Lead, IT Cybersecurity Controls
Amylyx PharmaceuticalsAbout the role
Amylyx was started in 2013 by two Brown University students who had an ambitious goal: to improve the lives of people with neurodegenerative diseases by addressing the root cause. Their research and close collaboration with the ALS community ultimately resulted in our first commercial product, which is now approved in the U.S. and conditionally approved in Canada.
At Amylyx, we’re bringing together talented people like you who are guided by our values to be Audacious, Curious, Authentic, Engaging and Accountable in the fight against neurodegenerative diseases like, ALS, Alzheimer’s disease, Wolfram Syndrome and others.
Rediscover your purpose and reimagine your career at a company whose founders, mission, and culture are unlike any other in life sciences—in all the best ways.
Recent milestones include:
- The U.S. Food and Drug Administration (FDA) approved RELYVRIO™ in September of 2022
- Health Canada approved ALBRIOZA™ with conditions in Canada in June of 2022
- AMX0035 is currently under review with the European Medicines Agency
- 350 employees globally, with headquarters in Cambridge, MA, US and Amsterdam, the Netherlands -- and growing strong!
Amylyx is seeking a Lead, IT Cybersecurity Controls who will manage & monitor security controls. In this role, you will be responsible for maintaining & enhancing our security posture through systems monitoring and auditing, then driving solutions to your findings. Identify control deficiencies, assess exposure and significance, propose recommendations, and prepare internal audit reports reflecting the results of the work performed. Great opportunity for a technologist interested in moving to cybersecurity.
RESPONSIBILITES
- Gather and analyze all alerts, notifications, logs, and other telemetry across multiple systems.
- Security Operations Center Leadership - Manage, control & direct SOC vendor, Drive scope and functionality of the SOC.
- Identify risks and controls of the IT department and audit IT systems to minimize risks.
- Create & execute monthly, quarterly, and annual security reviews.
- Perform and document audit findings, identify opportunities for improvement, and provide recommendations.
- Prioritize and assist in scheduling system reviews to be performed, and interact with appropriate systems administrators to obtain the necessary information.
- Build relationships throughout the organization to ensure communication and delivery of value-added services.
- Conduct and/or provide assistance in security incident investigations.
- Partner with IT colleagues & business leaders to build and modernize IT security tools, processes & services.
- Provide technical expertise, leadership, and direction around IT security topics.
- Develop and maintain Data Protection Policies, Standard Operating Procedures, and Work Instructions.
- Keep up to date on changes to the cyber threat landscape to maintain and update relevant policies, controls, standards, and processes as appropriate.
- Maintain understanding of security technologies including Anti-Malware, EDR, Web Security, SIEM, IPS/IDS, Firewalls, and Threat Intelligence.
- Lead IT security incident response, performing triage & determining if security incidents require escalation and/or further response.
- Implement best practices through the use of relevant security frameworks, such as ISO 27001, NIST, SANS Critical 20, COBIT, etc.
- Implement policies, procedures, systems, controls, and tools necessary for compliance with CCPA, PIPEDA, GDPR, Sarbanes-Oxley, etc.
- Hands on security software administration.
REQUIREMENTS
- BS degree in Computer Science, Engineering, or a related technical field.
- Minimum of 8 years of experience in IT with at least 2 years of experience in life sciences or supporting an organization that conducts clinical research studies.
- Experience working in a hands-on technology role.
- Demonstrated interest in information security.
- Knowledge of basic audit standards and processes
- Cybersecurity certification; e.g. CISA, CISSP, etc. is a bonus
- Excellent written, verbal, and interpersonal communication skills, and strong negotiation, and organizational skills; Must be able to work independently.
- Able and willing to work on site at our offices in Cambridge, MA regularly.
To stay connected with us, follow Amylyx Pharmaceuticals on LinkedIn.
To return to our website please click here.
Amylyx is proud to be an Equal Employment Opportunity employer.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s