Cybersecurity Manager
SkyGrid5 months ago
Austin, TX, United States
On-site
Full-time
Junior Level (1-3 years)
Job Description
Position Overview
SkyGrid, a Boeing Company, exists to open the sky for autonomous flight. Based in Austin, Texas, SkyGrid builds ground-based, high-assurance third-party services to enable the safe operations and airspace integration of highly automated and autonomous aircraft. The team is seeking an experienced Cybersecurity Manager with a background in the aviation industry to implement and sustain cybersecurity processes and policies throughout the product lifecycle, from design to support.
Key Responsibilities
- Build and scale a security program from the ground up in a startup environment.
- Lead SkyGrid through ISO 27001 and SOC 2 Type II certification efforts.
- Implement and maintain security controls aligned with DO-326A, aviation cybersecurity frameworks, and industry best practices.
- Support Entry Into Service (EIS) readiness, documentation, and compliance alignment.
- Strengthen the organization's security posture through strategic planning and hands-on execution.
- Deliver a clear security roadmap covering risk management, incident response, and continuous improvement.
- Develop and maintain company-wide security policies, standards, and procedures.
- Build and manage core security operations including incident response, IAM, vulnerability management, secure SDLC, and vendor/security risk management.
- Partner with Engineering, Product, and IT teams to embed security into daily operations and throughout the development lifecycle.
- Manage external audits, customer security reviews, and regulatory/security requirements.
- Select, deploy, and operate security tools for SaaS and cloud-native environments.
- Communicate risk, posture, and key metrics to executive leadership.
Required Qualifications
- B.S. degree in Computer Science, Engineering, IT, Cybersecurity, or a related field.
- 10+ years of cybersecurity experience, including leadership or management roles.
- Experience building a security program in a startup or high-growth company.
- Strong background in SaaS security, cloud platforms, and DevSecOps practices.
- Proven success leading ISO 27001 and SOC 2 Type II certification efforts.
- Familiarity with DO-326A and aviation cybersecurity frameworks.
- Experience applying NIST CSF/800-53, 800-171, OWASP, CIS Controls, or similar security frameworks.
- Ability to support cybersecurity deliverables for EIS processes.
- Hands-on expertise with IAM, incident response, vulnerability management, and secure SDLC.
- Strong communication and cross-functional collaboration skills.
Preferred Qualifications
- Master's degree in a relevant field.
- Professional certifications such as CISSP, CISM, CCSP, or ISO Lead Implementer/Auditor.
- Experience in commercial/government SaaS, aviation, aerospace, mobility, or other regulated industries.
- Background managing enterprise customer security assessments and RFPs.
Benefits & Perks
- Comprehensive Health Coverage from Day One: Immediate access to medical, dental, and vision insurance, including HSA and FSA options.
- Generous Retirement Contributions: Enjoy an automatic company 401k contribution program along with an extra company matching program to boost your retirement savings.
- Calm Annual Membership: Complimentary access to mindfulness and meditation resources to prioritize your mental health.
- Discounted ClassPass Membership: Access thousands of fitness studios and gyms nationwide to stay active and healthy.
- Investment in Your Growth: Annual stipend for learning and development to support continuous education and skill development.
- Engaging Team Activities: Quarterly team-building events and celebrations organized by our dedicated culture committee.
- Fully Stocked Kitchen: Enjoy a variety of snacks and beverages to keep you fueled throughout the day.
Required Skills
Cybersecurity Program Management
Risk Management
DevSecOps
Aviation Cybersecurity
ISO 27001
IAM
Security Policies & Procedures
NIST CSF/800-53
DO-326A Compliance
Incident Response
Cloud Security
Vulnerability Management
SOC 2 Type II
OWASP
Secure SDLC
Vendor Risk Management