Senior IT Security Engineer

Sequel Med Tech

Marlboro (MA)

On-site

USD 130,000 - 170,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401(k) plan with company match
Health insurance
Flexible PTO
Insurance coverage (GL/ LTD)
Paid holidays

Job summary

Sequel Med Tech in Massachusetts seeks a Sr. IT Security Engineer to lead security operations, respond to risks, and drive measurable risk reduction across the organization.

You will partner with Security & Compliance and IT leadership to implement priorities, improve controls, and mature the security program while coordinating with IT operations for ongoing protection.

Qualifications

  • 7+ years in security engineering or security operations.
  • Hands‑on ownership of security operations or incident response programs.
  • Experience with vulnerability management and incident response.
  • Experience with SIEM tools and Microsoft security ecosystem (Defender, Entra, Purview).
  • Exposure to SOC 2, HITRUST or similar frameworks.
  • Ability to work independently with multiple priorities.
  • Strong communication with technical and non‑technical stakeholders.

Responsibilities

  • Lead security operations and drive improvements aligned with roadmap.
  • Manage vulnerability lifecycle and ensure timely remediation.
  • Lead end‑to‑end incident response and reporting to leadership.
  • Tune SIEM rules, automate responses, and reduce alert noise.
  • Support audits with evidence collection and remediation.
  • Collaborate with IT, Legal, and People & Culture on security controls.

Skills

Security operations
Incident response
Vulnerability management
SIEM
Defender ecosystem
Entra / Purview familiarity
Cross-functional collaboration

Tools

SIEM tools
Microsoft Defender
Microsoft Entra
Microsoft Purview

Job description

About Sequel

Sequel, headquartered in Manchester, New Hampshire, is a company developing the next generation of transformative drug-delivery advancements starting with diabetes. Sequel’s approach is to look at diabetes management holistically to advance systems that make living with diabetes simpler and easier for all. Sequel’s flagship product, the twiist Automated Insulin Delivery (AID) System, launched in July 2025 for people with type 1 diabetes providing them with personalized diabetes management.

Job Overview

The Sr. IT Security Engineer is a hands‑on technical leader responsible for executing and continuously improving Sequel’s security operations program. This role plays a key part in protecting the organization’s systems, data, and users by managing day‑to‑day security operations, responding to risks, and strengthening core security capabilities.

The Manager partners closely with the Senior Manager, Security & Compliance and IT leadership to implement security priorities, support compliance efforts, and drive measurable risk reduction. This role balances deep technical execution with practical input into process improvements and program maturity.

This position does not own helpdesk or end‑user provisioning activities and works in close collaboration with IT operations to continuously raise the organization's security posture and deliver measurable, auditable risk reduction.

Security Strategy, Roadmap & Program Leadership
  • Execute and support ongoing security operations aligned with Sequel’s security priorities and roadmap.

  • Translate security findings, alerts, and audit requirements into actionable remediation plans.

  • Proactively monitor the evolving threat landscape and regulatory environment; assess their impact on Sequel's security posture and bring forward‑looking recommendations before they become reactive obligations.

  • Contribute to investment and business‑case discussions by articulating risk‑reduction value, projected outcomes, and cost framing in terms that leadership can act on.

  • Partner with IT and Security & Compliance to implement security initiatives and enhancements.

Vulnerability & Patch Management
  • Manage the vulnerability lifecycle, including scanning, triage, prioritization, and remediation tracking.

  • Drive recurring patch cycles in coordination with IT operations; champion timely remediation of high‑severity findings and validate that fixes close the underlying vulnerability, not just the ticket.

  • Track and report on vulnerability metrics, trends, and SLA adherence.

  • Support improvements to tooling, processes, and reporting over time.

SIEM Operations, Incident Response & Platform Maturity
  • Monitor, triage, and investigate alerts across SIEM and Microsoft Defender tools (Defender for Endpoint, Defender for Cloud Apps, Defender for Identity).

  • Lead end‑to‑end incident response, including containment, investigation, root‑cause analysis. Communicate status and findings to security leadership.

  • Own SIEM platform maturity: build and tune detection rules, develop response automation and playbooks, expand log and data‑source coverage, and continuously reduce alert noise and analyst fatigue.

  • Define, track, and present response metrics — MTTD, MTTR, alert volume, false‑positive rates — and use trend data to prioritize tuning and platform investment decisions.

Risky User & Risky Device Remediation
  • Identify, investigate and remediate risky users and devices across Microsoft Entra and Defender tools.

  • Support Conditional Access and device compliance policies.

  • Partner with IT to address identity risks and improve overall security posture.

Security Policy & Data Protection Administration (Microsoft Purview & DLP)
  • Administer Microsoft 365 security and data protection solutions, including Purview DLP, sensitivity labeling, retention policies, data lifecycle management, and defensible deletion.

  • Maintain and update security configurations and documentation in response to evolving business and compliance feedback.

  • Assess current data‑protection coverage and recommend policy enhancements aligned to the compliance roadmap.

Security Awareness & Training Program
  • Support the execution of the security awareness program, including phishing simulations and training campaigns (KnowBe4).

