
IT Infrastructure and Security Manager
Posted Aug 28

Posted Aug 28
This is a fully remote position, open to applicants in United States.
• Take charge of the daily security posture, identity management, and compliance readiness within a multi-site healthcare setting.
• Oversee identity and access management, including the processes for joiners, movers, and leavers, elimination of stale and orphaned accounts, and credential rotation.
• Create, approve, and enforce security policies using Group Policy, Intune, and Conditional Access to meet HIPAA security standards.
• Maintain complete MFA and Conditional Access coverage for both users and administrators.
• Administer and monitor Microsoft Defender (XDR and/or Defender for Office 365) along with at least one SIEM platform.
• Supervise email protection mechanisms, including DMARC, SPF, and DKIM.
• Ensure timely server and domain controller patching as well as backup validation.
• Establish and manage a repeatable process for SOC 2 Type II evidence collection and support readiness for attestation.
• Provide a monthly security posture report to the CIO, highlighting open risks, remediation timelines, and audit preparedness.
• Hold the outsourced IT partner and offshore resources responsible for meeting SLA performance metrics.
• Independently verify completed tasks and perform third-party access assessments.
• Oversee network-related activities involving site firewalls, VPN/SD-WAN, VLANs, and DNS management.
• Address aging remediation issues and effectively communicate risks to non-technical leaders.
• Minimum of 5 years of experience managing Microsoft environments at a multi-site level.
• Proficient in Entra ID/Azure, Microsoft 365, on-premises Active Directory, Group Policy, and Intune.
• Hands-on experience with Microsoft Defender (XDR and/or Defender for Office 365).
• Familiarity with at least one SIEM platform.
• Solid network skills, including experience with firewalls, VPN/SD-WAN, VLANs, and DNS.
• Ability to oversee a network engineer's work.
• Direct experience in producing evidence for SOC 2, HITRUST, or similar audits.
• Strong PowerShell proficiency for automation and auditing purposes.
• Excellent communication skills with non-technical stakeholders.
• Proven capability to hold vendors accountable for their performance.
• Willingness to be hands-on while directing and validating the work of others.
• Healthcare industry experience and knowledge of HIPAA security requirements is highly desirable.
• Certifications such as SC-200, AZ-500, Security+, or CISSP are preferred.
• Experience managing or collaborating within a managed service provider (MSP) delivery model is highly advantageous.
• Availability to work Monday through Friday.
• Must reside in the USA.
• Opportunities for career advancement.
• Professional development initiatives.
• A supportive work environment.
• Options for remote work arrangements.
GitLab
PLACE
IMP Software
Moen
Get handpicked remote jobs straight to your inbox weekly.