Sr. Manager, Cybersecurity and Compliance
- Full-time
- Work Type: Full time
- Job Location: On-Site Waltham
Job Description
We are seeking a Senior Manager, Cybersecurity & Compliance to lead the design, implementation, and ongoing management of the company’s cybersecurity, risk management, and compliance programs. This role will safeguard global IT infrastructure, cloud platforms, and SaaS systems while ensuring alignment with regulatory and industry standards across the U.S. and Europe.
This leader will partner cross-functionally with IT, Quality, Legal, Privacy, and business stakeholders to strengthen security posture, manage enterprise risk, and ensure audit readiness. The role will also play a key part in supporting global system integration efforts with the company’s parent organization in Japan.
Key Responsibilities
- Lead cybersecurity strategy, governance, and enterprise security programs across infrastructure, cloud, and SaaS environments
- Ensure compliance with key regulatory and industry standards (SOX, FDA, GxP, HIPAA, GDPR, NIST, ISO 27001) and support internal/external audits
- Oversee enterprise risk management, incident response planning, vulnerability management, and security operations in partnership with infrastructure teams
- Manage third-party and SaaS vendor security assessments and ongoing monitoring
- Develop and maintain business continuity and disaster recovery (BC/DR) programs
- Drive security awareness, reporting, and continuous improvement of cybersecurity maturity across the organization
Qualifications
Qualifications
- Bachelor’s degree in computer science, Information Technology, or related field
- 8+ years of IT and cybersecurity experience, including 5+ years in life sciences or regulated healthcare environments with international scope
- Experience supporting security frameworks such as NIST CSF, ISO 27001, SOX, GDPR, and HIPAA
- Strong background in security operations, MDR/SOC environments, identity and access management, and cloud security
- Experience with SaaS vendor security assessments and third-party risk management
- Relevant certifications such as CISSP, CISM, CISA, or CCSP preferred
Preferred
- Knowledge of FDA, GxP, and other regulatory requirements applicable to pharmaceutical organizations.
Additional Information
Deciphera is committed to fair and equitable compensation practices. The base salary pay range for this role is $148,000 - $204,000. Actual compensation packages will depend on various factors, including, but not limited to depth of experience, education, skillset, overall performance and/or location.
Deciphera believes in providing a competitive compensation and benefits package to all employees. Our base salary is just one component of Deciphera’s competitive total rewards strategy that also includes annual performance bonus, a long-term incentive plan, full range of benefits and other incentive compensation plans (if applicable)
Benefits:
- Competitive salary and annual bonus.
- Comprehensive benefits package including medical, dental, vision insurance, 401(k) retirement plan with company match, and more.
- Generous parental leave and family planning benefits.
- Outstanding culture and opportunities for personal and professional growth.
EQUAL EMPLOYMENT OPPORTUNITY INFORMATION
Deciphera is committed to equal employment opportunity and values diversity. To ensure that we comply with reporting requirements, we invite you complete the confidential survey at the end of this application. Providing this information is optional. It will not be accessible or used in the hiring process, and has no effect on your opportunity for employment. This information will also be treated confidentially. We are committed to make all hiring decisions and other employment decisions on a non-discriminatory basis.