GoodRx Logo

GoodRx

Manager, Security Engineering

Posted An Hour Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in USA
75K-323K Annually
Senior level
Remote or Hybrid
Hiring Remotely in USA
75K-323K Annually
Senior level
Lead and grow a security engineering team to design and operate cloud-native security controls, drive DevSecOps practices, conduct threat modeling and incident response, partner cross-functionally on security roadmaps, and ensure compliance with frameworks (NIST, SOC 2, ISO, etc.). Responsible for vulnerability management, identity and access controls, observability/SIEM, and security automation.
The summary above was generated by AI

GoodRx is the leading prescription savings platform in the U.S. Trusted by more than 25 million consumers and 750,000 healthcare professionals annually, GoodRx provides access to savings and affordability options for generic and brand-name medications at more than 70,000 pharmacies nationwide, as well as comprehensive healthcare research and information. Since 2011, GoodRx has helped consumers save nearly $75 billion on the cost of their prescriptions.

Our goal is to help Americans find convenient and affordable healthcare. We offer solutions for consumers, employers, health plans, and anyone else who shares our desire to provide affordable prescriptions to all Americans.

How We Work with AI:

AI tooling is becoming an important part of how GoodRx engineers and security professionals operate. We expect leaders at this level to leverage AI responsibly to improve productivity, strengthen security operations, and scale team effectiveness.


You understand both the opportunities and risks associated with AI-assisted development. You guide your team in the responsible use of AI tools for engineering, analysis, automation, and investigation while ensuring appropriate security, privacy, and compliance controls are maintained.

You actively identify opportunities to leverage AI-driven workflows, security automation, and operational efficiencies while helping establish best practices for safe and effective adoption.


Responsibilities:

  • Leads, hires, develops, and manages security engineers through coaching, performance management, and career development 
  • Develops and executes the team's security engineering roadmap, balancing risk reduction, operational effectiveness, and business objectives 
  • Develops and maintains security engineering services and controls that align with business objectives and industry best practices 
  • Recommends improvements to security policies, standards, and procedures that strengthen the organization's security posture, including encompassing and considering emerging risks such as AI adoption and use 
  • Works closely with leadership, teams, and cross-functional business groups to establish alignment on the security roadmap, plan and vision 
  • Uses business knowledge and contextual awareness to guide team technical decisions related to cloud security, application security, identity management, and emerging technologies 
  • Leads risk assessments, threat modeling, incident response, and security investigations related to production systems, cloud infrastructure, and new product initiatives 
  • Establishes and develops security vendor relationships to ensure effective and efficient supplier performance results
  • Partners with Security, Compliance, Engineering, and IT stakeholders to support security awareness initiatives and promote secure engineering practices 
  • Partners with Compliance and Audit teams to support security controls, audit readiness, evidence collection, and remediation activities
  • Drives adoption of DevSecOps practices, security automation, vulnerability management, secure code review processes, and secure-by-default engineering patterns 
  • Establishes operational metrics and reporting to measure the effectiveness of security controls, detection capabilities, and team performance

Required Technical and Professional Expertise:

  • 8+ years of experience in cybersecurity, cloud security, application security, infrastructure security, or related domains 
  • Bachelor's degree in Computer Science, Information Systems, or a related field or equivalent practical experience
  • Experience with one or more modern programming or scripting languages (Python, Go, Java, Rust, Bash, or similar) 
  • Strong familiarity with software development lifecycle (SDLC) processes and source control technologies
  • Strong understanding of DevSecOps, application security principles, secure software development practices, and modern software delivery environments 
  • Ability to create solutions that are scalable, repeatable, secure and maintainable
  • Experience with risk assessment & analysis, emergency preparedness, and investigations/incident management
  • Excellent communication and team relationship skills
  • Experience with SIEM, security monitoring, threat detection, incident response, and observability platforms in cloud environments 
  • Experience securing cloud-native environments, containerized workloads, Kubernetes platforms, modern CI/CD pipelines, and associated controls including vulnerability management, secrets management, and workload protection 
  • Experience with identity and access management technologies such as Okta, SAML, OAuth, Descope, and OIDC, including authentication, authorization, and privileged access concepts 
  • Experience securing cloud platforms such as AWS and/or GCP, including IAM, network security, logging, monitoring, and cloud-native security services (AWS and GCP certifications are a plus)
  • Experience with managing security programs and frameworks
  • Experience implementing or operating security controls aligned with frameworks such as NIST CSF, SOC 2, HITRUST, ISO 27001, or CIS Controls 
  • CISSP and/or CISM certification is a plus

Security is responsible for implementing security measures, monitoring suspicious activity, and taking immediate action against cyber threats through the incident response process and vulnerability management program. Additionally, Security monitors GoodRx’s organizational systems for end users’ activities from an information security perspective and correlates / analyzes logs to detect potential Events and Incidents. Lastly, the team works collaboratively with other departments to improve the organization’s security posture.

