GoodRx

Manager, Security Engineering

GoodRx$151K — $242K *
US-AnywhereRemote in United States
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of experience in cybersecurity, cloud security, application security, or related fields.
  • Bachelor's degree in Computer Science, Information Systems, or comparable experience.
  • Proficiency in modern programming or scripting languages like Python or Java.
  • Strong grasp of DevSecOps and secure software development practices.
  • Experience designing scalable and maintainable security solutions.
  • Familiarity with risk assessment and incident management processes.
  • Excellent communication and relationship-building skills.

Responsibilities

  • Leads and develops a team of security engineers through coaching and performance management.
  • Creates and implements a security engineering roadmap aligned with business goals.
  • Maintains security services and controls that reflect best practices.
  • Advises on security policy improvements considering emerging risks.
  • Collaborates with teams to align security initiatives with broader business strategies.
  • Guides technical decisions on cloud security and emerging tech.
  • Oversees risk assessments, threat modeling, and incident response processes.

Benefits

  • Medical, dental, and vision insurance.
  • 401(k) with company match.
  • Employee Stock Purchase Plan (ESPP).
  • Unlimited vacation and 13 paid holidays.
  • 72 hours of sick leave per year.
  • Mental wellness and financial wellness programs.
  • Generous parental leave and fertility benefits.
Full Job Description
Responsibilities:
  • Leads, hires, develops, and manages security engineers through coaching, performance management, and career development
  • Develops and executes the team's security engineering roadmap, balancing risk reduction, operational effectiveness, and business objectives
  • Develops and maintains security engineering services and controls that align with business objectives and industry best practices
  • Recommends improvements to security policies, standards, and procedures that strengthen the organization's security posture, including encompassing and considering emerging risks such as AI adoption and use
  • Works closely with leadership, teams, and cross-functional business groups to establish alignment on the security roadmap, plan and vision
  • Uses business knowledge and contextual awareness to guide team technical decisions related to cloud security, application security, identity management, and emerging technologies
  • Leads risk assessments, threat modeling, incident response, and security investigations related to production systems, cloud infrastructure, and new product initiatives
  • Establishes and develops security vendor relationships to ensure effective and efficient supplier performance results
  • Partners with Security, Compliance, Engineering, and IT stakeholders to support security awareness initiatives and promote secure engineering practices
  • Partners with Compliance and Audit teams to support security controls, audit readiness, evidence collection, and remediation activities
  • Drives adoption of DevSecOps practices, security automation, vulnerability management, secure code review processes, and secure-by-default engineering patterns
  • Establishes operational metrics and reporting to measure the effectiveness of security controls, detection capabilities, and team performance


Required Technical and Professional Expertise:
  • 8+ years of experience in cybersecurity, cloud security, application security, infrastructure security, or related domains
  • Bachelor's degree in Computer Science, Information Systems, or a related field or equivalent practical experience
  • Experience with one or more modern programming or scripting languages (Python, Go, Java, Rust, Bash, or similar)
  • Strong familiarity with software development lifecycle (SDLC) processes and source control technologies
  • Strong understanding of DevSecOps, application security principles, secure software development practices, and modern software delivery environments
  • Ability to create solutions that are scalable, repeatable, secure and maintainable
  • Experience with risk assessment & analysis, emergency preparedness, and investigations/incident management
  • Excellent communication and team relationship skills
  • Experience with SIEM, security monitoring, threat detection, incident response, and observability platforms in cloud environments
  • Experience securing cloud-native environments, containerized workloads, Kubernetes platforms, modern CI/CD pipelines, and associated controls including vulnerability management, secrets management, and workload protection
  • Experience with identity and access management technologies such as Okta, SAML, OAuth, Descope, and OIDC, including authentication, authorization, and privileged access concepts
  • Experience securing cloud platforms such as AWS and/or GCP, including IAM, network security, logging, monitoring, and cloud-native security services (AWS and GCP certifications are a plus)
  • Experience with managing security programs and frameworks
  • Experience implementing or operating security controls aligned with frameworks such as NIST CSF, SOC 2, HITRUST, ISO 27001, or CIS Controls
  • CISSP and/or CISM certification is a plus


Security is responsible for implementing security measures, monitoring suspicious activity, and taking immediate action against cyber threats through the incident response process and vulnerability management program. Additionally, Security monitors GoodRx's organizational systems for end users' activities from an information security perspective and correlates / analyzes logs to detect potential Events and Incidents. Lastly, the team works collaboratively with other departments to improve the organization's security posture.

At GoodRx, pay ranges are determined based on work locations and may vary based on where the successful candidate is hired. The pay ranges below are shown as a guideline, and the successful candidate's starting pay will be determined based on job-related skills, experience, qualifications, and other relevant business and organizational factors. These pay zones may be modified in the future. Please contact your recruiter for additional information.

San Francisco and Seattle Offices:
$202,000.00 - $323,000.00

New York Office:
$185,000.00 - $296,000.00

Santa Monica Office:
$168,000.00 - $269,000.00

Other Office Locations:
$151,000.00 - $242,000.00

GoodRx also offers additional compensation programs such as annual cash bonuses or commission, and annual equity grants for most positions as well as generous benefits. Our great benefits offerings include medical, dental, and vision insurance, 401(k) with a company match, an ESPP, unlimited vacation, 13 paid holidays, and 72 hours of sick leave. GoodRx also offers additional benefits like mental wellness and financial wellness programs, fertility benefits, generous parental leave, pet insurance, supplemental life insurance for you and your dependents, company-paid short-term and long-term disability, and more!

About GoodRx

GoodRx is a healthcare technology company that provides a platform for consumers to compare prescription drug prices and save money on their medications. The company was founded in 2011 and is headquartered in Santa Monica, California. GoodRx partners with pharmacies and healthcare providers to offer discounts and coupons on prescription drugs, and also provides information on drug interactions and side effects. The company's platform is available online and through a mobile app, and has been used by millions of consumers to save money on their healthcare costs. GoodRx is committed to making healthcare more affordable and accessible for everyone.
Learn more about GoodRx
Size
1,000 employees
Market Cap
$1.8 billion
Industry
Net Income
-$288.9 million
Founded
2011
5 Year Trend
+49.6%
Revenue
$550.7 million
NASDAQ

Similar Jobs

More Jobs at GoodRx

More Information Technology Jobs

Find similar Manager, Security Engineering jobs: