Senior Manager, IT Operations, Cybersecurity & Compliance

Cristcot

$120K — $145K *
US-AnywhereRemote in United States
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in IT, Computer Science, Cybersecurity, or related field, or equivalent experience
  • 8+ years of experience in IT operations, Microsoft cloud administration, or cybersecurity
  • Hands-on experience with Microsoft Entra ID, Intune, Defender, SharePoint Online
  • Knowledge of identity security, multifactor authentication, and privileged access
  • Expertise in managing cybersecurity controls and incident response
  • Strong troubleshooting and communication skills
  • Experience managing MSPs and technology vendors

Responsibilities

  • Administer and configure Microsoft 365 services including Entra ID and Intune
  • Lead and monitor corporate IT services for performance and reliability
  • Oversee incident management and service delivery processes
  • Manage operational cybersecurity activities and enhance security posture
  • Ensure compliance with GxP requirements and company standards
  • Develop IT policies, SOPs, and maintain documentation
  • Provide technical guidance and mentorship to IT staff

Benefits

  • Health, dental, and vision insurance
  • 401(k) with company match
  • Paid time off and holidays
  • Employee wellness programs
  • Ongoing training and development opportunities
  • Flexible work environment
Full Job Description
Job Summary:

Cristcot is seeking a Senior Manager, IT Operations, Cybersecurity & Compliance to lead day-to-day IT operations and maintain a secure, compliant, and reliable technology environment.

This is a hands-on technical leadership role. The successful candidate will personally administer and troubleshoot Microsoft Entra ID, Intune, Defender, SharePoint Online, and related Microsoft 365 services while overseeing Cristcot's Managed Service Provider and other technology vendors.

The ideal candidate combines strong Microsoft cloud administration expertise with experience in cybersecurity, IT service delivery, vendor management, and regulated environments.

Primary Relationships:

The Senior Manager, IT Operations, Cybersecurity & Compliance will partner closely with internal business leaders and external technology partners to deliver secure, scalable IT services while maintaining compliance with GxP requirements and industry best practices. The successful candidate is an operational leader who drives execution, resolves issues, improves processes, and ensures technology enables the business.

The activities of the Senior Manager, IT Operations, Cybersecurity & Compliance will include, but are not limited to:

M365 Administration

  • Administer, configure, and troubleshoot
    • Microsoft Entra ID
    • Microsoft Intune
    • Microsoft Defender
    • SharePoint Online
    • Exchange Online
    • Teams
    • OneDrive
  • Manage identity and access controls, including multifactor authentication, Conditional Access, privileged roles, single sign-on, guest access, and user lifecycle management.
  • Manage Intune device enrollment, Autopilot, compliance policies, configuration profiles, application deployment, security baselines, and update policies.
  • Investigate Microsoft Defender alerts and coordinate security remediation.
  • Administer SharePoint sites, permissions, external sharing, governance, and access issues.
  • Use PowerShell, Microsoft administrative portals, logs, and audit records to troubleshoot and automate administrative activities.

IT Operations and Service Delivery

  • Lead the daily performance, availability, and reliability of corporate IT services.
  • Serve as the escalation point for complex Microsoft 365, endpoint, identity, access, and security issues.
  • Oversee incident, request, problem, change, and escalation-management processes.
  • Monitor service levels, recurring issues, system performance, and user satisfaction.
  • Develop and maintain IT procedures, technical documentation, and operational standards.
  • Support employee onboarding, offboarding, access changes, and technology lifecycle activities.

Cybersecurity

  • Lead operational cybersecurity activities and continuously improve Cristcot's security posture.
  • Oversee endpoint security, vulnerability management, patching, identity security, email protection, and privileged access.
  • Maintain cybersecurity risk assessments, remediation plans, and risk registers.
  • Coordinate incident response, investigation, recovery, and corrective actions.
  • Manage security-awareness and phishing-training programs.
  • Support cybersecurity frameworks such as the NIST Cybersecurity Framework and CIS Controls.

Compliance and Business Continuity

  • Ensure IT processes and controls support applicable GxP requirements and company quality standards.
  • Support regulated change control, computerized system validation, audits, inspections, and evidence collection.
  • Develop and maintain IT policies, SOPs, work instructions, and supporting documentation.
  • Maintain business continuity, disaster recovery, backup, and recovery-testing processes.
  • Track compliance, security, and audit remediation activities through completion.
  • Leadership & Cross-Functional Collaboration
  • Provide technical guidance and mentoring to internal IT staff.
  • Partner with business functions to deliver secure and supportable technology services.
  • Communicate technical issues, risks, and recommendations clearly to technical and non-technical stakeholders.
  • Promote accountability, automation, documentation, and continuous improvement.


Skills and Qualifications:

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Systems, or a related field, or equivalent education and experience.
  • 8+ years of progressively responsible experience in IT operations, infrastructure, Microsoft cloud administration, endpoint management, or cybersecurity.
  • Demonstrated recent hands-on administration experience with:
    • Microsoft Entra ID
    • Microsoft Intune
    • Microsoft Defender
    • SharePoint Online
    • Exchange Online
    • Teams and OneDrive
  • Strong knowledge of Conditional Access, multifactor authentication, privileged access, enterprise applications, single sign-on, and guest-user governance.
  • Strong knowledge of Intune device management, Autopilot, compliance policies, configuration profiles, application deployment, and security baselines.
  • Experience investigating and remediating Microsoft Defender alerts.
  • Experience administering SharePoint permissions, external sharing, site configuration, and governance.
  • Experience using PowerShell and administrative tools to troubleshoot Microsoft environments.
  • Experience managing MSPs and third-party technology vendors.
  • Experience with cybersecurity controls, vulnerability management, incident response, and endpoint security.
  • Strong troubleshooting, problem-solving, documentation, and communication skills.
  • Ability to travel 10-15%, as needed.


Preferred Qualifications

  • Experience in pharmaceutical, biotechnology, medical device, healthcare, or another regulated industry.
  • Experience supporting GxP systems, audits, change control, and computerized system validation.
  • Experience with Microsoft Purview, Sentinel, Defender for Cloud Apps, or Defender for Identity.
  • Knowledge of NIST, CIS Controls, ITIL, and 21 CFR Part 11.
  • Experience with business continuity, disaster recovery, software licensing, and IT budgeting.


Preferred Certifications

Relevant certifications may include:

  • Microsoft Certified: Identity and Access Administrator
  • Microsoft Certified: Endpoint Administrator
  • Microsoft Certified: Cybersecurity Architect
  • CISSP
  • CISM
  • CISA
  • Security+
  • ITIL Foundation

Similar Jobs

More Jobs at Cristcot

More Information Technology Jobs

Find similar Senior Manager, IT Operations, Cybersecurity & Compliance jobs: