Cybersecurity Manager
Discovery Life Sciences LLC
Job Description
Job Description
About Discovery Life Sciences:
Discovery Life Sciences (Discovery) is a leading provider of highly characterized human biospecimens and cellular starting materials to advance cell and gene therapy and precision medicine programs for cancer, infectious disease, and other complex conditions. We routinely manage hundreds of studies and expertly test thousands of biospecimens simultaneously. Leading biopharma, diagnostic and academic institutions trust us to quickly deliver high-quality biospecimens and reliable, reproducible biomarker data, so they can outpace their competition and push the leading edge of innovation using our Science at your Service TM business model.
Position Summary:
Discovery Life Sciences is seeking an experienced Cybersecurity Manager to join our Information Technology team as a hands-on individual contributor responsible for protecting the company's people, data, systems, and regulated operations. This role combines cybersecurity operations with governance, risk, and compliance (GRC) responsibilities, requiring both strategic thinking and technical execution.
The Cybersecurity Manager will play a key role in maintaining and enhancing the organization's security posture by leading incident response, vulnerability management, audit readiness, risk management, and compliance initiatives across global operations. This position serves as a trusted security partner to stakeholders across IT, Quality, Legal, Privacy, HR, Finance, and business functions, while helping scale a mature cybersecurity program that supports Discovery's continued growth.
A Day in the Life of a Cybersecurity Manager at Discovery Life Sciences:
- Monitor and investigate security alerts, coordinate incident response activities, and lead remediation efforts to minimize business risk.
- Partner with internal teams and external auditors to maintain compliance with SOC 2 Type II, ISO 27001, NIST, and regulatory requirements.
- Review vulnerability and penetration testing results, prioritize remediation activities, and track progress through resolution.
- Collaborate with Infrastructure, Cloud, Applications, Legal, Privacy, Quality, and business leaders to address emerging risks and strengthen security practices.
Must-Have Qualifications (Education, Skills, Experience):
- Must live near or be willing to relocate to Huntsville, AL
- Bachelor's degree in Computer Science, Information Security, Information Technology, or a related field; equivalent practical experience will also be considered.
- CISSP, CISA, CRISC, Security+, or a comparable cybersecurity certification preferred.
- Certifications are valued but are not a substitute for demonstrated hands-on experience.
- Five (5)+ years of progressive experience in cybersecurity, security operations, IT risk management, IT audit, or a comparable hands-on role.
- Deep expertise in either Security Operations or Governance, Risk, and Compliance (GRC), with working experience in the complementary discipline.
- Experience in life sciences, healthcare, biotechnology, financial services, or another regulated industry required
- Hands-on experience with several of the following: Microsoft Sentinel, Microsoft Defender, Microsoft Intune, Microsoft Purview, Tenable, firewalls, endpoint security, cloud security, identity and access management, KQL, or PowerShell.
- Practical experience investigating and responding to security incidents, coordinating remediation, and exercising sound judgment under pressure.
- Experience supporting or operating security controls aligned to SOC 2, ISO 27001, NIST, or similar frameworks; able to produce clear, defensible audit evidence.
- Experience with vulnerability management, third-party risk, policy and exception management, and risk tracking.
- Familiarity with 21 CFR Part 11, GxP, GDPR, data privacy, customer security reviews, or regulated validation practices.
- Experience with Microsoft Purview, DLP, data classification, DSPM, eDiscovery, Azure, AWS, or Microsoft 365 security capabilities.
- Demonstrated ability to automate repeatable security and compliance tasks through scripting or workflow tools.
- Strong written and verbal communication skills, with the ability to explain technical risk and recommended action to executive, audit, and non-technical audiences.
Key Responsibilities:
Security operations and incident response:
- Monitor, triage, investigate, and respond to security alerts and incidents, lead containment, recovery coordination, and post-incident reporting.
- Administer and tune security controls across firewalls, network security technologies, endpoint compliance, patching, encryption, and security baselines.
- Own or coordinate joiner, mover, and leaver controls, including timely access provisioning, deprovisioning, privileged access review, and periodic access certifications.
- Maintain security operations runbooks, escalation paths, incident procedures, and metrics; participate in periodic after-hours response as required by the incident and team coverage model.
