Talent.com
Chief Information Security Officer
Chief Information Security OfficerTrinity Life Sciences • Waltham, MA, United States
Chief Information Security Officer

Chief Information Security Officer

Trinity Life Sciences • Waltham, MA, United States
1 day ago
Job type
  • Full-time
Job description

Job Details

Job Location

Waltham, MA - Waltham, MA

Salary Range

$250000.00 - $300000.00 Salary / year

Description

Company Profile

Trinity Partners, LLC ("Trinity") is a leading healthcare consulting firm based in Waltham, MA that specializes in health care strategy for pharmaceutical, biotech andlife sciences firms. Our clients include top tier to venture backed companies worldwide. Trinity provides services to these clients in a variety of practice areas including strategic planning, forecasting and market estimation, licensing and acquisitions, launch strategies, data warehousing and sales force effectiveness. The company consists of approximately 900 employees and is headquartered in Waltham, Massachusetts, with offices in New Jersey, New York, San Francisco, Pennsylvania, Germany, London & India. Trinity is an EEO employer.

Chief Information Security Officer

The Chief Information Security Officer will lead the development and execution of a comprehensive information security strategy for a global pharmaceutical consulting firm. They will act as the strategic leader of Trinity's cyber defense program as an integral part of the Trinity leadership team. This role will ensure the confidentiality, integrity, and availability of enterprise data, systems, and infrastructure across all geographies. The CISO will collaborate with executive leadership, IT, legal, compliance, and operations to embed security into the company's culture and business processes.

The CISO will posses the ability to manage the cybersecurity team to identify, assess and prioritize threats and vulnerabilities across all of Trinity's environment, while effectively influencing and communicating across multiple teams to help create a cohesive security ecosystem. The ideal candidate will be able to build strong relationships across the business to help identify gaps in security controls, as well as direct internal audits. They will possess an ability to 'think like an adversary' and promote security throughout the organization.

Key Objectives

Strategic Leadership

  • Develop and implement a global information security strategy aligned with business goals and regulatory requirements
  • Establish and maintain enterprise-wide security policies, standards, and procedures.
  • Lead the information security governance, risk management, including responsibility for audit readiness and post-assessment remediation plans, especially for ISO 27001 and 42001 gaps
  • Define and report on key security metrics (e.g., incident response times, vulnerability remediation SLAs, phishing simulation results) to executive leadership and the board
  • Lead the development and enforcement of cloud security strategies across Microsoft 365, Azure, AWS, and other SaaS platforms with emphasis on configuration management, monitoring, and incident detection / remediation in cloud environments
  • Foster a security-first culture by engaging business leaders and department heads in regular security briefings and risk discussions.
  • Lead threat detection, prevention, and response capabilities, including Security Operations Center (SOC) oversight.
  • Ensure the timely investigation, response, and remediation of security incidents and breaches.
  • Establish and document a framework-aligned, business-integrated security ecosystem for Trinity and enable mechanisms to showcase it to customers on a need basis.
  • Lead data protection efforts across Trinity SaaS, Product and Internal environments, including cloud-native services and large-scale repositories.

Software Development Lifecycle Oversight

  • Integrate security practices into the full software development lifecycle, including secure architecture, code review, automated testing for vulnerabilities, and DevSecOps principles.
  • Collaborate with IT and Product teams to ensure security controls are embedded from project initiation through deployment.
  • Vendor & Third-Party Risk Management

  • Oversee the security review process for third-party vendors, cloud providers, and partners.
  • Ensure supply chain security and resilience.
  • Operational Oversight

  • Oversee the design and implementation of technical safeguards including access control, encryption, patch management, and threat detection systems
  • Manage the cybersecurity team, including security engineers, analysts, and external vendors (e.g., Managed SOC services)
  • Direct incident response planning and execution, including breach investigations and reporting
  • Ensure secure configuration and monitoring of cloud-native services, including identity, access, and data protection controls
  • Oversee data governance and protection strategies for large-scale data repositories, including SharePoint Online, OneDrive, and Teams
  • Orchestrate regular security audits in SaaS ecosystems, to proactively identify vulnerabilities.
  • Collaborate with international teams to maintain consistent security posture and incident response readiness globally
  • Champion regular security audits and continuous improvement cycles, with a focus on cloud ecosystem vulnerabilities such as drift in Microsoft 365, AWS, Azure, among others.
  • Compliance & Risk Management

  • Work directly with General Counsel and Compliance group to ensure compliance with HIPAA, GDPR, NIST CSF, SOC 2, ISO 27001 and ISO 42001and other global data protection regulations relevant to pharmaceutical consulting
  • Conduct regular risk assessments based on NIST RMF and develop mitigation plans
  • Lead external security audits and accreditation surveys
  • Ensure security practices are adapted to regional regulatory requirements and cultural contexts across North America, Europe, and Asia.
  • Training & Awareness

  • Champion a culture of security awareness across the organization specifically with development teams
  • Develop and deliver training programs tailored to different roles and regions
  • Demonstrated ability to communicate complex security concepts to the board, non-technical stakeholders, and external customers in plain, persuasive language.
  • Technology & Innovation

  • Evaluate and implement emerging security technologies (e.g., CASB, PAM, GRC tools)
  • Align security architecture with frameworks such as NIST CSF, CIS 18, and OWASP
  • Qualifications

    Position Requirements :

    Education : Bachelor's or Master's degree in Information Security, Computer Science, or related field.

