Job Closed
This listing is no longer active.
PCI Pharma Services is a pharmaceutical manufacturing company that strives to be a “bridge between life-changing therapies and patients.” As an employer, th
Senior Security Engineer / AppSec Engineer
Location
Pennsylvania
Posted
138 days ago
Salary
0
Seniority
Senior
Job Description
Senior Security Engineer / AppSec Engineer
PCI Pharma Services
• Serve as the technical security lead for PCI Pharma • Responsible for security architecture, application security, vulnerability management, and security engineering across enterprise and manufacturing environments • Combine hands-on technical work with strategic security advisory • Ensure protection of pharmaceutical intellectual property, patient data, and compliance with industry regulations • Design and implement security architecture for cloud (Azure, AWS), on-premises, and hybrid environments • Lead application security program including SAST/DAST integration, secure code reviews, and developer training • Manage enterprise vulnerability management using Nessus • Architect and maintain Zero Trust security framework • Conduct security assessments for new applications and infrastructure changes • Implement and manage endpoint security solutions
Job Requirements
- Bachelor's degree in Computer Science, Cybersecurity, or related field
- 7+ years of progressive cybersecurity experience with 3+ years in security engineering/architecture
- Deep expertise in vulnerability management tools (Nessus, Qualys, or Rapid7)
- Strong application security knowledge including OWASP Top 10, secure SDLC, and DevSecOps practices
- Experience with cloud security in Azure and/or AWS (security groups, IAM, encryption)
- Proficiency in network security including firewalls, IDS/IPS, and segmentation
- Knowledge of endpoint security solutions and EDR platforms
- Strong scripting abilities (PowerShell, Python) for security automation
- Experience in regulated industries with compliance requirements
- CISSP, CISM, or equivalent security certification
Benefits
- Health insurance
- 401(k) matching
- Paid time off
- Flexible work hours
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Sales Manager – Cybersecurity
LOGON Software Asia GroupLOGON specialise in Cyber Security, Software Development, Networking and Infrastructure solutions.
• Develop and execute sales strategies for the Indian enterprise and mid‑market segments • Identify, qualify, and close high‑value cybersecurity deals across industries such as BFSI, IT/ITES, manufacturing, healthcare, and government • Build and manage strong relationships with CISOs, CIOs, IT Heads, and procurement teams • Drive channel‑led sales through resellers, system integrators, and OEM partners in India • Consistently achieve and exceed quarterly and annual revenue targets • Maintain accurate sales pipelines, forecasts, and reporting using CRM tools • Collaborate with pre‑sales, engineering, and delivery teams to propose customized cybersecurity solutions
Sales Manager – Cybersecurity
LOGON Software Asia GroupLOGON specialise in Cyber Security, Software Development, Networking and Infrastructure solutions.
• Develop and execute strategic sales plans aligned with company growth objectives • Identify, qualify, and manage major sales opportunities and large‑scale projects • Build and maintain strong relationships with enterprise clients, resellers, and OEM partners • Consistently exceed sales targets and performance goals • Prepare accurate sales forecasts, maintain CRM data, and report on key performance metrics • Collaborate with technical and delivery teams to design and position customized cybersecurity solutions
• Own the 24-month global security roadmap developed with an external partner; drive planning, resource allocation, cross-region rollout, milestone tracking, and KPI delivery. • Deliver and maintain certifications and frameworks: lead efforts to achieve ISO 27001 certification, align to the NIST Cybersecurity Framework, and ensure GDPR compliance (and applicable regional privacy laws). • Lead the cybersecurity transformation: redesign the security operating model, establish regional capability hubs, hire and upskill teams, and integrate security into engineering and product lifecycles (DevSecOps). • Modernize security tooling and architecture: define global architecture for IAM, cloud security, vulnerability management, SIEM/XDR, DLP, and secure SDLC integrations; manage vendor selection and lifecycle. • Establish enterprise governance and risk programs: policy management, risk assessments, third-party risk, incident response, crisis management, business continuity, and regular tabletop exercises. • Client-facing responsibilities (~20%): act as a senior security advisor to key global customers, lead security briefings and audits, support RFPs and security questionnaire responses, and maintain strong client relationships. • Reporting and stakeholder communication: deliver executive and Board-level reporting on security posture, program progress, risk, and ROI. • Manage external partners and audits: coordinate with the third-party consulting firm, external auditors, penetration testing vendors, and technology providers. • People leadership: recruit, mentor, retain, and scale global security talent; define career paths, training programs, and local leadership to sustain capabilities.
• Support various security functions, focusing on process improvement and automation. • Assist in the triage, prioritization, and tracking of vulnerabilities identified in our systems and applications. • Contribute to the security risk assessment process by documenting potential threats and associated controls. • Contribute to the creation and maintenance of security documentation, including standard operating procedures (SOPs) and incident response playbooks. • Assist in the real-time monitoring of security alerts and logs generated by various security tools (SIEM, endpoint detection, firewalls, etc.). • Contribute to understanding software dependencies and the security of the software supply chain. • Assist in reviewing and providing feedback on engineering design documents from a security perspective. • Support compliance efforts, including data gathering and documentation for audits such as SOC 2. • Help maintain and improve security policies and procedures, focusing on clarity and actionability. • Support automation of manual security tasks, enhance efficiency, and integrate security workflows with tooling and systems.



