×
Register Here to Apply for Jobs or Post Jobs. X

Senior Information Technology Security Manager

Job in San Diego, San Diego County, California, 92189, USA
Listing for: GoFormz
Full Time position
Listed on 2026-07-23
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, Network Security, Security Management & Operations
Salary/Wage Range or Industry Benchmark: 150000 - 190000 USD Yearly USD 150000.00 190000.00 YEAR
Job Description & How to Apply Below

We are looking for a hands-on Senior IT Security Manager to own our cybersecurity posture while providing tactical IT operations support. This is a senior individual contributor role with potential team leadership responsibilities as the organization grows. The right candidate thrives in a small-team environment, is comfortable wearing multiple hats, and brings deep security expertise alongside solid IT fundamentals.

Approximately 75% of this role is focused on cybersecurity — strategy, implementation, monitoring, and compliance. The remaining 25% covers core IT support and systems administration to keep the organization running smoothly.

Key Responsibilities Cybersecurity (75%) Security Program Ownership
  • Own and continuously mature the organization's information security program, policies, and roadmap
  • Develop, implement, and enforce security policies, standards, and procedures aligned with industry frameworks (NIST CSF, ISO 27001, CIS Controls, or equivalent)
  • Conduct regular risk assessments and maintain a risk register; prioritize remediation based on business impact
  • Monitor, triage, and respond to security events and alerts across endpoints, network, cloud, and SaaS environments
  • Own the incident response plan; lead investigation, containment, and post-incident review for security events
  • Manage vulnerability scanning programs and drive timely remediation with internal stakeholders
Security Architecture & Engineering
  • Evaluate, deploy, and manage security tooling (EDR, SIEM, MFA/SSO, email security, DLP, firewall, VPN, etc.)
  • Provide security guidance on cloud infrastructure (Azure/GCP), SaaS adoption, and new technology onboarding
  • Oversee identity and access management (IAM) including provisioning, deprovisioning, and least-privilege enforcement
Compliance & Third-Party Risk
  • Lead and support compliance efforts for applicable frameworks or regulations (SOC 2, HIPAA, PCI-DSS, CMMC, GDPR, etc.)
  • Manage the vendor security review process and maintain third-party risk inventory
  • Coordinate with external auditors, penetration testers, and security consultants
Security Awareness
  • Develop and run the organization's security awareness training program
  • Conduct phishing simulations and track outcomes; deliver targeted education where needed
  • Act as a security advocate internally — advising leadership and employees on security best practices
IT Support & Systems Administration (25%)
  • Serve as escalation point for complex IT support issues across hardware, software, and connectivity
  • Administer core systems:
    Microsoft 365 / Google Workspace, Active Directory / Entra , MDM (Intune, Jamf, or similar)
  • Manage user lifecycle (onboarding/offboarding), device provisioning, and access reviews
  • Maintain IT asset inventory and ensure systems remain patched and up to date
  • Support network infrastructure including firewalls, switches, and wireless access points
  • Document IT processes, runbooks, and system configurations
Qualifications Required
  • 7+ years of progressive IT and cybersecurity experience, with at least 3 years in a senior or lead security role
  • Demonstrated experience managing security programs end-to-end in a resource-constrained environment
  • Hands‑on experience with security tools: EDR, SIEM, vulnerability scanners, email security gateways, payment fraud systems, and identity platforms
  • Working knowledge of one or more compliance frameworks (SOC 2, NIST, ISO 27001, etc.)
  • Strong incident response skills — you've handled real events, not just tabletops
  • CISSP certification and prior experience managing security audits, penetration tests, and regulatory reviews
  • Prior involvement in security audits, penetration tests, or regulatory reviews
  • Experience administering Microsoft 365 or Google Workspace and cloud environments (AWS, Azure, or GCP)
  • Experience managing security and compliance planforms, such as Drata
  • Excellent written and verbal communication; able to present risk to non-technical leadership clearly
Preferred
  • Relevant certifications: CISSP, CISM, Security+, CEH, GCIA, GCIH, or equivalent
  • Experience at a company with 50–500 employees; comfortable being the primary security resource
  • Familiarity with zero trust architecture principles
  • Experience managing or mentoring junior IT/security staff
#J-18808-Ljbffr
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary