Grow your career internally or refer a friend to athenahealth!
Role Summary
We are seeking an Associate level AI Security Automation Engineer to help integrate security into the software development lifecycle and improve DevSecOps efficiency using AI-driven analytics and automation. You will work cross-functionally with engineering, platform, and product teams to reduce risk, streamline security operations, and improve the developer's experience through scalable security practices.
Key Responsibilities
• Partner with engineering, platform, and product teams to embed security into day-to-day delivery and SDLC workflows.
• Support application security programs across SAST, DAST (web and API), SCA, and secrets scanning.
• Strengthen software supply chain security and integrate security controls into the Harness unified pipeline and related CI/CD workflows.
• Build AI-powered workflows including agentic IDE and MCP server integrations to automate triage, prioritize and enable auto remediation via standardized playbooks.
• Reduce false positives and operational noise by using AI-assisted analysis to tune and maintain SAST queries/rules.
• Support response to zero-day events by accelerating assessment/scanning and automating identification of affected assets (e.g., vulnerable libraries or malicious packages) using inventory sources.
• Create and maintain runbooks, playbooks, and documentation for recurring findings, remediation steps, and operational processes.
• Support the security exemption/exception process, including documentation, approvals, and expiry/renewal tracking.
Required Qualifications
• Bachelor’s degree in Computer Science/ Cybersecurity/ Engineering (or equivalent experience).
• Strong knowledge of web/app security fundamentals (e.g., OWASP Top 10 concepts).
• Familiarity with Git and modern development workflows (PRs, CI/CD).
• Strong proficiency in at least one programming language (Python, JavaScript/TypeScript, etc.)
• Experience with writing unit tests, producing user documentation, and informative demos.
• Hands-on experience with AWS/Azure, including security fundamentals (e.g., IAM, networking, logging/monitoring) and supporting security in cloud-based environments.
• Experience using agentic AI systems in engineering/security workflows, including integrating AI agents with MCP servers to enable assisted/automated remediation (or similar)
• Ability to operate effectively in a high-performing, collaborative environment, working closely with development and partner teams across the organization.
Expected Compensation
$96,000 - $162,000
The base salary range shown reflects the full range for this role from minimum to maximum. At athenahealth, base pay depends on multiple factors, including job-related experience, relevant knowledge and skills, how your qualifications compare to others in similar roles, and geographical market rates. Base pay is only one part of our competitive Total Rewards package - depending on role eligibility, we offer both short and long-term incentives by way of an annual discretionary bonus plan, variable compensation plan, and equity plans.
Have you notified your current manager of your application?