Senior Security & Infrastructure Engineer

Zentalis Pharmaceuticals

San Diego (CA)

On-site

USD 150,000 - 210,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Zentalis Pharmaceuticals seeks a Senior Security & Infrastructure Engineer to secure, support, and improve cloud, identity, and enterprise infrastructure. You will work hands-on across Microsoft 365, Azure, AWS, and security operations, collaborating with internal teams and vendors to reduce risk and ensure reliable systems.

The role focuses on risk reduction, incident response, and secure, scalable technology environments, with opportunities to shape security strategy within a clinical oncology

Qualifications

  • Bachelor's degree in information security or related field; equivalent experience considered.
  • 8+ years in cybersecurity, infrastructure, or related disciplines; 10+ years preferred.
  • Hands-on in security operations and enterprise infrastructure in business-critical environments.
  • Experience with Microsoft 365, Azure, AWS, Entra ID, MFA, PKI, and vulnerability management.

Responsibilities

  • Monitor, investigate, triage security alerts and incidents across cloud, endpoint, server, and network.
  • Coordinate with MDR/SOCaaS providers to improve detection and response workflows.
  • Administer Entra ID, Conditional Access, MFA, PKI, and certificate lifecycle management.
  • Maintain backup, disaster recovery, immutable backups, and data protection.
  • Support infrastructure modernization and incident response as needed.

Skills

Cybersecurity
Infrastructure engineering
Cloud administration
Identity management
Security monitoring
Incident response

Education

Bachelor's degree in Information Security/IT/CS

Tools

Microsoft 365
Azure
AWS
VMware
Azure Arc
LogicMonitor
SIEM
MDR / SOCaaS

Job description

SENIOR SECURITY & INFRASTRUCTURE ENGINEER

Zentalis is a clinical oncology innovator developing a treatment approach for ovarian cancer and multiple tumor types. Leveraging therapeutics development and biomarker expertise, Zentalis is advancing monotherapy and combination studies of its investigational first-in-class WEE1 inhibitor, azenosertib. Focused on translating WEE1 science into clinical practice, we aim to equip physicians with a targeted, non-chemo, orally available medicine that enhances treatment experience, choice, and outcomes. Our mission: to unburden cancer patients with more convenience and care.


POSITION SUMMARY:

We are seeking a Senior Security and Infrastructure Engineer to help secure, support, and improve our cloud, identity, infrastructure, and security operations environments. This role is ideal for a hands-on engineer with broad experience across cybersecurity, Microsoft 365, Azure, AWS, identity, virtualization, monitoring, backup, and enterprise infrastructure. The position partners with internal teams, business stakeholders, vendors, and managed security providers to reduce risk, maintain reliable systems, and support a secure, scalable technology environment.


ESSENTIAL DUTIES AND RESPONSIBILITIES:

Security, Identity & Risk Operations


  • Monitor, investigate, triage, and coordinate remediation for security alerts, identity events, vulnerabilities, and verified incidents across cloud, endpoint, server, and network environments.

  • Partner with MDR, managed SOC, and SOCaaS providers to review escalations, validate recommendations, improve detection logic, and ensure response workflows are effective.

  • Administer and improve Microsoft Entra ID, Conditional Access, MFA, identity governance, privileged access monitoring, access reviews, PKI, and certificate lifecycle management.

  • Support vulnerability management, patch compliance, security control administration, and risk prioritization from identification through remediation validation.

  • Coordinate remediation efforts to ensure corrective actions are communicated, completed, documented, and aligned to risk priorities.

  • Participate in incident response activities as needed, including containment support, recovery coordination, evidence handling, stakeholder communication, and post-incident corrective actions.

  • Drive continuous improvement of security monitoring, alert response, operational procedures, and risk reduction efforts based on threat trends, lessons learned, and security assessments.

  • Assist with security assessments, audits, compliance reviews, and evidence collection.


Security Technology Ownership

Serve as a primary administrator for core security technologies, including:



  • Conditional Access

  • Email Security

  • Vulnerability Management

  • Security Monitoring and Logging Solutions

  • SIEM, MDR, and SOCaaS Services


Infrastructure, Cloud & Network Operations


  • Administer and support Microsoft 365, Azure, AWS, VMware, Azure Arc, hybrid infrastructure, and enterprise infrastructure platforms.

  • Troubleshoot complex infrastructure and platform issues while maintaining reliability, availability, performance, and secure configuration across enterprise systems.

  • Support infrastructure modernization, architecture, hardening, technology evaluations, implementation projects, and operational readiness activities.

