Cloud Security and Infrastructure Engineer
Chamber Cardio – Where Care Comes Together
About Chamber
Cardiovascular disease remains the leading cause of death in America. At Chamber, we’re rebuilding the system for cardiology, creating a world where outcomes, not volume, define success. We partner with independent cardiologists to help them lead population health efforts in their communities, equipping them with technology, data, and operational tools that turn complex insights into better care for patients.
Our model blends clinical expertise, thoughtful design, and a modern operating platform that supports physicians, patients, and payers alike. We believe innovation and empathy go hand in hand, and by combining cutting-edge AI tools with a relentless focus on human care, we can transform heart health at scale.
Role Overview
We’re looking for a Cloud Security and Infrastructure Engineer to build and mature Chamber’s AWS security program and cloud infrastructure. This role owns cloud security architecture, detection and response, HIPAA compliance, and infrastructure decisions that keep our platform secure, reliable, and scalable.
This is a role for someone who moves work forward without waiting for perfect conditions, brings clarity to ambiguous situations, and follows through. We have live production infrastructure and active patient data running through it today, and the security posture protecting it needs to hold up and keep improving.
Key Responsibilities
Design and enforce least-privilege IAM architectures, network segmentation, and cloud security controls (SCPs, secrets management, encryption, runtime threat detection) across multiple AWS accounts.
Build automated detection and response pipelines, using AI tools to turn security findings into fast, actionable remediation.
Maintain GitHub-based CI/CD pipelines and automation frameworks alongside the engineering team.
Lead cross-functional security initiatives, embedding threat modeling and security reviews into the architecture and development lifecycle.
Own vulnerability management, AWS security posture monitoring, incident detection and response, and HIPAA compliance programs.
Shape cloud architecture decisions — balancing security, cost, and reliability — around zero-trust and defense-in-depth principles.
Review and document the workflows, staffing, and tooling for each active care program, and produce a written summary of gaps and immediate priorities.
What You’ll Achieve in Your First 90 Days
Complete a security/configuration gap analysis against CIS, HIPAA, and existing tooling (AWS Inspector, Security Hub, Datadog).
Identify automation opportunities and standardize AWS account deployment using Control Tower.
Validate SIEM logging ingestion and flag gaps.
Evaluate next-gen vulnerability scanners and build a comparison scorecard.
Requirements
5+ years of hands-on AWS cloud security and infrastructure engineering (IAM, network security, threat detection, compliance) in production — ideally including building a security program from scratch.
Deep fluency with AWS security services (GuardDuty, Security Hub, Config, CloudTrail, KMS, Inspector) and IAM policy design.
Experience with multi-account AWS governance (Control Tower, Organizations, VPC/network design) and container/serverless infrastructure (ECS, EKS, Lambda).
Familiarity with security frameworks and compliance standards (CIS, HIPAA, HITRUST, AWS Well-Architected).
US Citizenship is required.
Chamber Values
Low Ego: We stay grounded, curious, and open to feedback.
Empathy: We build trust through compassion and thoughtful communication.
Courage: We take action, think critically, and challenge ideas respectfully.
Ownership: We follow through with integrity and hold ourselves to high standards.
Grit: We push through ambiguity, move with urgency, and solve problems with horsepower and heart.
Location:
Remote opportunity with the ability to work ET or CT hours. You must be authorized to work in the US without sponsorship. Periodic travel to practice sites or Chamber offices may be required.