Senior Manager, IT Operations, Cybersecurity & Compliance

 Posted 3 hours ago
     
5-10 years experience
Apply Now

Please mention DailyRemote when applying

AI Summary

The Senior Manager will lead day-to-day IT operations, including hands-on administration of Microsoft 365 services and oversight of managed service providers. They are responsible for maintaining a secure, compliant technology environment while partnering with business leaders to drive process improvements and incident resolution.

Job Summary:

 

Cristcot is seeking a Senior Manager, IT Operations, Cybersecurity & Compliance to lead day-to-day IT operations and maintain a secure, compliant, and reliable technology environment.

 

This is a hands-on technical leadership role. The successful candidate will personally administer and troubleshoot Microsoft Entra ID, Intune, Defender, SharePoint Online, and related Microsoft 365 services while overseeing Cristcot’s Managed Service Provider and other technology vendors.

 

The ideal candidate combines strong Microsoft cloud administration expertise with experience in cybersecurity, IT service delivery, vendor management, and regulated environments.

 

Primary Relationships:

 

The Senior Manager, IT Operations, Cybersecurity & Compliance will partner closely with internal business leaders and external technology partners to deliver secure, scalable IT services while maintaining compliance with GxP requirements and industry best practices. The successful candidate is an operational leader who drives execution, resolves issues, improves processes, and ensures technology enables the business.

 

The activities of the Senior Manager, IT Operations, Cybersecurity & Compliance will include, but are not limited to:

 

M365 Administration

  • Administer, configure, and troubleshoot
    • Microsoft Entra ID
    • Microsoft Intune
    • Microsoft Defender
    • SharePoint Online
    • Exchange Online
    • Teams
    • OneDrive
  • Manage identity and access controls, including multifactor authentication, Conditional Access, privileged roles, single sign-on, guest access, and user lifecycle management.
  • Manage Intune device enrollment, Autopilot, compliance policies, configuration profiles, application deployment, security baselines, and update policies.
  • Investigate Microsoft Defender alerts and coordinate security remediation.
  • Administer SharePoint sites, permissions, external sharing, governance, and access issues.
  • Use PowerShell, Microsoft administrative portals, logs, and audit records to troubleshoot and automate administrative activities.

IT Operations and Service Delivery

  • Lead the daily performance, availability, and reliability of corporate IT services.
  • Serve as the escalation point for complex Microsoft 365, endpoint, identity, access, and security issues.
  • Oversee incident, request, problem, change, and escalation-management processes.
  • Monitor service levels, recurring issues, system performance, and user satisfaction.
  • Develop and maintain IT procedures, technical documentation, and operational standards.
  • Support employee onboarding, offboarding, access changes, and technology lifecycle activities.

Cybersecurity

  • Lead operational cybersecurity activities and continuously improve Cristcot’s security posture.
  • Oversee endpoint security, vulnerability management, patching, identity security, email protection, and privileged access.
  • Maintain cybersecurity risk assessments, remediation plans, and risk registers.
  • Coordinate incident response, investigation, recovery, and corrective actions.
  • Manage security-awareness and phishing-training programs.
  • Support cybersecurity frameworks such as the NIST Cybersecurity Framework and CIS Controls.

Compliance and Business Continuity

  • Ensure IT processes and controls support applicable GxP requirements and company quality standards.
  • Support regulated change control, computerized system validation, audits, inspections, and evidence collection.
  • Develop and maintain IT policies, SOPs, work instructions, and supporting documentation.
  • Maintain business continuity, disaster recovery, backup, and recovery-testing processes.
  • Track compliance, security, and audit remediation activities through completion.
  • Leadership & Cross-Functional Collaboration
  • Provide technical guidance and mentoring to internal IT staff.
  • Partner with business functions to deliver secure and supportable technology services.
  • Communicate technical issues, risks, and recommendations clearly to technical and non-technical stakeholders.
  • Promote accountability, automation, documentation, and continuous improvement.

 

Skills and Qualifications:

 

  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, Information Systems, or a related field, or equivalent education and experience.
  • 8+ years of progressively responsible experience in IT operations, infrastructure, Microsoft cloud administration, endpoint management, or cybersecurity.
  • Demonstrated recent hands-on administration experience with:
    • Microsoft Entra ID
    • Microsoft Intune
    • Microsoft Defender
    • SharePoint Online
    • Exchange Online
    • Teams and OneDrive
  • Strong knowledge of Conditional Access, multifactor authentication, privileged access, enterprise applications, single sign-on, and guest-user governance.
  • Strong knowledge of Intune device management, Autopilot, compliance policies, configuration profiles, application deployment, and security baselines.
  • Experience investigating and remediating Microsoft Defender alerts.
  • Experience administering SharePoint permissions, external sharing, site configuration, and governance.
  • Experience using PowerShell and administrative tools to troubleshoot Microsoft environments.
  • Experience managing MSPs and third-party technology vendors.
  • Experience with cybersecurity controls, vulnerability management, incident response, and endpoint security.
  • Strong troubleshooting, problem-solving, documentation, and communication skills.
  • Ability to travel 10-15%, as needed.

 

Preferred Qualifications

 

  • Experience in pharmaceutical, biotechnology, medical device, healthcare, or another regulated industry.
  • Experience supporting GxP systems, audits, change control, and computerized system validation.
  • Experience with Microsoft Purview, Sentinel, Defender for Cloud Apps, or Defender for Identity.
  • Knowledge of NIST, CIS Controls, ITIL, and 21 CFR Part 11.
  • Experience with business continuity, disaster recovery, software licensing, and IT budgeting.

 

Preferred Certifications

Relevant certifications may include:

  • Microsoft Certified: Identity and Access Administrator
  • Microsoft Certified: Endpoint Administrator
  • Microsoft Certified: Cybersecurity Architect
  • CISSP
  • CISM
  • CISA
  • Security+
  • ITIL Foundation

Similar Jobs

See all Remote Legal jobs →

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Legal

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified