Zentalis Pharmaceuticals

Senior Security & Infrastructure Engineer

Zentalis Pharmaceuticals$120K — $150K *
US-AnywhereRemote in San Diego, CA
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Information Security, IT, Computer Science, or related field; equivalent experience considered.
  • 8-10 years of experience in cybersecurity, infrastructure engineering, systems administration, or related fields.
  • Hands-on experience in security operations and enterprise infrastructure.
  • Experience with Microsoft 365, Azure, AWS, identity and access management, and monitoring platforms.
  • Proficiency in coordinating with MDR, SOC, or SOCaaS for security response activities.
  • Understanding of backup, disaster recovery, and infrastructure resiliency practices.
  • Strong troubleshooting skills and ability to communicate effectively with technical and non-technical stakeholders.

Responsibilities

  • Monitor and respond to security alerts, identity events, and vulnerabilities.
  • Collaborate with MDR and SOC providers to enhance incident response protocols.
  • Administer Microsoft Entra ID, Conditional Access, and identity governance tools.
  • Oversee vulnerability management and risk prioritization from identification to remediation.
  • Lead incident response efforts and document outcomes for continuous improvement.
  • Act as the primary administrator for core security technologies including Microsoft Defender.
  • Support and manage infrastructure operations across cloud and hybrid environments.

Benefits

  • Comprehensive benefits package.
  • Health, dental, and vision insurance.
  • Retirement savings plan with company match.
  • Flexible working hours and remote work options.
  • Professional development and certification support.
Full Job Description
SENIOR SECURITY & INFRASTRUCTURE ENGINEER

POSITION SUMMARY:

We are seeking a Senior Security and Infrastructure Engineer to help secure, support, and improve our cloud, identity, infrastructure, and security operations environments. This role is ideal for a hands-on engineer with broad experience across cybersecurity, Microsoft 365, Azure, AWS, identity, virtualization, monitoring, backup, and enterprise infrastructure. The position partners with internal teams, business stakeholders, vendors, and managed security providers to reduce risk, maintain reliable systems, and support a secure, scalable technology environment.

ESSENTIAL DUTIES AND RESPONSIBILITIES:

Security, Identity & Risk Operations

  • Monitor, investigate, triage, and coordinate remediation for security alerts, identity events, vulnerabilities, and verified incidents across cloud, endpoint, server, and network environments.
  • Partner with MDR, managed SOC, and SOCaaS providers to review escalations, validate recommendations, improve detection logic, and ensure response workflows are effective.
  • Administer and improve Microsoft Entra ID, Conditional Access, MFA, identity governance, privileged access monitoring, access reviews, PKI, and certificate lifecycle management.
  • Support vulnerability management, patch compliance, security control administration, and risk prioritization from identification through remediation validation.
  • Coordinate remediation efforts to ensure corrective actions are communicated, completed, documented, and aligned to risk priorities.
  • Participate in incident response activities as needed, including containment support, recovery coordination, evidence handling, stakeholder communication, and post-incident corrective actions.
  • Drive continuous improvement of security monitoring, alert response, operational procedures, and risk reduction efforts based on threat trends, lessons learned, and security assessments.
  • Assist with security assessments, audits, compliance reviews, and evidence collection.


Security Technology Ownership

Serve as a primary administrator for core security technologies, including:
  • Microsoft Defender Suite
  • Microsoft Entra ID
  • Conditional Access
  • Endpoint Protection
  • Email Security
  • Vulnerability Management
  • Security Monitoring and Logging Solutions
  • SIEM, MDR, and SOCaaS Services

Infrastructure, Cloud & Network Operations

  • Administer and support Microsoft 365, Azure, AWS, VMware, Azure Arc, hybrid infrastructure, and enterprise infrastructure platforms.
  • Troubleshoot complex infrastructure and platform issues while maintaining reliability, availability, performance, and secure configuration across enterprise systems.
  • Support infrastructure modernization, architecture, hardening, technology evaluations, implementation projects, and operational readiness activities.
  • Monitor and respond to infrastructure, application, and security alerts through LogicMonitor and other monitoring platforms; identify recurring issues and improve alerting or runbooks where needed.
  • Administer cloud backup, disaster recovery, data protection, recovery readiness, and immutable backup technologies.
  • Serve as a backup technical resource for firewall, VPN, switching, routing, wireless, network security, and connectivity operations.
  • Support commercial business needs by partnering with stakeholders, vendors, and technical teams on secure, reliable infrastructure solutions.
  • Participate in after-hours support and escalation activities as required.


