About the Role
Trinity seeks an experienced Cybersecurity Engineer to design, implement, harden, and monitor security controls across multi-cloud infrastructure, applications, and endpoints. This role requires technical expertise to translate security requirements into effective solutions and will partner with various teams to embed security into operational processes.
Responsibilities
- Design and implement security architectures for Azure and AWS environments following Zero Trust principles.
- Architect and deploy data protection controls across cloud services.
- Conduct cloud infrastructure assessments, identify misconfigurations and compliance gaps, and develop remediation plans.
- Define and enforce security baselines and cloud infrastructure hardening standards.
- Lead design and optimization of security monitoring and alerting to detect, investigate, and respond to security incidents.
- Develop and maintain detection rules, correlation logic, and automated response playbooks.
- Participate in threat hunting, security assessments, and penetration testing.
- Lead or co-lead incident response investigations.
- Define and enforce data classification, handling, and loss prevention policies.
- Lead or oversee vulnerability assessments, secure code reviews, and penetration tests for critical applications.
- Support the DevSecOps lead with API security, authentication/authorization design, and secrets management.
- Support CISO with compliance program execution, mapping security controls to regulatory requirements, and managing audit evidence.
- Develop and maintain security policies, procedures, and technical standards.
- Conduct risk assessments and recommend risk mitigation strategies.
- Support vendor risk management by evaluating security postures of cloud providers, SaaS vendors, and critical suppliers.
- Support the AI Governance Board with security assessment and controls design for AI/ML systems.
- Define guardrails, data minimization, and safety controls for generative AI applications.
- Lead or advise on secure AI architecture and monitoring.
- Provide technical security guidance and mentoring to junior team members and cross-functional teams.
- Develop training materials, runbooks, and documentation for security procedures and tools.
- Lead or participate in security communities of practice and technology evaluations.
Requirements
- Bachelor's degree in Computer Science or related field
- 5+ years of security engineering, cloud security, or infrastructure security roles.
- 4+ years of hands-on experience designing and implementing security solutions in Azure and AWS environments (IaaS, PaaS, SaaS services).
- Demonstrated experience with cloud security frameworks (Azure Security Benchmark, AWS Well-Architected Security Pillar, CIS Controls).
- 3+ years of incident response, threat detection, or SOC operations experience.
- Solid understanding of identity and access management, encryption, network security, and secure SDLC.
- Knowledge and/or working skills in understanding modern threats and exploits.
- Ability to assist in designing correction plans, mitigations, and full remediation actions.
- Ability to understand and communicate attack chains to management and key stakeholders.
- Knowledge of WAFs and SD-WAN.
- Experience with network monitoring and breach monitoring tools.
- Hands-on experience with AI/ML security, responsible AI governance, or model monitoring.
- Experience with zero-trust architecture design and implementation.
- Familiarity with container security (Kubernetes, Docker) and serverless security (Lambda, Azure Functions).
- Prior experience in SOC design, threat intelligence, or security architecture roles.
- Experience with third-party risk management or vendor security assessments.
- Cloud experience including Windows and Linux administration and/or engineering.
- Experience and understanding of EDR platforms such as SentinelOne.
- Show a solid knowledge of modern security frameworks, models and standards.
- Experience writing scripts in Python, Powershell, Perl, Ruby, Bash, Grep/Sed/Awk.
- Understanding of all phases of the Cyber Security kill chain.
- Experience with email security and phishing.
- Knowledge and experience updating and creating Incident Response Playbooks.
- Solid understanding of secure messaging best practices and security training best practices.
Skills
- Zero Trust principles
- Identity governance (Entra ID/IAM)
- Network segmentation
- Private endpoints
- NSGs
- Security Groups
- Azure Firewall/AWS WAF configurations
- Data protection controls (encryption at-rest and in-transit, key management, secrets rotation)
- Cloud services security (VMs, App Service, AKS/EKS, databases, storage accounts, S3/ADLS)
- Cloud infrastructure assessments
- Security baselines and cloud infrastructure hardening standards
- CIS Controls
- NIST 800-53
- Splunk SIEM
- SentinelOne EDR
- Snyk
- InsightVM
- Appsec vulnerability management tools
- Detection rules, correlation logic, and automated response playbooks
- Threat hunting
- Security assessments
- Penetration testing
- Data classification, handling, and loss prevention (DLP) policies
- Vulnerability assessments
- Secure code reviews
- API security
- Authentication/authorization design
- Secrets management
- Compliance program execution
- Regulatory requirements (SOC 2, ISO 27001, ISO 42001 roadmap, HIPAA, GDPR)
- Risk assessments (cloud, third-party, SDLC, AI systems)
- Vendor risk management
- AI/ML systems security
- Responsible AI frameworks
- Generative AI applications security
- Model drift detection
- Adversarial inputs detection
- Unauthorized use detection
- Python scripting
- Powershell scripting
- Perl scripting
- Ruby scripting
- Bash scripting
- Grep/Sed/Awk scripting
- Email security
- Phishing prevention
- Incident Response Playbooks
- Secure messaging best practices
- Security training best practices
Location
- Multi-cloud infrastructure (Azure, AWS and GCP)
Work Type
- Full-time
Experience Level
- Experienced
Education Level
- Bachelor's degree in Computer Science or related field
Salary/Compensations
- $146,625 - $198,375 per year
Benefits
- Annual discretionary performance bonus
About the Company
- Trinity powers the future of life sciences commercialization through the fusion of human and artificial intelligence.
- Trinity accelerates clarity and confidence at every step of the commercialization journey—from pre-launch to scale to loss of exclusivity.
- For over 30 years, leading pharmaceutical, biotech, and medtech companies have relied on Trinity’s foresight, execution, and partnership.
- Trinity expanded from its first office in Waltham, MA to 1,300 professionals across 14 offices and five continents.
- Trinity sets new industry standards in quality, responsiveness, and client partnership.
- Visit Trinity at www.trinitylifesciences.com.
Equal Opportunity
- Trinity Life Sciences is an equal opportunities employer and welcome applications from all qualified individuals.
- Inclusion and engagement are at the heart of how we work and grow together.
- Trinity fosters an environment where all employees feel valued, respected, and empowered to contribute fully.
- Trinity will not tolerate any form of discrimination or harassment and encourages applicants of all ages and identities.
