Current jobs related to Head of Cybersecurity Operations - Cambridge, Massachusetts - CarGurus LLC


  • Cambridge, Massachusetts, United States Agency Full time

    About AgencyAgency is a hyper-growth startup based in NYC, backed by Y Combinator and some of the most famous investors in the world. Our mission is to transform the future of cybersecurity.Job SummaryAs a B2B Customer Account representative at Agency, you will play a crucial role in bridging the gap between technology, our customers, and our internal...


  • Cambridge, Massachusetts, United States RISCPoint Advisory Group Full time

    About RISCPoint Advisory GroupRISCPoint Advisory Group is a rapidly growing and leading cybersecurity and compliance consultancy firm. We are a tight-knit team of experienced professionals that focus on integrating seamlessly with our clients to harmonize security and compliance obligations with business success.Job DescriptionWe are seeking a conceptual...


  • Cambridge, Massachusetts, United States Agency Full time

    About Agency:Agency is a hyper-growth startup based in NYC, backed by Y Combinator and prominent investors. Our mission is to revolutionize the future of cybersecurity.Job Summary:As a key member of our team, you will bridge the gap between technology, customers, and internal business operations. You will collaborate with multiple stakeholders to provide...


  • Cambridge, Massachusetts, United States Agency Full time

    About AgencyAgency is a hyper-growth startup based in NYC, backed by Y Combinator and some of the most renowned investors in the world. Our mission is to revolutionize the future of cybersecurity.Job SummaryAs a B2B Customer Account Representative at Agency, you will play a crucial role in bridging the gap between technology, our customers, and internal...


  • Cambridge, Massachusetts, United States Massachusetts Institute of Technology Full time

    Job Title: Information Security AnalystMassachusetts Institute of Technology (MIT) is seeking a highly skilled Information Security Analyst to join its Information Systems & Technology (IS&T) team. The successful candidate will play a critical role in improving the security posture of the Institute through network monitoring, incident response, vulnerability...


  • Cambridge, Massachusetts, United States Birth Control Pharmacist | a division of EmpoweRx Inc Full time

    About the RoleBirth Control Pharmacist, a division of EmpoweRx Inc, is seeking a highly skilled Cybersecurity Specialist to join our team. As a key member of our small and agile team, you will play a crucial role in shaping the company's security procedures and organization. Your expertise in developing and implementing security policies and procedures will...

  • Cybersecurity Leader

    2 weeks ago


    Cambridge, Massachusetts, United States BioSpace, Inc. Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Leader to join our team as a Principal Incident Response Analyst. As a key member of our Incident Response team, you will serve as a technical subject matter expert and leader, operating from Cambridge or Seattle.Your primary responsibility will be to lead as an incident commander, orchestrating the...


  • Cambridge, Massachusetts, United States Massachusetts Institute of Technology Full time

    Job Summary:We are seeking a highly skilled Cybersecurity Specialist to join our team at the Massachusetts Institute of Technology. The successful candidate will work under the guidance of the director to support the implementation of security and risk management programs across the school.Key Responsibilities:Providing consulting and assistance for data use...


  • Cambridge, Massachusetts, United States Moderna Full time

    About the Role:This is an exciting opportunity to join Moderna as a Principal Incident Response Analyst, serving as a technical subject matter expert and leader in our Incident Response team. As an incident commander, you will orchestrate the response to complex security threats and enhance our incident management framework.Key Responsibilities:Lead as an...


  • Cambridge, Massachusetts, United States Takeda Pharmaceutical Company Ltd Full time

    Job DescriptionTakeda Pharmaceutical Company Ltd is seeking a highly skilled Head of Operational Excellence to join its Data, Digital & Technology (DD&T) organization. This role is part of the Commercial Innovation & External Experience area, focusing on developing and executing next-generation digital strategies to enhance experiences for patients,...


  • Cambridge, Massachusetts, United States Novartis Group Companies Full time

    Job Title: Head, Business ExcellenceAs a key member of the Scientific Operations team, the Head, Business Excellence will be responsible for leading the business operations function. This includes overseeing the execution of purchase order management, vendor onboarding, and third-party risk management.Key Responsibilities:Lead a team of 4 direct reports with...


  • Cambridge, Massachusetts, United States GlaxoSmithKline Full time

    Job Title: Head of Facilities and EngineeringWe are seeking an experienced professional to lead our facilities and engineering operations at our New England R&D Hub. As Head of Facilities and Engineering, you will be responsible for providing strategic leadership and ensuring the delivery of high-quality services and infrastructure across our R&D site...