  • Work Experience : 10+[PL1] years of progressive experience in information security, including leadership roles and hands-on security engineering and vulnerability remediation.
  • Other Skills : Knowledge and / or working skills in the following areas :

  • Experience in pharmaceutical, healthcare, or consulting industries preferred
  • Certifications such as CISSP, CISM, CEH, GSEC, ECSA, Security+ or CISA strongly preferred
  • Proven ability to lead cross-functional teams and manage global security operations
  • Strategic thinking and business acumen
  • Strong communication and stakeholder engagement skills with demonstrated record of translating technical content for business adoption
  • Experience with vendor management and contract negotiation
  • Familiarity with cloud security, application security, and data loss prevention
  • Understanding of modern threats and exploits
  • Ability to understand and communicate attack chains to management and key stakeholders
  • Develop, execute and track the performance of security measures to protect information and network infrastructure and computer systems
  • Identify, define and document system security requirements and recommend solutions to management
  • Identify and document security requirements and recommend solutions to management
  • Ownership of remediation activities for ISO and other regulatory gaps.
  • Experience managing or working with Managed Security Service Providers (MSSPs) and Security Operations Centers (SOCs).
  • Familiarity with Zero Trust architecture and identity-centric security models.
  • About Us

    Trinity Life Sciences is a trusted strategic commercialization partner, providing evidence-based solutions for the life sciences. With 25 years of experience, Trinity is committed to revolutionizing the commercial model by providing exceptional levels of service, powerful tools and data-driven insights. Trinity's range of products and solutions includes industry-leading benchmarking solutions, powered by TGaS Advisors. To learn more about how Trinity is elevating life sciences and driving evidence to action, visit trinitylifesciences.com.

    Trinity's salary bands account for a wide range of factors that are considered in making compensation decisions including but not limited to skill sets and market demand for skills; level of experience and training; specific qualifications, performance, time in role / company, geographic location, and other business and organizational needs. A reasonable estimate of the current range is $250,000-$300,000 USD.

    In addition to your base salary, you will also be eligible for an annual discretionary performance bonus.

    Trinity's Commitment to Diversity, Equity & Inclusion

    Trinity Life Sciences is an Equal Opportunity Employer that prohibits discrimination and harassment of any kind. Trinity is committed to the principles of diversity, equity, and inclusion and to providing employees with a work environment that is free of discrimination and harassment. All employment decisions at Trinity are based on business needs, job requirements and individual qualifications, without regard to race, color, religion, disability, ethnicity, gender identity or expression, family, parental, or veteran status, and / or any other status based on identity or that is protected by the laws or regulations in the locations where we operate. Trinity will not tolerate any form of discrimination or harassment and encourages applicants of all ages and identities.

    For more information about Trinity's commitment to diversity, equity, and inclusion, you can visit our website.

    Create a job alert for this search

    Chief Information Security Officer • Waltham, MA, United States

    Related jobs
    Information Systems Security Manager

    Information Systems Security Manager

    Georgia Tech • Lincoln, MA, United States
    Full-time +1
    Georgia Tech prides itself on its technological resources, collaborations, high-quality student body, and its commitment to building an outstanding and diverse community of learning, discovery, and...Show more
    Last updated: 24 days ago • Promoted
    Information Systems Security Manager (ISSM) I

    Information Systems Security Manager (ISSM) I

    General Dynamics Information Technology • Bedford, MA, United States
    Full-time
    Clearance Level Must Currently Possess : .Clearance Level Must Be Able to Obtain : .Cybersecurity, Information Security, Information System Security, Security Evaluations. Information Systems Security M...Show more
    Last updated: 6 days ago • Promoted
    Information System Security Engineer, Senior

    Information System Security Engineer, Senior

    Booz Allen Hamilton • Lexington, MA, United States
    Full-time +1
    Information System Security Engineer, Senior.Maintain responsibility for all Information Systems Security Engineer (ISSE) duties in support of Department of Defense (DoD) Risk Management Framework ...Show more
    Last updated: 30+ days ago • Promoted
    Remote Information Security Architect

    Remote Information Security Architect

    Global Channel Management • Framingham, MA, United States
    Remote
    Full-time
    About the job Remote Information Security Architect.Remote Information Security Architect needs 5-10 years of engineering experience in technical domain. Remote Information Security Architect requir...Show more
    Last updated: 30+ days ago • Promoted
    Information Security Senior Manager

    Information Security Senior Manager

    Pharmaron • Waltham, MA, United States
    Full-time
    Manager, Information Security (Microsoft 365 Security SME).Exton (PA) or Waltham (MA) – On-site with travel to other USA locations. Unfortunately, we cannot support work visa permit applications for...Show more
    Last updated: 8 days ago • Promoted
    Head of Cyber Security

