Back to jobs Senior Security Engineer (Product Security) Remote Apply Headway’s mission is a big one – to build a new mental health care system everyone can access. We’ve built technology that helps people find great therapists with the first software-enabled national network of providers accepting insurance.
1 in 4 people in the US have a treatable mental health condition, but the majority of providers don’t accept insurance, making therapy too expensive for most people. Headway is building a new mental healthcare system that everyone can access by making it easy for therapists to accept insurance and scale their practice.
Headway was founded in 2019. Since then, we’ve grown into a diverse, national network of over 45,000 mental healthcare providers across all 50 states who run their practice on our software and have served over 1 million patients. We’re a Series D company with over $325m in funding from a16z (Andreessen Horowitz), Accel, GV (formerly Google Ventures), Spark Capital, Thrive Capital, Forerunner Ventures and Health Care Service Corporation.
We want your time here to be the most meaningful experience of your career. Join us, and help change mental healthcare for the better. About the role
The Trust team at Headway is focused on security and privacy for all of Headway’s customers - therapists, patients, and payers (ex: insurance companies and health systems). As an early member on the team, you’ll have the unique opportunity to be the builder and driver of our dedicated, in-house application and product security engineering efforts. In this role, you will partner closely with our product and engineering teams to ensure that our products are designed and developed securely so that we can maintain and grow customers’ trust in Headway.
What you’ll do at Headway:
Partner with Product and Engineering: Headway has many new product launches on the horizon that will transform the industry and have a rich data component. You will be a partner at both the design and development stage to ensure that we implement new features securely, including (but not limited to):
Participating in the implementation efforts
Doing security reviews
Helping with product design decisions
Auditing and surfacing vulnerabilities in our current products
Develop and Improve our Automated Tooling: Further enhance our automated tooling to scale our product security capabilities and find potential code problems both before and after we deploy.
Make the safe way, the easy way: Work on defining and building application guardrails so that developers can build securely by default. You also will work to instill a culture of secure development across engineering.
Assist in ongoing security operations: You will be part of the security and privacy team and have responsibilities to assist in incident response, vulnerability management, penetration testing, security reviews, and other operational tasks to ensure that our security program is operating at a world-class level.
Tools we use:
Cloud Security: Lacework
Languages: Python 3, TypeScript
Libraries: FastAPI, SQLAlchemy, React
Datastores: Postgres, Redis
Infrastructure: AWS (Fargate, ECS, S3, and more), Spark and Kafka
Monitoring: Datadog, PagerDuty
Version Control: Github
Vulnerability Management : Snyk, Semgrep
You’ll be great for this role if you have:
Have 0 → 1 security experience: You have 5+ years experience in security and/or software engineering roles with a demonstrated history of working on security-related projects or with responsibilities as a security generalist.
Strong cross-functional experience: You love partnering with other teams to help both teams achieve their goals.
Strong technical depth and breadth: You have technical experience with building secure platforms and products at a deep level. You are excited to perform security design and code reviews. You want to understand security systems and improve their efficiency and scalability.
Thrive in ambiguity: You love tackling ambiguous problems in a fast-paced environment with an optimistic and energizing attitude.
Innovation at Scale : You seek opportunities to lead the industry in implementing the latest security and privacy technologies.
Results driven: You care deeply about creating impact and driving results for Headway’s business.
Mission driven: You are motivated by Headway’s mission, increasing access to high quality mental health care.
Our interview process
After you apply to Headway, here are some details of what to expect during the interview process.
Initial screen : You’ll connect with someone in recruiting so you can learn more about the team, Headway’s mission and exciting growth, and we can get a better idea of your background.
First round: You'll meet with a member of our Security Engineering team for introductions and an architecture interview. Conducted similarly to a System Design interview, we’ll learn more about your knowledge of the role of security in engineering systems and web architecture.
Final rounds : You’ll meet several more team members for technical and non-technical interviews, including our CISO who this role reports to, and leave with a fuller picture of what it’s like to work at Headway.
References and the Offer: Our favorite part of the process! We'll send over all of the details, including specifics on employee equity, and congratulatory messages from excited future team members!
Compensation and Benefits:
Compensation & Benefits:
The expected base pay range for this position is $198,050 - $267,950, based on a variety of factors including qualifications, experience, and geographic location. In addition to base salary, this role may be eligible for performance-based variable compensation and an equity grant, depending on the position and level.
We are committed to offering a comprehensive and competitive total rewards package, including robust health and wellness benefits, retirement savings, and meaningful ownership opportunities through equity. Compensation decisions are made holistically, ensuring fairness and alignment with market benchmarks while recognizing individual contributions and potential.
Benefits offered include:
Equity compensation
Medical, Dental, and Vision coverage
HSA / FSA
401K
Work-from-Home Stipend
Therapy Reimbursement
16-week parental leave for eligible employees
Carrot Fertility annual reimbursement and membership
13 paid holidays each year as well as a Holiday Break during the week between December 25th and December 31st
Flexible PTO
Employee Assistance Program (EAP)
Training and professional development
#LI-AC1 We believe a team's strength is in its people, and we cannot achieve this mission without a team that reflects the diversity of this problem – across race, ethnicity, gender, sexuality, age, national origin, religion, family status, disability, military status, and experience.
Headway is committed to the full inclusion of all qualified individuals. As part of this commitment, Headway will ensure that persons with disabilities are provided with reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or receive other benefits and privileges of employment, please inform the recruiter when they contact you to schedule your interview.
Headway employees work remotely across the US, with the option to work from offices in New York City, San Francisco and Seattle. Headway participates in E-Verify. To learn more, click here. Apply for this job * indicates a required field First Name * Last Name * Email * Phone Resume/CV Attach Attach Google Drive Enter manually Enter manually Accepted file types: pdf, doc, docx, txt, rtf Cover Letter Attach Attach Google Drive Enter manually Enter manually Accepted file types: pdf, doc, docx, txt, rtf LinkedIn Profile Are you authorized to work in the United States for any employer? * Select... Will you now or in the future require visa sponsorship? * Select... In 1-3 sentences, please tell us what brought you here and why you're interested in a role at Headway. I understand and agree that Headway may contact additional references beyond the references you provide to validate your previous employment. * Select... What is your Legal First Name? * What is your Legal Last Name? * What is your Preferred First Name? * What is your Preferred Last Name? * Please select your working location. * Select... Headway Custom Demographic Questions We believe that to build the best startup team, we must build a diverse, equitable and inclusive team. We encourage people from all backgrounds to apply to all roles, and we proactively work to design hiring processes that mitigates bias. To help us track the parity in our candidate pipelines and efficacy of our recruiting efforts, please consider answering the following demographic questions.
While completion of this survey is required, you will have the option to select “I don't wish to answer” for all questions. Your responses will be used ( in aggregate only ) to help us identify areas of improvement in our process.
Your responses will not be linked to your specific application and will not in any way be used in the hiring decision. I identify my gender as * Select... I identify as transgender * Select... I identify my sexual orientation as * Select... I identify my ethnicity as * Select... Veteran status * Select... Disability status * Select... Submit application
View Original Job Posting