Job Purpose
Protect the organization’s digital infrastructure, data, and systems from internal and external cybersecurity threats by implementing, managing, and continuously improving security practices, tools, and operations with a focus on cloud applications and infrastructure.
Essential Duties & Responsibilities
- Design and implement robust security architectures for cloud environments following best practices, industry standards, and regulatory requirements.
- Lead cross‑functional collaboration on technology initiatives to strengthen security across systems and operations, ensuring alignment with organizational objectives and industry best practices.
- Lead the investigation and resolution of complex security events and incidents including malware outbreaks, unauthorized access attempts, and significant security breaches.
- Develop and implement response strategies, coordinate cross‑functional teams, and ensure lessons learned are integrated into security policies and controls.
- Analyze security logs and events from various sources to proactively develop and implement security measures that address current and emerging threats.
- Provide updates to leaders on the latest threat landscape, emerging trends, and propose cybersecurity solutions to proactively identify and mitigate potential security risks.
- Enhance the organization’s security posture by assessing vulnerabilities and recommending solutions to address identified weaknesses.
- Collaborate with internal teams, vendors, and partners to provide guidance and expertise on security best practices and incident response.
- Ensure compliance with industry standards and organizational policies, including SOX and FDA regulatory requirements, by following established procedures and controls.
Education and Experience
- Bachelor’s degree in related discipline and 9years of related experience.
- Master’s degree in related discipline and 7years of related experience.
- Equivalent combination of education and experience.
Preferred Certifications
- CISSP, CISM, CEH, OSCP, GIAC or similar cybersecurity certification.
Key Experience
- Operational implementation of cybersecurity tools.
- Designing, implementing, and managing security controls within cloud platforms (IAM, VPC, Zero Trust principles, IaC, IAAS, Security Groups, Key Management Services, SDLC, CI/CD pipelines, Network Security).
- IT Security or related infrastructure administration role in an enterprise environment.
- Technical lead or management experience.
- Investigation and response to cyber events and incidents.
- Enhancing organizational security awareness and resilience.
- Cloud, system, and application security.
- Administration of IT systems.
- Working in Agile environments and using ticketing systems (e.g., JIRA, JSM).
- Experience in regulated industries (e.g., biotech, pharma) with GxP and SOX compliance knowledge.
Technical Skills
- Strong knowledge of general IT applications and infrastructure.
- Advanced knowledge of CLI and scripting languages (Python, PowerShell, etc.).
- Advanced knowledge of AWS.
- Advanced knowledge of IaC, SDLC, CI/CD pipelines.
- Advanced knowledge of cybersecurity technologies and concepts.
Additional Skills
- Strong analytical, problem‑solving, organizational, and communication skills.
- Ability to work effectively with customers to solve business challenges while balancing confidentiality, integrity, and availability.
- Ability to multitask and work collaboratively.
- Ability to work with ambiguity.
- Ability to work with confidential data.
- Ability to continuously learn and improve.
- Ability to work with minimal guidance, adapt to frequent priority changes, and respond to ad‑hoc requests.
- Architect secure cloud infrastructure using guardrails and golden paths using IaC patterns across AWS and Azure.
- Integrate SAST, SCA, DAST, and dependency scanning into GitHub pipelines and provide help and support.
Work Environment & Physical Demands
Our office is a modern, open space that fosters collaboration and creativity. Teams work closely together, sharing ideas and solutions in a supportive atmosphere. We provide all necessary equipment, including dual monitors and ergonomic chairs, to ensure a comfortable workspace. Occasional travel (5%) and on‑call availability for critical escalations.
Compensation & Benefits
Base pay range: $154,500–$220,500 annually, adjusted for geographic region. In addition to the base salary, employees are eligible for a discretionary annual bonus program and stock purchase program. Benefits include 401(k) plan with generous company contributions, group medical, dental, and vision coverage, life and disability insurance, and flexible spending accounts. Paid vacation (15 days first year, 17 paid holidays, up to 10 sick days).
Equality and Anti‑Discrimination
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity, status as a veteran, or basis of disability.
#J-18808-Ljbffr