Overview
Skills
Job Details
Position Title: Cyber Security Manager
Employment Type: Direct Hire - W2, No C2C or third party vendors at this time
Location: Eden Prairie, MN
Work Schedule: Onsite (4-5 days) in Eden Prairie, MN
Salary Range: $120,000 - $140,000
No C2C or third-party vendors at this time
Position Overview
The Cyber Security Manager is a leadership role responsible for developing, implementing, and maintaining a comprehensive information security program to safeguard the organization's data, infrastructure, and digital assets. This position leads strategic initiatives to reduce cyber risk, ensure regulatory compliance, and promote a culture of security awareness across all departments.
The ideal candidate will have deep technical expertise, proven experience in managing enterprise-level security operations, and familiarity with global compliance frameworks including NIST CSF 2.0, SOC 2 Type 2, GDPR, the UK Data Protection Act (DPA 2018), and the Australian Essential Eight model.
Key Responsibilities
Strategic Leadership
- Define and execute the cybersecurity strategy aligned with organizational goals and objectives.
- Establish a vision for data protection, threat mitigation, and resilience across the enterprise.
Compliance & Governance
- Oversee compliance efforts with SOC 2 Type 2, GDPR, and UK DPA 2018 standards.
- Manage audits, control documentation, and interactions with external assessors to maintain certification and adherence to regulations.
Technical Operations
- Lead the selection, deployment, and management of cybersecurity technologies and tools (e.g., threat detection, prevention, and response platforms).
- Continuously enhance technical defenses, detection capabilities, and response readiness.
Risk Management
- Identify, assess, and prioritize cybersecurity risks and vulnerabilities.
- Develop mitigation plans, implement controls, and monitor effectiveness through periodic risk assessments.
Incident Response
- Design and maintain an enterprise incident response plan.
- Lead response efforts for cybersecurity events, coordinate investigations, and oversee post-incident reviews.
Security Awareness & Training
- Build and maintain a comprehensive cybersecurity training program for all staff levels.
- Promote a strong culture of security awareness and accountability.
Stakeholder Collaboration
- Partner with executive leadership, IT, compliance, and legal teams to align business and security priorities.
- Communicate cybersecurity risks and progress to stakeholders in clear, actionable terms.
Policy Development
- Develop, update, and enforce security policies, standards, and procedures.
- Ensure policies reflect current regulations and best practices.
Vendor & Third-Party Security
- Assess and manage the security posture of third-party vendors and partners.
- Integrate supplier risk management into the broader security program.
Budget & Resource Management
- Manage cybersecurity budgets, resources, and investments efficiently.
- Optimize technology and staffing to balance operational effectiveness with fiscal responsibility.
Minimum Qualifications
Education & Certifications
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field (Master's preferred).
- Industry certifications such as CISSP, CISM, CGEIT, or equivalent strongly recommended.
Professional Experience
- Minimum 8 years of progressive experience in cybersecurity, including direct leadership of technical teams.
- Proven record in managing cybersecurity technologies (e.g., SIEM, EDR, firewalls, DLP, IAM, vulnerability management).
- Experience leading SOC 2 Type 2 audits - including control design, evidence collection, and remediation.
- Demonstrated success managing GDPR and DPA 2018 compliance programs.
Technical Competencies
- Deep understanding of modern threat landscapes and attack vectors targeting enterprise systems.
- Expertise with SIEM, IDS/IPS, endpoint protection, network segmentation, and encryption solutions.
- Ability to interpret vulnerability assessments and penetration testing outcomes.
- Experience applying cloud security controls in AWS, Azure, or Google Cloud Platform environments.
- Familiarity with automation/orchestration tools for threat response and monitoring.
- Strong analytical and problem-solving abilities.
Leadership & Communication Skills
- Demonstrated leadership in building, coaching, and guiding cybersecurity teams.
- Skilled at communicating technical topics to executive and non-technical audiences.
- Ability to influence business strategy by integrating cybersecurity principles.
- Proven track record of fostering collaboration across departments and teams.
General Expectations
- Stay informed of emerging threats, technologies, and regulatory developments.
- Adapt cybersecurity strategies to meet evolving business and compliance requirements.
- Maintain the highest ethical standards and integrity.
- Willingness to travel occasionally and participate in after-hours or on-call incident response when needed.
All qualified applicants will receive consideration for employment without regard to race, color, national origin, age, ancestry, religion, sex, sexual orientation, gender identity, gender expression, marital status, disability, medical condition, genetic information, pregnancy, or military or veteran status. We consider all qualified applicants, including those with criminal histories, in a manner consistent with state and local laws, including the California Fair Chance Act, City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, and Los Angeles County Fair Chance Ordinance. For unincorporated Los Angeles county, to the extent our customers require a background check for certain positions, the Company faces a significant risk to its business operations and business reputation unless a review of criminal history is conducted for those specific job positions.