Назад
Company hidden
53 минуты назад

Manager, Threat Remediation (Cybersecurity)

99 200 - 165 400$
Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Manager, Threat Remediation (Cybersecurity): Leading the prioritization, coordination, and resolution of cybersecurity threats across on-premises, cloud, and hybrid environments with an accent on risk-based remediation, incident response, and vulnerability management. Focus on coordinating complex enterprise remediation efforts, addressing systemic control gaps, and strengthening security posture across regulated pharmaceutical infrastructure.

Location: Hybrid role based in New York City, United States, with work from the assigned hirify.global office 2–3 days per week or as required by the business. This role is not remote. Candidates must have permanent U.S. work authorization; visa sponsorship is not available. Travel is less than 5% as required.

Salary: $99,200–$165,400 annual base salary, plus a 12.5% bonus target and eligibility for a share-based long-term incentive program.

Company

hirify.global is a global pharmaceutical and life sciences company developing medicines and vaccines.

What you will do

  • Lead daily threat remediation activities, prioritizing and tracking cybersecurity threats and exposures through resolution.
  • Coordinate remediation across threat detection, incident response, vulnerability management, engineering, infrastructure, and cloud teams.
  • Translate threat and exposure data into actionable remediation plans with defined scope, timelines, and risk-based mitigations.
  • Validate remediation completion, identify recurring issues and control gaps, and escalate blocked or material risks.
  • Support investigations and remediation during high-severity incidents and escalated risk scenarios.
  • Maintain leadership reporting on remediation metrics, risk trends, delays, and process improvement opportunities.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related technical discipline with at least 4 years of cybersecurity experience; equivalent combinations of advanced education and experience are accepted.
  • Strong understanding of threat actor tactics, techniques, and procedures, including MITRE ATT&CK, incident response, containment, vulnerability management, and remediation workflows.
  • Experience with cloud security across AWS, Azure, or GCP, as well as endpoint, network, identity, and application security.
  • Familiarity with SOC tooling such as SIEM, SOAR, EDR/XDR, vulnerability scanners, and ticketing or workflow systems.
  • Ability to create clear remediation plans, manage competing priorities, communicate effectively, and escalate risks appropriately.
  • Experience working collaboratively in an agile environment.

Nice to have

  • Knowledge of GxP, FDA 21 CFR Part 11, EMA, HIPAA, GDPR, and related regulations.
  • Experience with cloud, hybrid, or large-scale enterprise environments and enterprise-wide remediation initiatives.
  • Familiarity with security frameworks, risk management, and pharmaceutical or life sciences compliance requirements.
  • CISSP, CISM, GIAC, or equivalent security operations or risk management certification.

Culture & Benefits

  • Collaboration with SOC, cloud, infrastructure, engineering, GRC, legal, privacy, and business stakeholders.
  • Hybrid work arrangement with limited business travel.
  • Performance bonus target of 12.5% and eligibility for a share-based long-term incentive program.
  • Benefits include 401(k) matching and retirement contributions, paid vacation and holidays, caregiver/parental and medical leave, and medical, prescription, dental, and vision coverage.
  • Relocation assistance may be available based on business needs and eligibility.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →