What are the responsibilities and job description for the DevOps Security Engineer position at One to One Health?
Job Details
Description
About One to One Health
One to One Health is an innovative healthcare company delivering relationship-driven care to improve the health and wellness of our patients while reducing costs. Serving over 250,000 patients, our services include primary care, occupational health, virtual care, wellness, and mental health. We are guided by our vision to “do good and help others,” and we leverage data-driven insights and tools to achieve the best outcomes for the patients and employers we serve.
What we offer
- An opportunity to work on a high-impact project in a rapidly growing organization.
- A dynamic work environment where you’ll collaborate with a small, agile team tackling diverse challenges.
- The chance to contribute meaningfully to One to One Health’s mission of delivering patient-centered care through innovation.
About the Role
We are seeking a DevOps Security Engineer with a strong IT operations overlap to join our small, agile team. This full-time position is based in Chattanooga, TN, and offers an exciting opportunity to secure and optimize critical infrastructure for a rapidly growing healthcare organization. You will be responsible for designing and implementing secure, scalable solutions while coordinating with IT operations to support our mission.
As a pivotal member of our team, you will work collaboratively to ensure the security, reliability, and efficiency of our systems while aligning with compliance standards in healthcare data security (e.g., HIPAA).
Our mission at One to One Health is "Do good, Help others"! This extends to our clients, our patients, and our employees. One to One Health offers full time employees medical, dental, and vision coverage effective day one of employment. Employees are eligible to contribute to the company 401k effective day one as well with a 5% match. Short term disability, long term disability, and basic life are covered by the employer for all full time staff members. PTO, holidays, gym stipend, TextCare services, and additional voluntary products are also included in One to One Health's very competitive benefit package.
Responsibilities
- DevOps & Security:
- Design, implement, and manage secure CI/CD pipelines and cloud infrastructure.
- Monitor and improve system reliability and performance, focusing on availability, latency, and scalability.
- Conduct security assessments, vulnerability testing, and remediation for infrastructure and applications.
- IT Operations:
- Coordinate with IT vendor to oversee network, server, and system administration with a focus on security and operational excellence.
- Serve as the focal point for comprehensive security solutions, taking point on relevant audits such as SOC Type 2 and HIPAA.
- Coordinate and maintain identity and access management solutions.
- Compliance & Best Practices:
- Ensure systems adhere to healthcare compliance requirements (e.g., HIPAA, HITECH).
- Maintain detailed documentation of infrastructure, configurations, and security practices.
- Educate team members on secure coding, DevOps, and IT practices.
- Collaboration & Innovation:
- Partner with stakeholders to understand technical and security needs, translating them into scalable solutions.
- Proactively identify and implement improvements in system architecture and security.
Qualifications
Qualifications
- Required:
- Proven experience in DevOps, IT operations, or systems engineering with a focus on security.
- Proficiency with cloud platforms (e.g., AWS and Azure) and containerization tools (e.g., Docker, Kubernetes).
- Strong understanding of networking, firewalls, VPNs, and secure remote access solutions.
- Expertise in scripting and automation (e.g., Python, Bash, PowerShell).
- Experience implementing and managing security frameworks (e.g., NIST, CIS Benchmarks).
- Familiarity with monitoring and logging tools (e.g., Splunk, ELK, Datadog).
- Preferred:
- Experience with healthcare IT systems and data compliance (e.g., HIPAA).
- Familiarity with infrastructure-as-code tools (e.g., Terraform, Ansible).
- Certifications such as AWS Certified Security Specialist, CISSP, or CCSP.