
IT and Security Manager
Posted Jul 21

Posted Jul 21
This is a fully remote position, open to applicants in Florida, +2 more states.
• Direct IT security operations, encompassing identity and access management, endpoint security, vulnerability management, incident response, data protection, and security compliance efforts.
• Formulate, execute, and uphold information security policies, standards, procedures, system security documentation, and associated compliance artifacts.
• Oversee Microsoft Entra ID, Conditional Access, Active Directory, multifactor authentication, and privileged access controls to implement least-privilege principles and secure authentication practices.
• Manage Microsoft Intune and endpoint management policies, which include device compliance, configuration baselines, application deployment, endpoint security measures, and secure device lifecycle management.
• Supervise Microsoft Defender, Microsoft Purview, email security measures, data loss prevention strategies, and related Microsoft 365 security technologies to safeguard users, endpoints, and sensitive data.
• Lead the enterprise vulnerability management process, which involves scan configuration, credentialed assessments, CVE analysis, risk-based prioritization, remediation coordination, validation, and reporting.
• Assist security compliance efforts that align with NIST SP 800-171, NIST SP 800-172, CMMC, organizational policies, and customer or regulatory mandates.
• Create reports, dashboards, and presentations for leadership regarding security posture, vulnerability status, compliance readiness, incident trends, and operational risks.
• A minimum of 8 years of progressive experience in information security, cybersecurity, IT operations, systems administration, endpoint management, or related technical roles.
• Proven experience in leading or managing IT security programs, security operations, compliance initiatives, or multidisciplinary technical projects.
• Practical experience with Microsoft Entra ID, Active Directory, Microsoft Intune, Microsoft Defender, Microsoft Purview, Conditional Access, and Microsoft 365 security administration.
• Strong familiarity with vulnerability management tools and processes, including scan management, CVE analysis, remediation tracking, and risk-based prioritization.
• Experience in supporting NIST SP 800-171, CMMC, or similar cybersecurity compliance frameworks in regulated or security-sensitive environments.
• Understanding of privileged access management, identity governance, multifactor authentication, endpoint protection, DLP, email security, incident response, and security monitoring practices.
• Proficient in developing clear documentation, policies, procedures, compliance evidence, technical guides, and executive-level security reporting.
• Excellent analytical, troubleshooting, communication, and stakeholder management abilities.
• Capability to manage competing priorities, coordinate remediation efforts across teams, and make informed risk-based decisions.
• Equal employment opportunity (EEO) to all employees and applicants
• Provides equal opportunity for VEVRAA Protected Veterans
Legacy Community Health
NeoGuardian
Fresh Consulting
CrowdStrike
Get handpicked remote jobs straight to your inbox weekly.