Manager, Cybersecurity Operations

Xeris Pharmaceuticals Inc

Georgia

Hybrid

USD 120,000 - 165,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Office in Chicago

Job summary

Xeris Pharmaceuticals Inc. is seeking a Manager, Cybersecurity Operations to own day-to-day security operations and incident response with a focus on Microsoft Azure, Microsoft 365, Defender suite, and key SaaS platforms.

You will lead the security operations function, coordinate MDR/SOC partners, and coach a cross-functional team to embed security into day-to-day processes while maintaining governance across the environment.

Qualifications

  • Bachelor’s degree or equivalent experience in a relevant field.
  • 5+ years of progressive cybersecurity experience with demonstrated leadership responsibility.
  • Hands-on experience with IAM, SIEM, and vulnerability management tools in a Microsoft-centric environment.
  • Strong understanding of cybersecurity frameworks and controls (NIST CSF, ISO 27001, CIS).
  • Proven ability to lead incident response, coordinate cross-functional stakeholders, and communicate clearly with technical and non-technical audiences.
  • Demonstrated skills in team leadership, collaboration, project management, and written and verbal communication.

Responsibilities

  • Lead security operations monitoring, triage, and response for Azure, M365, Windows 365, endpoints, identity, email, and core SaaS apps.
  • Direct MDR/SOC partners with clear runbooks, SLAs, and high-quality investigations.
  • Coach and develop the security operations team across IT, Legal, Compliance, and business units.
  • Balance IT delivery with independent cybersecurity governance and controls across the environment.
  • Develop and improve runbooks and SOPs for common security events and tasks.
  • Oversee root cause analysis, forensics, and threat hunting across identity, email, endpoints, and cloud workloads.
  • Drive incident lifecycle management with metrics, trends, remediation progress, and lessons learned.
  • Protect crown jewels through data classification, conditional access, and policy enforcement in M365 and key systems.
  • Support governance activities: GRC platform admin, NIST control assessments, and security improvement tracking.
  • Perform vendor cybersecurity due diligence and manage third-party risk with Procurement and Legal.
  • Maintain an accurate inventory of security-relevant assets to support monitoring and vulnerability management.
  • Contribute to security awareness campaigns and annual training.

Skills

Leadership
Incident response
Communication
Governance & risk
Team collaboration

Education

Bachelor’s degree in computer science, information systems, cybersecurity, or equivalent experience

Tools

IAM
SIEM
Vulnerability management tools
Defender suite
Azure Entra ID

Job description

Job Description

The Manager, Cybersecurity Operations owns day-to-day security operations and incident response, with a strong focus on Microsoft Azure, Microsoft 365 (including Defender, Purview, DLP, and IRM), and key SaaS platforms.

Essential Job Functions
  • Lead the security operations function, including monitoring, triage, and response for alerts across Azure, Microsoft 365, Windows 365, endpoints, identity, email, and core SaaS applications.
  • Direct and coordinate Managed Detection and Response (MDR) and SOC partners, ensuring clear runbooks, effective SLAs, and high quality investigations and escalations.
  • Manage and coach the security operations team, partnering with Infrastructure, Applications, Legal, Compliance, and business leaders to embed security into day-to-day processes.
  • Establish a healthy check and balance between IT and cybersecurity so IT focuses on delivery and operations while cybersecurity independently governs, monitors, and enforces controls across the environment.
  • Develop, maintain, and continuously improve runbooks and standard operating procedures for common security events and operational tasks.
  • Oversee root cause analysis, basic forensics, and threat hunting activities across identity, email, endpoint, and cloud workloads.
  • Drive incident lifecycle management: tracking metrics, trends, remediation progress, and lessons learned for technology and business leadership.
  • Support protection of “crown jewel” assets through data classification, conditional access, and policy enforcement across Microsoft 365 and key business systems.
  • Partner in governance activities, including GRC platform administration, NIST-based control assessments, InfoSec steering committee inputs, and security improvement tracking.
  • Perform vendor cybersecurity due diligence (e.g., security questionnaires, DDQs, monitoring enrollment) and manage third‑party risk operations in partnership with Procurement and Legal.
  • Maintain an accurate inventory of security-relevant assets (devices, SaaS applications, privileged accounts) to support monitoring, access control, and vulnerability management.
  • Contribute to security awareness efforts, including annual training, Cybersecurity Awareness Month activities, and targeted campaigns.
  • Partner with the Director of Infrastructure and Security on KPIs, operational risk metrics, and budget planning for tools, services, and managed partners.
  • Identify and recommend opportunities to automate and streamline security operations and system administration.
Skills and Qualifications
  • Bachelor’s degree in computer science, information systems, cybersecurity, or equivalent experience.
  • 5+ years of progressive cybersecurity experience with demonstrated leadership responsibility.
  • Hands‑on experience with IAM, SIEM, and vulnerability management tools, ideally in a Microsoft‑centric environment (Azure AD/Entra ID, Microsoft 365, Defender suite).
  • Strong understanding of cybersecurity frameworks and controls (e.g., NIST CSF, ISO 27001, CIS) and their application in day‑to‑day operations and governance.
  • Proven ability to lead incident response, coordinate cross‑functional stakeholders, and communicate clearly with technical and non‑technical audiences.
  • Demonstrated skills in team leadership, collaboration, project management, and written and verbal communication; strong attention to detail and adaptability in a fast‑changing environment.
Working Conditions

