Hear from our CEO, Guillaume de Zwirek, about why we are standing at the edge of the biggest technological shift in healthcare’s history!
Responsibilities
- AI Threat Modeling: Threat-model agentic and LLM-powered features end-to-end: data ingress/egress, agent identity, tool-use boundaries, and the unique risks that come with frontier AI work
- Paved Road Tooling: Build the secure SDLC paved road — secure SDLC guardrails, prompt/agent identity patterns, secrets management, PHI/PII redaction patterns
- Security Gates: Embed SAST, DAST, SCA, and infrastructure scanning into CI/CD so security gates are part of the pipeline, not an afterthought
- AI Monitoring Strategy: Identify and pilot an AI monitoring tool to fill the gap our current tooling (Zscaler) doesn't cover
- Policy -> Practice: Translate existing security policy into safe tool-use patterns for the Artera Primitives team, Systems Engineers, and other AI Builder squads
- Cross Functional Partnership: Partner cross-functionally with DevOps, Systems Engineering, and the AI builder teams — meeting AI Builders and engineers in the middle and finding the secure path forward, not the "no" path
- Security Ownership: Own AWS identity and access management patterns, secrets management, and security tooling decisions in our AWS environment. Collaborate with System Engineers / DevOps on implementation.
- Security Framework Application: Apply frameworks like MITRE ATT&CK, MITRE ATLAS, OWASP Top 10, and OWASP LLM Top 10 to architectural decisions.
Requirements
- AppSec Tenure: 6–10 years in Application Security, with a hands-on engineering orientation
- LLM & Agent Security: Demonstrable experience with LLM and agent security — OWASP LLM Top 10, MITRE ATLAS, prompt/output filtering, agent identity, and tool-use risk
- Threat Modeling Expertise: You’ve built end-to-end threat models for production platforms and translated them into corrective controls
- Pipeline Scanning Tools: SAST, DAST, and infrastructure scanning tools in production CI/CD environments
- Shift-Left Security Experience: Taking policy, codifying it as infrastructure-as-code (Terraform), and gating CI/CD pipelines on security findings
- Cloud Depth: Significant AWS experience (GCP or Azure background acceptable; AWS is learnable, but cloud depth is required)
- Regulated Environment Experience: Background in regulated environments — healthcare (HIPAA/HITRUST), federal (FedRAMP), or fintech (PCI)
- Collaborative Communicator: Strong cross-functional communicator;able to partner with engineers and AI builders, find the secure path together.
Bonus
- Agentic AI Modeling: Direct experience threat modeling agentic AI systems (rare — but if you have it, you're the cherry on top)
- Agentic Platform Exposure: AWS Agent Core, MCP, or similar agent-platform exposure
- Growth Stage AI Experience: Experience at a growth-stage company (~50–500 people) that has already adopted agentic AI
- Fintech to Agentic Path: Background in fintech transitioning into agentic systems (a common path into this kind of work today)
- AI Monitoring Tool Ownership: Past ownership of an AI monitoring tool rollout or evaluation
OUR APPROACH TO WORK LOCATION
At Artera, we believe the best work happens when people are truly connected. Our AI services model has shown what’s possible when small, focused teams move fast together — the speed of collaboration, pace of career growth, and quality of what we build can become stronger when teams share space. As we grow, we want every new teammate to feel part of an in-person community from day one.
That’s why we are focusing our U.S. hiring in three cities, where we are investing in offices and building strong local teams:
- Santa Barbara, CA (Our HQ)
- Seattle, WA
- Kansas City, KS/MO
Unless a role’s posting states otherwise, new U.S. roles are based in one of these three cities, and candidates should reside in (or be willing to relocate to) one of these areas. Each location follows an in-person schedule that reflects how our local teams work best; we’ll walk you through what to expect for your specific role and city during the interview process.
Focusing on offices and hiring in a few locations, rather than spreading thin across many cities, lets us invest deeply in each one so every team has real community, mentorship, and momentum in person.
Skills Required
- 6-10 years in Application Security
- Experience with LLM and agent security
- Built end-to-end threat models for production platforms
- Experience with SAST, DAST, and infrastructure scanning tools
- Experience in regulated environments (healthcare, fintech)
- Strong cross-functional communication skills
Artera Compensation & Benefits Highlights
-
Healthcare Strength — Feedback suggests health coverage includes multiple medical plan options, dental and vision, and strong mental‑health access with $0 in‑network copays. Family‑planning support, an EAP, and wellness programs further reinforce the medical offering.
-
Parental & Family Support — Feedback suggests paid parental leave for all parents is complemented by practical supports like meal delivery, childcare reimbursement, and fertility benefits. These elements indicate meaningful assistance through family‑building and return‑to‑work transitions.
-
Leave & Time Off Breadth — Feedback suggests flexible, non‑accrual PTO is provided, along with company shutdowns and a periodic paid sabbatical. This breadth of time‑off options supports rest and longer breaks over tenure.
Artera Insights
What We Do
Artera, a SaaS leader in digital health, transforms patient experience with AI-powered virtual agents (voice and text) for every step of the patient journey. Trusted by 1,000+ provider organizations — including specialty groups, FQHCs, large IDNs and federal agencies — engaging 100 million patients annually. Artera’s virtual agents support front desk staff to improve patient access including self-scheduling, intake, forms, billing and more. Whether augmenting a team or unleashing a fully autonomous digital workforce, Artera offers multiple virtual agent options to meet healthcare organizations where they are in their AI journey. Artera helps support 2B communications in 109 languages across voice, text and web. A decade of healthcare expertise, powered by AI. For more information, visit www.artera.io.
Why Work With Us
At Artera, you’ll work alongside a team of talented, hard-working people who are driven to improve healthcare. You will be challenged with complex projects and meaningful work – making your success at Artera all the more meaningful.
Gallery
Artera Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.
Our Santa Barbara HQ, Philadelphia and Budapest offices are currently hybrid. We also hire in LA-area, SF/Bay Area, Boston, Chicago, Denver, Seattle and Kansas City areas. We do not currently have offices there, but are looking to that in the future








.png)