SavATree Logo

SavATree

Manager / Senior Manager, Cybersecurity & Risk

Posted 21 Days Ago
Remote
Hiring Remotely in United States
125K-150K Annually
Senior level
Remote
Hiring Remotely in United States
125K-150K Annually
Senior level
The role involves leading cybersecurity operations and risk management, developing cybersecurity policies, and improving security posture across various environments. It requires strong technical leadership and collaboration with IT and business teams.
The summary above was generated by AI
Manager / Senior Manager, Cybersecurity & Risk

Status: Full-Time / Permanent
Location:
Remote
Department: Information Technology
Reports To: Director, Infrastructure & Operations
Salary: $125,000-$150,000 per year, dependent on skillset and experience

Position Summary

SavATree is seeking a highly capable, hands-on cybersecurity leader to help strengthen and mature our enterprise cybersecurity program as the company continues to scale. This role will serve as the enterprise lead responsible for cybersecurity operations, risk management, policy development, incident readiness, and security architecture across a distributed, field-based organization.
Reporting to the Director, Infrastructure & Operations, this highly visible individual contributor role will partner closely across IT and the business to strengthen cybersecurity capabilities, reduce enterprise risk, and improve overall security posture. The role will work across infrastructure, applications, cloud, identity, data, and third-party environments to help ensure scalable and resilient cybersecurity practices.
The ideal candidate is technically strong, pragmatic, and comfortable operating in a lean environment where they will both define and help execute cybersecurity priorities. This individual must be capable of operating independently, influencing across teams, and helping build scalable cybersecurity capabilities that balance risk reduction with business enablement.

Key ResponsibilitiesCybersecurity Operations & Technical Leadership
  • Serve as the enterprise cybersecurity lead responsible for cybersecurity operations and risk management across infrastructure, endpoints, identity, cloud, applications, data, and third-party environments.
  • Partner closely with Infrastructure & Operations to strengthen endpoint security, vulnerability management, patching, identity and access management, logging, monitoring, and incident detection and response capabilities.
  • Provide technical cybersecurity leadership across Microsoft, cloud, SaaS, and enterprise platforms to improve overall security posture.
  • Partner with enterprise application teams to ensure secure architecture, integrations, and data practices across core business platforms, including Microsoft technologies and enterprise applications.
  • Lead cybersecurity incident response coordination, tabletop exercises, root cause analysis, and remediation planning.
  • Evaluate emerging threats and recommend pragmatic, risk-based mitigation strategies aligned to business priorities.
  • Monitor and assess cybersecurity posture across internal and third-party environments.
Cybersecurity Program Development
  • Help define and mature enterprise cybersecurity capabilities, operating processes, and governance appropriate for a growing organization.
  • Develop and maintain cybersecurity policies, standards, procedures, and best practices.
  • Build and maintain a practical cybersecurity roadmap focused on risk reduction, resiliency, and operational effectiveness.
  • Establish cybersecurity metrics, scorecards, and reporting for IT leadership and executive stakeholders.
  • Conduct risk assessments and partner with teams to prioritize remediation activities.
  • Support security awareness and training initiatives.
Governance, Risk & Compliance
  • Support enterprise cybersecurity governance practices, including access controls, vendor risk management, data protection, and security awareness.
  • Partner with stakeholders on cybersecurity-related audits, customer questionnaires, cyber insurance requirements, and compliance activities.
  • Help mature incident response, disaster recovery, and business continuity capabilities.
  • Establish practical, scalable controls appropriate for a fast-paced, growth-oriented organization.
Vendor & Partner Management
  • Serve as the primary point of coordination for cybersecurity vendors, MSSPs, penetration testing firms, and external security partners.
  • Drive accountability, service quality, and measurable outcomes across third-party providers.
  • Partner with Infrastructure & Operations leadership to establish cybersecurity priorities, remediation plans, and operational governance.
  • Evaluate cybersecurity tools and recommend solutions aligned to business needs and organizational maturity.
  • Establish a strong cybersecurity operating foundation and improve organizational resiliency through pragmatic controls and risk reduction.
  • Improve visibility into cybersecurity risk through meaningful metrics and reporting.
  • Enhance foundational controls across identity, endpoint security, vulnerability management, monitoring, and incident response.
  • Establish practical cybersecurity policies, standards, and operating procedures.
  • Strengthen vendor oversight and improve effectiveness across security partners.
  • Develop a practical multi-year cybersecurity roadmap aligned to business priorities and company growth.
Required Experience
  • 7+ years of progressive cybersecurity experience with increasing responsibility.
  • Experience operating as a senior cybersecurity individual contributor or technical leader in a mid-sized enterprise environment.
  • Strong technical understanding across IAM, EDR, vulnerability management, SIEM, Microsoft Security, Azure security, infrastructure/network security, incident response, and security architecture.
  • Experience developing cybersecurity policies, standards, and procedures.
  • Experience managing third-party cybersecurity vendors and managed service providers.
  • Strong communication skills with the ability to explain technical risks in business-friendly language.
Preferred Experience
  • Experience in private equity-backed, multi-site, field-service, or distributed operations environments.
  • Experience supporting geographically dispersed or branch-based organizations.
  • Experience with Microsoft technologies including Azure, Microsoft 365, Defender, Intune, and Entra ID.
  • Relevant certifications such as CISSP, CISM, Security+, Azure Security Engineer, or similar.
  • Self-starter who operates independently and drives outcomes
  • Technically credible and hands-on
  • Builder mentality with comfort creating structure in a lean environment
  • Pragmatic, business-minded, and execution-oriented
  • Strong collaborator who can influence across teams without direct authority
  • Strong sense of ownership and accountability
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Similar Jobs

53 Minutes Ago
Remote or Hybrid
CA, USA
103K-194K Annually
Senior level
103K-194K Annually
Senior level
eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Lead day-to-day payment network and acquiring bank escalations for Visa, Mastercard, Amex and bank partners. Investigate incidents, prepare evidence and remediation plans, respond under deadlines, conduct merchant due diligence, support audits, identify recurring risks, and drive control and workflow improvements while maintaining audit-ready case records.
56 Minutes Ago
Easy Apply
Remote or Hybrid
WA, USA
Easy Apply
Senior level
Senior level
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Lead detection, response, and digital forensics for security incidents. Monitor alerts, perform technical analysis, act as Incident Commander, build automation and runbooks, mentor engineers, and coordinate cross-team investigations and insider threat work.
Top Skills: AWSGCPLinuxmacOSPythonSIEMWindows
An Hour Ago
In-Office or Remote
105K-300K Annually
Entry level
105K-300K Annually
Entry level
Information Technology • Software • Financial Services • Big Data Analytics
SREs at Citadel focus on optimizing and maintaining system reliability, performance, and automation for investment applications, collaborating closely with teams.
Top Skills: Ci/CdCSSJavaScriptPythonReactSQL

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account