Trinity Life Sciences Logo

Trinity Life Sciences

Lead Engineer, Cyber Security

Posted 5 Days Ago
In-Office or Remote
Hiring Remotely in New York, NY
147K-198K Annually
Senior level
In-Office or Remote
Hiring Remotely in New York, NY
147K-198K Annually
Senior level
Designs and implements cloud, application, endpoint, and data security controls across Azure, AWS, and GCP. Leads security monitoring, threat detection, incident response, vulnerability management, threat hunting, and secure architecture initiatives. Supports compliance, risk assessments, vendor security, DevSecOps, AI governance, and generative AI safeguards. Develops policies, playbooks, detection rules, and remediation plans while mentoring security and cross-functional teams.
The summary above was generated by AI

Position Summary

Trinity seeks an experienced Cybersecurity Engineer to join its Cybersecurity team. The successful candidate will serve as a technical architect and hands-on engineer, designing, implementing, hardening, and monitoring security controls across Trinity's multi-cloud infrastructure (Azure, AWS and GCP), applications, and endpoints. This role bridges security strategy with tactical execution, requiring both deep technical expertise and the ability to translate complex security requirements into operationally effective solutions. The Cybersecurity Engineer will partner with infrastructure, application development, incident response, and business teams to embed security into architecture, deployment pipelines, and operational processes.

Essential Functions

Cloud Security Architecture & Engineering

  • Design and implement security architectures for Azure and AWS environments following Zero Trust principles, including identity governance (Entra ID/IAM), network segmentation, private endpoints, NSGs, Security Groups, and Azure Firewall/AWS WAF configurations.

  • Architect and deploy data protection controls (encryption at-rest and in-transit, key management, secrets rotation) across cloud services (VMs, App Service, AKS/EKS, databases, storage accounts, S3/ADLS).

  • Conduct cloud infrastructure assessments, identify misconfigurations and compliance gaps, and develop remediation plans aligned with Azure/AWS Well-Architected security pillars.

  • Define and enforce security baselines and cloud infrastructure hardening standards aligned with CIS Controls, NIST 800-53, and industry best practices.

Security Operations, Monitoring & Incident Response

  • Lead design and optimization of security monitoring and alerting (Splunk SIEM, SentinelOne EDR, Snyk, InsightVM and Appsec vulnerability management tools) to detect, investigate, and respond to security incidents in cloud and on-premises environments.

  • Develop and maintain detection rules, correlation logic, and automated response playbooks for SOC-driven incident detection and response.

  • Participate in threat hunting, security assessments, and penetration testing to proactively identify and validate security weaknesses.

  • Lead or co-lead incident response investigations; document findings, root causes, and recommendations to prevent recurrence.

Application & Data Security

  • Define and enforce data classification, handling, and loss prevention (DLP) policies for regulated data (healthcare, pharmaceutical, client IP).

  • Lead or oversee vulnerability assessments, secure code reviews, and penetration tests for critical applications.

  • Support the DevSecOps lead with API security, authentication/authorization design, and secrets management for application tiers.

Compliance, Risk & Governance

  • Support CISO with compliance program execution: map security controls to regulatory requirements (SOC 2, ISO 27001, ISO 42001 roadmap, HIPAA, GDPR), manage audit evidence, and track remediation of findings.

  • Develop and maintain security policies, procedures, and technical standards for cloud, endpoints, applications, and third-party integrations.

  • Conduct risk assessments (cloud, third-party, SDLC, AI systems) and recommend risk mitigation strategies; document findings in risk registers.

  • Support vendor risk management: evaluate security postures of cloud providers, SaaS vendors, and critical suppliers.

AI & Emerging Technology Security

  • Support the AI Governance Board with security assessment and controls design for AI/ML systems and model deployments (e.g., Azure AI Foundry, GPT-4/5 usage, responsible AI frameworks).

  • Define guardrails, data minimization, and safety controls for generative AI applications.

  • Lead or advise on secure AI architecture and monitoring to detect model drift, adversarial inputs, and unauthorized use.

Technical Leadership & Mentoring

  • Provide technical security guidance and mentoring to junior team members and cross-functional teams.

  • Develop training materials, runbooks, and documentation for security procedures and tools.

  • Lead or participate in security communities of practice and technology evaluations.

Position Requirements

Education: Bachelor's degree in Computer Science or related field

  Work Experience:

  • 5+ years of security engineering cloud security, or infrastructure security roles.

  • 4+ years of hands-on experience designing and implementing security solutions in Azure and AWS environments (IaaS, PaaS, SaaS services).

  • Demonstrated experience with cloud security frameworks (Azure Security Benchmark, AWS Well-Architected Security Pillar, CIS Controls).

  • 3+ years of incident response, threat detection, or SOC operations experience.

  • Solid understanding of identity and access management, encryption, network security, and secure SDLC.

Other Skills:

 Knowledge and/or working skills in the following areas:

  • Understanding of modern threats and exploits

  • Ability to assist in designing correction plans, mitigations, and full remediation actions

  • Ability to understand and communicate attack chains to management and key stakeholders

  • Knowledge of WAFs and SD-WAN

  • Experience with network monitoring and breach monitoring tools.

