Senior Security Engineer (Contract)

Worldwide Clinical Trials

Durham (NC)

On-site

USD 122,000 - 241,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Worldwide Clinical Trials is seeking a Senior Security Engineer to own the Microsoft and Azure security capabilities, focusing on Entra ID, Key Vault, endpoint protection, and Sentinel. You will partner daily with Security Operations, IAM, and application teams to advance Zero Trust and cloud-native security in a global CRO environment.

Ideal candidates have 5+ years in enterprise security, hands-on ZIA/ZPA/ZDX, and relevant certifications; strong automation and production-readiness mindset

Qualifications

  • Bachelor’s degree in Computer Science, IT, or related field with 5+ years in security engineering.
  • Hands-on experience with ZIA, ZPA and ZDX in production environments.
  • Experience in a GxP-regulated clinical/research/healthcare setting.
  • AZ-500 or SC-300; CISSP or CCSP is a plus.

Responsibilities

  • Manage Azure Key Vault, RBAC, PIM, access governance, and lifecycle.
  • End-to-end Azure privileged access controls and reviews.
  • Apply Azure security baselines across tenants and workloads.
  • Oversee endpoint application control and PowerShell hardening.
  • Develop Sentinel detections and automation with runbooks.
  • Lead IaC practices for secure config and policy automation.
  • Provide technical direction and create runbooks for support teams.

Skills

Endpoint security
PowerShell security
Code signing
Active Directory experience
Zero Trust

Education

Bachelor's degree in Computer Science / Information Technology

Tools

Zscaler ZIA
Zscaler ZPA
Zscaler ZDX

Job description

Who we are

We’re a global, midsize CRO that pushes boundaries, innovates and invents because the path to a cure for the world’s most persistent diseases is not paved by those who play it safe. It is built by those who take pioneering, creative approaches and implement them with quality and excellence.

We are Worldwide Clinical Trials, and we are a global team of over 3,500+ experts, bright thinkers, dreamers and doers and, together, we are changing the way the world experiences CROs – in the best possible way.

Our mission is to work with passion and purpose every day to improve lives and we are looking for others who value this same pursuit.

Why Worldwide

We believe everyone plays an important role in making a world of difference for patients and their caregivers. From our hands-on, accessible leaders, to our cohesive and supportive teams, we are committed to enabling professionals from all backgrounds and experiences to succeed. We prioritize cultivating a diverse and inclusive environment that continues to promote collaboration and creativity. We are proud to be a workplace where people thrive by being themselves and are inspired to do their best work every day. Join us!

What The Senior Security Engineer Does At Worldwide

Worldwide Clinical Trials is hiring a Senior Security Engineer to own and mature the Microsoft and Azure security capabilities that protect our identity, endpoint, cloud, and network environments. The primary focus is on Microsoft Entra ID and privileged access, Azure Key Vault, endpoint application control, and Microsoft Sentinel. As we advance our Zero Trust, cloud-native model, this role will engineer security services that need to be built well once and operated reliably for years. You'll be a senior individual contributor and the go-to subject-matter expert for your domains, partnering daily with Security Operations, Identity and Access Management, and application teams, and helping shape the engineering standards you work within rather than only executing against them.

What You Will Do

Tasks may include but are not limited to:

