Job Description
Company Overview
Vertex Pharmaceuticals is a global biotechnology company that invests in scientific innovation to create transformative medicines for people with serious diseases. We are committed to improving the lives of patients through bold science, advanced technology, and a collaborative, mission-driven culture. At Vertex, employees are empowered to solve complex challenges in an environment that values innovation, integrity, and excellence.
Position Summary
The Principal Cybersecurity Engineer, Core Security Infrastructure is a technical leader responsible for shaping and advancing Vertex’s core security capabilities across network, cloud, application, AI, SaaS, and hybrid environments.
This role serves as a deeply technical engineering leader focused on the design, implementation, hardening, and continuous improvement of foundational security platforms and controls that protect the enterprise while enabling innovation, scalability, resilience, and compliance. The successful candidate will bring strong hands-on expertise, architectural depth, and the ability to lead complex security engineering initiatives across a modern enterprise environment.
The Principal Cybersecurity Engineer will partner closely with cybersecurity, infrastructure, cloud, application, and enterprise technology teams to strengthen security architecture, improve platform effectiveness, enhance automation, and support secure modernization efforts. This role is ideal for a highly experienced engineer who can influence strategy through technical excellence, drive implementation of modern security capabilities, and serve as a trusted expert across core security domains.
Work Model: On-site or Hybrid (Remote work is NOT an option)
Key Responsibilities
- Lead the design, engineering, implementation, and optimization of enterprise core security platforms across network, cloud, application, AI, SaaS, and hybrid environments.
- Serve as a senior technical expert for foundational security controls, ensuring scalability, resilience, operational effectiveness, and alignment with enterprise security strategy.
- Engineer and enhance Zero Trust capabilities through identity-based access, segmentation, secure access controls, and continuous verification models.
- Design, implement, and support enterprise security infrastructure technologies, including firewalls, intrusion prevention, network access control, web application firewall capabilities, and policy enforcement platforms.
- Drive secure-by-design and secure-by-default principles across infrastructure, application, cloud, SaaS, and AI technology environments.
- Develop and maintain security standards, engineering patterns, reference architectures, guardrails, and technical implementation guidance.
- Improve enterprise visibility through security monitoring, telemetry, governance, and policy enforcement across infrastructure and platform layers.
- Design and implement security controls and validation approaches for AI and generative AI technologies in partnership with architecture and governance stakeholders.
- Lead complex technical initiatives to modernize and automate security platforms, improve operational consistency, and reduce manual effort.
- Partner with cross-functional technology teams to embed security into platform design, engineering workflows, and operational processes.
- Evaluate current security capabilities and recommend technical improvements to reduce risk, improve resilience, and strengthen enterprise defenses.
- Provide technical leadership during platform assessments, architecture reviews, risk remediation, and major engineering decisions.
- Support vendor evaluations, technology selections, and implementation activities related to strategic security platform investments.
- Mentor engineers and contribute to a culture of technical excellence, accountability, innovation, and continuous improvement.
Required Qualifications
- Bachelor’s degree in Information Security, Computer Science, Information Technology, Engineering, or a related field; advanced degree preferred.
- 10+ years of experience in cybersecurity, security engineering, infrastructure security, or related technical roles.
- Demonstrated success designing, implementing, and operating enterprise-scale security architecture, engineering, infrastructure, or platform security capabilities.
- Deep technical expertise across network, cloud, application, SaaS, and hybrid infrastructure security.
- Strong experience building and engineering modern enterprise security controls and platforms.
- Deep understanding of Zero Trust principles and modern enterprise security architectures.
- Experience designing, implementing, and operating Palo Alto Networks security platforms in large, complex enterprise environments.
- Experience with SaaS security, asset visibility, and cloud security posture management solutions across AWS and Azure environments.
- Experience with network access control, web application firewall technologies, and segmentation capabilities in enterprise environments.
- Experience developing security standards, engineering guardrails, and technical roadmaps for large-scale environments.
- Experience operating within regulated environments, including GxP, SOX, or comparable compliance frameworks.
- Proven ability to influence architecture decisions and lead complex cross-functional technical initiatives.
- Strong problem-solving, communication, and technical leadership skills.
Technical Skills Required
- Enterprise security architecture and engineering
- Network, cloud, application, and SaaS security
- Palo Alto Networks security platforms
- Zero Trust and identity-based security
- Segmentation and access control
- Cloud security posture management
- Asset visibility and platform security
- Perimeter and web application security
- Security monitoring, telemetry, and governance
- Security platform operations and automation
- Infrastructure and hybrid environment security
Preferred Qualifications
- Experience with Illumio or similar segmentation technologies.
- Experience with Obsidian or similar SaaS security platforms.
- Experience with Armis or similar asset visibility and security platforms.
- AI and generative AI security
- Experience in biotechnology, pharmaceutical, healthcare, or other highly regulated industries.
- Experience leading large-scale security transformation and platform modernization initiatives.
- Experience implementing and operating global security platforms and services.
- Familiarity with industry security frameworks and standards such as NIST, ISO 27001, CIS, or similar.
- Understanding of emerging AI security risks, governance models, and control frameworks.
- Relevant certifications such as CISSP, CISM, CCSP, or equivalent.
- Strong executive communication and stakeholder engagement skills.
- Experience mentoring senior engineers and influencing technical direction across cybersecurity teams.
