Lead Engineer, Cyber Security at Trinity Life Sciences | East Norriton, PA, US | Rezi

Lead Engineer, Cyber Security at Trinity Life Sciences

Lead Engineer, Cyber Security

Trinity Life Sciences · East Norriton, PA, US

2 days ago

Lead Engineer, Cyber Security

Trinity Life Sciences · East Norriton, PA, US

3 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

Trinity seeks an experienced Cybersecurity Engineer to design, implement, harden, and monitor security controls across multi-cloud infrastructure, applications, and endpoints. This role requires technical expertise to translate security requirements into effective solutions and will partner with various teams to embed security into operational processes.

Responsibilities

  • Design and implement security architectures for Azure and AWS environments following Zero Trust principles.
  • Architect and deploy data protection controls across cloud services.
  • Conduct cloud infrastructure assessments, identify misconfigurations and compliance gaps, and develop remediation plans.
  • Define and enforce security baselines and cloud infrastructure hardening standards.
  • Lead design and optimization of security monitoring and alerting to detect, investigate, and respond to security incidents.
  • Develop and maintain detection rules, correlation logic, and automated response playbooks.
  • Participate in threat hunting, security assessments, and penetration testing.
  • Lead or co-lead incident response investigations.
  • Define and enforce data classification, handling, and loss prevention policies.
  • Lead or oversee vulnerability assessments, secure code reviews, and penetration tests for critical applications.
  • Support the DevSecOps lead with API security, authentication/authorization design, and secrets management.
  • Support CISO with compliance program execution, mapping security controls to regulatory requirements, and managing audit evidence.
  • Develop and maintain security policies, procedures, and technical standards.
  • Conduct risk assessments and recommend risk mitigation strategies.
  • Support vendor risk management by evaluating security postures of cloud providers, SaaS vendors, and critical suppliers.
  • Support the AI Governance Board with security assessment and controls design for AI/ML systems.
  • Define guardrails, data minimization, and safety controls for generative AI applications.
  • Lead or advise on secure AI architecture and monitoring.
  • Provide technical security guidance and mentoring to junior team members and cross-functional teams.
  • Develop training materials, runbooks, and documentation for security procedures and tools.
  • Lead or participate in security communities of practice and technology evaluations.

Requirements

  • Bachelor's degree in Computer Science or related field
  • 5+ years of security engineering, cloud security, or infrastructure security roles.
  • 4+ years of hands-on experience designing and implementing security solutions in Azure and AWS environments (IaaS, PaaS, SaaS services).
  • Demonstrated experience with cloud security frameworks (Azure Security Benchmark, AWS Well-Architected Security Pillar, CIS Controls).
  • 3+ years of incident response, threat detection, or SOC operations experience.
  • Solid understanding of identity and access management, encryption, network security, and secure SDLC.
  • Knowledge and/or working skills in understanding modern threats and exploits.
  • Ability to assist in designing correction plans, mitigations, and full remediation actions.
  • Ability to understand and communicate attack chains to management and key stakeholders.
  • Knowledge of WAFs and SD-WAN.
  • Experience with network monitoring and breach monitoring tools.
  • Hands-on experience with AI/ML security, responsible AI governance, or model monitoring.
  • Experience with zero-trust architecture design and implementation.
  • Familiarity with container security (Kubernetes, Docker) and serverless security (Lambda, Azure Functions).
  • Prior experience in SOC design, threat intelligence, or security architecture roles.
  • Experience with third-party risk management or vendor security assessments.
  • Cloud experience including Windows and Linux administration and/or engineering.
  • Experience and understanding of EDR platforms such as SentinelOne.
  • Show a solid knowledge of modern security frameworks, models and standards.
  • Experience writing scripts in Python, Powershell, Perl, Ruby, Bash, Grep/Sed/Awk.
  • Understanding of all phases of the Cyber Security kill chain.
  • Experience with email security and phishing.
  • Knowledge and experience updating and creating Incident Response Playbooks.
  • Solid understanding of secure messaging best practices and security training best practices.

Skills

  • Zero Trust principles
  • Identity governance (Entra ID/IAM)
  • Network segmentation
  • Private endpoints
  • NSGs
  • Security Groups
  • Azure Firewall/AWS WAF configurations
  • Data protection controls (encryption at-rest and in-transit, key management, secrets rotation)
  • Cloud services security (VMs, App Service, AKS/EKS, databases, storage accounts, S3/ADLS)
  • Cloud infrastructure assessments
  • Security baselines and cloud infrastructure hardening standards
  • CIS Controls
  • NIST 800-53
  • Splunk SIEM
  • SentinelOne EDR
  • Snyk
  • InsightVM
  • Appsec vulnerability management tools
  • Detection rules, correlation logic, and automated response playbooks
  • Threat hunting
  • Security assessments
  • Penetration testing
  • Data classification, handling, and loss prevention (DLP) policies
  • Vulnerability assessments
  • Secure code reviews
  • API security
  • Authentication/authorization design
  • Secrets management
  • Compliance program execution
  • Regulatory requirements (SOC 2, ISO 27001, ISO 42001 roadmap, HIPAA, GDPR)
  • Risk assessments (cloud, third-party, SDLC, AI systems)
  • Vendor risk management
  • AI/ML systems security
  • Responsible AI frameworks
  • Generative AI applications security
  • Model drift detection
  • Adversarial inputs detection
  • Unauthorized use detection
  • Python scripting
  • Powershell scripting
  • Perl scripting
  • Ruby scripting
  • Bash scripting
  • Grep/Sed/Awk scripting
  • Email security
  • Phishing prevention
  • Incident Response Playbooks
  • Secure messaging best practices
  • Security training best practices

Location

  • Multi-cloud infrastructure (Azure, AWS and GCP)

Work Type

  • Full-time

Experience Level

  • Experienced

Education Level

  • Bachelor's degree in Computer Science or related field

Salary/Compensations

  • $146,625 - $198,375 per year

Benefits

  • Annual discretionary performance bonus

About the Company

  • Trinity powers the future of life sciences commercialization through the fusion of human and artificial intelligence.
  • Trinity accelerates clarity and confidence at every step of the commercialization journey—from pre-launch to scale to loss of exclusivity.
  • For over 30 years, leading pharmaceutical, biotech, and medtech companies have relied on Trinity’s foresight, execution, and partnership.
  • Trinity expanded from its first office in Waltham, MA to 1,300 professionals across 14 offices and five continents.
  • Trinity sets new industry standards in quality, responsiveness, and client partnership.
  • Visit Trinity at www.trinitylifesciences.com.

Equal Opportunity

  • Trinity Life Sciences is an equal opportunities employer and welcome applications from all qualified individuals.
  • Inclusion and engagement are at the heart of how we work and grow together.
  • Trinity fosters an environment where all employees feel valued, respected, and empowered to contribute fully.
  • Trinity will not tolerate any form of discrimination or harassment and encourages applicants of all ages and identities.