Position Summary
Blooming Health is looking for an experienced Senior Backend Engineer (6 + years) to architect and deliver high-performance, cloud-native services that power our social care automation platform. As the first senior back-end hire in the U.S., you will:
- Own critical service design and technical road-mapping;
- Harden our data pipelines and API layer for scale, security, and HITRUST / HIPAA compliance.
You’ll partner with Product, DevOps, and Front-end leads to turn complex healthcare workflows into reliable microservices and event-driven architectures.
Core Responsibilities
- Architecture & Development – Design, code, and refactor scalable microservices (Java / Node.js) and data pipelines; drive coding standards, logging, and observability.
- API Strategy – Own REST endpoints and service contracts used by mobile and web apps; ensure backward compatibility and versioning.
- Database & Data Ops – Model relational (PostgreSQL) and NoSQL (MongoDB) schemas, write performant queries, and guide migrations, backups, and HA strategies.
- Cloud & ML/AI Ops – Deploy and operate services on GCP; integrate CI/CD, IaC (Terraform/CloudFormation), feature-flagging, and automated model retraining or inference pipelines where applicable.
- Security & Compliance – Embed HIPAA, HITRUST, and OWASP best practices into code reviews, secret management, encryption, and audit logging.
- Performance & Reliability – Benchmark services, tune JVM/Node runtimes, and implement autoscaling, caching, and graceful-degradation patterns.
- Leadership & Mentorship – Provide technical guidance to junior engineers, review pull requests, and champion DevSecOps culture and agile rituals.
- Vendor / MSSP Evaluation – Influence build-vs-buy decisions (e.g., choosing an MSSP, auth provider, or observability stack) and lead PoCs.
- Evidence & Audit Readiness – Work with the ISO to collect architecture diagrams, runbooks, and security artifacts required for HITRUST/SOC 2 audits.
Required Qualifications
- 6 + years back-end engineering in high-traffic, cloud-hosted products.
- Expert in Java (Spring/Spring Boot) and/or Node.js; fluency in TypeScript, Go, or Python a plus.
- Deep knowledge of PostgreSQL and MongoDB performance tuning, replication, and backup.
- Hands-on production experience with AWS (ECS/EKS, Lambda, SQS/SNS, RDS) or GCP equivalents.
- Proven track record shipping secure, compliant code in regulated domains (health-tech, fintech, etc.); working understanding of HIPAA/HITRUST controls.
- Proven track record in building high volume / transactions systems with focus on availability, scalability, and reliability.
- Mastery of Git, branch strategies, and CI/CD pipelines (GitHub Actions, CodeBuild, or similar).
- Strong communication skills; able to translate architectural choices to execs and mentor distributed teams.
Preferred / Nice-to-Have
- Familiarity with FHIR / HL7 data formats and healthcare integration patterns.
- Experience with secrets management (Vault, AWS KMS), or zero-trust networking.
- Exposure to ML/AI-Ops (model versioning, feature stores, automated retraining).
- IaC expertise with Terraform or CloudFormation; Kubernetes experience a bonus.
- Prior success leading onshore/offshore teams or acting as tech-lead for multi-time-zone projects.