Security Operations Engineer
Listed on 2026-08-10
-
IT/Tech
Cybersecurity, Information Security & Data Protection
About Hopscotch Primary Care
At Hopscotch Primary Care, we believe great healthcare should be accessible to all people across all communities. Today, almost 20% of Americans live in a rural community, yet only 11% of physicians practice in those same communities. We are on a mission to transform healthcare in rural America. We provide high-quality primary care tailored to meet the needs of our patients through our robust care model and comprehensive care team, delivering care in our clinics, and across settings, and wrapping resources around the patients who need them most.
Our patients and the care teams who serve them sit at the center of everything we do scotch Primary Care takes a team approach to serve patient needs and provide the best care possible. Our goal is to provide the care each of us would want for ourselves or for our family members, in the right setting, and at the right time.
Today, we are serving thousands of patients in our value-based care model and the number is growing every day. If you want to bring your experience, skill and passion to make a lasting impact in healthcare, we’d like to meet you.
About the RoleAs the Security Operations Engineer at Hopscotch, you will lead and manage core security and compliance controls for the business using modern methods and tools, reporting to and working closely with the Security Officer. Your expertise and insights will contribute to maintaining and building our security and compliance initiatives while helping shape the security strategy for deployment across our clinics and offices.
You will own end‑to‑end execution and management of projects that directly impact the organization’s ability to deliver care to patients.
For today’s modern world of security — you'll need ingenuity to identify where agentic AI can accelerate evidence collection, interpret unstructured data, triage compliance gaps, and augment human judgment in risk assessments. Working closely with Product, Engineering, and Ops teams, you'll translate compliance, operational, and regulatory requirements into solutions that support audit programs including HIPAA, building systems that combine traditional automation with AI capabilities to achieve scale that wouldn't otherwise be possible.
Responsibilities- Manage the enterprise security program.
- Define systems security requirements, architecture, and policies according to regulatory and business requirements.
- Own confidentiality, integrity, and availability of all systems, services, and technologies.
- Develop roadmaps for technology domains to improve operational and security posture.
- Maintain awareness of emerging and trending threats.
- Track and report on security infrastructure, configurations, design performance measures, and ongoing vulnerability and risk assessments.
- Architect security, policy, and risk controls.
- Own tenant-wide security architecture for Microsoft 365, Azure, and other core SaaS collaboration platforms.
- Design compartmentalization and data‑governance models that scale with the company.
- Conduct secure design reviews and threat modeling; identify and prioritize risks, attack surfaces, and vulnerabilities.
- Translate written policies into policy‑as‑code—working with Engineering, Product, and Ops to express requirements as enforceable rules, automated checks, and continuous validation.
- Establish feedback loops between policy and implementation: surface where controls diverge from written requirements and where policies need to evolve based on infrastructure realities.
- Build automation, AI, and integrations that scale compliance.
- Design and build automated workflows for risk management and compliance, enabling continuous monitoring as Hopscotch grows.
- Build data pipelines that aggregate risk, control, and asset information across the tech stack—mapping disparate schemas, handling inconsistent data quality, and creating unified views of compliance posture through dashboards and reporting.
- Build integrations and automation against SaaS APIs to automate provisioning and catch drift.
- Design and maintain integrations connecting security tooling with cloud infrastructure, identity management, HRIS, ticketing, version control,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).