Governance, risk, and compliance:
- Operate the security compliance cadence for SOC 2 Type II, ISO 27001, and the NIST Cybersecurity Framework, including control mapping, audit planning, evidence collection, issue tracking, and auditor coordination.
- Partner with Quality / Validation, Legal, Privacy, and business stakeholders on 21 CFR Part 11, GxP, GDPR, and customer security requirements; provide security controls and evidence within each function's accountability.
- Run the third-party and vendor risk lifecycle: security due diligence, assessments, risk ratings, ongoing monitoring, remediation follow-up, and documented risk acceptance.
- Maintain the enterprise security risk register and coordinate risk assessments, accountable owners, due dates, compensating controls, and escalation of overdue or material risks.
- Maintain the security policy, standard, exception, and attestation lifecycle; communicate changes and support adoption across the organization.
- Partner with Operations, Legal, and IT on data classification, Data Loss Prevention / data security controls, security investigations, and eDiscovery support where appropriate.
- Vulnerability management and remediation
- Run the vulnerability management lifecycle, including prioritization based on exploitability, asset criticality, exposure, and business impact.
- Coordinate internal and third-party penetration tests, track findings, validate remediation, and report residual risk to accountable owners and leadership.
- Use automation, KQL, PowerShell, and available platform capabilities to improve detection, evidence collection, reporting, and control consistency.
Leadership and business partnership:
- Serve as a trusted leader for operational continuity, risk discussions, incident coordination, and selected leadership meetings.
- Mentor and help develop the Cybersecurity Analyst; provide direction to project teams, manage service providers, and control owners without requiring direct reporting lines.
- Build productive working relationships with Infrastructure, Cloud, Applications, HR, Legal, Quality, Privacy, Finance, and business leaders.
- Prepare concise security metrics, risk summaries, audit updates, and recommendations for executive stakeholders.
- Other duties as assigned by supervisor. These may, on occasion, be unrelated to the position described here.
- Consistent and predictable attendance is an essential function of the position.
Compensation and Benefits:
Discovery Life Sciences is committed to fair and equitable compensation practices, and we strive to provide employees with total compensation packages that are market competitive. Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate’s offer letter. The exact base pay offered for this role will depend on various factors, including the candidate's qualifications, skills, and experience. Your annual salary is only one part of your total compensation package. Other benefits include:
- Competitive salary and benefits package options, including a free dental, vision package, life insurance, and disability coverage which start on your first day of employment.
- 401(k) match program which starts on your first day of employment.
- Time away from work (Generous vacation and paid time off, paid parental leave, paid family leave, etc.).
- Professional development opportunities and reimbursement for relevant certifications and tuition.
- Collaborative and inclusive work environment that values diversity.
- Team-building activities and social events.
- Employee Referral Program and Colleague Recognition Program.
Location, work hours, and application details:
- Onsite – Huntsville, AL; relocation assistance will be considered
- Monday - Friday 8am – 5pm local time
- Less than 5% domestic or international travel required for mandatory site meetings and trainings
We are actively seeking motivated, dedicated individuals like you to join our thriving organization. As a leader in our industry, we offer unparalleled opportunities for professional growth and success.
Discovery Life Sciences values building direct relationships with candidates and primarily manages its hiring process internally. While we may engage select recruitment partners for specific searches, we do not accept unsolicited resumes or candidate submissions from agencies or recruiters. Any unsolicited resumes submitted to Discovery Life Sciences will be considered the property of Discovery Life Sciences, and the company assumes no obligation to pay any associated fees or commissions.
We are unable to sponsor or take over sponsorship of any applicant work visas at this time. Apply Now to join our team!Visit dls.com/careers for more details.
