Senior IT Security and Compliance Manager

Virginia Tech

$90K — $110K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Business Information Technology, Computer Science, or related field or equivalent experience
  • Significant experience in information security, audit, or compliance work
  • Proven ability to manage multiple projects and programs effectively
  • Strong communication skills for diverse campus audiences
  • Experience with security software for vulnerability testing
  • Proficient in installing and configuring server operating systems like Unix/Linux, OSX, or Windows
  • Ability to configure security applications such as firewalls and intrusion detection systems

Responsibilities

  • Manage compliance with CIS IG2 across supported areas
  • Oversee Microsoft Defender for Endpoint to respond to cyber threats
  • Coordinate data protection training for adherence to university standards
  • Perform vulnerability checks on servers and web applications
  • Design and implement access protection and audit control procedures
  • Monitor user access and system resources for security
  • Effectively communicate threats and mitigation strategies to departments

Benefits

  • Hybrid work model in Blacksburg, Virginia
  • Opportunity to work with senior management
  • Participation in professional development and training programs
  • Role supports critical 24/7 operational needs
  • Potential to mentor and lead a team in compliance activities
Full Job Description
Senior IT Security and Compliance Manager

Job no: 537177
Work type: Administrative & Professional
Senior management: Executive VP & Chief Oper Officer
Department: Business & Management Systems
Location: Blacksburg, Virginia, Hybrid
Categories: Information Systems / Technology

Job Description

Serve as the IT security expert helping to create a strong information technology security foundation for the President, Executive Vice President and Chief Operating Officer, and Executive Vice President and Provost senior management areas. Reporting to the Deputy Executive Director, Business and Management Systems this position provides information security and compliance services to all supported departments. The position ensures that all workstations, server systems, applications, networks, databases, and data are properly secured from threats while meeting the mission critical production environments requirements and uptime. Serves as a departmental contact for any issues relating to information security or compliance with regulatory guidance. Shares responsibility for monitoring and maintaining the systems, disaster recovery planning, incident response, and security assessments. Due to the criticality of this position and its support of a 24 X 7 unit, after hours may be required.

Responsibilities of this position include:
• Manage compliance with CIS IG2 throughout supported areas
• Manage Microsoft Defender for Endpoint for supported areas to prevent, detect, investigate, and respond to advanced cyber threats
• Coordinate and run security training programs for data protection and adherence to university standards and policies
• Run scripts and programs to provide vulnerability checks against department servers and web applications
• Assist in the design and implementation of appropriate access protection and audit control procedures.
• Routinely monitor practices to ensure that user access, system access, resources and information are secure
• Communicate threats, findings, and mitigation strategies effectively to supported areas when necessary
• Manage, and participate in, the procurement and departmental security review processes
• Provide guidance, tools, and subject matter expertise for departments performing IT risk assessments
• Lead, develop, and mentor employees involved in compliance and risk-related activities
• Serve as liaison between supported offices and the IT Security Office
• Author and improve documentation to support consistent and reliable procedures
• Work with and advise Deputy Executive Director on IT security policies and standards

Required Qualifications
• Bachelor's degree in Business Information Technology, Computer Science, or a related field or related equivalent experience
• Significant information security, audit, and/or compliance work experience, with experience measuring compliance against various regulations, industry standards, and/or policies
• Demonstrated ability to own and manage multiple projects and programs
• Demonstrated ability to effectively communicate, written and oral, across a broad range of campus audiences
• Experience using appropriate security software, such as OWASP ZAP, nikto, and nmap, to perform vulnerability tests
• Ability to self-learn and maintain a strong proficiency in technical tools, counter measures, and techniques
• Experience installing, securely configuring, and administrating Unix/Linux, OSX or Windows Server operating systems.
• Ability to install and configure security software or hardware applications such as firewalls, intrusion detection systems, network mapping tools, and vulnerability scanners
• Ability to quickly understand technical concepts and determine the implications of relevant requirements and policies.
• Strong analytical, organizational, and problem-solving skills

Preferred Qualifications
• Master's degree in business information technology, or a related field. CISA, CISM, CRISC, or CISSP certification
• Experience supervising direct reports or mentoring employees as a team lead
• Experience in evaluating business processes and making recommendations for improvements
• Experience working in a higher education environment
• Experience working with Splunk and Defender for endpoints
• Experience working with Snort, Nessus, Rapid 7, OWASP ZAP, Burp Suite, Metasploit, OSSEC, OSSIM or equivalent tools

Overtime Status

Exempt: Not eligible for overtime

Appointment Type

Regular

Salary Information

Salary range of $90,000 - $110,000

Hours per week

40

Review Date

8/15/2026

Additional Information

The successful candidate will be required to have a criminal conviction check.

Advertised: July 24, 2026
Applications close:

Whatsapp Facebook LinkedIn Email App

Similar Jobs

More Jobs at Virginia Tech

More Information Technology Jobs

Find similar Senior IT Security and Compliance Manager jobs: