Zentalis Pharmaceuticals

Senior Security & Infrastructure Engineer

Zentalis Pharmaceuticals$120K — $150K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Information Security, IT, Computer Science, or related field; equivalent experience accepted.
  • 8+ years in cybersecurity, infrastructure engineering, systems administration, or cloud administration; ideally 10+ years.
  • Hands-on experience with security operations in critical business environments.
  • Familiarity with Microsoft 365, Azure, AWS, identity security, and vulnerability management.
  • Experience collaborating with MDR or SOC providers for security investigations and responses.
  • Knowledge of disaster recovery and infrastructure resiliency practices.
  • Ability to communicate complex technical issues clearly to diverse stakeholders.

Responsibilities

  • Monitor and respond to security alerts, incidents, and vulnerabilities across various environments.
  • Collaborate with security service providers to enhance detection and response workflows.
  • Administer security technologies such as Microsoft Defender, Entra ID, and Conditional Access.
  • Support vulnerability management, risk prioritization, and remedial actions through the security lifecycle.
  • Engage in incident response activities including recovery and stakeholder communication.
  • Drive enhancements to security operations and risk management practices based on evolving threats.
  • Manage infrastructure and cloud operations, ensuring reliability and security across platforms.

Benefits

  • Health, dental, and vision insurance coverage.
  • Retirement plan options with company matching.
  • Professional development opportunities and training programs.
  • Flexible work arrangements.
Full Job Description
SENIOR SECURITY & INFRASTRUCTURE ENGINEER

POSITION SUMMARY:

We are seeking a Senior Security and Infrastructure Engineer to help secure, support, and improve our cloud, identity, infrastructure, and security operations environments. This role is ideal for a hands-on engineer with broad experience across cybersecurity, Microsoft 365, Azure, AWS, identity, virtualization, monitoring, backup, and enterprise infrastructure. The position partners with internal teams, business stakeholders, vendors, and managed security providers to reduce risk, maintain reliable systems, and support a secure, scalable technology environment.

ESSENTIAL DUTIES AND RESPONSIBILITIES:

Security, Identity & Risk Operations

  • Monitor, investigate, triage, and coordinate remediation for security alerts, identity events, vulnerabilities, and verified incidents across cloud, endpoint, server, and network environments.
  • Partner with MDR, managed SOC, and SOCaaS providers to review escalations, validate recommendations, improve detection logic, and ensure response workflows are effective.
  • Administer and improve Microsoft Entra ID, Conditional Access, MFA, identity governance, privileged access monitoring, access reviews, PKI, and certificate lifecycle management.
  • Support vulnerability management, patch compliance, security control administration, and risk prioritization from identification through remediation validation.
  • Coordinate remediation efforts to ensure corrective actions are communicated, completed, documented, and aligned to risk priorities.
  • Participate in incident response activities as needed, including containment support, recovery coordination, evidence handling, stakeholder communication, and post-incident corrective actions.
  • Drive continuous improvement of security monitoring, alert response, operational procedures, and risk reduction efforts based on threat trends, lessons learned, and security assessments.
  • Assist with security assessments, audits, compliance reviews, and evidence collection.


Security Technology Ownership

Serve as a primary administrator for core security technologies, including:
  • Microsoft Defender Suite
  • Microsoft Entra ID
  • Conditional Access
  • Endpoint Protection
  • Email Security
  • Vulnerability Management
  • Security Monitoring and Logging Solutions
  • SIEM, MDR, and SOCaaS Services

Infrastructure, Cloud & Network Operations

  • Administer and support Microsoft 365, Azure, AWS, VMware, Azure Arc, hybrid infrastructure, and enterprise infrastructure platforms.
  • Troubleshoot complex infrastructure and platform issues while maintaining reliability, availability, performance, and secure configuration across enterprise systems.
  • Support infrastructure modernization, architecture, hardening, technology evaluations, implementation projects, and operational readiness activities.
  • Monitor and respond to infrastructure, application, and security alerts through LogicMonitor and other monitoring platforms; identify recurring issues and improve alerting or runbooks where needed.
  • Administer cloud backup, disaster recovery, data protection, recovery readiness, and immutable backup technologies.
  • Serve as a backup technical resource for firewall, VPN, switching, routing, wireless, network security, and connectivity operations.
  • Support commercial business needs by partnering with stakeholders, vendors, and technical teams on secure, reliable infrastructure solutions.
  • Participate in after-hours support and escalation activities as required.


