SmithRx Logo

SmithRx

Senior Security Engineer

Sorry, this job was removed at 01:09 p.m. (PST) on Thursday, Aug 07, 2025
Remote
Hiring Remotely in USA
Remote
Hiring Remotely in USA

Similar Jobs

3 Days Ago
In-Office or Remote
7 Locations
153K-270K Annually
Senior level
153K-270K Annually
Senior level
Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
Design and implement cloud-native security data pipelines and detection systems, collaborate on detection engineering and Kubernetes/cloud-native controls, and participate in on-call rotations to respond to incidents and improve platform security and reliability.
Top Skills: Amazon SnsAmazon SqsAws CloudtrailAws LambdaBigQueryCloud FunctionsDataflowGoGoogle Kubernetes EngineGoogle Pub/SubJavaKubernetesRubySIEM
21 Days Ago
Remote or Hybrid
San Francisco, CA, USA
152K-250K Annually
Senior level
152K-250K Annually
Senior level
Healthtech • Social Impact • Software
Own and build Grow Therapy's data security infrastructure: automated data classification, field-level masking/tokenization, encryption and key management, secure data connectors to AI tooling, and access controls. Define a multi-year vision, implement pipelines and services, and partner across Data, Engineering, and Detection & Response to make secure-by-default the company standard.
3 Days Ago
Remote or Hybrid
201K-352K Annually
Senior level
201K-352K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Lead technical investigations and response for post-release product vulnerabilities. Coordinate fixes across engineering, product, and release teams, manage CVE disclosure, develop proof-of-concept exploits, perform root-cause analysis, author postmortems, and drive SDLC and process improvements to reduce exposure windows and improve incident response.
Top Skills: AWSAzureCi/Cd PipelinesContainerized EnvironmentsCveCvssGCPJavaJavaScriptPythonSaaSSdlcServicenow Platform

Who We Are:

SmithRx is a rapidly growing, venture-backed Health-Tech company.  Our mission is to disrupt the expensive and inefficient Pharmacy Benefit Management (PBM) sector by building a next-generation drug acquisition platform driven by cutting edge technology, innovative cost saving tools, and best-in-class customer service.  With hundreds of thousands of members onboarded since 2016, SmithRx has a solution that is resonating with clients all across the country.

We pride ourselves for our mission-driven and collaborative culture that inspires our employees to do their best work. We believe that the U.S healthcare system is in need of transformation, and we come to work each day dedicated to making that change a reality. At our core, we are guided by our company values:

  • Integrity: Our purpose guides our actions and gives us confidence in the path ahead. With unwavering honesty and dependability, we embrace the pressure of challenging the old and exemplify ethical leadership to create the new.
  • Courage: We face continuous challenges with grit and resilience. We embrace the discomfort of the unknown by balancing autonomy with empathy, and ownership with vulnerability. We boldly challenge the status quo to keep moving forward—always.
  • Together: The success of SmithRx reflects the strength of our partnerships and the commitment of our team. Our shared values bind us together and make us one. When one falls, we all fall; when one rises, we all rise.

Job Summary:

We are seeking an experienced Security Engineer specializing in Security Operations, Detection Engineering, and Incident Response. In this critical, hands-on role, you will be a leader in identifying, analyzing, and responding to complex security threats targeting our cloud-native environment, primarily within AWS. You will leverage your deep expertise and Python proficiency to design, build, and tune sophisticated detection mechanisms, automate response actions, and continuously improve our security monitoring and incident response capabilities. You'll tackle ambiguous security challenges, collaborate on incident response efforts, define technical roadmaps for detection and response, and support security improvements across engineering teams.

In order to be eligible for this position applicants must be based in one of the following states: Arkansas, Arizona, California, Colorado, Florida, Georgia, Kansas, Minnesota, Missouri, Nevada, North Carolina, South Carolina, Ohio, Pennsylvania, Tennessee, Texas, Utah, Virginia, Washington, Wisconsin.

What you will do:

  • Leverage Python to design, develop, test, and maintain high-fidelity and actionable detection-as-code rules, automate detection logic, parse and enrich complex data sources, and integrate security systems via APIs.
  • Proactively hunt for threats within our AWS and corporate environments, analyzing logs and system data to uncover malicious activity that evades automated detections.
  • Develop, refine, and automate incident response playbooks and standard operating procedures using SOAR (Security Orchestration, Automation, and Response) platforms and custom Python scripts.
  • Perform technical analysis during incidents, including log analysis, network traffic analysis, and host/endpoint artifact collection.
  • Manage and optimize core security operations tools (SIEM, SOAR, EDR, etc.).
  • Serve as a strong technical contributor and subject matter expert within the Security Operations and Incident Response domain, influencing security practices across engineering and IT teams.
  • Autonomously define and deliver the technical roadmap for key detection and response initiatives, managing cross-functional dependencies.

What you will bring to SmithRx:

  • 5+ years of hands-on experience focused on Security Operations, Detection Engineering, and/or Incident Response.
  • Strong proficiency in Python for security automation, scripting, data analysis, and tool development.
  • Deep experience with AWS security, including logging services (CloudTrail, CloudWatch, VPC Flow Logs), security services (GuardDuty, Security Hub, IAM, Config), and incident response in the cloud.
  • Bachelor’s degree in Computer Science, Information Technology or a related field, or relevant work experience required in lieu of a degree.
  • Experience with infrastructure-as-code (e.g., Terraform) for deploying security resources.
  • Proven expertise in developing detection content (rules, queries, models) in SIEM platforms (e.g., Splunk, Elastic Security, Sentinel).
  • Hands-on experience with EDR solutions (e.g., CrowdStrike, SentinelOne, Carbon Black) for detection and response.
  • Strong understanding of incident response methodologies, threat intelligence, cyber kill chain, and frameworks like MITRE ATT&CK.
  • Experience with log analysis, network traffic analysis, and host/endpoint forensics techniques.
  • Demonstrated ability to lead complex security incident investigations and response efforts.
  • Excellent communication skills and ability to remain calm and effective under pressure.

Bonus Points:

  • Experience with SOAR platforms (e.g., Splunk SOAR, Palo Alto XSOAR, Tines) and automation techniques.
  • Relevant industry certifications (e.g., GCIH, GCFA, GNFA, GREM, AWS Security Specialty, Splunk Certified Architect/Consultant).
  • Experience with threat hunting and purple teaming methodologies and tools.
  • Strong track record of mentoring junior team members.

What SmithRx Offers You: 

  • Highly competitive wellness benefits including Medical, Pharmacy, Dental, Vision, and Life Insurance and AD&D Insurance
  • Flexible Spending Benefits 
  • 401(k) Retirement Savings Program 
  • Short-term and long-term disability
  • Discretionary Paid Time Off 
  • 12 Paid Holidays
  • Wellness Benefits
  • Commuter Benefits 
  • Paid Parental Leave benefits
  • Employee Assistance Program (EAP)
  • Well-stocked kitchen in office locations
  • Professional development and training opportunities
HQ

SmithRx San Francisco, California, USA Office

300 Brannan St, San Francisco, CA, United States, 4107

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account