SmithRx Logo

SmithRx

Senior Security Engineer

Sorry, this job was removed at 01:09 p.m. (PST) on Thursday, Aug 07, 2025
Remote
Hiring Remotely in USA
Remote
Hiring Remotely in USA

Similar Jobs

9 Days Ago
Remote or Hybrid
Mountain View, CA, USA
Senior level
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Design and build end-to-end incident response automation (detection, triage, containment, recovery). Create and tune detections in SIEM/EDR/AI SOC, integrate LLMs and MCP servers for agentic workflows, purple team with red team, validate defenses with automated tests, and respond to incidents to drive further automation.
Top Skills: Ai Soc PlatformsAPIsAws CloudtrailAws GuarddutyAws IamEdrEksGitKubernetesLlmsMcp (Model Context Protocol)Prompt EngineeringPythonSIEMWebhooks
Yesterday
Remote or Hybrid
140K-180K Annually
Senior level
140K-180K Annually
Senior level
Artificial Intelligence • Big Data • Cloud • Information Technology • Machine Learning • Software
Lead design, operation, hardening, and automation of a FedRAMP AWS cloud environment. Build and tune cloud security controls (IAM, network, logging, monitoring), secure Kubernetes platforms, drive DevSecOps and IaC practices, run incident response and investigations, manage security tooling (SIEM, EDR, CNAPP), and partner with SRE and engineering to scale secure, compliant cloud operations.
Top Skills: AnsibleAWSCloud-Native Security ToolingCnappCrossplaneEdrFedrampFirewallsGithub ActionsGoIamIntrusion DetectionJavaScriptJenkinsKubernetesMonitoring PlatformsOpentofuPythonSIEMSoc 2TerraformTerragruntTypescriptVpnsVulnerability Management
5 Days Ago
Easy Apply
In-Office or Remote
United States
Easy Apply
139K-196K Annually
Senior level
139K-196K Annually
Senior level
Cloud • Security • Software • Cybersecurity • Automation
Design, maintain, and extend abuse detection and prevention systems for GitLab's SaaS platform. Serve as a core maintainer of a Ruby on Rails monolith, build anomaly detection and agentic AI mitigations, automate abuse response, collaborate with peer engineering and security teams, and produce runbooks and operational documentation.
Top Skills: Agentic AiAWSGitlabGoogle Cloud Platform (Gcp)Large Language Models (Llms)RubyRuby On RailsSaaS

Who We Are:

SmithRx is a rapidly growing, venture-backed Health-Tech company.  Our mission is to disrupt the expensive and inefficient Pharmacy Benefit Management (PBM) sector by building a next-generation drug acquisition platform driven by cutting edge technology, innovative cost saving tools, and best-in-class customer service.  With hundreds of thousands of members onboarded since 2016, SmithRx has a solution that is resonating with clients all across the country.

We pride ourselves for our mission-driven and collaborative culture that inspires our employees to do their best work. We believe that the U.S healthcare system is in need of transformation, and we come to work each day dedicated to making that change a reality. At our core, we are guided by our company values:

  • Integrity: Our purpose guides our actions and gives us confidence in the path ahead. With unwavering honesty and dependability, we embrace the pressure of challenging the old and exemplify ethical leadership to create the new.
  • Courage: We face continuous challenges with grit and resilience. We embrace the discomfort of the unknown by balancing autonomy with empathy, and ownership with vulnerability. We boldly challenge the status quo to keep moving forward—always.
  • Together: The success of SmithRx reflects the strength of our partnerships and the commitment of our team. Our shared values bind us together and make us one. When one falls, we all fall; when one rises, we all rise.

