Senior Backend Engineer, Compliance Platform
Summary
Founding senior backend engineer to build Supio's internal Compliance Platform from scratch — anonymizing, de-identifying, and pseudonymizing PII/PHI (medical records, case files) so it stays usable by the company's legal AI, with audit trails, access controls, and compliance reporting. Core stack: AWS ecosystem, S3, relational databases, HIPAA/PHI workflows.
About the role
What you'll do
- Architect and build new features for an internal compliance platform-as-a-service that integrates with Supio's existing systems
- Build anonymization, de-identification, and pseudonymization pipelines for customer PII and PHI — medical records, police reports, and other case documents — that keep data usable for AI workflows
- Implement audit trails covering every access to a customer file, whether by a Supio employee, a system, or a customer
- Build tracking and enforcement for BAAs, customer contracts, data opt-in/opt-out, data residency, and geographic compliance requirements.
- Design access controls with chain-of-command approval enforcement, and the reporting to show who accessed what, why, and with what authorization.
- Build notification and remediation workflows so issues are found and fixed, not just logged.
- Partner closely with DevOps, engineering teams across Supio, and the Office of the CTO — our privacy function.
What you'll bring
- 7+ years of backend engineering experience, with significant time on data-sensitive systems
- You have built a compliance, privacy, or data-governance platform before. This is the bar — we are looking for someone who has done this work, not someone adjacent to it
- Deep, practical knowledge of HIPAA and the safe handling of PHI and PII
- Experience with agentic AI development, or building platforms that AI systems consume
- Familiarity with SOC 2, HITRUST, or similar frameworks
- Strong experience with cloud data infrastructure — S3, relational databases, and the AWS ecosystem
- A security-first mindset: authentication, authorization, least privilege, audit logging
- Comfort moving quickly toward a real regulatory deadline without cutting corners
- Bachelor’s or Master’s degree in Computer Science, Engineering, or a related field, or equivalent practical experience
Nice-to-haves
- Time in legal, healthcare, or another regulated industry
How we hire
Compensation
- Seattle, WA: $170,000 – $243,000 annually
- San Francisco, CA: $200,000 - $255,000 annually
What they ask for
Required
- 7+ years of backend engineering experience, with significant time on data-sensitive systems
- Has built a compliance, privacy, or data-governance platform before
- Deep, practical knowledge of HIPAA and safe handling of PHI and PII
- Experience with agentic AI development, or building platforms that AI systems consume
- Familiarity with SOC 2, HITRUST, or similar frameworks
- Strong experience with cloud data infrastructure — S3, relational databases, AWS ecosystem
- Security-first mindset: authentication, authorization, least privilege, audit logging
- Comfort moving quickly toward a real regulatory deadline without cutting corners
- Bachelor's or Master's degree in Computer Science, Engineering, or related field, or equivalent practical experience
Preferred
- Time in legal, healthcare, or another regulated industry
