Remote job
Lead Manager, IT Security Engineer
Job details
About this role
Role overview Lead and shape the security posture of a growing mission-driven organization as a hands-on IT Security Engineering Lead Manager. This role protects information assets, infrastructure, and stakeholders by designing, building, and managing security solutions across identity, endpoints, networks, email, applications, and the cloud. The position functions as the lead technical specialist and subject matter expert, partnering with IT teams and an external managed security services provider to investigate threats, tune defenses, and guide secure architecture across the enterprise.
Responsibilities - Architect secure networks, systems, and application environments, then design, install, configure, test, and document protections covering IAM, endpoint security, firewalls, email gateways, content filtering, and awareness tooling. - Serve as the primary escalation point for security incidents, proactively research weaknesses, recommend countermeasures, and identify cost-effective fixes to cybersecurity problems. - Partner with IT teams and the Managed Security Services Provider to review alerts, investigate incidents, tune deployed controls, and ensure tools remain effective. - Represent security on cross-functional IT projects, advising on requirements and architecture through all phases of the technology and project lifecycle. - Develop and maintain security policies, standards, and procedures, and conduct security awareness training across the organization. - Run risk assessments and vulnerability scans, validate hybrid infrastructure and cloud configurations, and provide 24/7 on-call coverage for IAM and incident response.
Requirements - Bachelor's degree in Computer Science or a related technology field, or equivalent practical experience. - 5+ years of total IT experience, including 2+ years hands-on designing, building, and supporting enterprise security solutions. - Hands-on expertise with endpoint security, network firewalls, email security gateways, content filtering, IAM, Single Sign-On, Windows servers, and virtualization platforms. - Working knowledge of Microsoft Cloud products such as Office 365, Intune, Azure, Azure VMs, Network Security Groups, Azure Sentinel, ATP, and Azure Active Directory. - Strong analytical and critical-thinking skills, clear written and verbal communication, and the ability to prioritize competing demands and meet deadlines. - Comfort working remotely, with some travel and availability outside standard Monday–Friday business hours for escalations.
Nice to have - Direct experience with Azure, Cisco Firewalls, Defender Security, VMware, EDR, XDR, Cisco Umbrella DNS Security, and hybrid infrastructure environments. - An active certification such as CompTIA Security+, PenTest+, OSCP, CEH, CISSP, CCSP, CISM, CCNP Security, or CISA.
Benefits and work setup - Remote-eligible role for applicants based anywhere in the continental U.S., open to U.S. employees without visa sponsorship. - Hiring range of $69,500–$84,100 USD with annual incentive potential. - Day-one medical, vision, dental, and wellness coverage, plus HSA and FSA options and a fully funded Health Reimbursement Account. - Short- and long-term disability, life, accident, critical illness, hospital indemnity, and pet insurance plans. - 401(k) with a 5% employer match after one year, eligibility for Public Service Loan Forgiveness, and provided laptop, monitor, and docking equipment. - Starting PTO of 15 days, 10 sick days, 11 paid holidays, 2 personal days, parental leave, and 2 volunteer days after one year of service. - Awards, recognition, leadership development, and entertainment discounts.