Information Technology Security Manager
Listed on 2026-07-01
-
IT/Tech
Cybersecurity, Information Security, Security Management & Operations
Work Arrangement: Remote or Hybrid (DFW candidates preferred for 1–2 days onsite)
Employment Type: Direct Hire
Compensation: $120,000 – $140,000 annually
Position OverviewWheeler Staffing Partners is seeking a highly skilled and hands‑on IT Security Manager to lead day‑to‑day cybersecurity operations across a multi‑site healthcare environment
. This role is execution‑focused and responsible for directly operating, configuring, and securing the organization’s cybersecurity infrastructure.
The ideal candidate brings strong technical expertise across SIEM, XDR/MDR, SOC operations, endpoint security, cloud security, and AI‑enabled security tools
, with the ability to actively investigate alerts, respond to incidents, and drive remediation efforts.
Multi‑site healthcare cybersecurity experience is required.
Key Responsibilities Security Operations & Monitoring- Serve as the primary owner of SIEM, XDR, and MDR platforms
- Monitor, tune, and optimize alert thresholds to improve detection accuracy and reduce noise
- Investigate security alerts, perform root cause analysis, and lead incident response efforts
- Conduct threat hunting using MITRE ATT&CK framework methodologies
- Manage endpoint detection and response (EDR) tools across all locations
- Maintain vulnerability scanning programs and coordinate patch remediation
- Lead real‑time incident triage, containment, and remediation activities
- Develop and maintain incident response playbooks
- Coordinate forensic investigations and external cybersecurity partners
- Document incidents and prepare executive‑level summaries
- Manage IAM, MFA enforcement, and privileged access controls
- Implement and maintain Zero Trust security principles
- Oversee firewall configurations, email security, and endpoint hardening
- Secure cloud environments including Microsoft 365, Azure, and AWS
- Conduct access reviews and monitor audit logs
- Evaluate and secure AI tools used across clinical and operational workflows
- Assess data leakage risks associated with generative AI platforms
- Support AI governance initiatives and enforce usage policies
- Maintain HIPAA Security Rule safeguards (Administrative, Physical, Technical)
- Support internal and external audits
- Conduct periodic security risk assessments
- Manage Business Associate Agreement (BAA) security reviews
- Implement security automation workflows
- Improve mean time to detect (MTTD) and mean time to respond (MTTR)
- Lead phishing simulations and security awareness campaigns
- Develop metrics dashboards and executive reporting
- Bachelor’s degree in Cybersecurity, Information Security, Information Systems, or related field
- 5–10 years of hands‑on cybersecurity experience
- 3+ years of experience in a multi‑site healthcare environment (required)
- Experience operating SIEM platforms (e.g., Splunk, Microsoft Sentinel)
- Hands‑on experience with XDR/MDR platforms (e.g., Crowd Strike, Sentinel One, Microsoft Defender)
- Experience managing SOC workflows and alert triage
- Experience securing cloud environments (Azure, AWS, Microsoft 365)
- Strong understanding of HIPAA compliance requirements
- SIEM configuration and log management
- XDR/MDR deployment and optimization
- Vulnerability management tools (Tenable, Rapid7, Qualys)
- IAM, SSO, MFA, and privileged access management
- Endpoint security and patch governance
- Email security and phishing detection
- AI risk monitoring and governance controls
- CISSP, CISM, CISA, CCSP, Security+, CRISC, CPHIMS, CHPS
- Strong analytical and problem‑solving skills
- Excellent communication and stakeholder engagement abilities
- Ability to manage multiple priorities in a fast‑paced environment
- High attention to detail and security‑first mindset
- Strong customer service orientation with a professional and collaborative approach
- Ability to lift and move equipment up to 50 lbs
- Ability to travel between departments or clinical sites as needed
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).