  • Cambridge, Massachusetts, United States Buckingham Browne & Nichols School Full time

    Job SummaryThe Buckingham Browne & Nichols School seeks an experienced and skilled Interim Head of Human Resources to ensure a smooth transition between the outgoing and incoming Director of Human Resources. The ideal candidate will have a deep understanding of human resources operations, compensation, and benefits administration, as well as faculty and...


  • Cambridge, Massachusetts, United States Takeda Full time

    About the RoleWe are seeking a highly experienced and skilled professional to lead our Analytical Development team as the Head of Analytical Development. This is a critical role that requires a strong background in pharmaceutical sciences, quality assurance, and regulatory compliance.Key ResponsibilitiesLead and develop a global team of managers and...


  • Cambridge, Massachusetts, United States Novartis Group Companies Full time

    Job Title: Therapeutic Area Head PKSJob Summary: We are seeking a highly experienced and skilled Therapeutic Area Head to lead our PK Sciences team in the Global Health Disease Area. The successful candidate will be responsible for delivering the PK science strategy and scientific excellence for the Global Health Disease Areas, Franchise, and the associated...


  • Cambridge, Massachusetts, United States Takeda Full time

    Job SummaryWe are seeking a highly experienced and skilled professional to lead our Analytical Controls team as Head of Analytical Controls. This role will be responsible for overseeing the global CMC program, managing a team of managers and scientists, and ensuring compliance with regulatory requirements.Key ResponsibilitiesLead and develop a global team of...


  • Cambridge, Massachusetts, United States Department Of Transportation Full time

    Job SummaryWe are seeking a highly experienced and skilled Director of Information Technology to lead our IT and Cybersecurity programs. The successful candidate will provide strategic direction and oversight to ensure the effective management of our IT infrastructure, cybersecurity, and information management programs.Key ResponsibilitiesProvide leadership...


  • Cambridge, Massachusetts, United States GlaxoSmithKline Full time

    Job SummaryWe are seeking a highly experienced and skilled Head of Facilities and Engineering to lead our facility operations at our New England R&D Hub. The successful candidate will be responsible for providing strategic leadership for facility operations, managing engineering, facilities, and contractor management in the region, and ensuring effective...


  • Cambridge, Massachusetts, United States City of Cambridge, MA Full time

    About the Role:The Division Head for Homelessness and Housing Services will lead the city's efforts to address homelessness and housing instability. This role will oversee the development and implementation of strategies to prevent eviction and provide effective oversight of programmatic efforts to support residents who are unhoused or unstably housed.Key...


  • Cambridge, Massachusetts, United States BioSpace, Inc. Full time

    About the RoleThe Head of Data Sourcing and Acquisition is a strategic position responsible for enabling and delivering enterprise-level data sourcing, procurement governance, and data marketplace services at Takeda. This role requires a global perspective and the ability to shape decision-making across the entire data value chain, driving direct business...

Head of Cybersecurity Operations

2 months ago


Cambridge, Massachusetts, United States CarGurus LLC Full time

About Us

At CarGurus (NASDAQ: CARG), we are dedicated to empowering individuals to reach their goals. Our journey began with a small group of developers committed to bringing trust and transparency to the automotive marketplace. Over the years, our innovative approach and rapid market entry have resulted in remarkable growth, making us the largest and fastest-growing automotive platform, consistently profitable for over 15 years.

Our Mission

The automotive landscape is transforming, and so are we. We are transitioning the entire car buying experience online, assisting our customers at every stage—from selling their old vehicles to financing, purchasing, and delivering new ones. Each month, millions of consumers engage with our platform, supported by approximately 30,000 dealerships. Our employees thrive in a culture that prioritizes people, fostering collaboration, kindness, and innovation, while providing the necessary tools for career advancement. To disrupt a trillion-dollar industry, we need diverse and fresh perspectives. Join us on this exciting journey.

Position Overview

We are in search of a strategic and experienced cybersecurity executive with a background in publicly traded SaaS companies to take on the role of Director of Information Security. This position entails the responsibility of maintaining and enhancing our information security framework, ensuring the adoption of best practices, policies, procedures, and technologies to safeguard against evolving cyber threats. The individual will align the defined information security initiatives with the overarching strategic goals of the organization while ensuring the team remains informed and focused on these shared objectives.

