Sr. Application Security
Coherehealth · Hyderabad, Telangana, India · 2026-07-01
About this role
<p><strong>Opportunity Overview:</strong></p> <p>We are seeking a hands-on Application Security Engineer to help embed security into the core architecture of our cloud-native healthcare platform. This role focuses on implementing secure application frameworks, identity systems, and developer security capabilities across modern distributed systems.</p> <p>As an Application Security Engineer, you will work closely with engineering and platform teams to implement secure patterns for authentication, authorization, API security, and service-to-service communication. You will support architecture reviews, threat modeling, and secure design discussions, and implement practical security controls directly in their applications and services.</p> <p>This role is deeply integrated into the engineering and platform ecosystem, working on secure API architectures, identity integrations, CI/CD security, and reusable security frameworks that enable teams to build secure services by default.</p> <p>The ideal candidate combines strong software engineering and cloud architecture experience with deep expertise in modern identity platforms such as Okta, and a passion for helping engineering teams deliver secure systems at scale.</p> <p>Experience in healthcare or other regulated environments is strongly preferred.</p> <p><strong>What you’ll do:</strong></p> <ul> <li>Contribute to designing secure architecture patterns for cloud-native applications, APIs, and microservices</li> <li>Implement secure patterns for authentication, authorization, and identity propagation across distributed systems</li> <li>Design secure approaches for service-to-service communication and API protection</li> <li>Support architecture and threat modeling reviews for new services and platform capabilities</li> <li>Design and implement secure identity and authentication flows using Okta and AWS Cognito</li> <li>Implement OAuth2, OpenID Connect, and token-based authentication patterns</li> <li>Apply secure approaches for API gateway authorization and token validation</li> <li>Integrate security controls into CI/CD pipelines and DevSecOps workflows</li> <li>Work closely with engineering teams on secure service and API design</li> <li>Contribute to building reusable security frameworks and developer tooling that enable teams to build secure services by default</li> </ul> <p><strong>Required Qualifications:</strong></p> <ul> <li>6 or more years of experience in application security, secure software engineering, or cloud security architecture</li> <li>Strong background in designing and securing cloud-native applications, APIs, and microservices architectures</li> <li>Deep expertise with modern authentication and identity protocols, including OAuth2, OpenID Connect, and JWT</li> <li>Hands-on experience designing and implementing identity architectures using Okta, including SSO, federation, and MFA</li> <li>Experience integrating Okta with cloud-native applications and APIs, including token validation and identity propagation</li> <li>Experience working with AWS Cognito or similar cloud identity platforms</li> <li>Strong understanding of secure API design, including gateway authorization and service-to-service authentication</li> <li>Experience embedding security into CI/CD pipelines and DevSecOps workflows</li> <li>Ability to review application code and guide secure coding practices across engineering teams</li> <li>Experience contributing to security frameworks or reusable libraries that enable engineers to build secure services by default.</li> </ul> <p><strong>Ability to commute/relocate:</strong></p> <ul> <li>Hyderabad, Telangana: Reliably commute or planning to relocate before starting work (Preferred)</li> </ul> <p><strong>Interview Process*:</strong></p> <ol> <li>Connect with Talent Acquisition&nbsp;</li> <li>Meet with the Hiring Manager</li> <li>Behavioral Interview(s)</li> <li>Case Study</li> <li>Interview with Senior Leadership</li> </ol> <p>*Subject to change</p> <p><strong>About Cohere Health:</strong></p> <p>Cohere Health’s clinical intelligence platform and agentic AI-powered solutions connect health plans’ strategic goals and providers’ needs, optimizing the speed, cost, and quality of care. With an enterprise approach that streamlines payer-provider decision-making across the care continuum–including policy, prior authorization, payment accuracy, and more–the company improves collaboration and reduces burden, resulting in up to 8x ROI and 94% provider satisfaction.&nbsp;</p> <p>With the acquisition of ZignaAI, we expanded our AI-native platform with a comprehensive Payment Integrity Suite that spans data mining, clinical and coding validation, authorization and claims reconciliation, and end-to-end payment integrity services across pre- and post-pay workflows. By connecting clinical and payment insights, our transparent, AI-powered solutions help health plans proactively improve payment accuracy, reduce waste and vendor dependency, strengthen provider relationships, and build smarter, more efficient payment integrity programs.</p> <p>Cohere Health’s innovations continue to receive industry-wide recognition. We’ve been recognized on TIME’s World Top HealthTech Companies 2025 list, the 2025 Inc. 5000 list, in the Gartner® Hype Cycle™ for U.S. Healthcare Payers (2022-2025), and ranked as a Top 5 LinkedIn™ Startup for 2023…
Skills asked for
- ci/cd
- microservices
- aws
Similar jobs
- Application Security SpecialistEntain · Hyderabad
- Senior Application Security AnalystEntain · Hyderabad
Your next role is already in here.
Search live openings from thousands of employers, save the ones worth a second look, and let JobBob keep watch for the rest.