About the role

The IT & Security Lead is responsible for the organization's day-to-day IT operations and core cybersecurity practices, ensuring employees and contractors have secure, reliable access to the devices, accounts, applications, and infrastructure they need to do their work. Reporting to the Director of Technology & Analytics, this hands-on position owns the full employee and contractor technology lifecycle, from onboarding through offboarding, and serves as the primary point of contact for IT vendors and service providers. The role assumes responsibility for IT administration, including Microsoft 365 licensing, equipment procurement, SharePoint permissions, and vendor support, and is responsible for documenting these processes so they are repeatable. This role requires a practical balance of IT administration and security expertise, the ability to identify and prioritize risk, and the judgment to know when to bring in specialist support such as managed detection and response (MDR) services or outside assessments.
Essential Job Functions:
  • Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
  • Onboarding, Offboarding & Access Management·
  • Own the employee and contractor onboarding and offboarding process, including devices, accounts, licensing, and system access.·
  • Manage and improve the IT equipment request process, including the IT Equipment Request Form, approvals, fulfillment, and tracking.·
  • Provision and remove user accounts, groups, and permissions promptly, following least-privilege principles.·
  • Conduct periodic access reviews to confirm users hold only the access their roles require.·
  • Maintain accurate records of assigned devices, licenses, and access for all employees and contractors.
  • IT Administration·
  • Administer Microsoft 365, including licensing, user management, Exchange Online, Teams, OneDrive, and related services.·
  • Manage SharePoint sites, permissions, and information access in partnership with department leaders.·
  • Manage equipment procurement, including vendor quotes, purchasing, inventory, setup, and asset disposal.·
  • Monitor and optimize software licensing and subscriptions to control costs and ensure compliance.·
  • Document existing IT processes and maintain standard operating procedures, system inventories, network diagrams, and user guides.
  • End-User Support, Applications & Infrastructure·
  • Provide hands-on technical support to employees and contractors for hardware, software, accounts, and connectivity issues, using outside support providers for overflow as needed.·
  • Administer and support business applications, including configuration, user access, updates, and vendor coordination.·
  • Maintain and support IT infrastructure, including networks, Wi-Fi, firewalls, printers, and conference room technology.·
  • Coordinate with the Senior AI & Data Platform Engineer on infrastructure, access, and security for data and AI systems, including any on-premises AI environment.
  • Security Controls & Operations·
  • Implement and maintain core security controls, including multi-factor authentication, conditional access, email security, and device management.·
  • Manage patching and update processes for operating systems, applications, and firmware across endpoints and infrastructure.·
  • Deploy and manage endpoint protection and any managed detection and response (MDR) services, triaging security alerts and escalating as appropriate.·
  • Manage backup and recovery processes for critical systems and data, including regular restore testing.·
  • Maintain device security standards, including encryption, secure configuration, and remote wipe capabilities.
  • Incident Preparedness & Risk Management·
  • Develop and maintain incident response, business continuity, and disaster recovery plans, and conduct tabletop exercises.·
  • Lead the response to IT and security incidents, including containment, communication, recovery, and post-incident review.·
  • Identify, assess, and prioritize IT and security risks, and maintain a risk register with recommended remediation.·
  • Coordinate specialist support where needed, such as managed security monitoring, penetration testing, or outside security assessments.·
  • Deliver security awareness training and phishing simulations for employees and contractors.·
  • Develop and maintain IT and security policies, such as acceptable use, access control, and password standards.
  • Vendor Management & Cross-Functional Collaboration·
  • Serve as the primary point of contact for IT vendors, managed service providers, and security partners.·
  • Evaluate vendors and manage contracts, renewals, and service levels to ensure value and performance.·
  • Partner with department leaders to understand technology needs and recommend practical solutions.·
  • Support the Director of Technology & Analytics with IT budgeting, planning, and reporting on IT operations and security posture.·
  • Communicate technical issues, changes, and security guidance clearly to non-technical audiences.
Qualifications:
  • Licenses, Certifications, and/or Registrations·
  • Relevant certifications such as CompTIA Security+, Microsoft 365 Certified: Administrator (MS-102), Microsoft Certified: Endpoint Administrator Associate, CompTIA Network+, or equivalent are preferred.·
  • Advanced security certifications such as CISSP, SSCP, or GIAC Security Essentials (GSEC) are a plus.
  • Education, Experience, and/or Training·
  • Bachelor's degree in Information Technology, Information Systems, Computer Science, Cybersecurity, or a related field preferred; equivalent combination of education and experience will be considered.·
  • Minimum of three (3) years of progressive IT administration experience, including direct responsibility for security controls, or an equivalent combination of education and demonstrated capability; five (5) or more years preferred.·
  • Demonstrated experience administering Microsoft 365, Entra ID (Azure Active Directory), SharePoint, and Intune in a small or mid-sized organization.·
  • Demonstrated, hands-on responsibility for security controls such as multi-factor authentication, conditional access, patching, endpoint protection, and backups.·
  • Experience managing onboarding and offboarding, device lifecycle, and software licensing.·
  • Experience coordinating with managed service providers, security vendors, and outside assessors preferred.·
  • Experience supporting a remote or hybrid workforce preferred.·
  • Excellent communication, organizational, and problem-solving skills required.
Knowledge, Skills, and Abilities: Strong working knowledge of Microsoft 365 administration, identity and access management, and endpoint management. Knowledge of cybersecurity fundamentals, including patching, endpoint protection, email security, backups, and incident response. Familiarity with security frameworks such as the NIST Cybersecurity Framework or CIS Critical Security Controls. Knowledge of networking fundamentals, including firewalls, VPN, DNS, and Wi-Fi. Ability to assess risk and prioritize remediation based on business impact. Ability to create clear documentation, procedures, and user guidance. Customer service orientation and the ability to support users at all levels with patience and professionalism. Ability to work independently, manage competing priorities, and respond calmly to urgent issues. Organizational Skills
Teamwork Capacity:
  • Communication Proficiency
  • Confidential – the position requires discretion due to access to proprietary and confidential information, systems, and employee data.
  • Active Listening
  • Critical Thinking
  • Problem Solving
  • Analytical Reasoning
  • DependabilitySpecial Requirements
  • Tools / Equipment·
Computer· Laptops, mobile devices, networking equipment, and other IT hardware Software· Proficiency in Microsoft Office, including Excel, Word, and Outlook required.· Experience with Microsoft 365 admin centers, Entra ID, Intune, SharePoint, endpoint protection, backup solutions, and IT ticketing or asset management tools preferred. Physical· Ability to sit for prolonged amounts of time required.· Ability to effectively communicate through various means required.· Ability to lift and carry up to 25 pounds (e.g., computer equipment) required. Environmental· Majority of work is performed within an office environment, including office equipment – such as computers, telephones and copiers.· Noise levels are typically moderate. Work Schedule· Regular 40-hour work week, normal duty hours as assigned.· May work longer hours to meet deadlines or respond to IT or security incidents as necessary.· Remote position, with on-site presence required as needed for equipment setup, onboarding, and infrastructure support. Travel· May travel less than 10% of the time.

Matching similar jobs

JOB OVERVIEW

Experience level

Manager

Location

San Diego, CA

Occupation

Computer and Information Systems Managers

Industry

Computer Systems Design Services

Posted

today

Tired of running searches?

Rank the roles you'd take once, and matches like these arrive on their own.

CREATE PROFILE