
Jobs filters
CYBERSECURITY MANAGER - 2026-6487
Elk River, MNPosition summary
The Cybersecurity Manager leads and executes the enterprise cybersecurity program across a growing manufacturing organization. Reporting to the CIO, this role is a hands-on player-coach responsible for both executing and leading cybersecurity operations, risk management, incident response, security architecture, and team leadership.
The Cybersecurity Manager will own and drive execution of the cybersecurity maturity roadmap, primarily aligned to the NIST Cybersecurity Framework, while also ensuring alignment with CMMC, ITAR, customer security requirements, and cyber insurance expectations.
This role will expand cybersecurity practices from traditional IT environments into Operational Technology (OT) and manufacturing environments while remaining actively involved in day-to-day cybersecurity activities.
Responsibilities
Essential Job Functions
Cybersecurity Program, Governance & Risk
- Own and execute the enterprise cybersecurity maturity roadmap, including prioritizing and leading security improvement initiatives from planning through implementation.
- Maintain the cybersecurity risk register, remediation plans, risk acceptance, and leadership reporting.
- Develop and maintain cybersecurity policies, standards, and procedures.
- Ensure alignment with NIST, CMMC, ITAR, customer security, cyber insurance, and other applicable requirements.
- Develop and report cybersecurity KPIs and KRIs.
- Partner with business and technology leaders to identify and reduce cybersecurity risk.
Security Operations & Incident Response
- Provide hands-on technical leadership and directly participate in security monitoring, vulnerability management, endpoint security, identity and access management, email security, logging, and network security.
- Serve as the primary cybersecurity incident lead, coordinating investigation, containment, remediation, recovery, post-incident review, and internal and external response resources.
- Participate in after-hours response and escalation when significant incidents occur.
- Continuously evaluate security controls, tools, vulnerabilities, and emerging threats.
Security Architecture & OT Cybersecurity
- Review new systems, applications, infrastructure, cloud services, integrations, and technology projects and establish practical cybersecurity requirements.
- Partner with infrastructure, applications, and business teams to incorporate security into solution design.
- Develop and mature cybersecurity practices for manufacturing and Operational Technology environments, including risk assessment, segmentation, access, monitoring, and incident response.
Third-Party & Partner Management
- Serve as the primary relationship manager for MDR/MSSP providers, security integrators, testing firms, and other cybersecurity partners.
- Manage vendor performance, escalations, service effectiveness, and improvement opportunities.
- Evaluate cybersecurity products and services and recommend cost-effective solutions.
Team Leadership & Cybersecurity Culture
- Lead, coach, and develop cybersecurity team members, including the IT Security Operations Engineer and Cybersecurity Risk Analyst.
- Establish priorities across security operations, risk, governance, resilience, and awareness.
- Remain actively involved in technical cybersecurity execution while building the capabilities of the cybersecurity team.
- Communicate cybersecurity risks and priorities effectively to technical and non-technical audiences.
#LIJW1
Qualifications
Minimum Requirements, Education & Experience (incl. KSA’s and certifications)
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field, or an equivalent combination of education and relevant experience.
- 5+ years of cybersecurity, information security, security engineering, or security operations experience.
- 2+ years of leadership, team lead, project leadership, or people management experience.
- Demonstrated experience leading cybersecurity improvement projects from planning through implementation.
- Strong hands-on experience with cybersecurity technologies and practices, including endpoint security, vulnerability management, incident response, identity and access management, network security, logging, and security monitoring.
- Experience leading cybersecurity incident response.
- Experience identifying, assessing, and remediating cybersecurity risk.
- Working knowledge of the NIST Cybersecurity Framework.
- Strong communication, problem-solving, organization, and prioritization skills.
- Ability to respond to significant cybersecurity incidents outside normal business hours.
- Ability to travel periodically between company locations.
Desirable Criteria & Qualifications
- CISSP, CISM, or similar advanced cybersecurity certification preferred.
- Security+, GIAC, or other relevant technical certifications valued.
- Experience in manufacturing, medical device, regulated, or multi-site environments.
- Experience with OT or manufacturing cybersecurity.
- Experience with CMMC, ITAR, customer security requirements, or cyber insurance.
- Experience managing MDR/MSSP providers and other cybersecurity partners.
- Experience with business continuity, disaster recovery, tabletop exercises, and recovery testing.
- Experience reviewing new technology and architecture from a cybersecurity perspective.
