Truveta aggregates daily de-identified EHRs from a coalition of health systems into a regulatory-grade dataset (120M+ patients), provides researcher tools (LLM, Jupyter) and links multi-omics via Azure, under provider governance.
<p><span data-contrast="auto">Truveta provides unprecedented real-world data and real-time intelligence, powered by a dataset built with and owned by US health systems united in a mission of Saving Lives with Data. Together, we power breakthrough medical discoveries, accelerate regulatory-grade evidence, and improve patient care. Today, Truveta enables research on more than 130 million de-identified patients across the US. </span><span data-ccp-props="{"134233117":false,"134233118":false,"201341983":0,"335551550":1,"335551620":1,"335559685":0,"335559737":0,"335559738":0,"335559739":160,"335559740":278}"> </span></p> <p><span data-contrast="auto">Achieving Truveta’s ambitious mission requires an incredible team of talented and inspired people with a special combination of health, software and big data experience who share our </span><a href="https://www.truveta.com/careers/"><span data-contrast="auto">company values</span></a><span data-contrast="auto">.</span><span data-ccp-props="{"134233117":false,"134233118":false,"201341983":0,"335551550":1,"335551620":1,"335559685":0,"335559737":0,"335559738":0,"335559739":160,"335559740":278}"> </span></p> <p><strong><span data-contrast="auto">Role Overview</span></strong><span data-ccp-props="{}"> </span></p> <p><span data-contrast="auto">We are looking for a </span><strong><span data-contrast="auto">Principal Security Engineering Manager</span></strong><span data-contrast="auto"> to own and drive security across applications, cloud infrastructure, and platform operations.</span><span data-ccp-props="{}"> </span></p> <p><span data-contrast="auto">This role requires a </span><strong><span data-contrast="auto">hands-on technical leader</span></strong><span data-contrast="auto"> who can design and implement security controls end-to-end while partnering closely with engineering teams. The ideal candidate brings a strong mix of </span><strong><span data-contrast="auto">software engineering, cloud architecture, and security expertise</span></strong><span data-contrast="auto">, with the ability to scale security practices in a modern, cloud-native environment.</span><span data-ccp-props="{}"> </span></p> <p><span data-ccp-props="{}"> </span></p> <p><strong><span data-contrast="auto">Key Responsibilities</span></strong><span data-ccp-props="{}"> </span></p> <ul> <li data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"><span data-contrast="auto">Lead the design and implementation of </span><strong><span data-contrast="auto">security controls across the full technology stack</span></strong><span data-contrast="auto">, including applications, services, and cloud infrastructure. </span><span data-ccp-props="{}"> </span></li> </ul> <ul> <li data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="2" data-aria-level="1"><span data-contrast="auto">Establish and drive </span><strong><span data-contrast="auto">secure development practices</span></strong><span data-contrast="auto">, integrating security into CI/CD pipelines and developer workflows. </span><span data-ccp-props="{}"> </span></li> </ul> <ul> <li data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="3" data-aria-level="1"><span data-contrast="auto">Own programs for identifying and addressing risks, including: </span><span data-ccp-props="{}"> </span></li> </ul> <ul> <li data-leveltext="o" data-font="Courier New" data-listid="14" data-list-defn-props="{"335552541":1,"335559685":1440,"335559991":360,"469769226":"Courier New","469769242":[9675],"469777803":"left","469777804":"o","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="2"><span data-contrast="auto">Vulnerability discovery and remediation </span><span data-ccp-props="{}"> </span></li> </ul> <ul> <li data-leveltext="o" data-font="Courier New" data-listid="14" data-list-defn-props="{"335552541":1,"335559685":1440,"335559991":360,"469769226":"Courier New","469769242":[9675],"469777803":"left","469777804":"o","469777815":"multilevel"}" data-aria-posinset="2" data-aria-level="2"><span data-contrast="auto">Application and infrastructure testing </span><span data-ccp-props="{}"> </span></li> </ul> <ul> <li data-leveltext="o" data-font="Courier New" data-listid="14" data-list-defn-props="{"335552541":1,"335559685":1440,"335559991":360,"469769226":"Courier New","469769242":[9675],"469777803":"left","469777804":"o","469777815":"multilevel"}" data-aria-posinset="3" data-aria-level="2"><span data-contrast="auto">Continuous validation of security posture </span><span data-ccp-props="{}"> </span></li> </ul> <ul> <li data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="4" data-aria-level="1"><span data-contrast="auto">Define and implement </span><strong><span data-contrast="auto">data protection strategies</span></strong><span data-contrast="auto">, including encryption, access controls, and data handling standards. </span><span data-ccp-props="{}"> </span></li> </ul> <ul> <li data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{"33555