IT Operations Manager (Hybrid
Listed on 2026-08-22
-
IT/Tech
Cybersecurity, IT Support, IT Consultant, IT Project Manager
Zipliens is a leading lien resolution company that specializes in streamlining the lien process for personal injury law firms. We are looking for proactive, results-driven individuals to join our dynamic team.
We're hiring an IT Operations Manager to own Zipliens' internal IT and security operations — a high-trust role at the center of how we protect our systems, our data, and the client relationships built on that trust. This role sits squarely between IT and information security: our Fractional CISO sets security strategy and direction, and this is the person who executes it day to day, translating policy into real, working processes across the company.
Reporting to our CTO, you'll be the first person at Zipliens to fully own this function.
This isn't a caretaker role, and it isn't a traditional help-desk-and-hardware IT manager role either — you'll operate as a hands-on owner across both IT operations and security execution: managing our SaaS and device inventories, employee access, and vendor relationships; driving how we adopt new tools like AI; and serving as Zipliens' lead for incident response and disaster recovery.
Responsibilities:Technology, Access & Data Governance
- Keep track of the SaaS tools and devices Zipliens uses, and own access management for our most sensitive business systems — including reviewing and approving new software or AI tool requests before they're adopted.
- Own and execute the process for granting, adjusting, and removing employee access as people are hired, change roles, or leave — and run the recurring check that confirms this is being done correctly.
- Apply Zipliens' data-handling rules day to day — flagging what counts as sensitive information, and maintaining a data retention schedule: keeping records as long as required by contract, tax, or employment law, deleting them on time, and preserving anything Legal Counsel puts under an active legal hold.
- Serve as the first point of contact for security concerns — from employees or the MSP/MDR provider — routing and tracking routine issues, and leading the response (engagement within 15 minutes for the most severe) when something escalates into a real incident.
Policy & Compliance Support
- Serve as Zipliens' subject matter expert on our technology policies — answering employee questions, providing guidance, driving adoption of policy updates, and helping ensure they're followed consistently day to day.
- Execute against the security and compliance strategy — bringing enough working knowledge to contribute informed input along the way.
- Stay aware of security-related terms in client contracts, and support HR with training completion and the annual policy sign-off process.
Vendor & Managed IT Provider Oversight
- Own the relationship with our IT provider and its security monitoring service as Zipliens' main point of contact — regular check-ins, staying on top of tickets and renewals, approving invoices, and ensuring their internal processes and controls continue to meet our security standards.
- Maintain Zipliens' vendor inventory — tier, security documentation, contract status, and a named business owner for every vendor — even where day-to-day ownership of a specific relationship sits elsewhere.
- Provide hands-on IT support for Zipliens' day-to-day technology needs and projects, working alongside our IT provider rather than solely in an oversight capacity.
AI Tool Governance & Enablement
- Own the rollout and adoption of Zipliens' approved AI tools, including license assignment, practical guidance, and driving adoption through deliberate change management, not just publishing guidelines and hoping they stick.
- Leverage AI tools to streamline Zipliens' own internal IT and security processes and workflows, not just govern how others use them.
- 5+ years in IT operations, IT management, or systems administration — with meaningful time actually owning decisions (a vendor call, an incident response, a technical initiative), not just executing someone else's, and genuine hands-on technical experience rather than vendor-oversight experience alone.
- Direct experience responding to a real security incident, not just training on one.
- Enough grounding in…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).