  • Monitor and respond to infrastructure, application, and security alerts through LogicMonitor and other monitoring platforms; identify recurring issues and improve alerting or runbooks where needed.

  • Administer cloud backup, disaster recovery, data protection, recovery readiness, and immutable backup technologies.

  • Serve as a backup technical resource for firewall, VPN, switching, routing, wireless, network security, and connectivity operations.

  • Support commercial business needs by partnering with stakeholders, vendors, and technical teams on secure, reliable infrastructure solutions.

  • Participate in after-hours support and escalation activities as required.


KNOWLEDGE/SKILLS/ABILITIES REQUIRED:

Required:


  • Bachelor's degree in Information Security, Information Technology, Computer Science, or a related field preferred; equivalent experience may be considered.

  • 8+ years of combined experience in cybersecurity, infrastructure engineering, systems administration, cloud administration, identity management, or related technical disciplines; 10+ years preferred.

  • Hands-on experience supporting both security operations and enterprise infrastructure in business-critical environments.

  • Experience with Microsoft 365, Azure, AWS, Microsoft Entra ID, Conditional Access, MFA, identity security, PKI, VMware, Azure Arc, vulnerability management, enterprise patching, and monitoring platforms.

  • Experience working with MDR, managed SOC, or SOCaaS providers to coordinate investigations, remediation, recommendations, and security response activities.

  • Working knowledge of backup, disaster recovery, immutable backup concepts, infrastructure resiliency, and recovery readiness practices.

  • Ability to troubleshoot complex technical issues, prioritize work across competing needs, document procedures, and communicate clearly with technical and non-technical stakeholders.

  • Preferred Experience

  • Microsoft Defender Suite, Microsoft Entra ID, Azure administration/security, Azure Arc, Microsoft Intune, and Microsoft 365 security technologies.

  • AWS administration/security, Azure Virtual Desktop, Amazon WorkSpaces, VMware vSphere, and hybrid infrastructure management.

  • Cloud PKI, certificate automation, endpoint protection, vulnerability management, SIEM, MDR, SOCaaS, and enterprise monitoring platforms such as LogicMonitor.

  • Enterprise backup platforms such as Veeam, Rubrik, Cohesity, Druva, Commvault, or similar solutions, including immutable backup and ransomware recovery technologies.

  • Firewall, VPN, routing, switching, wireless, network security, and regulated environments such as pharmaceutical, biotechnology, SOX, NIST, ISO 27001, or CIS.


Preferred Certifications

Relevant security, cloud, infrastructure, or vendor certifications preferred, such as:


CISSP, Security+, GSEC, SC-200, SC-300, AZ-500, AWS Security Specialty, AWS Solutions Architect, Microsoft Security, or VMware certifications.


Additional Expectations

This position may be assigned additional duties, responsibilities, and projects as required to support evolving business, operational, cybersecurity, infrastructure, and technology objectives.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Novva Inc. • West Jordan (UT)

On-site
USD 100,000 - 130,000
Comprehensive health, dental, and vision insurance
401k with company match
PTO
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

roguefitness • United States

On-site
USD 140,000 - 170,000
Sr. Security Engineer
Sr. Security Engineer

California Water Service • San Jose (CA)

On-site
USD 180,000 - 240,000
Information Security Manager
Information Security Manager

Ecotal • Durham (NC)

Hybrid
USD 120,000 - 180,000
Senior Security Engineer
Senior Security Engineer

Novacoast • Salt Lake City (UT)

On-site
USD 100,000 - 130,000
Security Engineer
Security Engineer

CRG • Greensboro (NC)

On-site
USD 90,000 - 120,000
Senior Systems Engineer
Senior Systems Engineer

NGEN • Lanham (MD)

On-site
USD 110,000 - 150,000
SR INFRASTRUCTURE SECURITY ENGINEER
SR INFRASTRUCTURE SECURITY ENGINEER

NOW Foods • Bloomingdale (IL), Northern (KY)

Hybrid
USD 122,000 - 152,000
System Admin / Onsite / Mesa
System Admin / Onsite / Mesa

Motion Recruitment Partners LLC • Mesa (AZ)

Hybrid
USD 120,000 - 160,000
SECURITY ARCHITECTURE & ENGINEERING SME
SECURITY ARCHITECTURE & ENGINEERING SME

Hiring Our Heroes • Arlington (VA)

Hybrid
USD 120,000 - 160,000
Flexible work environment
Opportunities for professional development