Vertex Pharmaceuticals seeks a Principal Cybersecurity Engineer in Boston, MA, in a hybrid on-site and remote capacity. This role shapes Vertex's core security capabilities across network, cloud, application, AI, SaaS, and hybrid environments, providing technical leadership and secure-by-design guidance in a hybrid work setting.
Responsibilities
- Lead the design, build, deployment, and optimization of enterprise core security platforms across network, cloud, application, AI, SaaS, and hybrid environments.
- Act as a senior technical authority for foundational security controls, ensuring scalability, resilience, operational effectiveness, and alignment with enterprise security strategy.
- Architect and enhance Zero Trust capabilities through identity-based access, segmentation, secure access controls, and continuous verification models.
- Architect, implement, and support security infrastructure technologies, including firewalls, intrusion prevention, network access control, web application firewall capabilities, and policy enforcement platforms.
- Promote secure-by-design and secure-by-default principles across infrastructure, application, cloud, SaaS, and AI environments.
- Develop and maintain security standards, engineering patterns, reference architectures, guardrails, and implementation guidance.
- Improve enterprise visibility through security monitoring, telemetry, governance, and policy enforcement across infrastructure and platform layers.
- Design and implement security controls and validation approaches for AI and generative AI technologies in partnership with architecture and governance stakeholders.
- Lead complex technical initiatives to modernize and automate security platforms, improving operational consistency and reducing manual effort.
- Collaborate with cross-functional technology teams to embed security into platform design, engineering workflows, and operational processes.
- Evaluate current security capabilities and recommend technical improvements to reduce risk, enhance resilience, and strengthen defenses.
- Provide technical leadership during platform assessments, architecture reviews, risk remediation, and major engineering decisions.
- Support vendor evaluations, technology selections, and implementation activities related to strategic security platform investments.
- Mentor engineers and contribute to a culture of technical excellence, accountability, innovation, and continuous improvement.
Requirements
- Bachelorβs degree in Information Security, Computer Science, Information Technology, Engineering, or a related field; advanced degree preferred.
- 10+ years of experience in cybersecurity, security engineering, infrastructure security, or related technical roles.
- Proven success designing, implementing, and operating enterprise-scale security architecture, engineering, infrastructure, or platform security capabilities.
- Deep technical expertise across network, cloud, application, SaaS, and hybrid infrastructure security.
- Strong experience building and engineering modern enterprise security controls and platforms.
- Strong understanding of Zero Trust principles and modern enterprise security architectures.
- Experience designing, implementing, and operating Palo Alto Networks security platforms in large, complex enterprise environments.
- Experience with SaaS security, asset visibility, and cloud security posture management solutions across AWS and Azure environments.
- Experience with network access control, web application firewall technologies, and segmentation capabilities in enterprise environments.
- Experience developing security standards, engineering guardrails, and technical roadmaps for large-scale environments.
- Experience operating within regulated environments, including GxP, SOX, or comparable compliance frameworks.
- Proven ability to influence architecture decisions and lead complex cross-functional technical initiatives.
- Strong problem-solving, communication, and technical leadership skills.
Technologies
- Palo Alto Networks security platforms
- Illumio
- Obsidian
- Armis
- AWS
- Azure
Benefits
- Competitive compensation and incentive programs
- Medical, dental, and vision coverage
- Retirement savings programs
- Paid time off and company holidays
- Wellness and employee assistance programs
- Professional development and career growth opportunities
- A collaborative, inclusive, and mission-driven culture
Pay range: USD 147,600 - 221,400 per year.
Disclosure Statement
The base salary range provided is an estimate for the base pay at the time of posting. This role is eligible for an annual bonus and annual equity awards, and some roles may be eligible for overtime pay in accordance with federal and state requirements. Actual base salary will depend on factors including skills, competencies, experience, and other job-related factors permitted by law.
Vertex Total Rewards include inclusive, market-leading benefits to support employees across career, family, and wellbeing, such as medical, dental, and vision coverage, generous paid time off (including a mid-year company shutdown), educational assistance programs including student loan repayment, and a commuting subsidy.
Flexibility
Flex designation: Remote-Eligible
Flex eligibility status
In this Remote-Eligible role, you may choose among: Remote five days a week with occasional on-site visits; Hybrid up to two days per week; or On-Site five days per week with ad hoc flexibility. The exact designation can be adjusted in accordance with Vertex policy and may change.