<p><strong>Cybersecurity Manager</strong></p><p><br></p><p><strong>Company Overview</strong></p><p>A mission-driven organization based in the San Fernando Valley, California provides essential services and resources throughout the region. The organization supports a large, distributed workforce and maintains a highly regulated technology environment where information security, privacy, and operational resilience are critical. This is an opportunity to help shape and mature an enterprise cybersecurity program while making a meaningful impact within a community-focused organization.</p><p><br></p><p><strong>Role Summary</strong></p><p>The Cybersecurity Manager will lead the organization’s enterprise information security program while remaining actively involved in day-to-day security operations and engineering. This role will oversee cybersecurity strategy, Azure and Microsoft security, vulnerability management, incident response, identity and access management, compliance, and third-party security services. The ideal candidate is a hands-on cybersecurity leader who can balance strategic program development with technical execution while developing a growing team.</p><p><br></p><p><strong>Key Responsibilities</strong></p><ul><li>Develop and execute a multi-year cybersecurity strategy, roadmap, and program maturity plan aligned with organizational risk and business priorities.</li><li>Lead security operations across cloud, identity, endpoint, email, data protection, vulnerability management, and network security.</li><li>Strengthen security across Microsoft Azure and the broader Microsoft security ecosystem, including identity, endpoint, SIEM, device management, and data protection capabilities.</li><li>Own vulnerability management processes, including identification, prioritization, remediation tracking, reporting, and continuous improvement.</li><li>Develop and mature incident response processes, coordinate investigations, lead root-cause analysis, and oversee remediation activities.</li><li>Establish and maintain security policies, standards, controls, risk assessments, and compliance documentation.</li><li>Lead security governance and compliance initiatives within a HIPAA-regulated environment, including audit readiness and control effectiveness.</li><li>Partner with IT and business stakeholders to embed security into system design, infrastructure standards, change management, and emerging technology initiatives.</li><li>Manage security vendors, managed service providers, external assessments, penetration testing, and continuous monitoring relationships.</li><li>Lead, mentor, and develop technical team members while establishing security KPIs, reporting, training, and awareness programs.</li></ul><p><strong>Additional Details</strong></p><ul><li>Work model: On-site for the first 90 days, transitioning to a hybrid schedule with up to two remote days per week</li><li>Leadership responsibility for systems and infrastructure professionals</li><li>Approximately 60% hands-on technical work, 20% team leadership, and 20% vendor/service-provider management</li><li>Opportunity to significantly influence cybersecurity strategy, tooling, processes, and long-term program maturity</li><li>Current initiatives include privileged access management, incident response maturity, vulnerability management, email security, AI governance, and expanded use of enterprise security capabilities</li></ul>