Senior Manager, Cyber Security Operations
Listed on 2026-06-04
-
IT/Tech
Cybersecurity, Security Manager
Ardelyx is a commercial‑stage biopharmaceutical company focused on redefining treatment approaches for patients with significant unmet medical needs. By combining scientific innovation with a collaborative, purpose‑driven culture, we strive to create meaningful impact for patients. We foster an inclusive environment where employees are respected, supported, and empowered to make an impact – both within our company and in the lives of patients we serve.
This is a hybrid role (2‑3 days in office) at our Waltham, MA headquarters.
The Senior Manager, Cyber Security Operations is a hands‑on leader responsible for building, operating, and continuously improving Ardelyx's security operations capabilities. This role combines technical execution with leadership, requiring a "player‑coach" who can both lead the function and actively engage in day‑to‑day security operations – not a purely strategic role. This is a greenfield opportunity. As Ardelyx transitions from a managed service provider model to an internally operated IT and security organization, this individual will help build the security operations function from the ground up.
The right candidate thrives in build environments, is energized by consolidating a fragmented security stack onto a modern Microsoft‑centric platform, and can operate effectively both as an individual contributor and as a team leader. This role provides operational direction for security operations while ensuring the confidentiality, integrity, and availability of corporate systems, data, and cloud environments. The ideal candidate brings deep technical expertise, operational discipline, and practical leadership, with the ability to communicate effectively with executives, auditors, engineers, and cross‑functional teams.
- Lead and actively participate in security incident detection, investigation, and response across endpoint, identity, cloud, and SaaS environments including hands‑on alert triage, log analysis, and threat intelligence review.
- Lead incident response coordination with Legal, HR, Compliance, and Communications; own post‑incident reviews and drive continuous improvement of response processes.
- Establish and track key operational metrics (MTTD, MTTR, incident trends) and continuously tune detection rules, playbooks, and SOAR automation to reduce noise and improve signal fidelity; own and mature the Microsoft security ecosystem - Defender XDR, Microsoft Sentinel (SIEM/SOAR), and Purview - driving integration, automation, and unified detection and response across the environment; design and optimize security controls across endpoint (EDR/XDR), identity (Entra , MFA, Conditional Access), Azure, AWS, and SaaS applications;
lead vulnerability management operations including scanning, prioritization, and remediation tracking. - Consume and operationalize threat intelligence, integrating indicators into Sentinel detection rules; develop SOAR playbooks via Logic Apps to reduce manual effort and accelerate response. Initially operate as a hands‑on individual contributor while building and mentoring a team of 2 security engineers over the next 3‑4 months; provide technical guidance and escalation support on complex issues.
- Ensure effective prioritization and coverage across security operations, fostering a culture of operational discipline, continuous learning, and security awareness.
- Execute against the cybersecurity roadmap in alignment with business objectives; identify control gaps and implement scalable, practical improvements aligned with the organization's risk tolerance.
- Partner with Legal, Compliance, and IT to support audits, risk assessments, and regulatory requirements including NIST CSF 2.0, ISO 27001, SOC 2, and HIPAA; contribute to security policy development and enforcement.
- Support third‑party risk management, vendor security evaluations, and security platform consolidation efforts to reduce complexity and operational cost.
- Bachelor’s degree in Information Security, Computer Science, or related field.
- 8+ years of progressive cybersecurity experience, with strong focus on security operations and engineering or…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).