Lead Cybersecurity Engineer Job at Travere Therapeutics in Boston
Travere Therapeutics, Boston, MA, US, 02298
Overview
Department: 101180 IT-G&A
Join a global team committed to making a significant impact in the lives of individuals affected by rare diseases.
At Travere Therapeutics, we value exceptional employees as the cornerstone of our success. Our dedicated team focuses on catering to the unique needs of rare patients, delivering both professional satisfaction and personal fulfillment. We are passionate about our mission.
We seek dynamic individuals who thrive in a collaborative, diverse, and fast-paced environment, aligning with our mission of identifying, developing, and delivering transformative therapies for people living with rare diseases. Our core values emphasize patients, courage, community, and collaboration as we pursue our vision of becoming a leading biopharmaceutical company and a beacon of hope for the global rare disease community. Together, we are rare for life, working towards a common goal of elevating scientific advancements and service for rare patients.
Position Summary:
We are looking for a hands-on Lead Cybersecurity Engineer with strong technical expertise and a strategic mindset to enhance Travere's security program.
In this role, you will be instrumental in shaping and implementing cybersecurity practices, overseeing daily security operations, and driving continuous improvement of our Managed SOC services. Responsibilities will include managing core security platforms, leading incident investigations, conducting risk assessments, ensuring audit and compliance readiness, and advancing the company's NIST roadmap.
Responsibilities
- Enhance the company's cybersecurity program in alignment with NIST CSF 2.0 and related frameworks (e.g., NIST SP 800-53, 800-171).
- Manage Travere's NIST roadmap, ensuring it is up-to-date and driving progress.
- Oversee Travere's SOC services, including management of escalations, tuning detection logic, investigating security alerts and incidents, and improving SOC workflows and playbooks.
- Maintain and operate essential security tools (EDR, SIEM, firewalls, vulnerability scanners) to ensure effectiveness across platforms.
- Administer identity and access management leveraging Okta and Microsoft Entra ID (Azure AD); enforce MFA, SSO, and lifecycle access controls while managing integration for new solutions.
- Manage Travere's Privileged Access Management (PAM) platform Delinea Secret Server: including onboarding privileged accounts, policy enforcement, and ongoing maintenance.
- Conduct vulnerability assessments and support remediation efforts with IT and cloud teams.
- Document incidents, systems, configurations, and audit evidence thoroughly.
- Support SOX, GxP, data privacy, and other compliance initiatives with technical insights and control documentation.
Education/Experience Requirements
- Bachelor's degree in Computer Science or a related field; equivalent experience may be considered.
- 6-8+ years of hands-on cybersecurity engineering or SOC experience.
- CISSP certification is required; OSCP, GCIH, or GCIA (or equivalent) are preferred.
- Prior experience in a regulated industry (e.g., life sciences, pharma, biotech, fintech) is highly valued.
- Familiarity with security/compliance standards such as SOX, GxP, ISO 27001.
- Strong understanding of NIST frameworks and security operations best practices.
- Experience with Okta, Azure/Entra ID, Delinea Secret Server, Microsoft Defender, Wiz CNAPP, Cylance/Aurora, Mimecast, and Palo Alto; working in hybrid cloud environments (Windows, Linux, AWS, Azure).
- Scripting/automation experience with PowerShell, Python, or Bash is preferred.
Additional Skills/Experience/Requirements
- The ideal candidate will embody Travere's core values: Courage, Community Spirit, Patient Focus, and Teamwork.
- Ability to develop enterprise security roadmaps and align cybersecurity initiatives with business strategy and risk tolerance.
- Experience with third-party/vendor risk management in regulated industries is an advantage.
- Ability to translate technical risks into business language for executives and auditors.
- Familiarity with emerging technologies such as zero trust, OT/IoT security, and AI/ML applications in cybersecurity.
- Experience with Data Security Posture Management (DSPM) or related data discovery/classification tools.
- Preferred strong professional experience in a similar role in the pharmaceutical industry.
- Highly organized with the ability to multitask, prioritize, and manage shifting responsibilities in a dynamic, cross-functional teamwork environment.
- Excellent collaboration skills, attention to detail, and the ability to manage complexity are crucial.
- Strong interpersonal, organizational, and communication skills (verbal and written) are required.
- Proven track record of creating and managing complex project plans, timelines, and critical paths.
- Ability to adapt to changes in project plans and implement new strategies as necessary.
- Ability to travel domestically up to 10% as needed.
- All positions have an essential job function that requires the ability to perform face-to-face work with colleagues and/or onsite in San Diego; no role is expected to be completely remote.
Total Rewards and Benefits
Travere is proud to offer a comprehensive total rewards package that reflects our commitment to a diverse, equitable, people-focused, and performance-oriented organization.
Benefits: Our comprehensive benefits include premium health, financial, work-life, and wellness offerings for eligible employees and their dependents, along with life insurance, disability, retirement plans with employer matching, and generous paid time off.
Compensation: Our competitive compensation package consists of base pay, short-term incentives, and long-term incentives (company stock).
Target Base Pay Range: $128,000.00 - $165,000.00
*This information is current as of the posting date and is subject to change. Actual pay will depend on experience, education, skills, and location.
Travere Therapeutics, Inc. is an EEO/AA/Veteran/Disability Employer. If you require a reasonable accommodation for the application or interview process, please contact accommodations@travere.com.