Job Summary:

We are seeking an experienced Security Engineer specializing in Security Operations, Detection Engineering, and Incident Response. In this critical, hands-on role, you will be a leader in identifying, analyzing, and responding to complex security threats targeting our cloud-native environment, primarily within AWS. You will leverage your deep expertise and Python proficiency to design, build, and tune sophisticated detection mechanisms, automate response actions, and continuously improve our security monitoring and incident response capabilities. You'll tackle ambiguous security challenges, collaborate on incident response efforts, define technical roadmaps for detection and response, and support security improvements across engineering teams.

In order to be eligible for this position applicants must be based in one of the following states: Arkansas, Arizona, California, Colorado, Florida, Georgia, Kansas, Minnesota, Missouri, Nevada, North Carolina, South Carolina, Ohio, Pennsylvania, Tennessee, Texas, Utah, Virginia, Washington, Wisconsin.

What you will do:

  • Leverage Python to design, develop, test, and maintain high-fidelity and actionable detection-as-code rules, automate detection logic, parse and enrich complex data sources, and integrate security systems via APIs.
  • Proactively hunt for threats within our AWS and corporate environments, analyzing logs and system data to uncover malicious activity that evades automated detections.
  • Develop, refine, and automate incident response playbooks and standard operating procedures using SOAR (Security Orchestration, Automation, and Response) platforms and custom Python scripts.
  • Perform technical analysis during incidents, including log analysis, network traffic analysis, and host/endpoint artifact collection.
  • Manage and optimize core security operations tools (SIEM, SOAR, EDR, etc.).
  • Serve as a strong technical contributor and subject matter expert within the Security Operations and Incident Response domain, influencing security practices across engineering and IT teams.
  • Autonomously define and deliver the technical roadmap for key detection and response initiatives, managing cross-functional dependencies.

What you will bring to SmithRx:

  • 5+ years of hands-on experience focused on Security Operations, Detection Engineering, and/or Incident Response.
  • Strong proficiency in Python for security automation, scripting, data analysis, and tool development.
  • Deep experience with AWS security, including logging services (CloudTrail, CloudWatch, VPC Flow Logs), security services (GuardDuty, Security Hub, IAM, Config), and incident response in the cloud.
  • Bachelor’s degree in Computer Science, Information Technology or a related field, or relevant work experience required in lieu of a degree.
  • Experience with infrastructure-as-code (e.g., Terraform) for deploying security resources.
  • Proven expertise in developing detection content (rules, queries, models) in SIEM platforms (e.g., Splunk, Elastic Security, Sentinel).
  • Hands-on experience with EDR solutions (e.g., CrowdStrike, SentinelOne, Carbon Black) for detection and response.
  • Strong understanding of incident response methodologies, threat intelligence, cyber kill chain, and frameworks like MITRE ATT&CK.
  • Experience with log analysis, network traffic analysis, and host/endpoint forensics techniques.
  • Demonstrated ability to lead complex security incident investigations and response efforts.
  • Excellent communication skills and ability to remain calm and effective under pressure.

Bonus Points:

  • Experience with SOAR platforms (e.g., Splunk SOAR, Palo Alto XSOAR, Tines) and automation techniques.
  • Relevant industry certifications (e.g., GCIH, GCFA, GNFA, GREM, AWS Security Specialty, Splunk Certified Architect/Consultant).
  • Experience with threat hunting and purple teaming methodologies and tools.
  • Strong track record of mentoring junior team members.

What SmithRx Offers You: 

  • Highly competitive wellness benefits including Medical, Pharmacy, Dental, Vision, and Life Insurance and AD&D Insurance
  • Flexible Spending Benefits 
  • 401(k) Retirement Savings Program 
  • Short-term and long-term disability
  • Discretionary Paid Time Off 
  • 12 Paid Holidays
  • Wellness Benefits
  • Commuter Benefits 
  • Paid Parental Leave benefits
  • Employee Assistance Program (EAP)
  • Well-stocked kitchen in office locations
  • Professional development and training opportunities
HQ

SmithRx San Francisco, California, USA Office

300 Brannan St, San Francisco, CA, United States, 4107

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account