Cybersecurity Manager

Discovery Life Sciences

Huntsville, Northern (AL, KY)

On-site

USD 90,000 - 130,000

Full time

10 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Relocation assistance considered
Competitive compensation package
Health/dental/vision coverage
401(k) with match
Generous vacation and PTO
Professional development support
Employee referral program

Job summary

Discovery Life Sciences is seeking an experienced Cybersecurity Manager to lead security operations, risk, and governance for our global operations from Huntsville, AL. This role combines hands-on security with policy and audit readiness, partnering with Legal, Privacy, Quality, and IT leaders to protect data and regulated processes.

The incumbent will drive incident response, vulnerability management, and compliance programs (SOC 2 Type II, ISO 27001, NIST) while mentoring security

Qualifications

  • Must live near or relocate to Huntsville, AL.
  • Bachelor's degree in Computer Science, Information Security, IT, or related field; equivalent practical experience considered.
  • CISSP, CISA, CRISC, Security+ or comparable certifications preferred.
  • 5+ years in cybersecurity, security operations, IT risk, IT audit, or similar roles.
  • Experience in life sciences or other regulated industries.
  • Hands-on with tools like Sentinel, Defender, Purview, Tenable, firewalls, IAM, cloud security, PowerShell, and KQL.
  • Experience with SOC 2, ISO 27001, NIST, GDPR and other regulatory requirements.
  • Strong communication skills for executive audiences; ability to explain risk and action.
  • Ability to automate repeatable security tasks via scripting/workflows.

Responsibilities

  • Monitor security alerts, coordinate incident response, lead remediation.
  • Maintain controls across firewalls, endpoint security, encryption, patching, baselines.
  • Manage joiner/mover/leaver controls, access provisioning, certifications.
  • Develop and maintain security runbooks, escalation paths, and incident procedures.
  • Lead governance, risk, and compliance activities: SOC 2, ISO 27001, NIST mappings and audits.
  • Coordinate third-party security due diligence and risk assessments.
  • Partner with Legal, Privacy, Quality, and Business teams on regulatory requirements.
  • Produce concise security metrics and risk summaries for leadership.

Skills

Security operations
Incident response
Governance, risk & compliance
Audit readiness
Cloud security
PowerShell
KQL
IAM
SOC 2 / ISO 27001
Regulatory compliance

Education

Bachelor's degree in Computer Science or related field

Tools

Microsoft Sentinel
Microsoft Defender
Microsoft Purview
Tenable
Firewalls
Azure
AWS
Microsoft 365 security

Job description

Discovery Life Sciences (Discovery) is a leading provider of highly characterized human biospecimens and cellular starting materials to advance cell and gene therapy and precision medicine programs for cancer, infectious disease, and other complex conditions. We routinely manage hundreds of studies and expertly test thousands of biospecimens simultaneously. Leading biopharma, diagnostic and academic institutions trust us to quickly deliver high-quality biospecimens and reliable, reproducible biomarker data, so they can outpace their competition and push the leading edge of innovation using our Science at your Service TM business model.

Position Summary:

Discovery Life Sciences is seeking an experienced Cybersecurity Manager to join our Information Technology team as a hands-on individual contributor responsible for protecting the company's people, data, systems, and regulated operations. This role combines cybersecurity operations with governance, risk, and compliance (GRC) responsibilities, requiring both strategic thinking and technical execution.

The Cybersecurity Manager will play a key role in maintaining and enhancing the organization's security posture by leading incident response, vulnerability management, audit readiness, risk management, and compliance initiatives across global operations. This position serves as a trusted security partner to stakeholders across IT, Quality, Legal, Privacy, HR, Finance, and business functions, while helping scale a mature cybersecurity program that supports Discovery's continued growth.

A Day in the Life of a Cybersecurity Manager at Discovery Life Sciences:

  • Monitor and investigate security alerts, coordinate incident response activities, and lead remediation efforts to minimize business risk.
  • Partner with internal teams and external auditors to maintain compliance with SOC 2 Type II, ISO 27001, NIST, and regulatory requirements.
  • Review vulnerability and penetration testing results, prioritize remediation activities, and track progress through resolution.
  • Collaborate with Infrastructure, Cloud, Applications, Legal, Privacy, Quality, and business leaders to address emerging risks and strengthen security practices.