- ...infectious disease, and other complex conditions. We routinely manage hundreds of studies and expertly test thousands of... ...Position Summary: Discovery Life Sciences is seeking an experienced Cybersecurity Manager to join our Information Technology team as a hands-on...SuggestedWork experience placementLocal areaRelocationWork visaRelocation packageMonday to Friday
$112.2k - $196.4k
...Teams-Next Missile Defense Systems Engineering (TN-MDSE) contract managed by the Missile Defense Agency (MDA). What You'll Be Doing: Serve as member of the joint Government/Contractor cybersecurity team, developing System Security Plans (SSPs), Interim Authority to...SuggestedContract workFor contractorsWork experience placementInterim roleWork at officeFlexible hours$146k - $234k
...AL In this role, you will: Apply best practices for cybersecurity program standards, processes, procedures, and industry-... ...assess ATO package artifacts. Apply expert knowledge of Risk Management Framework (RMF) v5 processes and workflows. Use eMASS to execute...SuggestedContract workWork experience placementShift work$102.17k
...visionary company that is transforming the way water resources are managed and protected. By combining cutting-edge digital technologies,... ...Analyst, where you will operate at the intersection of cybersecurity and DevSecOps to protect critical software systems that support...SuggestedWork experience placementH1b- ...Hunger to continually learn and grow Job Description: Manage classified and unclassified systems through the Assessment & Authorization... ...Auditing and reporting of FISMA and NIST 800-53 compliance (cybersecurity compliance) Prepare documentation from information obtained...Suggested
- ...-to-day operations and support of classified information systems. This position will report to the Information Security Operations Manager/ISSM on all aspects of classified information system security operation. This position will augment the Information Security and Information...Temporary workLocal areaRemote work
- ...control evidence. Support continuous monitoring, vulnerability management, remediation tracking, audits, assessments, and accreditation... ...: Bachelor’s degree and 8+ years of experience in cybersecurity, ISSO support, or security engineering. Strong understanding...Full timeTemporary workImmediate startRemote work
$100.22k - $111.18k
...for this Position What Sets You ApartCommunicate technical cybersecurity topics clearly and effectively to diverse technical and non-... ...traceability and audit readiness.Lead or support NIST SP 800-37 Risk Management Framework (RMF) activities to develop and maintain the body...Flexible hours- ...those described in DoD Instruction 8570.1 Information Assurance Management (IAM) Level III proficiency. - Possesses at least 7 years'... ...Minimum of 9 years of work experience in a computer science or Cybersecurity related field - Familiarity with the use and operation of...Work experience placement
- Job Description Job Description Sr Software Assurance Cyber Analyst OASYS, INC. , a Leading-Edge Government contractor in Huntsville Alabama, is seeking applicants for a Sr Software Assurance Cyber Analyst position that we have open to support our Army customer...Temporary workFor contractorsFlexible hours
- ...will analyze NetFlow data, develop findings, and deliver briefs to field offices and IC peers. Qualifications include 8+ years in cybersecurity, knowledge of APTs, TS/SCI clearance, and HS diploma or GED. Proficiency with Kibana/Elasticsearch and Python is preferred. #J-1...
- ...analyze, and communicate cyber threats impacting the organization. The role blends traditional threat intelligence with hands-on cybersecurity work to ensure actionable intelligence that informs detections, investigations, and defensive improvements. The ideal candidate...
$80k - $90k
...role is built for that profile: broad, hands-on ownership across SOC operations, threat hunting, cloud security, and vulnerability management, with the tooling depth that senior security roles across the market demand. Job Summary Clinisol Tech Inc is seeking a Senior...Full time$61.9k - $141k
...assistance or review. Provide intelligence context to support the fine-tuning of signatures. You Have: 5+ years of experience with cybersecurity 3+ years of experience conducting threat research focused on nation-state, criminal, or malicious cyber activities Experience...Full timeContract workPart timeWork at officeLocal areaRemote work$86.8k - $198k
...counterintelligence, and IC peers to provide a greater comprehension of cyber threats.**You Have:*** 8+ years of experience with cybersecurity or IT* Knowledge of Advanced Persistent Threats (APT)* Ability to use NetFlow traffic to identify malicious behavior* Ability to...Full timeContract workPart timeWork at officeLocal areaRemote work- Job Title: Junior Cybersecurity/Watch floor Analyst Location: Huntsville, AL Clearance: MUST CURRENTLY POSSESS AND ACTIVE TOP SECRET CLEARANCE SUMMARY: Noetic is currently seeking a motivated and detail-oriented Junior Cybersecurity Analyst to join our growing security...Shift work
- ...support remediation activities, and maintain evidence necessary to demonstrate compliance with applicable NIST, DoD, DISA, and Army cybersecurity requirements. Required: BS in a related field or 7+ years' direct experience Minimum 5 years of experience in cyber...
