IT Security Manager (1995)
Goodwill South FloridaAbout the role
Job DetailsJob Location: Miami, FL 33142Position Type: Full TimeEducation Level: 4 Year DegreeJob Shift: DayJob Category: Information TechnologySummary:
The IT Security Manager serves as the enterprise's security leader, responsible for both daily operational oversight and long term security strategy. This includes managing the SOC team, directing the operation of all security solutions, and defining the organization's security posture through policy, architecture, and training. The role also includes selecting appropriate security technologies, supervising vulnerability assessments and audits, and managing the organizations third party SOC vendor to ensure consistent high quality monitoring and incident response. As a hands on technical and operational manager, the IT Security Manager is accountable for implementing and optimizing the Microsoft security ecosystem including Azure AD Entra, Microsoft Defender XDR, Intune, Sentinel, and Microsoft 365 compliance tools to safeguard systems and maintain regulatory and audit compliance. The manager collaborates closely with Systems and Network teams as well as business unit leaders to promote the corporate security vision and foster shared responsibility for strengthening enterprise security.
Responsibilities
Strategy and Planning
Create and maintain the enterprises security architecture design.
Create and maintain the enterprises security awareness training program.
Maintain the enterprises security documents policies, standards, baselines, guidelines, and procedures.
Create and maintain the enterprises Business Continuity Plan and Disaster Recovery Plan where appropriate.
Acquisition and Deployment
Maintain up to date knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes, and the development of new attacks and threat vectors.
Select and acquire additional security solutions or enhancements to existing security solutions to improve overall enterprise security as per the enterprises existing procurement processes.
Oversee the deployment integration and initial configuration of all new security solutions and of any enhancements to existing security solutions in accordance with standard best operating procedures generically and the enterprises security documents specifically.
Operational Management
Manage daily operation of core security technologies SIEM IDS IPS EDR MFA MDM vulnerability scanners.
Ensure the confidentiality integrity and availability of the data residing on or transmitted to from through enterprise workstations servers and other systems and in databases and other data repositories.
Perform regular security awareness training for all employees to ensure consistently high levels of compliance with enterprise security documents.
Microsoft Sentinel SIEM and Log Analytics
Owns and administers Microsoft Entra ID identity protections Conditional Access policies MFA enforcement least privilege access and privileged role governance.
Performs hands on reviews of access logs sign in risks and user lifecycle workflows.
Leads enterprise wide access reviews mandated by audit and compliance frameworks.
Cloud Security and Compliance Microsoft 365 and Azure
Implements and maintains Microsoft Secure Score and Compliance Score improvements.
Oversees Microsoft Purview Data Loss Prevention DLP Information Protection Sensitivity Labels Insider Risk Management and retention policies.
Ensures secure cloud configurations align to CMMC ISO and internal audit expectations.
Microsoft Sentinel SIEM and Log Analytics
Designs maintains and tunes Sentinel analytic rules automation playbooks data connectors and workbooks.
Performs deep dive KQL log analysis for incidents anomalies and threat hunts.
Leads the correlation of Microsoft telemetry Entra Defender XDR M365 Azure into actionable alerts.
Vulnerability Patch and Secure Configuration Management
Uses Microsoft Defender Vulnerability Management to identify prioritize and remediate system weaknesses.
Coordinates with Infrastructure and Desktop teams to enforce secure baselines and patch compliance across Windows Azure workloads and cloud applications.
Incident Response Microsoft Centric
Serves as the primary responder for Microsoft originated alerts Defender XDR Sentinel Purview IRM events.
Executes automated and manual remediation actions isolate device revoke tokens kill processes block hashes etc.
Other duties as assigned.
QualificationsEducation, Experience & Certification
College diploma or university degree in the field of computer science (preferred).
Microsoft Certified Systems Engineer: Security+
Other industry certifications such as CISSP, CISM, CySa+, CASP+
Knowledge & Experience
7+ years in cybersecurity operations, incident response, or system security engineering.
Extensive experience in enterprise security architecture design.
Extensive experience i
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s