As a key leader, collaboration with business stakeholders such as Legal, IT, Enterprise Applications, Product, and Engineering is essential to ensure compliance with relevant regulations and industry standards, while upholding the confidentiality, integrity, and availability (CIA) of our systems and data. CarGurus values teamwork and collaborative efforts.

A security-first mindset is crucial, as you will help cultivate a culture of privacy and security throughout the organization by educating employees on standards and best practices in accessible terms. Comfort in the spotlight is necessary; this role is not for those who prefer to remain in the background.

Quick assessment of the dynamic security landscape is vital, enabling practical decision-making regarding potential risks and threats to the business. CarGurus operates at a rapid pace, requiring the ability to think swiftly, especially during security incidents, and escalate issues to senior management when necessary.

This role reports directly to the VP of Information Security, Technology, and Enterprise Applications, overseeing Security Operations, Application Security, and IT Risk and Compliance.

Key Responsibilities:

  • Lead, mentor, and develop a high-performing security team.
  • Conduct annual performance reviews and create personal development and onboarding plans.
  • Establish strong, collaborative relationships with peers and key partners across the organization.
  • Oversee technical regulatory and compliance requirements.
  • Embed security awareness into the company culture, engaging with the community and driving awareness through training and presentations.
  • Manage vendor relationships effectively.
  • Oversee the security budget and collaborate with the VP on annual budget planning.
  • Develop long-term strategic plans for Information Security, aligning them with business objectives, risk tolerance, and regulatory requirements.
  • Supervise security controls and enhance the organization's information security maturity.
  • Ensure compliance with information security policies, standards, and guidelines to mitigate risks and maintain adherence to industry regulations.
  • Collaborate with IT Risk and Compliance to identify, assess, and prioritize information security risks.
  • Report security metrics, risks, and mitigation strategies to leadership and relevant stakeholders.

Technical Qualifications:

  • Bachelor's Degree or equivalent experience in Information Security or Computer Science.
  • Previous experience at a Director level is essential; this is not an entry-level position.
  • Industry certifications such as GIAC (GSLC, GSTRT, GLEG), CISM, CISA, or CRISC are advantageous, but not mandatory.
  • Comprehensive understanding of cybersecurity and privacy principles, standards, and risk frameworks (e.g., NIST Cybersecurity Framework, CIS Controls, PCI-DSS, GDPR, CPRA).
  • Experience with system audits and IT reporting for SOX and SOC compliance is required.
  • Collaborate closely with the Director of IT and Enterprise Applications on large-scale projects and cross-functional initiatives.
  • Familiarity with cloud and application security, including GCP, AWS, or Azure.
  • Solid understanding of RBAC models, SSO solutions, identity stores, and directory services.
  • Ability to provide constructive feedback on technical solutions while allowing flexibility for technical decision-making.
  • Proven experience in authoring and maintaining security policies, standards, and procedures.

Non-technical Qualifications:

  • Ability to prioritize projects and tasks pragmatically, understanding their critical impacts on the business.
  • Collaborate with leadership to develop quarterly roadmaps and present them to key partners.
  • Strong organizational skills are essential.
  • Excellent communication and interpersonal skills, capable of conveying complex technical concepts to diverse audiences.
  • Strong writing skills are necessary for preparing detailed reports for leadership.
  • Adaptability to the evolving security needs of a dynamic organization is crucial.
  • A passion for continuous learning and staying current on emerging cybersecurity trends is essential.
  • Willingness to take calculated risks and innovate in a fast-paced environment.
  • Integrity, ownership, and accountability are fundamental values.

Working at CarGurus

We recognize and reward our employees' curiosity and passion with competitive benefits and compensation, including equity for all team members. Our career development programs and community engagement initiatives foster connections while making a meaningful impact. A flexible hybrid work model and generous time-off policies promote work-life balance and individual well-being. Additional perks, such as complimentary daily lunch, discounts on new vehicles, and wellness resources, support our employees in prioritizing what matters most in their personal and professional lives.

Our Commitment to Inclusion

CarGurus is dedicated to creating an environment where individuals can express their true selves and reach their full potential. We are committed to an inclusive hiring process that does not discriminate based on race, color, religion, national origin, age, sex, marital status, ancestry, disability, veteran status, gender identity, or sexual orientation. We encourage applicants to share their unique skills and experiences, and we welcome discussions about accommodations needed during the hiring process.