Senior Security Engineer / AppSec Engineer

Posted 11 Days Ago
Hiring Remotely in Philadelphia, PA
In-Office or Remote
Senior level
Pharmaceutical
The Role
The Senior Security Engineer leads technical security efforts, manages vulnerability programs, ensures compliance, and develops security architecture in a regulated pharma environment.
Summary Generated by Built In

Life changing therapies. Global impact. Bridge to thousands of biopharma companies and their patients.


We are PCI. 


Our investment is in People who make an impact, drive progress and create a better tomorrow. Our strategy includes building teams across our global network to pioneer and shape the future of PCI.

   

Position Summary

The Senior Security Engineer will serve as the technical security lead for PCI Pharma, responsible for security architecture, application security, vulnerability management, and security engineering across enterprise and manufacturing environments. This role combines hands-on technical work with strategic security advisory, ensuring protection of pharmaceutical intellectual property, patient data, and compliance with industry regulations.

Key Responsibilities
  • Design and implement security architecture for cloud (Azure, AWS), on-premises, and hybrid environments
  • Lead application security program including SAST/DAST integration, secure code reviews, and developer training
  • Manage enterprise vulnerability management using Nessus, including scan scheduling, risk prioritization, and remediation tracking
  • Architect and maintain Zero Trust security framework including identity-centric access controls
  • Conduct security assessments for new applications, infrastructure changes, and M&A integrations
  • Design network segmentation strategies for IT/OT environments and manufacturing systems
  • Implement and manage endpoint security solutions (EDR, AV) in coordination with RUN team
  • Lead security incident response for complex technical investigations
  • Develop security standards, policies, and technical guidelines aligned with pharmaceutical regulations
  • Evaluate and recommend security tools and technologies for continuous improvement
  • Coordinate penetration testing activities and remediation of findings
  • Provide security consultation for cloud migrations and digital transformation initiatives
Required Qualifications
  • Bachelor's degree in Computer Science, Cybersecurity, or related field
  • 7+ years of progressive cybersecurity experience with 3+ years in security engineering/architecture
  • Deep expertise in vulnerability management tools (Nessus, Qualys, or Rapid7)
  • Strong application security knowledge including OWASP Top 10, secure SDLC, and DevSecOps practices
  • Experience with cloud security in Azure and/or AWS (security groups, IAM, encryption)
  • Proficiency in network security including firewalls, IDS/IPS, and segmentation
  • Knowledge of endpoint security solutions and EDR platforms
  • Strong scripting abilities (PowerShell, Python) for security automation
  • Experience in regulated industries with compliance requirements
  • CISSP, CISM, or equivalent security certification
Preferred Qualifications
  • Master's degree in Cybersecurity or Information Assurance
  • Pharmaceutical or healthcare industry experience with GxP knowledge
  • GPEN, OSCP, or other hands-on security certifications
  • Experience with IT/OT security and industrial control systems
  • Knowledge of 21 CFR Part 11 and computer system validation
  • Cloud security certifications (AZ-500, AWS Security Specialty)
Technical Skills & Tools

Nessus / Tenable.io vulnerability management  •  SAST/DAST tools (SonarQube, Checkmarx, Burp Suite)  •  Azure Security Center / AWS Security Hub  •  EDR platforms (CrowdStrike, Defender for Endpoint)  •  SIEM platforms (Splunk, Sentinel)  •  Firewall management (Palo Alto, Cisco ASA)  •  PowerShell / Python security scripting  •  Git and CI/CD security integration

Key Performance Indicators
  • Critical vulnerability remediation SLA (target: <7 days)
  • Application security review coverage (target: 100% of new apps)
  • Security incident response time (target: <1 hour for P1)
  • Penetration test finding closure rate (target: >90% within 90 days)
  • Zero Trust implementation milestones (per roadmap)

Join us and be part of building the bridge between life changing therapies and patients. Let’s talk future

Equal Employment Opportunity (EEO) Statement:
PCI Pharma Services is an Equal Opportunity/Affirmative Action Employer. We do not unlawfully discriminate on the basis of race, color, religion, age, sex, creed, national origin, ancestry, citizenship status, marital or domestic or civil union status, familial status, affectional or sexual orientation, gender identity or expression, genetics, disability, military eligibility or veteran status, or any other protected status.

At PCI, Equity and Inclusion are at the core of our company’s purpose: Together, delivering life-changing therapies. We are committed to cultivating an inclusive workplace by holding ourselves accountable to the highest standards of understanding, fairness, respect, and equal opportunity – at every level. We envision a PCI community where everyone can belong and grow, and we strive to bring this vision to reality by continuously and intentionally assessing our people practices, policies and programs, marketing approach, and workplace culture.

Top Skills

AWS
Azure
Edr Platforms
Git
Nessus
Owasp
Powershell
Python
Qualys
Rapid7
Siem Platforms
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Philadelphia, PA
2,259 Employees

What We Do

PCI is a leading provider of integrated pharmaceutical development services to the global healthcare market. With facilities in North America and Europe, PCI supports pharmaceutical and biotech companies with products destined for more than 100 countries around the world. PCI provides services for each stage of the product lifecycle – from early Phase I through commercial launch and long-term supply – and partners with customers to provide key insight and expertise in enabling successful commercialization and bringing lifesaving medications to patients. For more information, go to www.pci.com.

Similar Jobs

Pluralsight Logo Pluralsight

Enterprise Account Executive

Edtech • Information Technology • Software
Remote or Hybrid
15 Locations
1300 Employees
224K-280K Annually

Garner Health Logo Garner Health

Strategic Accounts Manager

Big Data • Healthtech • HR Tech • Machine Learning • Software • Telehealth • Big Data Analytics
Easy Apply
Remote
USA
350 Employees
124K-173K Annually

Upstart Logo Upstart

Senior Manager, Software Engineering - Core Pricing

Artificial Intelligence • Fintech • Machine Learning • Social Impact • Software
Easy Apply
Remote
United States
1500 Employees
195K-270K Annually

Huntress Logo Huntress

SOC Support Specialist- Weekend Shift

Information Technology • Cybersecurity
Easy Apply
Remote
US
630 Employees
50K-65K Annually

Similar Companies Hiring

Formation Bio Thumbnail
Pharmaceutical • Healthtech • Biotech • Big Data • Artificial Intelligence
New York, NY
140 Employees
Pfizer Thumbnail
Pharmaceutical • Natural Language Processing • Machine Learning • Healthtech • Biotech • Artificial Intelligence
New York, NY
121990 Employees
Cencora Thumbnail
Pharmaceutical • Logistics • Healthtech
Conshohocken, PA
51000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account