Day Translations is a global translation and interpreting company. We help improve worldwide communication through accurate, localized translations, interpretation, and outsourcing services, and a wide variety of tailored language solutions for individuals, organizations, and businesses of all sizes. Location: Remote job (worldwide) Schedule: To be determined. We are seeking a Cybersecurity Manager to lead and personally implement our company-wide security program. We are looking for someone highly hands-on technically, proactive, and capable of thinking like an attacker to identify weaknesses before they become incidents. As Cybersecurity Manager, you will take full ownership of protecting our employees, systems, endpoints, client information, and cloud infrastructure. The ideal candidate has deep practical experience with Microsoft 365 security, endpoint protection, identity management, phishing prevention, and incident response. Responsibilities: Manage and strengthen Microsoft 365 and Outlook email security, including Microsoft Defender for Office 365, Safe Links, Safe Attachments, and anti-phishing and impersonation protection Implement and manage company-wide endpoint protection using enterprise EDR/XDR solutions such as Microsoft Defender for Endpoint, CrowdStrike Falcon, or SentinelOne Manage employee devices through Microsoft Intune or an equivalent MDM platform, enforcing security updates, encryption, screen locking, and application controls Configure and manage Microsoft Defender Attack Surface Reduction (ASR) rules to protect against malicious scripts, macros, credential theft, and ransomware Manage Microsoft Entra ID, Conditional Access, and company-wide MFA, including phishing-resistant authentication methods such as FIDO2 and passkeys Implement and maintain a company-approved password manager and enforce strong credential policies, including privileged account protection and session revocation during offboarding Deploy and manage web and DNS filtering solutions (such as Cloudflare Gateway, Cisco Umbrella, or Zscaler) to block malicious domains across all employee channels Implement and manage Data Loss Prevention controls using Microsoft Purview or equivalent, protecting client, employee, and company data from unauthorized transfer or exfiltration Maintain proper configuration and enforcement of SPF, DKIM, and DMARC to prevent domain spoofing and progress toward full DMARC enforcement Build and manage an ongoing employee security awareness program, including phishing simulations, awareness training, and a clear phishing-reporting process Develop and maintain a cybersecurity incident response procedure covering phishing, compromised accounts, malware, ransomware, data theft, and lost devices Implement centralized security monitoring and alerting across company systems, covering login anomalies, endpoint threats, data exfiltration, and policy violations Conduct regular vulnerability scanning, prioritize findings by business risk, coordinate remediation, and manage periodic penetration testing Support compliance with security standards and client requirements including ISO 27001, SOC 2, and HIPAA Conduct an initial full audit of the cybersecurity environment, identify gaps, and deliver a phased security rollout plan with implementation priorities and costs Requirements: Proven hands-on experience implementing and managing Microsoft 365 security, including Microsoft Defender for Office 365, Microsoft Defender for Endpoint, Microsoft Intune, and Microsoft Entra ID Practical experience with EDR/XDR platforms (CrowdStrike, SentinelOne, or equivalent) Experience preventing phishing attacks and Business Email Compromise (BEC) Experience with identity and access management, MFA, Conditional Access, and Zero Trust principles Experience with Data Loss Prevention, DNS/web filtering, and SIEM/security monitoring Experience developing and executing incident response procedures Strong verbal and written communication skills in English, including the ability to communicate cybersecurity risks clearly to non-technical stakeholders and train employees Ability to work independently, take full ownership of problems through resolution, and prioritize issues according to actual business risk Experience with CrowdStrike, SentinelOne, Abnormal Security, Cloudflare Gateway, Cisco Umbrella, Zscaler, or similar platforms is a strong advantage Relevant certifications (such as CISSP, CEH, Microsoft Security certifications, or equivalent) are a plus Important: This position requires your full professional commitment during scheduled working hours. Job stacking and conflicting concurrent employment are not permitted. We monitor productivity and work activity, and any undisclosed conflicting employment may result in termination. To be considered for this position, you'll need to: Submit your application. Complete the Emotional Intelligence and Wonderlic assessment after submitting your application. Both steps are required to move forward in the evaluation process. Please note: Candidates may be asked to complete a background check before hiring. Please note that all application questions are mandatory. If any question is left incomplete or does not have a full answer, the application may be disqualified, or we may reach out to you for clarification.
Lead Product Manager, Security
Wikimedia Foundation
Senior Engineering Manager, Security & IT
Fingerprint
Security Program Manager
Oneleet
Engineering Manager, Language Security (TuxCare)
Cloudlinux
Engineering Manager - Ubuntu Security
Canonical
Engineering Manager - Security Standards and Hardening
Canonical