Cyber Security Specialist
* The recruiting process for every candidate and position includes at least one video zoom or in person meeting with an Ascender. We do not use Signal Messenger.
Summary
At Ascendco, we are building mission-critical technology that empowers surgical teams to deliver safer, more efficient care. Security is not an abstract policy — it’s something we practice every day in how we build, deploy, and support our platform. We are seeking a Cybersecurity Specialist who is both detail-oriented and hands-on, ready to strengthen our company and platform security from the ground up.
In this role, you’ll partner directly with our CTO to implement and enforce security measures across systems, networks, and applications. You will patch systems, harden AWS deployments, respond to client IT requests, and help maintain compliance with SOC 2. You’ll also assist with writing policies, conducting risk assessments, and managing security documentation. This is a highly visible role where you’ll balance technical execution with project management and communication.
In Office Requirements:
- This is a Hybrid role that reports out of our Kansas City, MO office.
- 2-3 days per week in office is required for this position
Responsibilities
Security Operations & Execution
-
- Perform Windows security updates, endpoint protection, firewall configurations, and AWS hardening.
- Deploy and maintain monitoring and detection systems to identify and respond to threats.
- Conduct vulnerability scans, penetration tests, and remediation activities.
- Support incident response efforts, including documentation and direct action when needed.
Governance, Risk & Compliance
-
- Assist with SOC 2 Type II certification processes, including evidence collection, documentation, and control implementation.
- Contribute to security policies, procedures, and training materials, ensuring they are actionable and clear.
- Support annual risk assessments, tracking remediation items and ensuring follow-through.
- Coordinate with client IT departments to share technical/security specifications and validate secure deployments.
Cloud & Infrastructure Security
-
- Maintain and improve Ascendco’s AWS security posture, including IAM roles, encryption, backups, and monitoring.
- Work with engineers to embed security practices into CI/CD pipelines and deployment workflows.
- Support disaster recovery and business continuity planning through secure infrastructure practices.
Culture & Collaboration
-
- Model a security-first mindset by showing—not just telling—what secure operations look like.
- Collaborate with engineering, client success, and leadership to ensure security is built into every process.
- Stay informed on current cybersecurity threats, trends, and best practices, then help apply them to Ascendco.
- Help foster ownership, collaboration, and continuous improvement in all aspects of security.
Requirements
Must-Haves
-
- 3–5+ years of experience in cybersecurity, system administration, or IT security.
- Hands-on ability to perform security updates, patching, firewall/IAM configurations, monitoring, and incident response.
- Strong written communication skills — able to draft policies, document procedures, and communicate with both technical and non-technical stakeholders.
- Familiarity with SOC 2, HIPAA, ISO 27001, or NIST compliance frameworks.
- Experience with AWS cloud security practices (IAM, encryption, monitoring, backups).
- Strong problem-solving skills and ownership mindset — you see tasks through to completion.
Nice-to-Haves:
-
- Prior experience in healthcare technology or other regulated industries.
- Certifications such as Security+, CISSP, or AWS Security Specialty.
- Experience working directly with clients or auditors on security reviews.
Work Environment & Culture:
At Ascendco, we believe in continuous improvement, ownership, and collaboration. This Cybersecurity Specialist role is unique: you’ll take on a wide range of hands-on security responsibilities, from patching systems to drafting policies, directly supporting our CTO in leading security across the organization.
We operate in a flexible hybrid model (50% remote, 50% in-office in Kansas City), and we work side by side with surgical teams to make an impact where it matters most — safer, more efficient patient care.
You’ll secure not only our platform and company, but also the trust that surgical teams place in us.