toward metabolic health.
We start by building a dynamic model of each person’s metabolism — drawing on thousands of data points from CGMs, smartwatches, and meal logs — that maps their personal path to better health. Guided by a dedicated clinical care team, our members have lowered their A1C below the diabetes range, achieved lasting weight loss, and reduced or even eliminated medications, all while living healthier, happier lives.
Our team at Twin Health is passionate, talented, and united by a shared purpose: to improve the metabolic health and happiness of our members. We believe in empowering every Twin to make a meaningful impact for our members, our clients, and each other, while enjoying a supportive, collaborative work environment.
Twin has been recognized not only for our innovation but also for our culture, including: Innovator of the Year by the Employer Health Innovation Roundtable (EHIR), selected to CB Insights’ Digital Health 150, and named one of Newsweek’s Top Most Loved Workplace® .
With more than $100 million raised in recent funding, including a $53 million Series E round in 2025 led by Maj Invest, and a $50 million investment in 2023 led by Temasek, Twin is scaling rapidly across the U.S. and globally. Backed by leading venture firms like ICONIQ Growth, Sequoia, Sofina, Temasek, and Peak XV, we are building the most impactful digital health company in the world.
Join us as we reinvent the standard of care in metabolic health.
We are seeking a highly motivated Application Security Engineer to join our growing security organization. This role will be instrumental in building and managing our application and cloud security capabilities from the ground up, ensuring Twin Health’s systems and products remain secure as we scale globally.
You will work hands-on with a modern technology stack including AWS Security Hub, GuardDuty, Inspector, and Macie, while leading the implementation of a Cloud Security Posture Management (CSPM) solution through Wiz. You will also own our secure code scanning and vulnerability management pipeline, driving continuous improvement across SAST, DAST, and SOAR Cloud integrations.
This is a highly technical and strategic role suited for someone who thrives in building systems from scratch, automating workflows, and influencing secure development practices across engineering teams. Candidates must be located in EST.
Responsibilities
~1 min read- →Lead the deployment and configuration of Wiz CSPM, collaborating with infrastructure and DevOps teams to enhance visibility and remediation workflows
- →Design, implement, and manage application and cloud security tooling across AWS, including Security Hub, GuardDuty, Macie, Inspector, and related automation.
- →Manage secure code scanning processes, integrating SAST (Static Analysis) and DAST (Dynamic Analysis) using Sonar Cloud to identify and remediate vulnerabilities early in the SDLC.
- →Develop automated pipelines and playbooks for vulnerability triage, remediation tracking, and reporting of metrics. (MTTD, MTTR)
- →Partner with software engineering teams to embed security into CI/CD pipelines and promote secure coding practices.
- →Collaborate with the Security, IT, and GRC teams to ensure alignment with SOC 2, HIPAA, and SOX controls.
- →Contribute to threat modeling, code review, and incident response related to application vulnerabilities.
- →Evaluate and implement new security tools and processes to enhance the overall application security posture.
- →Support vendor risk assessments and penetration testing efforts related to application components.
- →Create and maintain security documentation, architecture diagrams, and operational runbooks.
- →Participate in on-call rotations as part of the broader security operations program.
- →Other duties as assigned
Requirements
~1 min read- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- 1-3+ years of experience in Application Security, DevSecOps, or Cloud Security Engineering roles.
- Hands-on experience with AWS security services (Security Hub, GuardDuty, Inspector, Macie, IAM, KMS).
- Familiarity with Wiz or similar CSPM platforms.
- Proven experience integrating SAST/DAST tools (e.g., Soar Cloud, Veracode, Snyk, Checkmarx, Burp Suite, etc.) into CI/CD pipelines.
- Familiarity with Docker, K8S, and microservices-based architectures.
- Experience with WAF, endpoint security, and IAM
- Strong understanding of secure software development lifecycle (SSDLC) and common vulnerabilities (OWASP Top 10, CWE, CVSS).
- Proficiency in at least one scripting or automation language (Python, Bash, or similar).
- Proficiency in Java
- Knowledge of threat modeling, code review, and cloud infrastructure security best practices.
- Excellent collaboration and communication skills with both technical and non-technical stakeholders.
- Experience with compliance frameworks such as SOC 2, HIPAA, or HiTrust is a plus.
- Experience working in a high-growth or regulated environment is preferred.
- This remote opportunity based out of the U.S. and located in EST. Applicants must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time.
What We Offer
~2 min readListing Details
- Posted
- April 16, 2026
- First seen
- March 26, 2026
- Last seen
- April 19, 2026
Posting Health
- Days active
- 24
- Repost count
- 0
- Trust Level
- 74%
- Scored at
- April 19, 2026
Signal breakdown
Twin Health is a health technology company that utilizes a Whole Body Digital Twin™ to reverse and prevent chronic metabolic diseases by providing personalized insights and guidance.
View company profilePlease let Twinhealth know you found this job on Jobera.
3 other jobs at Twinhealth
View all →Explore open roles at Twinhealth.
Similar Application Security Engineer jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.