Must-Have Qualifications (Education, Skills, Experience):

  • Must live near or be willing to relocate to Huntsville, AL
  • Bachelor's degree in Computer Science, Information Security, Information Technology, or a related field; equivalent practical experience will also be considered.
  • CISSP, CISA, CRISC, Security+, or a comparable cybersecurity certification preferred.
  • Certifications are valued but are not a substitute for demonstrated hands-on experience.
  • Five (5)+ years of progressive experience in cybersecurity, security operations, IT risk management, IT audit, or a comparable hands-on role.
  • Deep expertise in either Security Operations or Governance, Risk, and Compliance (GRC), with working experience in the complementary discipline.
  • Experience in life sciences, healthcare, biotechnology, financial services, or another regulated industry required
  • Hands-on experience with several of the following: Microsoft Sentinel, Microsoft Defender, Microsoft Intune, Microsoft Purview, Tenable, firewalls, endpoint security, cloud security, identity and access management, KQL, or PowerShell.
  • Practical experience investigating and responding to security incidents, coordinating remediation, and exercising sound judgment under pressure.
  • Experience supporting or operating security controls aligned to SOC 2, ISO 27001, NIST, or similar frameworks; able to produce clear, defensible audit evidence.
  • Experience with vulnerability management, third-party risk, policy and exception management, and risk tracking.
  • Familiarity with 21 CFR Part 11, GxP, GDPR, data privacy, customer security reviews, or regulated validation practices.
  • Experience with Microsoft Purview, DLP, data classification, DSPM, eDiscovery, Azure, AWS, or Microsoft 365 security capabilities.
  • Demonstrated ability to automate repeatable security and compliance tasks through scripting or workflow tools.
  • Strong written and verbal communication skills, with the ability to explain technical risk and recommended action to executive, audit, and non-technical audiences.

Key Responsibilities:

Security operations and incident response:

  • Monitor, triage, investigate, and respond to security alerts and incidents, lead containment, recovery coordination, and post-incident reporting.
  • Administer and tune security controls across firewalls, network security technologies, endpoint compliance, patching, encryption, and security baselines.
  • Own or coordinate joiner, mover, and leaver controls, including timely access provisioning, deprovisioning, privileged access review, and periodic access certifications.
  • Maintain security operations runbooks, escalation paths, incident procedures, and metrics; participate in periodic after-hours response as required by the incident and team coverage model.

Governance, risk, and compliance:

  • Operate the security compliance cadence for SOC 2 Type II, ISO 27001, and the NIST Cybersecurity Framework, including control mapping, audit planning, evidence collection, issue tracking, and auditor coordination.
  • Partner with Quality / Validation, Legal, Privacy, and business stakeholders on 21 CFR Part 11, GxP, GDPR, and customer security requirements; provide security controls and evidence within each function's accountability.
  • Run the third-party and vendor risk lifecycle: security due diligence, assessments, risk ratings, ongoing monitoring, remediation follow-up, and documented risk acceptance.
  • Maintain the enterprise security risk register and coordinate risk assessments, accountable owners, due dates, compensating controls, and escalation of overdue or material risks.
  • Maintain the security policy, standard, exception, and attestation lifecycle; communicate changes and support adoption across the organization.
  • Partner with Operations, Legal, and IT on data classification, Data Loss Prevention / data security controls, security investigations, and eDiscovery support where appropriate.
  • Vulnerability management and remediation
  • Run the vulnerability management lifecycle, including prioritization based on exploitability, asset criticality, exposure, and business impact.
  • Coordinate internal and third-party penetration tests, track findings, validate remediation, and report residual risk to accountable owners and leadership.
  • Use automation, KQL, PowerShell, and available platform capabilities to improve detection, evidence collection, reporting, and control consistency.

Leadership and business partnership:

  • Serve as a trusted leader for operational continuity, risk discussions, incident coordination, and selected leadership meetings.
  • Mentor and help develop the Cybersecurity Analyst; provide direction to project teams, manage service providers, and control owners without requiring direct reporting lines.
  • Build productive working relationships with Infrastructure, Cloud, Applications, HR, Legal, Quality, Privacy, Finance, and business leaders.
  • Prepare concise security metrics, risk summaries, audit updates, and recommendations for executive stakeholders.
  • Other duties as assigned by supervisor. These may, on occasion, be unrelated to the position described here.
  • Consistent and predictable attendance is an essential function of the position.