- ...tactical systems. The person will be a key member of a team performing Hardware and Software Cybersecurity analysis along with key functions supporting the Risk Management Framework (RMF) Assessment and Authorization (A&A) process for data processing, test, and tactical...Temporary workFlexible hours
- ...Description OVERVIEW OF POSITION: The Cybersecurity Analyst (GRC) is responsible for supporting the organization's Governance,... ...audit activities, supporting regulatory compliance efforts, and managing administrative functions of the cybersecurity program....Permanent employmentLocal area
- ...INFORMATION SYSTEMS SECURITY MANAGER - (824) Share this job as a link in your status update to LinkedIn. Job Title INFORMATION... ...be a key member of a team performing Hardware and Software Cybersecurity analysis along with key functions supporting the Risk Management...Full timeLocal area
- ...Information Systems Security Manager Job Locations: US-AL-Huntsville ID: 2026-5338 Category: Engineering & Science... ...will be a key member of a team performing Hardware and Software Cybersecurity analysis along with key functions supporting the Risk Management...Full timeLocal area
- ...Information Systems Security Manager (ISSM)Radiance Technologies is an employee-owned company with a generous benefits package that is unmatched among our peers. Employee ownership, generous 401K, full health / dental / life / vision insurance benefits, challenging assignments...Remote workFlexible hours
- ...Job Description Job Description Pending Contract Award Position Responsibility Summary: Primary Function - Vulnerability Management (PWS 1.16.4.6, 1.16.4.8): Develops the Vulnerability Management Plan, prepares IAVM Test Reports, and executes vulnerability and...Contract work
$160k - $198k
Job DescriptionECS is seeking a TS-cleared Cybersecurity Analyst to support one of our mission critical programs for the Department of Justice... ..., and improvement activities under the ISaaS program-management model. Translate technical and operational data into actionable...Contract work$160k - $198k
Job Description ECS is seeking a TS-cleared Cybersecurity Analyst to support one of our mission critical programs for the Department of... ...reporting, and improvement activities under the ISaaS program-management model. Translate technical and operational data into actionable...Contract workWork experience placementLocal area- Radiance Technologies, a 100% employee-owned company, is seeking a Cybersecurity Analyst to support Test and Training Group. The candidate... ..., DoD cybersecurity documentation, and proactive risk management in support of secure system integration and sustainment.Responsibilities...
- ...software systems. Configure systems, maintain user accounts, and manage permissions to ensure secure and efficient operations. Set... ...future troubleshooting or development. Assist in preparing cybersecurity compliance documentation and customer-facing security forms....Remote workFlexible hours
- ...CI Poly Responsibilities Monitor and analyze cyber threats, investigate security breaches, and produce reports to enhance cybersecurity posture. Collect and analyze threat data from various sources, including open-source intelligence, dark web monitoring, and internal...Full timeLocal area
- ...Designs, engineers, and implements NIST 800 Series-compliant Cybersecurity (CS) controls and produces/maintains primary RMF artifacts (SSP... ...-trained in Network Security and Authorization and System Management. Enables the ISSE to conduct STIG assessments and security configuration...Contract work
- Job TitleCTI Cybersecurity Analyst - SrLocationHuntsville, AL 35808 US (Primary)CategoryInformation TechnologyJob TypeFull-timeCareer LevelStaffEducationBachelor's DegreeTravelNoneSecurity Clearance RequiredTS/SCIJob DescriptionTMC Technologies is in search of a senior...Contract workLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Manager. Be the first to apply!
- cyber security incident responder Huntsville, AL
- remote cyber security Huntsville, AL
- cyber security Huntsville, AL
- cybersecurity Huntsville, AL
- cybersecurity certificate Huntsville, AL
- cybersecurity technical writer Huntsville, AL
- cybersecurity software engineer Huntsville, AL
- entry level cyber security Huntsville, AL
- cybersecurity administrator Huntsville, AL
- senior cybersecurity engineer Huntsville, AL