  • Hands-on experience with AI/ML security, responsible AI governance, or model monitoring.

  • Experience with zero-trust architecture design and implementation.

  • Familiarity with container security (Kubernetes, Docker) and serverless security (Lambda, Azure Functions).

  • Prior experience in SOC design, threat intelligence, or security architecture roles.

  • Experience with third-party risk management or vendor security assessments.

  • Cloud experience including Windows and Linux administration and/or engineering

  • Experience and understanding of EDR platforms such as SentinelOne

  • Show a solid knowledge of modern security frameworks, models and standards

  • Experience writing scripts in Python, Powershell, Perl, Ruby, Bash, Grep/Sed/Awk

  • Understanding of all phases of the Cyber Security kill chain

  • Experience with email security and phishing

  • Knowledge and experience updating and creating Incident Response Playbooks

  • Solid understanding of secure messaging best practices and security training best practices

  • The following certifications are a plus, but not required: CISSP, CEH, GSEC, ECSA & Security+

About Trinity

Trinity powers the future of life sciences commercialization through the fusion of human and artificial intelligence. By blending deep therapeutic expertise and trusted human ingenuity with a purpose-built technology platform, Trinity accelerates clarity and confidence at every step of the commercialization journey—from pre-launch to scale to loss of exclusivity. For more than 30 years, the world’s leading pharmaceutical, biotech, and medtech companies have relied on Trinity’s foresight, execution, and partnership to deliver confident product launches, decisive market advantage, and measurable patient impact. During that time, Trinity expanded from its first office in Waltham, MA to 1,300 professionals across 14 offices and five continents, setting new industry standards in quality, responsiveness, and client partnership. For more information, visit Trinity at www.trinitylifesciences.com.

Trinity’s salary bands account for a wide range of factors that are considered in making compensation decisions including but not limited to skill sets and market demand for skills, level of experience and training, specific qualifications, performance, geographic location, internal equity, and other business and organizational needs. The base salary range for this role is $146,625 - $198,375 per year. In addition to your base salary, you will also be eligible for an annual discretionary performance bonus.

Trinity’s Commitment to Inclusion & Engagement (I&E)
Trinity Life Sciences is an equal opportunities employer and welcome applications from all qualified individuals. At Trinity, inclusion and engagement are at the heart of how we work and grow together. We’ve evolved from a traditional “DEI” framework to Inclusion & Engagement (I&E)—a model that moves beyond representation to focus on connection, collaboration, and shared purpose. Every role at Trinity plays a part in fostering an environment where all employees feel valued, respected, and empowered to contribute fully. By embedding I&E principles into our culture, we ensure that belonging and engagement are not standalone initiatives—they are part of how we build teams, make decisions, and deliver excellence every day. Trinity will not tolerate any form of discrimination or harassment and encourages applicants of all ages and identities. For more information about Trinity’s commitment to Inclusion and Engagement please visit Inclusion & Engagement | Culture of Belonging at Trinity Life Sciences.

Similar Jobs

An Hour Ago
Remote
US
Senior level
Senior level
Consumer Web • eCommerce • Machine Learning • Software • Sports • Analytics
Design and develop scalable cloud-based backend architectures for PSA’s consumer-facing Set Registry platform. Own features through architecture, implementation, testing, deployment, and production release. Build APIs for web and mobile applications, improve databases and existing applications, troubleshoot complex systems, and collaborate with product and engineering teams. Contribute to technical design reviews, documentation, monitoring, security practices, and automated testing.
Top Skills: Amazon Api GatewayAmazon EcsAmazon EventbridgeAmazon SnsAmazon SqsAws CdkAws CloudformationAws LambdaBatch ProcessingDockerDynamoDBEvent-Driven ArchitecturesKubernetesMicroservicesPostgresPythonRest ApisTerraform
An Hour Ago
Remote or Hybrid
United States
Senior level
Senior level
Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Develop autonomy evaluation metrics, statistical and machine-learning analyses, dashboards, and pipelines for simulation and on-road autonomous vehicle testing. Analyze perception, prediction, and planning performance; identify anomalous behavior and critical scenarios; apply VLMs and LLMs where appropriate; and support release gating and safety decisions. The role requires production Python, C++ debugging, technical leadership, cross-functional collaboration, and rigorous software engineering practices.
Top Skills: C++Computational GeometryLarge Language ModelsLinear AlgebraMachine LearningNumpyPandasPythonPyTorchRosScipySQLStatistical ModelingTime-Series AnalysisVision-Language Models
An Hour Ago
Remote or Hybrid
United States
76K-114K Annually
Senior level
76K-114K Annually
Senior level
Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Leads dealers across Central and Southern Alberta to achieve retail sales, market share, vehicle ordering, customer satisfaction, and accessory, service, OnStar, and leasing revenue goals. Develops district and dealer action plans, analyzes sales and market data, improves dealership performance, resolves customer issues, supports digital retail innovation, and builds dealer relationships. Requires frequent travel, independent work, cross-functional collaboration, and occasional extended hours.
Top Skills: Field Sales ToolsGm FinancialOem Distribution ProcessesOnstarSales Reporting Systems

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account