Compensation and Benefits:

Discovery Life Sciences is committed to fair and equitable compensation practices, and we strive to provide employees with total compensation packages that are market competitive. For this role, the anticipated base pay range is $90,000 - $130,000 annually. Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate’s offer letter. The exact base pay offered for this role will depend on various factors, including the candidate's qualifications, skills, and experience. Your annual salary is only one part of your total compensation package. Other benefits include:

  • Competitive salary and benefits package options, including a free dental, vision package, life insurance, and disability coverage which start on your first day of employment.
  • 401(k) match program which starts on your first day of employment.
  • Time away from work (Generous vacation and paid time off, paid parental leave, paid family leave, etc.).
  • Professional development opportunities and reimbursement for relevant certifications and tuition.
  • Collaborative and inclusive work environment that values diversity.
  • Team-building activities and social events.
  • Employee Referral Program and Colleague Recognition Program.

Location, work hours, and application details:

  • Onsite – Huntsville, AL; relocation assistance will be considered
  • Monday - Friday 8am – 5pm local time
  • Less than 5% domestic or international travel required for mandatory site meetings and trainings

We are actively seeking motivated, dedicated individuals like you to join our thriving organization. As a leader in our industry, we offer unparalleled opportunities for professional growth and success.

Discovery Life Sciences values building direct relationships with candidates and primarily manages its hiring process internally. While we may engage select recruitment partners for specific searches, we do not accept unsolicited resumes or candidate submissions from agencies or recruiters. Any unsolicited resumes submitted to Discovery Life Sciences will be considered the property of Discovery Life Sciences, and the company assumes no obligation to pay any associated fees or commissions. We are unable to sponsor or take over sponsorship of any applicant work visas at this time.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws.For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Clinical Laboratory Scientist
Clinical Laboratory Scientist

Discovery Life Sciences • Huntsville (AL)

On-site
USD 52,000 - 76,000
Medical, dental, vision
401(k) match
Generous vacation and PTO
+2
Vice President, Genomics Operations
Vice President, Genomics Operations

Discovery Life Sciences • Huntsville (AL)

On-site
USD 180,000 - 280,000
Free medical, dental, vision, and life
401(k) match program
Unlimited paid time off
+3
Study Coordinator
Study Coordinator

Discovery Life Sciences • Huntsville (AL)

On-site
USD 55,000 - 75,000
Dental and vision package
401(k) match
Generous vacation/PTO
+2
System Administrator
System Administrator

Discovery Life Sciences • Huntsville (AL)

On-site
USD 70,000 - 100,000
Dental and vision package
Life insurance
Disability coverage
+4
System Administrator
System Administrator

Discovery Life Sciences LLC • Huntsville (AL)

On-site
USD 85,000 - 115,000
Free dental and vision package
Life insurance
Disability coverage
+1
Senior Graphic Designer
Senior Graphic Designer

Discovery Life Sciences • Boston (MA)

Hybrid
USD 73,000 - 90,000
Free medical, dental, vision, life, and disability insurance
401(k) match program
Generous vacation and paid time off
+2
Clinical Data Associate
Clinical Data Associate

Discovery Life Sciences • Huntsville (AL)

On-site
USD 50,000 - 70,000
Free medical, dental, and vision coverage
401(k) match program
Generous paid time off
+2
Donor Recruitment Coordinator
Donor Recruitment Coordinator

Discovery Life Sciences LLC • Quincy (MA)

Hybrid
USD 33,000 - 45,000
Dental & Vision package
Life Insurance
Disability Coverage
+5
Account Executive
Account Executive

Discovery Life Sciences • Northern (KY)

Hybrid
USD 50,000 - 85,000
Dental and vision benefits
Life insurance
401(k) matching
+2
Sr Director, IT Head of Security Operations
Sr Director, IT Head of Security Operations

Biopharma Careers • Foster City (CA)

On-site
USD 243,000 - 315,000
Medical, dental, vision insurance
Life insurance
Paid time off