Назад
Company hidden
1 день назад

Associate Director, Cybersecurity & IT (Cybersecurity)

140 000 - 180 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
director
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Associate Director, Cybersecurity & IT (Cybersecurity): Leading cybersecurity strategy, security controls, incident response, and enterprise IT operations for a nonprofit biomedical research and technology organization with an accent on federal security frameworks, secure research platforms, and reliable employee technology. Focus on translating NIST and FISMA/RMF requirements into technical controls, scaling vulnerability and incident management, and advising executives and the Board on cybersecurity risk.

Location: Remote or hybrid within the United States; travel to Seattle, WA, twice per year for on-site events.

Annual salary: $140,000–$180,000

Company

hirify.global is a nonprofit biomedical research and technology organization advancing human health through open science, collaborative discovery, responsible data governance, and open-source technology.

What you will do

  • Set and execute the cybersecurity strategy, roadmap, priorities, investments, and effectiveness measures.
  • Lead security engineering and operations, including monitoring, threat detection, vulnerability management, testing, incident response, and remediation.
  • Translate security frameworks and federal requirements into technical controls, standards, repeatable processes, and operational evidence.
  • Partner with product, engineering, compliance, risk, and governance teams to integrate security into the Synapse platform and technology operations.
  • Lead identity and access management, endpoint and asset management, SaaS administration, help desk operations, and business continuity for employee technology.
  • Build and develop cybersecurity and IT teams while advising executives and the Board on risks, incidents, capabilities, and investments.

Requirements

  • 8+ years of progressive cybersecurity, security engineering, security operations, infrastructure security, or related experience, including significant leadership responsibility.
  • Bachelor’s degree in computer science, information security, or a related field, or equivalent professional experience.
  • Experience implementing and operating security controls in production environments subject to rigorous requirements.
  • Strong knowledge of NIST SP 800-53, NIST Cybersecurity Framework, FISMA/RMF, FedRAMP, or comparable frameworks.
  • Experience with vulnerability management, security monitoring, incident response, identity and access management, endpoint security, cloud security, and security testing.
  • Experience leading IT operations, employee technology services, endpoint management, enterprise SaaS administration, and teams in a lean mission-driven environment.

Nice to have

  • Experience with FISMA, FedRAMP, ATO authorization, independent assessors, or federal authorizing officials.
  • Experience securing cloud-native platforms, research data environments, or biomedical data repositories.
  • Experience establishing security engineering practices within software development and cloud infrastructure teams.
  • CISSP, CISM, CGRC, CISA, or another relevant cybersecurity certification.

Culture & Benefits

  • Remote or hybrid work arrangements within the United States.
  • Flexible work arrangements and paid time off.
  • Medical, dental, vision, life, AD&D, and long-term disability coverage.
  • Retirement plan and flexible spending accounts.
  • Mission-driven, science-focused, accountable, inclusive, and collaborative work environment.

Hiring process

  • All interviews are conducted virtually.
  • A cover letter is required and should not be replaced with a resume upload.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →