Principal Security Engineer

Remote/Boston, MA

Applications have closed
Our mission is to make biology easier to engineer. Ginkgo is constructing, editing, and redesigning the living world in order to answer the globe’s growing challenges in health, energy, food, materials, and more. Our bioengineers make use of an in-house automated foundry for designing and building new organisms. Today, our foundry is developing over 40 different organisms to make different products across multiple industries.
We are currently expanding our Information Security Team, and we're seeking people who are excited about growing and improving our core security services and capabilities and helping us keep Ginkgo Bioworks secure.
In support of our mission, we are looking for a hands-on Principal Security Engineer with a proven track record conducting incident response, vulnerability management, and compliance (NIST/CMMC, SOX). You will be a direct report to our Chief Information Security Officer (CISO), working to maintain and scale our vulnerability management and compliance program by applying industry best practices wrapped around a cohesive risk management program.
Please note: This position may be located in Boston, MA or residence based.

Responsibilities

  • Enhance and mature our vulnerability management program
  • Enhance and mature our Digital Tech compliance program from policies and procedure development to managing and monitoring third party assessments
  • Serve as an alternate team lead for Incident Response
  • Manage Information Security projects as assigned
  • Stay current on vulnerability management issues
  • Create and maintain documentation-supporting processes and tools

Desired Experience and Capabilities

  • BS or MS degree in Information Systems, Cyber Risk or related field, or an equivalent mix of education and experience
  • CISSP or industry equivalent certification, or the ability to obtain one within 12 months of hire
  • Minimum 10 years of experience in IT and cyber security; experience working in Life Sciences, a plus
  • Ability to communicate technical information to a wide variety of people in an easily understandable way
  • Proactive approach in communicating possible risks and recommendations to mitigate
  • Proven ability to drive improvement and evolve a vulnerability management program through collaborating effectively with cross-functional teams and getting buy-in from key stakeholders
  • Demonstrated track record of excellent customer service delivery, including working with developers, operations (Ops), and users to troubleshoot and resolve challenging problems in a timely manner
  • Strong architectural level of understanding of software, networks, and security operations
  • Experience in administering security program/controls in the US Government space (NIST/CMMC)
  • Strong knowledge of incident response, vulnerability management standards, industry best practices, and frameworks
  • Impeccable organizational and communication skills
  • Ability to thrive and stay calm in a fast-paced, high pressure, ever-changing cyber threat environment
To learn more about Ginkgo, check out some recent press:What is it really like to take your company public via a SPAC? One Boston biotech shares its journey (Fortune)Ginkgo Bioworks resizes the definition of going big in biotech, raising $2.5B in a record SPAC deal that weighs in with a whopping $15B-plus valuation (Endpoints News)Ginkgo Bioworks CEO on scaling up Covid-19 testing: ‘If we try, we can win’ (CNBC)Ginkgo raises $70 million to ramp up COVID-19 testing for employers, universities (Boston Globe)Ginkgo Bioworks Redirects Its Biotech Platform to Coronavirus (Wall Street Journal)Ginkgo Bioworks Provides Support on Process Optimization to Moderna for COVID-19 Response (PRNewswire)The Life Factory: Synthetic Organisms From This $1.4 Billion Startup Will Revolutionize Manufacturing (Forbes)Synthetic Bio Pioneer Ginkgo Raises $290 Million in New Funding (Bloomberg)Ginkgo Bioworks raises $350 million fund for biotech spinouts (Reuters)Can This Company Convince You to Love GMOs? (The Atlantic)
We also feel that it’s important to point out the obvious here – there’s a serious lack of diversity in our industry, and that needs to change. Our goal is to help drive that change. Ginkgo is deeply committed to diversity, equity, and inclusion in all of its practices, especially when it comes to growing our team. Our culture promotes inclusion and embraces how rewarding it is to work with people from all walks of life.  
We’re developing a powerful biological engineering platform, so we must remain mindful of the many ways our technology can – and will – impact people around the world. We care about how our platform is used, and having a diverse team to build it gives us the best chance that it’s something we’ll be proud of as it continues to grow. Therefore, it’s critical that we incorporate the diverse voices and visions of all those who play a role in the future of biology.
It is the policy of Ginkgo Bioworks to provide equal employment opportunities to all employees and employment applicants.

Tags: CISSP CMMC Compliance Incident response Monitoring NIST Risk management Vulnerability management

Perks/benefits: Career development Startup environment

Regions: Remote/Anywhere North America
Country: United States
Job stats:  10  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.