Information Technology Security Manager

Gerald R Ford International Airport Authority

$90K — $120K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Cybersecurity, IT, Computer Science, or related field; Master's preferred.
  • 7-10 years experience in cybersecurity or information security.
  • Proven experience implementing security controls in enterprise environments.
  • Experience with cloud security, particularly Azure.
  • Experience in regulated environments (aviation, healthcare, etc.) preferred.

Responsibilities

  • Design and maintain security controls across cloud and network systems.
  • Configure and manage identity systems like Azure AD and MFA.
  • Implement zero trust principles across the infrastructure.
  • Secure privileged access and administrative accounts.
  • Investigate and respond to security incidents effectively.
  • Develop and maintain incident response procedures.
  • Collaborate with cross-functional teams to enhance security posture.

Benefits

  • Flexible work schedule with occasional remote work opportunities.
  • Comprehensive health and wellness programs.
  • Professional development and training opportunities.
  • Opportunity to work in a critical infrastructure environment.
  • Engagement in high-impact cybersecurity initiatives.
Full Job Description
JOB SUMMARY:

Leads and participates in the implementation, administration, and continuous improvement of the Airport's cybersecurity environment. This role is responsible for securing the organization's enterprise infrastructure, cloud platforms (Azure & AWS), network environments, and integrated systems, ensuring protection of critical airport operations and data. This is a hands-on engineering role requiring both security architecture, understanding and deep technical implementation capability, with a focus on identity, access control, monitoring, and incident response. Plays a critical role in ensuring the Airport's environment is secure, resilient, compliant, and aligned with regulatory requirements.

ESSENTIAL DUTIES AND RESPONSIBILITIES:

  • Designs, implements, and maintains security controls across cloud environments (Azure & AWS), network and infrastructure systems, and identity and access management platforms.
  • Configures and manages identity systems (Entra ID/Azure AD), conditional access and MFA, and endpoint protection and security tools.
  • Implements zero trust principles across the environment.
  • Designs and enforces Role-Based Access Control (RBAC).
  • Implements identity governance and lifecycle management.
  • Secures privileged access and administrative accounts.
  • Ensures consistent access policies across systems and environments.
  • Implements and manages security monitoring solutions (SIEM, logging, alerting)
  • Investigates and responds to security incidents.
  • Develops and maintains incident response procedures.
  • Improves detection capabilities across all systems.
  • Secures Azure environments (compute, storage, networking, identity)
  • Implements cloud-native security controls and monitoring.
  • Ensures alignment with Azure security best practices and frameworks.
  • Supports secure cloud architecture in collaboration with infrastructure teams.
  • Works closely with network and infrastructure teams to enforce segmentation, secure connectivity, and firewall policies.
  • Ensures protection of IT and operational technology environments.
  • Ensures alignment with regulatory requirements (TSA, FAA, NIST).
  • Supports audits, assessments, and remediation activities.
  • Identifies and mitigates security risks across systems.
  • Maintains documentation of controls and security posture.
  • Develops, implements, and maintains security standards and best practices.
  • Serves as a senior technical resource for cybersecurity engineering and operations.
  • Collaborates with cross-functional teams (network, infrastructure, applications).
  • Evaluates, recommends, and supports implementation of security tools and vendor solutions.
  • Performs other related duties as assigned.


REQUIRED KNOWLEDGE AND SKILLS:

  • Identity and Access - Working knowledge of Azure Active Directory, RBAC, Conditional Access, MFA, Privileged identity management, and Identity governance.
  • Security Engineering - Working knowledge of endpoint protection and EDR tools, SIEM and logging platforms (Microsoft Sentinel or similar), threat detection and response, and vulnerability management.
  • Cloud Security - Working knowledge of Azure security services and controls, secure cloud architecture principles, and monitoring and logging in cloud environments.
  • Network Security - Working knowledge of firewalls and segmentation concepts, VPN and secure connectivity, and Zero Trust architecture.
  • Security Frameworks - Working knowledge of NIST Cybersecurity Framework, Zero Trust principles, and general regulatory and compliance awareness.
  • Strong hands-on security engineering capability.
  • Ability to design and implement secure systems.
  • Deep understanding of identity, access and threat detection.
  • Strong analytical and problem-solving skills.
  • Ability to operate independently and lead technical security initiatives.
  • Strong communication skills, both technical and executive.


QUALIFICATIONS AND REQUIREMENTS:

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field. Master's degree is preferred.
  • Seven to ten years of progressive experience in cybersecurity, information security, or cybersecurity engineering.
  • Proven experience implementing security controls in enterprise environments.
  • Experience securing cloud environments, Azure is preferred.
  • Experience in mission-critical or regulated environments including aviation, transportation, government, or healthcare is preferred.


NOTES:

  • Candidate must be able to pass required FBI fingerprint-based criminal history record check.


CONTACTS:

This position has frequent contact with:

  • Airport Authority staff and airport tenants.
  • Interaction with vendors and external partners.


LICENSES AND CERTIFICATIONS:

  • Microsoft Certified: Azure Security Engineer Associate preferred.
  • AWS Certified Security - Specialty preferred.
  • CISSP, CISM, or GIAC certification preferred.
  • Certified Ethical Hacker (CEH) or equivalent technical certification preferred.


PHYSICAL REQUIREMENTS:

  • Ability to occasionally lift and move equipment up to 25 pounds.
  • Ability to work in data centers, telecommunications rooms, and airport operational areas.
  • Ability to remain stationary for extended periods while working at a computer.


WORK ENVIRONMENT:

  • Critical infrastructure environment supporting airport operations.
  • Participation in incident response and on-call escalation support.
  • Collaboration across IT domains (network, infrastructure, applications).
  • May be required to work evenings, weekends, or holidays during security incidents, maintenance activities, or operational emergencies.


SUPERVISORY RESPONSIBILITY:

  • May provide technical guidance, project leadership, and work coordination for cybersecurity initiatives. Direct supervisory responsibilities may be assigned as organizational needs evolve.

Similar Jobs

More Jobs at Gerald R Ford International Airport Authority

More Information Technology Jobs

Find similar Information Technology Security Manager jobs: