Summary
What you’ll impact
The Cyber Security Engineer 2 on the Product Security Tools team will support the engineering, integration, automation, and continuous improvement of enterprise security tools across Humana’s applications, SaaS platforms, cloud environments, development pipelines, and security operations. The role involves collaborating with Product Security, DevSecOps, Cloud Engineering, AI Security, Security Architecture, and vendors to enhance security posture, mitigate risks, and drive operational maturity.
Responsibilities
What you'll do
- Support onboarding, configuration, tuning, and operationalization of Product Security and Cloud Security tools
- Integrate security tools with CI/CD pipelines, developer workflows, cloud platforms, and enterprise systems such as Splunk, ServiceNow, and Microsoft 365
- Assist with AppOmni SSPM activities, including SaaS posture visibility, AI application discovery, reporting, and platform expansion
- Support Cycode secrets detection activities, including remediation tracking, root-cause analysis, and reporting
- Operationalize security capabilities across Wiz, Checkmarx, JFrog/Xray, AppScan, Prisma Cloud, and GCP Model Armor
- Implement and maintain cloud security controls, policies, and deployment pipelines for Azure, GCP, and AWS environments
- Develop reports, dashboards, and executive summaries to communicate tool health, risk posture, findings, and remediation progress
- Manage rules and policy lifecycle, conduct access reviews, and participate in vendor cadence meetings
- Troubleshoot tool outages, scan failures, and integration issues promptly
- Create and update SOPs, playbooks, knowledge transfer documentation, escalation procedures, and process guides
- Collaborate with cross-functional teams to enhance security outcomes, automate manual processes, and improve operational efficiency
Requirements
What you’ll bring
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Information Systems, or a related technical field
- Proven commitment to continuous learning through certifications, advanced training, or active participation in security communities
- Experience with integrating security tools within CI/CD pipelines, cloud platforms, and enterprise systems
- Hands-on experience with security tools such as AppOmni, Cycode, Checkmarx, Wiz, Prisma Cloud, JFrog/Xray, AppScan, BurpSuite, NowSecure, or GCP Model Armor
- Knowledge of cloud security controls and policies in Azure, GCP, and AWS environments
- Ability to troubleshoot and resolve security tool outages, scan issues, and integration challenges
- Experience creating reports, dashboards, and metrics for security posture and operational insights
- Strong communication skills for engaging with technical teams and leadership
- Experience with vendor management, QBRs, and security roadmap discussions
- Understanding of regulated enterprise environments, audit processes, and compliance standards