  • The enterprise secrets-management service on Azure Key Vault. Provisioning, access governance, rotation and recovery, separation of duties, and lifecycle. Kept healthy and audit-ready as the environment grows.
  • Azure privileged-access controls end to end: RBAC, PIM, restricted administration, approvals, and access reviews, evolving them alongside IAM's Entra ID and Conditional Access direction to keep escalation risk low as the tenant scales.
  • Azure security baselines across tenants, subscriptions, and workloads including identity, logging and monitoring, network segmentation, encryption, and posture. Maintained and improved as new services come online.
  • The endpoint application-control and PowerShell-hardening capability, from standards and work instructions through exception handling and ongoing tuning, in partnership with endpoint engineering and application owners.
  • Developing Microsoft Sentinel detection and automation for privileged-access, Active Directory, and Azure high-risk events, growing the analytics and playbook library in step with Security Operations' runbooks and response processes.
  • Automation and Infrastructure-as-Code practices that make secure, policy-based configuration the default and reduce manual effort over time.
  • Technical direction for your services: design reviews, production-readiness and rollback standards, documentation, and the operational runbooks that let the wider team support what you build.
  • Perform other duties as assigned. The duties and responsibilities listed above are representative of the nature and level of work assigned and are not necessarily all-inclusive.
What You Bring To The Role
  • Endpoint application control, PowerShell security, and code-signing depth.
  • Experience with Active Directory
  • Experience with Zscaler (ZIA, ZPA, or ZDX).
  • Experience in a GxP-regulated, clinical-research, healthcare, or pharmaceutical environment.
  • Microsoft AZ-500 or SC-300 certification; CISSP or CCSP a plus.
Your Experience
  • Bachelor’s degree in Computer Science, Information Technology, or related field with a minimum of 5 years of experience in enterprise security engineering, with at least 2 years directly supporting Zscaler solutions or high school diploma/GED with a minimum of 7 years of experience in enterprise security engineering, with at least 2 years directly supporting Zscaler solutions.
  • Hands-on experience with ZIA, ZPA, and ZDX in a production environment.
  • Strong understanding of cloud security concepts, identity management, and Zero Trust principles.
  • Experience with automation for security operations and policy management using APIs.
  • Zscaler certifications (ZCCA-IA, ZCCA-PA, ZCCP) are highly desirable.

Promotion to the next level is not automatic based on years of experience. Personnel are evaluated on proven competency, level of responsibility, and ability to work independently.

At Worldwide Clinical Trials, we are committed to fostering an inclusive and equitable workplace by providing transparent compensation.

The salary range for this position is annually (For hourly paid positions, the stated salary range reflects hourly rates):

United States of America - $121,500.00 - $240,500.00

The salary range provided is intended to give candidates an understanding of potential earnings. Compensation will fall within the provided range, and it not a guarantee of exact salary. The final salary will be determined based on relevant experience, performance, education, and internal equity. In addition to base salary, we offer a competitive benefits package depending on location. We ensure pay equity and transparency and comply with all applicable labor laws. Salary information will be discussed during the interview process, and we encourage candidates to inquire about compensation at any stage.

We love knowing that someone is going to have a better life because of the work we do.

To view our other roles, check out our careers page at Discover a world of difference at Worldwide! For more information on Worldwide, visit www.Worldwide.com or connect with us on LinkedIn.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Azure Security Engineer: Zero-Trust & IAM
Senior Azure Security Engineer: Zero-Trust & IAM

Worldwide Clinical Trials • Durham (NC)

On-site
USD 122,000 - 241,000
Principal Identity Governance and Administration - US - Remote
Principal Identity Governance and Administration - US - Remote

Worldwide Clinical Trials Holdings, Inc. • United States

Remote
GBP 110,000 - 150,000
Senior Zero Trust Architect / Engineer
Senior Zero Trust Architect / Engineer

BioSpace • New Jersey

On-site
USD 111,000 - 145,000
Director, Cybersecurity Engineering
Director, Cybersecurity Engineering

HireLifeScience • Rahway (NJ)

Remote
USD 157,000 - 247,000
Annual bonus
Long-term incentive
Network Security Specialist Senior (SWG)
Network Security Specialist Senior (SWG)

Global Payments Inc. • Atlanta (GA)

Hybrid
USD 140,000 - 180,000
Sr. Staff Software Development Engineer
Sr. Staff Software Development Engineer

Zscaler • San Jose (CA)

On-site
USD 180,000 - 225,000
Health plans
Time off plans for vacation and sick
Parental leave options
+3
Senior Zero Trust Architect / Engineer
Senior Zero Trust Architect / Engineer

Legend Biotech • Bridgewater (MA)

On-site
USD 111,000 - 145,000
Medical Insurance
Dental Insurance
Vision Insurance
+1
Senior Director, CTO/CIO Healthcare West
Senior Director, CTO/CIO Healthcare West

Zscaler • California (MO)

On-site
USD 224,000 - 320,000
Time off plans for vacation and sick time
Parental leave options
Retirement options
+1
Senior Professional Services Consultant
Senior Professional Services Consultant

Zscaler • United States

Remote
USD 164,000 - 205,000
Senior Manager, Organizational Learning & Talent Enablement (US)
Senior Manager, Organizational Learning & Talent Enablement (US)

Worldwide Clinical Trials • Durham (NC)

On-site
USD 113,000 - 225,000