Lead Engineer, Cyber Security
Position Summary
Trinity seeks an experienced Cybersecurity Engineer to join its Cybersecurity team.
The successful candidate will serve as a technical architect and hands-on engineer, designing, implementing, hardening, and monitoring security controls across Trinity's multi-cloud infrastructure (Azure, AWS and GCP), applications, and endpoints.
This role bridges security strategy with tactical execution, requiring both deep technical expertise and the ability to translate complex security requirements into operationally effective solutions.
The Cybersecurity Engineer will partner with infrastructure, application development, incident response, and business teams to embed security into architecture, deployment pipelines, and operational processes.
Essential Functions
Cloud Security Architecture & Engineering
* Design and implement security architectures for Azure and AWS environments following Zero Trust principles, including identity governance (Entra ID/IAM), network segmentation, private endpoints, NSGs, Security Groups, and Azure Firewall/AWS WAF configurations.
* Architect and deploy data protection controls (encryption at-rest and in-transit, key management, secrets rotation) across cloud services (VMs, App Service, AKS/EKS, databases, storage accounts, S3/ADLS).
* Conduct cloud infrastructure assessments, identify misconfigurations and compliance gaps, and develop remediation plans aligned with Azure/AWS Well-Architected security pillars.
* Define and enforce security baselines and cloud infrastructure hardening standards aligned with CIS Controls, NIST 800-53, and industry best practices.
Security Operations, Monitoring & Incident Response
* Lead design and optimization of security monitoring and alerting (Splunk SIEM, SentinelOne EDR, Snyk, InsightVM and Appsec vulnerability management tools) to detect, investigate, and respond to security incidents in cloud and on-premises environments.
* Develop and maintain detection rules, correlation logic, and automated response playbooks for SOC-driven incident detection and response.
* Participate in threat hunting, security assessments, and penetration testing to proactively identify and validate security weaknesses.
* Lead or co-lead incident response investigations; document findings, root causes, and recommendations to prevent recurrence.
Application & Data Security
* Define and enforce data classification, handling, and loss prevention (DLP) policies for regulated data (healthcare, pharmaceutical, client IP).
* Lead or oversee vulnerability assessments, secure code reviews, and penetration tests for critical applications.
* Support the DevSecOps lead with API security, authentication/authorization design, and secrets management for application tiers.
Compliance, Risk & Governance
* Support CISO with compliance program execution: map security controls to regulatory requirements (SOC 2, ISO 27001, ISO 42001 roadmap, HIPAA, G...
- Rate: Not Specified
- Location: Waltham, US-MA
- Type: Permanent
- Industry: IT
- Recruiter: Trinity Partners, LLC
- Contact: Not Specified
- Email: to view click here
- Reference: JR100748
- Posted: 2026-08-28 09:05:37 -
- View all Jobs from Trinity Partners, LLC
More Jobs from Trinity Partners, LLC
- LOCAL Dry Van Driver-Class A
- Vac Sales and Service Rep I
- CDL Driver -Class B (Hazmat)
- Field Service Technician (Laborer)
- Driver Class A / Equipment Operator / Hazmat / Tanker
- OTR Class A Owner Operator
- InSite Operations Mgr II
- Class A Van Driver-Regional
- Driver Class A
- Material Handler Lead
- Oil Sales and Service Rep II
- Class B Route Driver
- Class A Roll Off Driver
- OTR Class A Driver
- Driver OTR
- Class B Route Driver
- EO/Driver II
- IS Foreman
- IS Foreman
- IS Technician