Benefits
Vertex offers a competitive and comprehensive benefits package designed to support employees’ health, wellbeing, and professional growth, including:
- Competitive compensation and incentive programs
- Medical, dental, and vision coverage
- Retirement savings programs
- Paid time off and company holidays
- Wellness and employee assistance programs
- Professional development and career growth opportunities
- A collaborative, inclusive, and mission-driven culture
#LI-HYBRID
Pay Range:
$147,600 - $221,400Disclosure Statement:
The range provided is based on what we believe is a reasonable estimate for the base salary pay range for this job at the time of posting. This role is eligible for an annual bonus and annual equity awards. Some roles may also be eligible for overtime pay, in accordance with federal and state requirements. Actual base salary pay will be based on a number of factors, including skills, competencies, experience, and other job-related factors permitted by law.
At Vertex, our Total Rewards offerings also include inclusive market-leading benefits to meet our employees wherever they are in their career, financial, family and wellbeing journey while providing flexibility and resources to support their growth and aspirations. From medical, dental and vision benefits to generous paid time off (including a week-long company shutdown in the Summer and the Winter), educational assistance programs including student loan repayment, a generous commuting subsidy, matching charitable donations, 401(k) and so much more.
Flex Designation:
Remote-EligibleFlex Eligibility Status:
In this Remote-Eligible role, you can choose to be designated as:
1. Remote: work remotely five days per week and come into the office on occasion – you’re always welcome on-site; or select
2. Hybrid: work remotely up to two days per week; or select
3. On-Site: work five days per week on-site with ad hoc flexibility.
Note: The Flex status for this position is subject to Vertex’s Policy on Flex @ Vertex Program and may be changed at any time.
#LI-Remote
Company Information
Vertex is a global biotechnology company that invests in scientific innovation.
Vertex is committed to equal employment opportunity and non-discrimination for all employees and qualified applicants without regard to a person's race, color, sex, gender identity or expression, age, religion, national origin, ancestry, ethnicity, disability, veteran status, genetic information, sexual orientation, marital status, or any characteristic protected under applicable law. Vertex is an E-Verify Employer in the United States. Vertex will make reasonable accommodations for qualified individuals with known disabilities, in accordance with applicable law.
Any applicant requiring an accommodation in connection with the hiring process and/or to perform the essential functions of the position for which the applicant has applied should make a request to the recruiter or hiring manager, or contact Talent Acquisition at [email protected]
Skills Required
- Bachelor's degree in Information Security, Computer Science, IT, Engineering, or related field (advanced degree preferred)
- 10+ years of experience in cybersecurity, security engineering, or infrastructure security
- Designing, implementing, and operating enterprise-scale security architecture and platform capabilities
- Deep technical expertise across network, cloud, application, SaaS, and hybrid infrastructure security
- Experience implementing and operating Palo Alto Networks security platforms in large enterprise environments
- Experience with SaaS security, asset visibility, and cloud security posture management across AWS and Azure
- Experience with network access control, web application firewall technologies, intrusion prevention, and segmentation
- Deep understanding of Zero Trust principles, identity-based access, and segmentation controls
- Experience developing security standards, guardrails, reference architectures, and technical roadmaps
- Experience operating within regulated environments (GxP, SOX, or comparable frameworks)
- Proven ability to influence architecture decisions and lead complex cross-functional technical initiatives
- Strong problem-solving, communication, and technical leadership skills
- Experience with Illumio or similar segmentation technologies
- Experience with Obsidian or similar SaaS security platforms
- Experience with Armis or similar asset visibility and security platforms
- Experience with AI and generative AI security and associated governance models
- Familiarity with industry security frameworks and standards (NIST, ISO 27001, CIS)
- Relevant certifications such as CISSP, CISM, CCSP, or equivalent
- Experience leading large-scale security transformation and global platform modernization initiatives
Vertex Pharmaceuticals Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Vertex Pharmaceuticals and has not been reviewed or approved by Vertex Pharmaceuticals.
-
Parental & Family Support — Policies provide 12 weeks of 100% paid bonding leave for all U.S. parents with additional fully paid time for birth parents. Family-forming supports include adoption and surrogacy assistance, fertility options like IVF and egg cryopreservation, breast‑milk shipping, subsidized childcare, backup care, and a DCFSA match.
-
Leave & Time Off Breadth — Time off includes roughly four weeks of vacation, 13 holidays, sick time, and two companywide shutdowns (summer and year‑end). Some roles also include flexible or unlimited time off and paid volunteer time.
-
Retirement Support — Programs include a 401(k) plan with employer contributions and an employee stock purchase plan. Filings describe employer contributions occurring in company stock, supporting long‑term ownership.
Vertex Pharmaceuticals Insights
What We Do
Vertex is a global biotechnology company that invests in scientific innovation to create transformative medicines for people with serious and life-threatening diseases. We discovered and developed the first medicines to treat the underlying cause of cystic fibrosis (CF), a rare, life-threatening genetic disease. In addition to clinical development programs in CF, Vertex has more than a dozen ongoing research programs focused on the underlying mechanisms of other serious diseases. Founded in 1989 in Cambridge, Massachusetts, our corporate headquarters is now located in Boston’s Innovation District, and our international headquarters is in London, United Kingdom. We currently employ approximately 3,500 people in the United States, Europe, Canada, Australia and Latin America with nearly two-thirds of our staff dedicated to research and development. Vertex is consistently recognized as one of the industry’s top places to work by Science Magazine, The Boston Globe, Boston Business Journal and the San Diego Business Journal. Our research and medicines have also received esteemed recognitions, including the Robert J. Beall Therapeutics Development Award, the French Prix Galien and the British Pharmacological Society awards.








