Remote opportunity at
Axsome Therapeutics, Inc.Associate Director/Director, Information Security
Axsome Therapeutics is a biopharmaceutical enterprise focusing on central nervous system conditions, creating treatments for major depressive disorder, narcolepsy, migraine, and other neurological and psychiatric disorders.…
Career Tools
About This Role
Axsome Therapeutics is a biopharmaceutical enterprise focusing on central nervous system conditions, creating treatments for major depressive disorder, narcolepsy, migraine, and other neurological and psychiatric disorders. The company is currently hiring an Associate Director or Director of Information Security to oversee threat management, incident response, and vulnerability management. This position functions as a hands-on technical leader who manages both internal cybersecurity staff and external service providers while staying actively involved…
Job Description
Axsome Therapeutics is a biopharmaceutical enterprise focusing on central nervous system conditions, creating treatments for major depressive disorder, narcolepsy, migraine, and other neurological and psychiatric disorders. The company is currently hiring an Associate Director or Director of Information Security to oversee threat management, incident response, and vulnerability management. This position functions as a hands-on technical leader who manages both internal cybersecurity staff and external service providers while staying actively involved in day-to-day security engineering.
The person in this role will advance corporate security protocols established by the Head of Information Security, report to the Senior Director of Information Security, and work from the company headquarters in New York City with a mandatory three-day on-site schedule on Mondays, Tuesdays, and Thursdays. Candidates must be available for non-standard hours when high-priority incidents occur, as weekend and evening monitoring is required. This opportunity suits an experienced cybersecurity professional who enjoys balancing high-level program governance with direct technical execution.
Responsibilities include leading security operations, managing managed security service providers, driving vulnerability remediation, and conducting forensic investigations during security events. The individual will also oversee identity access controls, cloud security governance across Microsoft 365, Azure, and AWS environments, and generate security metrics reports for executive leadership.
Responsibilities
- Manage security monitoring and detection tools including SIEM and IDS/IPS while personally triaging high-severity alerts
- Lead incident response and forensic investigations for significant security events and conduct tabletop exercises
- Run the vulnerability management program by executing scans, applying risk-based prioritization, and enforcing patching SLAs
- Oversee cybersecurity vendor and managed service provider relationships, service levels, and third-party risk assessments
- Supervise identity governance, privileged access management, multifactor authentication, and conditional access policies
- Support cloud security hardening and governance across Microsoft 365, Azure, and AWS environments
- Develop cybersecurity key performance indicators, risk indicators, and executive dashboards for leadership review
Requirements
- Bachelor's degree in computer science, information security, or a related discipline
- Eight to ten years of progressive information security experience
- At least three years of experience leading security operations, incident response, or security engineering functions
- Hands-on proficiency with SIEM platforms, endpoint detection and response, email security, and vulnerability management tools
- Experience operating as an incident commander handling investigation, containment, and forensics
- Background managing managed service providers and third-party risk programs
- Working knowledge of NIST CSF, CIS Controls, and ISO 27001 security standards
- Availability to support non-standard hours including evening and weekend monitoring for high-priority incidents
- Ability to work on-site at the New York City headquarters on Mondays, Tuesdays, and Thursdays
Qualifications
- Proficiency in scripting and automation languages such as PowerShell and Python
- Direct experience with CrowdStrike Falcon, NextGEN SIEM, Microsoft Defender, and KnowBe4
- Professional certifications such as CISSP, CISM, CISA, or GIAC credentials including GCIH, GCIA, or GCFA
- Experience contributing to a formal information security management system like ISO 27001
Core Skills
Benefits
- Annual bonus
- Significant equity
- Generous benefits package
Frequently Asked Questions
What is the location and remote work policy for this job?
This role is based at the company headquarters in New York City with a mandatory on-site requirement of three days per week on Mondays, Tuesdays, and Thursdays. Fully remote candidates cannot be considered.
What is the expected salary range?
The anticipated salary range is between $170,000 and $220,000, determined by factors such as qualifications, experience, internal equity, and location.
Who does this position report to?
The Associate Director or Director of Information Security reports directly to the Senior Director of Information Security.
Are non-standard working hours required?
Yes, the role requires maintaining the security posture during non-standard hours, including active evening and weekend monitoring and rapid response to high-priority security incidents.
Sample Interview Questions
AI-generated questions tailored to this specific role — a preview of the full practice set.