Senior Manager - Cloud Security

Viatris

United States

On-site

USD 95,000 - 193,000

Full time

5 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Viatris is seeking a Senior Manager of Cloud Security to lead strategy, delivery, and maturation of cybersecurity across Viatris cloud environments. You will set direction for cloud security architecture, DevSecOps enablement, security automation, and CNAPP adoption in partnership with Global Security, IT Cloud, Engineering, and application teams.

You will govern scalable roadmaps, reference designs, and governance processes, while guiding cross-functional execution and ensuring measurable

Qualifications

  • Bachelor's degree required; Master's preferred.
  • 8 years' experience in IT/Cybersecurity/Cloud leadership.
  • CISSP/CCSP or cloud certs preferred.
  • Knowledge of cloud computing concepts and shared responsibility model.
  • Experience with DevSecOps, CI/CD, IaC, and security testing across SDLC.
  • Ability to translate technical and business requirements into scalable security operating models.

Responsibilities

  • Lead cloud security strategy, roadmap, and capability maturation across cloud platforms.
  • Define cloud security architecture directions, landing zones, and reference designs.
  • Establish automated security controls, policy-as-code, and testing for CI/CD and IaC workflows.
  • Lead cloud threat modeling and executive risk discussions for critical cloud apps and services.
  • Drive adoption of DevSecOps practices across cloud delivery and engineering processes.
  • Coach and develop cloud security professionals and oversee security capabilities.

Skills

Cloud security
DevSecOps
CI/CD
Infrastructure as Code
Policy as code
CNAPP
Cloud-native security
Security architecture
Threat modeling
Risk management
Leadership

Education

Bachelor's degree in MIS/IT/Cybersecurity/Engineering/Computer Science
Master's degree preferred

Job description

Viatris is a global healthcare company uniquely positioned to bridge the traditional divide between generics and brands, combining the best of both to more holistically address healthcare needs globally. With a mission to empower people worldwide to live healthier at every stage of life, we provide access at scale, currently supplying high-quality medicines to approximately 1 billion patients around the world annually and touching all of life's moments, from birth to the end of life, acute conditions to chronic diseases.

We have been included on number of award lists that demonstrate the impact we are making.

Every day, we rise to the challenge to make a difference and here's how the Senior Manager - Cloud Security will make an impact:

The primary purpose of the Senior Manager, Cloud Security, is to lead the strategy, delivery, and maturation of cybersecurity capabilities across Viatris cloud environments. The role sets direction for cloud security architecture, DevSecOps enablement, security automation, and cloud-native control adoption in partnership with Global Security, IT Cloud, Engineering, and application teams. The role is accountable for translating cybersecurity and business requirements into scalable cloud security roadmaps, architecture patterns, governance processes, and measurable controls. The role leads cross-functional execution, prioritizes capability investments, manages team and vendor delivery where applicable, and ensures transition of mature capabilities to operational teams while retaining accountability for services owned by Cloud Security.

