Manager / Senior Manager, Cybersecurity & Risk
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Manager / Senior Manager, Cybersecurity & Risk based in the United States.
This is an outstanding opportunity for an experienced cybersecurity leader to shape and strengthen an enterprise-wide security program within a growing organization. In this highly visible, hands-on role, you will lead cybersecurity operations, risk management, governance, and security architecture while collaborating across infrastructure, cloud, applications, identity, and data environments. You'll play a key role in developing scalable security strategies, improving resilience, and balancing business enablement with effective risk reduction. Working in a fully remote environment, you'll partner with technical teams, business stakeholders, and external vendors to enhance the organization's security posture and support long-term growth. This position is ideal for a proactive professional who enjoys building practical cybersecurity programs and driving measurable business impact.
Accountabilities:
- Lead enterprise cybersecurity operations across infrastructure, cloud environments, applications, endpoints, identity, data, and third-party ecosystems to strengthen the organization's overall security posture.
- Partner with infrastructure and technology teams to enhance endpoint protection, vulnerability management, identity and access management, logging, monitoring, threat detection, and incident response capabilities.
- Develop and maintain cybersecurity policies, standards, procedures, governance frameworks, and best practices that support scalable and resilient operations.
- Coordinate cybersecurity incident response activities, tabletop exercises, root cause analyses, and remediation planning while improving organizational preparedness.
- Conduct enterprise risk assessments, prioritize remediation efforts, establish security metrics and executive reporting, and develop a multi-year cybersecurity roadmap aligned with business objectives.
- Support governance, risk, and compliance initiatives, including vendor risk management, security audits, cyber insurance requirements, disaster recovery, business continuity, and security awareness programs.
- Manage relationships with cybersecurity vendors, managed security service providers, and external security partners, ensuring service quality, accountability, and measurable outcomes.
- Evaluate emerging threats, recommend practical security solutions, and provide technical leadership across Microsoft, Azure, SaaS, and enterprise technology environments.
- Minimum of 7 years of progressive cybersecurity experience with increasing levels of technical and strategic responsibility.
- Proven experience serving as a senior cybersecurity individual contributor or technical leader within a mid-sized enterprise environment.
- Strong expertise in identity and access management (IAM), endpoint detection and response (EDR), vulnerability management, SIEM platforms, Microsoft Security technologies, Azure security, infrastructure security, incident response, and security architecture.
- Demonstrated experience developing cybersecurity policies, standards, governance processes, and operational procedures.
- Experience managing third-party cybersecurity vendors, managed security service providers (MSSPs), and external security partners.
- Strong knowledge of cloud security, enterprise applications, Microsoft 365, Microsoft Defender, Intune, Entra ID, and related technologies is preferred.
- Relevant certifications such as CISSP, CISM, Security+, Azure Security Engineer, or equivalent are highly desirable.
- Excellent communication and stakeholder management skills with the ability to translate technical risks into clear business recommendations.
- Proven ability to work independently, influence cross-functional teams, manage competing priorities, and drive execution in a lean, fast-paced environment.
- Experience supporting distributed, multi-site, field-based, or private equity-backed organizations is considered an asset.
- Competitive annual salary of $125,000–$150,000, based on experience and qualifications.
- Fully remote work environment within the United States.
- Full-time, permanent employment.
- Opportunity to lead and shape an enterprise cybersecurity program with significant strategic impact.
- Collaborative environment with strong cross-functional exposure and executive visibility.
- Opportunity to influence long-term cybersecurity strategy, governance, and technology investments.
- Professional growth through ownership of enterprise-wide security initiatives and emerging technologies.