    Head of Cyber Security

    Encore Fire Protection • Needham, MA, United States
    Full-time
    At Encore Fire Protection, we are proud to be the east coast's largest full-service fire protection company, serving over 90,000 customers from Maine to Louisiana. With a team of over 2,200 dedicate...Show more
    Last updated: 10 days ago • Promoted
    Information Systems Security Manager

    Information Systems Security Manager

    MIT Lincoln Laboratory • Lexington, MA, United States
    Full-time
    Select how often (in days) to receive an alert : .Information Systems Security Manager.The Security Services Department's overall mission is to identify and counter security threats to the MIT Lincol...Show more
    Last updated: 30+ days ago • Promoted
    Director - Integrated Security

    Director - Integrated Security

    InsideHigherEd • Lowell, Massachusetts, United States
    Full-time
    Salary anticipated at $125,000, with P22 range of min.The University’s Integrated Security office is responsible for oversight of critical university-wide security systems and emergency communicati...Show more
    Last updated: 30+ days ago • Promoted
    Information System Security Engineer, Senior

    Information System Security Engineer, Senior

    BOOZ, ALLEN & HAMILTON, INC. • Lexington, MA, United States
    Full-time +1
    Information System Security Engineer, Senior.Maintain responsibility for all Information Systems Security Engineer ( ISSE ) duties in support of Department of Defense ( DoD ) Risk Management Framew...Show more
    Last updated: 30+ days ago • Promoted
    Information Systems Security Manager (ISSM)

    Information Systems Security Manager (ISSM)

    Abacus Technology • Hanscom Air Force Base, MA, United States
    Full-time
    Information Systems Security Manager (ISSM).Abacus Technology is seeking an Information System Security Manager (ISSM) to ensure system and application deliverables meet all required cyber security...Show more
    Last updated: 30+ days ago • Promoted
    Senior Cyber Security Engineer / Information Systems Security Manager (ISSM)

    Senior Cyber Security Engineer / Information Systems Security Manager (ISSM)

    Modern Technology Solutions Inc • Lexington, MA, United States
    Full-time
    Modern Technology Solutions, Inc.Cyber Security - Information Systems Security Manager ( ISSM).As a Senior Cybersecurity Engineer / Information Systems Security Manager (ISSM) with MTSI you will su...Show more
    Last updated: 19 days ago • Promoted
    Security Representative

    Security Representative

    Fidelity Investments • East Walpole, MA, US
    Full-time
    Become a Security Representative at Fidelity Investments and join a team that values safety, collaboration, and top-notch performance! This outstanding opportunity enables you to work in a dynamic ...Show more
    Last updated: 30+ days ago • Promoted
    Information System Security Manager I (ISSM I)

    Information System Security Manager I (ISSM I)

    Falcon IT & Staffing Solutions • Bedford, MA, United States
    Full-time
    Seeking a mid-level Information System Security Manager I (ISSM I) to provide expert oversight and advisory services on the security of information systems within Special Access Programs (SAPs) sup...Show more
    Last updated: 6 days ago • Promoted
    Information Systems Security Manager (ISSM)

    Information Systems Security Manager (ISSM)

    Antenna Research Associates • North Billerica, MA, United States
    Full-time
    ARA is a leading C5ISR company that designs, manufactures, tests and installs innovative technologies that provide the national security community with unparalleled situational awareness, threat de...Show more
    Last updated: 5 days ago • Promoted
    Director of Security

    Director of Security

    Emerson Hospital • Concord, MA, United States
    Full-time
    Old Road to Nine Acre Corner, Concord, MA 01742 .Join Emerson Health and lead a dedicated team protecting what matters most, our patients, staff, and community. Reporting directly to the Senior ...Show more
    Last updated: 30+ days ago • Promoted
    Information Systems Security Manager (ISSM) Subject Matter Expert

    Information Systems Security Manager (ISSM) Subject Matter Expert

    Sumaria Systems, Inc • Bedford, MA, United States
    Full-time
    Information Systems Security Manager (ISSM) Subject Matter Expert.Job Title : Information Systems Security Manager (ISSM) Subject Matter Expert. Job Description : Sumaria Systems is seeking an Informa...Show more
    Last updated: 30+ days ago • Promoted
    Head of Digital Security - Billerica, MA - Hybrid

    Head of Digital Security - Billerica, MA - Hybrid

    Cabot • Billerica, MA, United States
    Full-time
    Head of Digital Security - Billerica, MA - Hybrid.Cabot has an exciting opportunity for a Head of Digital Security to join the Digital organization at Cabot's Billerica, MA location.This critical r...Show more
    Last updated: 19 days ago • Promoted
    Senior Information Systems Security Manager (ISSM) - PR

    Senior Information Systems Security Manager (ISSM) - PR

    P E Systems (VA) • Hanscom Air Force Base, MA, United States
    Full-time
    Senior Information System Security Manager (ISSM).Nuclear Command, Control, and Communications (NC3) Program at.The ideal candidate will have knowledge and experience overseeing the security postur...Show more
    Last updated: 5 days ago • Promoted