Key responsibilities for this role include:
  • Lead development and execution of the cloud security strategy, roadmap, and capability maturity plan across cloud platforms and services.
  • Set cloud security architecture direction and implementation standards for landing zones, shared services, application patterns, and cloud platform engineering.
  • Define reusable cloud security architecture patterns, reference designs, and implementation approaches that enable secure, consistent, and scalable cloud adoption.
  • Establish automated security controls, policy-as-code, and testing expectations for CI/CD pipelines and Infrastructure-as-Code workflows.
  • Lead cloud threat modeling, architecture risk reviews, and executive-level risk discussions for critical cloud applications, platforms, and services.
  • Define security testing and assurance approaches that identify and reduce security weaknesses throughout the software development lifecycle.
  • Direct the use and maturation of cloud-native security capabilities and CNAPP technologies to validate control effectiveness, prioritize risk, and drive remediation.
  • Manage a portfolio of cloud security programs from requirements through design, implementation, maturation, operational transition, and benefits realization.
  • Assess enterprise cloud security capability gaps and sponsor practical implementation roadmaps with IT and Cybersecurity stakeholders.
  • Drive adoption of automated, repeatable, and policy-driven DevSecOps practices across cloud delivery and engineering processes.
  • Advise technology teams and Cybersecurity leadership on cloud security priorities, risk tradeoffs, service improvements, and investment decisions.
  • Lead, coach, and develop cloud security professionals and oversee selected cloud security capabilities where ownership remains with the Cloud Security team.
  • Develop cybersecurity countermeasures, risk mitigation approaches, and implementation guidance aligned to technology and business requirements.
  • Maintain senior stakeholder communication and cross-team relationships required for successful cybersecurity delivery and adoption.
  • Sponsor configuration and change management practices for security capabilities throughout implementation, transition, and ongoing improvement.
  • Assess the effectiveness of security controls for services, applications, and associated processes, and drive measurable improvement.
  • Ensure technical documentation, operating procedures, and knowledge transfer artifacts support sustainable operation and service continuity.
The minimum qualifications for this role are:
  • Minimum of a Bachelor's degree required. Master's degree preferred.
  • Specialization in MIS, IT, Engineering, Computer Science, Cybersecurity, or related field, however, a combination of experience and/or education will be taken into consideration.
  • 8 years' of experience in IT, Cybersecurity, Cloud Engineering, Application Security, or Cloud Security Leadership required.
  • CISSP, CCSP, cloud security or cloud platform certification preferred.
  • Knowledge of cloud computing concepts, architectures, operating models, and shared responsibility models.
  • Knowledge of cybersecurity and privacy principles, including how they apply to cloud platforms and software delivery.
  • Knowledge of risk management processes and methods for assessing, prioritizing, and mitigating enterprise technology risk.
  • Knowledge of authentication, authorization, identity governance, privileged access, and access control methods.
  • Knowledge of cloud security controls, configuration management, secure architecture principles, and governance practices.
  • Knowledge of secure software development, security testing, and assurance concepts across the SDLC.
  • Knowledge of DevOps and DevSecOps practices, CI/CD pipelines, Infrastructure-as-Code, automation, and policy-as-code.
  • Knowledge of cloud-native security and CNAPP capabilities, including posture, workload, identity, vulnerability, detection, and remediation capabilities.
  • Skill in assessing security controls, control maturity, and residual risk based on cybersecurity principles and tenets.
  • Skill in communicating complex technical, operational, and risk concepts to technical teams, business stakeholders, and Cybersecurity leadership.
  • Skill in creating strategic roadmaps, decision materials, technical standards, and documentation that support sustainable execution.
  • Skill in directing automation, scripting, API integration, and policy-as-code approaches commonly used in cloud and DevOps environments.
  • Skill in analyzing software, hardware, configuration, interoperability, and control testing results to support risk-based decisions.
  • Skill in evaluating, selecting, implementing, and maturing cloud security tools and capabilities.
  • Skill in identifying security weaknesses, prioritizing remediation, and driving risk reduction through cross-functional execution.
  • Ability to translate technical and business requirements into scalable operating models, services, and measurable security capabilities.
  • Ability to influence Cloud, application development, infrastructure, Cybersecurity, vendor, and business teams without relying solely on direct authority.
  • Ability to lead people, coach technical talent, manage priorities, and apply cybersecurity principles to confidentiality, integrity, availability, authentication, and non-repudiation requirements.

Exact compensation may vary based on skills, experience, and location. The salary range for this position is: $95,000 - $193,000.

At Viatris, we offer competitive salaries, benefits and an inclusive environment where you can use your experiences, perspectives and skills to help make an impact on the lives of others.

Viatris is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, gender expression, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Manager – Cloud Security
Senior Manager – Cloud Security

Viatris • United States

Remote
USD 95,000 - 193,000
Senior Manager – Cloud Security
Senior Manager – Cloud Security

1100 Mylan Pharmaceuticals Inc. • Northern (KY)

Hybrid
USD 95,000 - 193,000
Manager - Manufacturing Security
Manager - Manufacturing Security

Viatris • United States

On-site
USD 78,000 - 152,000
Senior Manager, Identity & Access Management
Senior Manager, Identity & Access Management

Viatris • United States

Remote
USD 95,000 - 193,000
Senior Manager, Manufacturing Security
Senior Manager, Manufacturing Security

Viatris • United States

Remote
USD 95,000 - 193,000
Cloud Security Strategy Lead & DevSecOps Champion
Cloud Security Strategy Lead & DevSecOps Champion

Viatris • United States

On-site
USD 95,000 - 193,000
Senior Cloud Security Leader – Remote & Strategy
Senior Cloud Security Leader – Remote & Strategy

Viatris • United States

Remote
USD 95,000 - 193,000
Senior Manager, Identity & Access Management
Senior Manager, Identity & Access Management

1100 Mylan Pharmaceuticals Inc. • Northern (KY)

Hybrid
USD 95,000 - 193,000
Manager – Manufacturing Security
Manager – Manufacturing Security

1100 Mylan Pharmaceuticals Inc. • Northern (KY)

Hybrid
USD 78,000 - 152,000
Competitive salary
Benefits
Inclusive environment
Cloud Security Strategy Leader — Remote
Cloud Security Strategy Leader — Remote

1100 Mylan Pharmaceuticals Inc. • Northern (KY)

Hybrid
USD 95,000 - 193,000