This is a hybrid position based in Xeris’ Chicago office. A minimum of three days per week in the office is required. On‑site requirement may change at management’s discretion. Position may require periodic evening and weekend work, as necessary to fulfill obligations. Periodic overnight travel. The anticipated base salary range for this position is $120,000 to $165,000.

Equal Employment Opportunity

Xeris Pharmaceuticals, Inc. (the “Company”) is an equal opportunity employer and does not discriminate based on race, color, religion, sex, gender identity, sexual orientation, national origin, age, disability, veteran status, genetics or any other characteristic protected by law. All qualified candidates are given equal opportunity and the Company’s employment selection decisions are based solely on job‑related factors.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Cybersecurity Operations
Manager, Cybersecurity Operations

Xerispharma • Chicago (IL)

Hybrid
USD 120,000 - 165,000
Cybersecurity Operations Lead – Azure & M365 (Hybrid)
Cybersecurity Operations Lead – Azure & M365 (Hybrid)

Xerispharma • Chicago (IL)

Hybrid
USD 120,000 - 165,000
Cybersecurity Ops Manager (Azure & M365, Incident Response)
Cybersecurity Ops Manager (Azure & M365, Incident Response)

Xeris Pharmaceuticals Inc • Georgia

Hybrid
USD 120,000 - 165,000
Hybrid work model
Office in Chicago
Senior Systems Engineer
Senior Systems Engineer

Xeris Pharmaceuticals Inc • Georgia

Hybrid
USD 112,000 - 140,000
Equity
Annual bonus
401(k) retirement benefits
+1
Senior Staff Engineer - DevSecOps
Senior Staff Engineer - DevSecOps

Exelixis Inc • Alameda (CA)

On-site
USD 154,500 - 220,500
401(k) plan with company contributions
Group medical, dental, and vision coverage
Flexible spending accounts
+1
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

AV • Washington

On-site
USD 111,000 - 170,000
Medical and dental coverage
401(k) with company matching
Paid holiday shutdown
Cybersecurity Engineer
Cybersecurity Engineer

Sheppard Pratt Careers • Towson (MD)

On-site
USD 88,000 - 145,000
Tuition reimbursement
Medical benefits
403b retirement match
+2
Cybersecurity Engineer
Cybersecurity Engineer

Sheppard-Pratt- • Towson (MD)

On-site
USD 88,000 - 145,000
Tuition reimbursement program
Medical, dental and vision benefits
403b retirement match
+2
Associate Security Engineer, Security Control Management
Associate Security Engineer, Security Control Management

CyberMaxx • Maryland

On-site
USD 75,000 - 85,000
Flexible Paid Time Off
401k with company match
Medical, Dental and Vision Coverage
+3
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

AV • North Carolina

On-site
USD 111,000 - 170,000
Medical, dental, vision benefits
401(k) with company matching
9/80 work schedule
+1