At GoodRx, pay ranges are determined based on work locations and may vary based on where the successful candidate is hired. The pay ranges below are shown as a guideline, and the successful candidate’s starting pay will be determined based on job-related skills, experience, qualifications, and other relevant business and organizational factors. These pay zones may be modified in the future. Please contact your recruiter for additional information.

San Francisco and Seattle Offices:

$202,000.00 - $323,000.00

New York Office:

$185,000.00 - $296,000.00

Santa Monica Office:

$168,000.00 - $269,000.00

Other Office Locations:

$151,000.00 - $242,000.00

GoodRx also offers additional compensation programs such as annual cash bonuses or commission, and annual equity grants for most positions as well as generous benefits. Our great benefits offerings include medical, dental, and vision insurance, 401(k) with a company match, an ESPP, unlimited vacation, 13 paid holidays, and 72 hours of sick leave. GoodRx also offers additional benefits like mental wellness and financial wellness programs, fertility benefits, generous parental leave, pet insurance, supplemental life insurance for you and your dependents, company-paid short-term and long-term disability, and more!

We’re committed to growing and empowering a more inclusive community within our company and industry. That’s why we hire and cultivate diverse teams of the best and brightest from all backgrounds, experiences, and perspectives. We believe that true innovation happens when everyone has a seat at the table and the tools, resources, and opportunities to excel.

With that said, research shows that women and other underrepresented groups apply only if they meet 100% of the criteria. GoodRx is committed to leveling the playing field, and we encourage women, people of color, those in the LGBTQ+ communities, individuals with disabilities, and Veterans to apply for positions even if they don’t necessarily check every box outlined in the job description. Please still get in touch - we’d love to connect and see if you could be good for the role!

GoodRx is committed to providing reasonable accommodations for candidates with disabilities during our recruiting process. If you need any assistance or accommodations due to a disability, please reach out to us at [email protected].

We prioritize candidate safety. Please be aware that all official communication will only be sent from @goodrx.com or [email protected] addresses.

GoodRx is America's healthcare marketplace. The company offers the most comprehensive and accurate resource for affordable prescription medications in the U.S., gathering pricing information from thousands of pharmacies coast to coast, as well as a tele-health marketplace for online doctor visits and lab tests. Since 2011, Americans with and without health insurance have saved $60 billion using GoodRx and million consumers visit goodrx.com each month to find discounts and information related to their healthcare. GoodRx is the #1 most downloaded medical app on the iOS and Android app stores. For more information, visit www.goodrx.com.

Similar Jobs at GoodRx

16 Hours Ago
Remote or Hybrid
USA
75K-463K Annually
Expert/Leader
75K-463K Annually
Expert/Leader
Consumer Web • Coupons • Healthtech • Social Impact • Pharmaceutical
The VP will lead the development and execution of the go-to-market strategy for Pharma Solutions, overseeing commercialization, product launches, and cross-functional collaboration to maximize customer value and drive growth.
Top Skills: Competitive AnalysisCustomer Success StrategiesMarket ResearchProduct LaunchSales Enablement
16 Hours Ago
Remote or Hybrid
USA
75K-271K Annually
Senior level
75K-271K Annually
Senior level
Consumer Web • Coupons • Healthtech • Social Impact • Pharmaceutical
The Retail Account Management Director will lead retail partnerships, drive strategic initiatives, and manage client relationships to enhance performance and innovation within GoodRx's platform.
Top Skills: ExcelGoogle WorkspacePowerpoint/Slides
4 Days Ago
Remote or Hybrid
USA
75K-254K Annually
Senior level
75K-254K Annually
Senior level
Consumer Web • Coupons • Healthtech • Social Impact • Pharmaceutical
The Sr. Pharma Direct Sales Director will develop and grow relationships with pharmaceutical clients, assess revenue potential, collaborate on proposals, and provide sales updates while staying informed on industry trends.

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account