KNOWLEDGE/SKILLS/ABILITIES REQUIRED:

Required:

  • Bachelor's degree in Information Security, Information Technology, Computer Science, or a related field preferred; equivalent experience may be considered.
  • 8+ years of combined experience in cybersecurity, infrastructure engineering, systems administration, cloud administration, identity management, or related technical disciplines; 10+ years preferred.
  • Hands-on experience supporting both security operations and enterprise infrastructure in business-critical environments.
  • Experience with Microsoft 365, Azure, AWS, Microsoft Entra ID, Conditional Access, MFA, identity security, PKI, VMware, Azure Arc, vulnerability management, enterprise patching, and monitoring platforms.
  • Experience working with MDR, managed SOC, or SOCaaS providers to coordinate investigations, remediation, recommendations, and security response activities.
  • Working knowledge of backup, disaster recovery, immutable backup concepts, infrastructure resiliency, and recovery readiness practices.
  • Ability to troubleshoot complex technical issues, prioritize work across competing needs, document procedures, and communicate clearly with technical and non-technical stakeholders.
  • Preferred Experience
  • Microsoft Defender Suite, Microsoft Entra ID, Azure administration/security, Azure Arc, Microsoft Intune, and Microsoft 365 security technologies.
  • AWS administration/security, Azure Virtual Desktop, Amazon WorkSpaces, VMware vSphere, and hybrid infrastructure management.
  • Cloud PKI, certificate automation, endpoint protection, vulnerability management, SIEM, MDR, SOCaaS, and enterprise monitoring platforms such as LogicMonitor.
  • Enterprise backup platforms such as Veeam, Rubrik, Cohesity, Druva, Commvault, or similar solutions, including immutable backup and ransomware recovery technologies.
  • Firewall, VPN, routing, switching, wireless, network security, and regulated environments such as pharmaceutical, biotechnology, SOX, NIST, ISO 27001, or CIS.


Preferred Certifications

Relevant security, cloud, infrastructure, or vendor certifications preferred, such as:

CISSP, Security+, GSEC, SC-200, SC-300, AZ-500, AWS Security Specialty, AWS Solutions Architect, Microsoft Security, or VMware certifications.

Additional Expectations

This position may be assigned additional duties, responsibilities, and projects as required to support evolving business, operational, cybersecurity, infrastructure, and technology objectives.

About Zentalis Pharmaceuticals

Zentalis Pharmaceuticals is a clinical-stage biopharmaceutical company focused on developing small molecule therapeutics targeting fundamental biological pathways of cancers. The company's lead product candidate, ZN-c5, is a novel, oral selective estrogen receptor degrader (SERD) for the treatment of estrogen receptor-positive (ER+) / human epidermal growth factor receptor 2-negative (HER2-) advanced or metastatic breast cancer. Zentalis is also developing ZN-c3, an oral selective estrogen receptor modulator (SERM) for the treatment of ER+/HER2- breast cancer, and ZN-d5, an oral WEE1 inhibitor for the treatment of advanced solid tumors. The company was founded in 2014 and is headquartered in New York, NY.
Learn more about Zentalis Pharmaceuticals
Size
177 employees
Market Cap
$1 billion
Industry
NASDAQ

Similar Jobs

More Jobs at Zentalis Pharmaceuticals

More Information Technology Jobs

Find similar Senior Security & Infrastructure Engineer jobs: