Jobs and Careers
GO

Security Engineer III

GoodRx
CA HQ, United States, United Statesfull_timeVerifiedPosted 9 May 2025
💰 $229,000/yr($107,000/yr$229,000/yr)

About the role

GoodRx is the leading prescription savings platform in the U.S. Trusted by more than 25 million consumers and 750,000 healthcare professionals annually, GoodRx provides access to savings and affordability options for generic and brand-name medications at more than 70,000 pharmacies nationwide, as well as comprehensive healthcare research and information. Since 2011, GoodRx has helped consumers save nearly $75 billion on the cost of their prescriptions.

Our goal is to help Americans find convenient and affordable healthcare. We offer solutions for consumers, employers, health plans, and anyone else who shares our desire to provide affordable prescriptions to all Americans.

About the Role

GoodRx is looking for a hands-on Security Engineer to keep information safe and eliminate risks across our products and internal systems. This individual will collaborate with GoodRx’s Security engineering team to ensure our services are well vetted and maintained. The Security Engineering team works closely with our Information Security, IT, and DevOps teams to detect and respond to threats, improve our security operations posture, and support core security tooling. You’ll help drive visibility, automation, and incident response maturity by leveraging platforms like CrowdStrike Falcon, Palo Alto (Prisma VPN), One Trust and Sumo Logic. The Security Engineer will be technically savvy, a strong multitasker, and be one step ahead to ensure consistent coverage. The Security Engineer will work on, review third party risks, assess, monitor, and mitigate risks, incident handling and participating in projects that scale our security capabilities across cloud and enterprise environments.

 

Responsibilities:

  • Perform risk analysis across the enterprise and production environments to identify internal and external threats

  • Provide security systems technology support as it applies to the implementation, installation and maintenance of security tooling, processes, procedures and runbooks

  • Monitor, analyze, and triage alerts and logs from Falcon, Prisma VPN, Sumo Logic, and other security platforms

  • Stay current on emerging threats, vulnerabilities, and threat actor behaviors, and apply this knowledge to improve detection and response

  • Investigate potential threats and participate in incident response activities, including root cause analysis and remediation

  • Manage and optimize Palo Alto Prisma Access policies, VPN configurations, and integrations to support secure remote access

  • Create and maintain security detections, dashboards, and reports in Sumo Logic to improve threat visibility and reduce noise

  • Collaborate with DevOps, Infrastructure, and Compliance teams to implement security controls aligned with frameworks like NIST, HiTrust, and CIS.

  • Support onboarding of new tools and systems into our security monitoring and alerting stack

  • Provide systems support with respect to building or improving systems security 

  • Maintains corporate and production security procedures

  • Develop and provide regular security training

  • Plans, coordinates, and conducts investigations of alleged and suspected security incidents and events

  • Evaluate third-party vendor control environments to ensure effective and efficient supplier performance results

  • Ability to work independently to ensure goals set by leadership are reached, and a team player

  • Triage, remediate, and escalate security alerts / events / reports

  • Maintain all required business controls elements of the security program and participate in the audit process for assigned areas of responsibility

Required Technical and Professional Expertise:

  • At least 3 to 5 years experience in Security Operations, Incident Response, or similar security roles

  • Expertise in cloud and on-prem environments

  • Experience with risk assessment & analysis, emergency preparedness, and investigations/incident management

  • Experience with Third Party Risk Management assessments

  • Comfortable writing detection queries and scripts 

  • Strong Knowledge of Windows and Mac operating systems.

  • Knowledge of common attack vectors and MITRE ATT&CK framework

  • Strong problem-solving skills and the ability to thrive in a fast-paced, collaborative environment.

  • Strong experience with CrowdStrike Falcon, Palo Alto firewalls / Prisma Access / VPN, and Sumo Logic or similar SIEM platforms.Experience working in a SOC is a plus

  • Experience with SSO platforms, such as Otka and SAML

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

GoodRx

View company profile →