  • Analyze simulation results, assess the threat landscape, and provide recommendations on training content and simulation difficulty to keep improving training program outcomes.

Audit & Compliance Execution
  • Support audit readiness activities, including evidence collection and control execution (e.g., SOC 2, HITRUST) in the GRC platform (Vanta).

  • Maintain documentation and drive remediation of audit findings; partner with the Senior Manager, Security & Compliance to ensure audit readiness is maintained.

  • Partner with Security & Compliance to ensure controls are operating effectively.

Documentation, Metrics & Reporting
  • Maintain runbooks, standard operating procedures, and security workflow documentation sufficient for audit evidence and operational continuity.

  • Track and report security and compliance metrics and related platforms; deliver leadership‑ready reporting on a regular cadence.

  • Contribute to board‑ and executive‑level security reporting by providing clear, data‑backed summaries of program status, risk posture, and progress against roadmap milestones.

Cross‑Functional Collaboration
  • Partner with IT, Legal, and People & Culture to align security practices with business and regulatory needs.

  • Provide security guidance on IT projects, configurations, and change requests.

Qualifications
  • 7+ years in security engineering, security operations, or a closely related discipline, with at least 4 years of hands‑on ownership of security operations or incident response programs.

  • Demonstrated experience contributing to or owning a security roadmap or program maturity initiative — helping define what the program should accomplish next and building the case for it.

  • Hands‑on experience with vulnerability management and incident response.

  • Experience with SIEM tools and Microsoft security ecosystem (Defender, Entra, Purview).

  • Exposure to security and compliance frameworks (SOC 2, HITRUST, or similar).

  • Experience supporting audits, including evidence collection and remediation.

  • Ability to work independently and manage multiple priorities.

  • Strong communication skills with both technical and non‑technical stakeholders.

  • Candidate must reside in the contiguous United States and work East Coast hours.

EEO Statement

Sequel Med Tech provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

Benefits

Sequel offers: automatic enrollment in a 401(k) plan with 6% company match, capped out‑of‑pocket insulin costs, GLP‑1 coverage, Meritain health insurance plans, FSAs or HSAs, vision and dental coverage, voluntary long‑term disability, accident, critical illness, hospital indemnity, pet‑care discounts, employer‑paid short‑term disability, life insurance, flexible PTO, paid holidays, and flex time options.

Environmental/Safety/Physical Work Conditions
  • Ensures environmental consciousness and safe practices are exhibited in decisions.
  • Use of computer and telephone equipment and other related office accessories/devices to complete assignments.
  • May work extended hours during peak business cycles.
  • Physical requirements such as lifting specific weights.
  • Some travelling is expected.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Medical Information
Manager, Medical Information

Sequel Med Tech • Marlborough (MA)

On-site
USD 75,000 - 140,000
401k plan with 6% company match
Flexible PTO
Vision and dental coverage
Manager, Medical Information
Manager, Medical Information

Sequel Med Tech • Marlboro (MA)

On-site
USD 80,000 - 100,000
401k plan with 6% company match
Capped out-of-pocket insulin costs
Flexible PTO and generous paid holidays
IT Operations Technician (contract)
IT Operations Technician (contract)

Sequel Med Tech • Richmond (NH)

On-site
401(k) plan with 6% company match
Equal employment opportunity
Senior Manager Marketing Analytics & Digital Performance
Senior Manager Marketing Analytics & Digital Performance

Sequel Med Tech • Marlboro (MA)

On-site
USD 120,000 - 165,000
401(k) with 6% match
GLP‑1 coverage across all plans
Meritain health insurance
+3
Senior Manager Marketing Analytics & Digital Performance
Senior Manager Marketing Analytics & Digital Performance

Sequel Med Tech • Manchester (NH)

On-site
USD 140,000 - 195,000
401k plan with company match
Insulin cost coverage
GLP‑1 coverage
+3
Territory Business Leader - Salt Lake City
Territory Business Leader - Salt Lake City

Sequel Med Tech • Salt Lake City (UT)

On-site
USD 185,000 - 215,000
PTO
Vehicle reimbursement
401k plan
+11
Clinical Diabetes Specialist - San Jose
Clinical Diabetes Specialist - San Jose

Sequel Med Tech • San Jose (CA)

On-site
USD 141,000 - 161,000
Car allowance
Gas reimbursement
401k with company match
+3
Clinical Diabetes Specialist - Atlanta West
Clinical Diabetes Specialist - Atlanta West

Sequel Med Tech • Atlanta (GA)

On-site
USD 141,000 - 161,000
Vehicle reimbursement through Motus
Comprehensive benefits package
Flexible PTO
Clinical Diabetes Specialist - Baltimore
Clinical Diabetes Specialist - Baltimore

Sequel Med Tech • Baltimore (MD)

Hybrid
USD 141,000 - 161,000
401k plan with 6% match
Flexible PTO
Health insurance options
Clinical Diabetes Specialist - Miami
Clinical Diabetes Specialist - Miami

Sequel Med Tech • Miami (FL)

On-site
USD 141,000 - 161,000
Car allowance
Gas reimbursement
401k with company match
+3