All openings

Senior Information Security Engineer

Minneapolis, Washington D.C., or Chicago

Rally Health is all about putting health in the hands of the individual. It’s our mission, and it drives everything we do, which is to empower people with easy-to-use online and mobile tools that help them take charge of their health and health care, from improving their diet and fitness to selecting health benefits, and choosing the right doctor at the right price for their needs.

Our culture is built on a deep and sincere commitment to helping people live healthier lives. To do this, we are committed to innovating at every level. As our president and COO David Ko says, “We are a company that continuously innovates. It cannot end. It has to be in everything we do, which means that some of the things we’re going to do are not going to work – and that’s okay. We’re not trying to build something that is churn and burn. We’re building something that follows consumers over their lifetime.”


  • Design and implement security tools, controls and measures to ensure safety across our organization and products and improve the security posture of internal infrastructure and client-facing systems
  • Perform security reviews of server/network /web application design within a virtualized environment and ensure compliance
  • Perform risk assessments, vulnerability management, penetration testing and patch management for Unix/Linux, Mac, Windows systems and web applications
  • Identity and access management across Rally Health’s rapidly growing number of systems and applications
  • Detect, investigate and recover from security incidents as well as assisting with incident response plans
  • Raise company-wide security awareness and monitoring information security related web sites and newsletters
  • Analyze the potential impact of new threats and communicate risks to relevant business units


  • Three or more years of technical experience in the information security field, preferably in an environment certified and aligned with a globally recognized Security Framework / Information Security Management System
  • Working knowledge of security and operations within AWS (EC2, S3, IAM, VPC, Route53)
  • Advanced knowledge of information systems security concepts and technologies; network architecture; general database concepts; document management; hardware and software troubleshooting and security tools
  • Strong knowledge of cryptography for data at-rest and data in-transit
  • Confirmed experience with systems auditing and monitoring to ensure compliance with security policies and standards
  • Advanced knowledge and experience with Unix/Linux, Mac and Windows operating systems and OS hardening
  • Experience automating the administration of systems through scripting and APIs a plus.
  • Validated programming skills in one or more language a plus (Python, Ruby, Bash, PHP, Perl, Java)
  • Strong analytical writing skills to articulate complex ideas clearly and effectively; experience building and presenting documentation and management reports
  • Strong social skills such as planning and leading effective meetings, conducting structured interviews to collect information, social and negotiation skills, and presenting to a variety of audiences
  • Bachelor’s degree in management information systems, computer science, or related discipline is required
  • Postgraduate degrees and certificate programs in relevant areas that demonstrate analytical writing will also be considered
  • CISSP, SANS GCIH or GCFA, CISA, CISM, EnCER certification(s) are preferred but not required

Why join Rally? On top of an innovative work atmosphere and a chance to help people change their lives, we offer competitive pay, daily catered lunches, and an extensive benefits package for all full-time employees (including medical, dental, vision and 401(k)). In addition, offer the ability to grow, while truly making an impact in the healthcare system.

Rally Health is committed to ensuring that its workforce reflects America’s diverse population. Rally Health knows that such diversity will enrich us with the talent, energy, perspective and inspiration it needs to achieve its mission. Rally Health believes in a policy of equal employment and opportunity for all people based on merit and commitment to the principles of diversity. It is our policy to recruit, hire, train, and promote individuals in all job titles, and administer all programs, without regard to race, color, religion, national origin or ancestry, citizenship, sex, age, marital status, pregnancy, childbirth or related medical conditions, personal appearance, sexual orientation, gender identity or expression, family responsibilities, genetic information, disability, matriculation, political affiliation, veteran status, union affiliation, or any other category protected by applicable federal, state or local laws.

Individuals with disabilities and veterans are encouraged to apply. Applicants who require an accommodation related to the application and/or review process should notify Talent Acquisition (

Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.