Cybersecurity Principal Engineer - HYBRID ROLE
Vertex Pharmaceuticals · Boston, MA · 1 mo ago
Hybrid$148k–$221k/yrFull-time
Key Responsibilities
- Lead the design, engineering, implementation, and optimization of enterprise core security platforms across network, cloud, application, AI, SaaS, and hybrid environments.
- Serve as a senior technical expert for foundational security controls, ensuring scalability, resilience, operational effectiveness, and alignment with enterprise security strategy.
- Engineer and enhance Zero Trust capabilities through identity-based access, segmentation, secure access controls, and continuous verification models.
- Design, implement, and support enterprise security infrastructure technologies, including firewalls, intrusion prevention, network access control, web application firewall capabilities, and policy enforcement platforms.
- Drive secure-by-design and secure-by-default principles across infrastructure, application, cloud, SaaS, and AI technology environments.
- Develop and maintain security standards, engineering patterns, reference architectures, guardrails, and technical implementation guidance.
- Improve enterprise visibility through security monitoring, telemetry, governance, and policy enforcement across infrastructure and platform layers.
- Design and implement security controls and validation approaches for AI and generative AI technologies in partnership with architecture and governance stakeholders.
- Lead complex technical initiatives to modernize and automate security platforms, improve operational consistency, and reduce manual effort.
- Partner with cross-functional technology teams to embed security into platform design, engineering workflows, and operational processes.
- Evaluate current security capabilities and recommend technical improvements to reduce risk, improve resilience, and strengthen enterprise defenses.
- Support vendor evaluations, technology selections, and implementation activities related to strategic security platform investments.
- Mentor engineers and contribute to a culture of technical excellence, accountability, innovation, and continuous improvement.
Required Qualifications
- Bachelor’s degree in Information Security, Computer Science, Information Technology, Engineering, or a related field; advanced degree preferred.
- 10+ years of experience in cybersecurity, security engineering, infrastructure security, or related technical roles.
- Demonstrated success designing, implementing, and operating enterprise-scale security architecture, engineering, infrastructure, or platform security capabilities.
- Deep technical expertise across network, cloud, application, SaaS, and hybrid infrastructure security.
- Strong experience building and engineering modern enterprise security controls and platforms.
- Deep understanding of Zero Trust principles and modern enterprise security architectures.
- Experience designing, implementing, and operating Palo Alto Networks security platforms in large, complex enterprise environments.
- Experience with SaaS security, asset visibility, and cloud security posture management solutions across AWS and Azure environments.
- Experience with network access control, web application firewall technologies, and segmentation capabilities in enterprise environments.
- Experience developing security standards, engineering guardrails, and technical roadmaps for large-scale environments.
- Experience operating within regulated environments, including GxP, SOX, or comparable compliance frameworks.
- Proven ability to influence architecture decisions and lead complex cross-functional technical initiatives.
- Strong problem-solving, communication, and technical leadership skills.
Technical Skills Required
- Enterprise security architecture and engineering
- Network, cloud, application, and SaaS security
- Palo Alto Networks security platforms
- Zero Trust and identity-based security
- Segmentation and access control
- Cloud security posture management
- Asset visibility and platform security
- Perimeter and web application security
- Security monitoring, telemetry, and governance
- Infrastructure and hybrid environment security