KNOWLEDGE/SKILLS/ABILITIES REQUIRED:

Required:

  • Bachelor's degree in Information Security, Information Technology, Computer Science, or a related field preferred; equivalent experience may be considered.
  • 8+ years of combined experience in cybersecurity, infrastructure engineering, systems administration, cloud administration, identity management, or related technical disciplines; 10+ years preferred.
  • Hands-on experience supporting both security operations and enterprise infrastructure in business-critical environments.
  • Experience with Microsoft 365, Azure, AWS, Microsoft Entra ID, Conditional Access, MFA, identity security, PKI, VMware, Azure Arc, vulnerability management, enterprise patching, and monitoring platforms.
  • Experience working with MDR, managed SOC, or SOCaaS providers to coordinate investigations, remediation, recommendations, and security response activities.
  • Working knowledge of backup, disaster recovery, immutable backup concepts, infrastructure resiliency, and recovery readiness practices.
  • Ability to troubleshoot complex technical issues, prioritize work across competing needs, document procedures, and communicate clearly with technical and non-technical stakeholders.
  • Preferred Experience
  • Microsoft Defender Suite, Microsoft Entra ID, Azure administration/security, Azure Arc, Microsoft Intune, and Microsoft 365 security technologies.
  • AWS administration/security, Azure Virtual Desktop, Amazon WorkSpaces, VMware vSphere, and hybrid infrastructure management.
  • Cloud PKI, certificate automation, endpoint protection, vulnerability management, SIEM, MDR, SOCaaS, and enterprise monitoring platforms such as LogicMonitor.
  • Enterprise backup platforms such as Veeam, Rubrik, Cohesity, Druva, Commvault, or similar solutions, including immutable backup and ransomware recovery technologies.
  • Firewall, VPN, routing, switching, wireless, network security, and regulated environments such as pharmaceutical, biotechnology, SOX, NIST, ISO 27001, or CIS.


Preferred Certifications

Relevant security, cloud, infrastructure, or vendor certifications preferred, such as:

CISSP, Security+, GSEC, SC-200, SC-300, AZ-500, AWS Security Specialty, AWS Solutions Architect, Microsoft Security, or VMware certifications.

Additional Expectations

This position may be assigned additional duties, responsibilities, and projects as required to support evolving business, operational, cybersecurity, infrastructure, and technology objectives.

About Zentalis Pharmaceuticals

Zentalis Pharmaceuticals is a clinical-stage biopharmaceutical company focused on developing small molecule therapeutics targeting fundamental biological pathways of cancers. The company's lead product candidate, ZN-c5, is a novel, oral selective estrogen receptor degrader (SERD) for the treatment of estrogen receptor-positive (ER+) / human epidermal growth factor receptor 2-negative (HER2-) advanced or metastatic breast cancer. Zentalis is also developing ZN-c3, an oral selective estrogen receptor modulator (SERM) for the treatment of ER+/HER2- breast cancer, and ZN-d5, an oral WEE1 inhibitor for the treatment of advanced solid tumors. The company was founded in 2014 and is headquartered in New York, NY.
Learn more about Zentalis Pharmaceuticals
Size
177 employees
Market Cap
$1 billion
Industry
NASDAQ

Similar Jobs

More Jobs at Zentalis Pharmaceuticals

More Information Technology Jobs

Find similar Senior Security & Infrastructure Engineer jobs: