> Markdown version of [/jobs/ext/3418989-it-security-manager](https://www.wearedevelopers.com/jobs/ext/3418989-it-security-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT & Security Manager - **Company:** Efficient Computer - **Location:** Austin, TX, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Artificial Intelligence, Apple Mac Systems, Bash Shell, Software as a Service, Cyber Security, Python (Programming Language), Anti-Phishing, User Provisioning Software, Virtual Local Area Networks, Wi-Fi Technology, Data Processing, Scripting, Okta, Firewalls (Computer Science), Microsoft InTune, Information Technology, Casper Suite, Build Tools, Gsuite - **Published:** September 2, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=13f1e6b773e0774b ## About the Role * 6+ years of progressive IT experience, including experience as the sole or founding IT owner at a startup. * Hands-on depth with MDM platforms (e.g., Jamf, Kandji, Intune) across macOS and Windows fleets. * Strong experience administering SSO and identity providers and designing sane access models; we run SSO through Rippling on top of Google Workspace, and experience with either (or comparable platforms like Okta or Entra) translates well. * Experience with automated user lifecycle management, including SCIM provisioning and deprovisioning across SaaS applications. * Experience deploying and managing RADIUS servers for network authentication (e.g., certificate-based Wi-Fi auth tied to MDM and identity). * Working knowledge of CMMC, NIST SP 800-171, or comparable defense and government IT compliance frameworks, ideally having taken a company through an assessment or audit. * Solid grounding in security operations: endpoint protection, email security, incident response, and security awareness. * Comfort with office networking (firewalls, VLANs, Wi-Fi) across multiple physical sites. * A service mindset paired with strategic judgment: you take pride in fast, friendly support and in knowing which problems to solve permanently. * Clear written communication; you document what you build and can explain security tradeoffs to non-technical audiences. * Willingness to travel roughly 25% of the time between our offices. * Due to the nature of our work and applicable regulations, this position requires U.S. person status (U.S. citizen or lawful permanent resident). Nice to have * Experience in a defense, aerospace, or hardware company handling CUI or export-controlled data (ITAR/EAR). * Security or compliance certifications (e.g., Security+, CISSP, CCP/CCA for CMMC). * Scripting or automation experience (e.g., Bash, Python, or MDM automation). * Experience rolling out or governing AI tools in a company setting (usage policies, data handling, spend management). ## Description * Own day-to-day IT support across all offices: hardware, software, accounts, and access. No ask is too small, and you'll build systems so the small asks stay small. * Run employee onboarding and offboarding end to end: provisioning, deprovisioning, access reviews, and equipment lifecycle. * Manage laptop fleets and mobile device management (MDM), including configuration baselines, patching, and endpoint security. * Administer identity and access: SSO via Rippling, Google Workspace, MFA, SCIM provisioning, and role-based access across our SaaS stack. * Own office IT infrastructure across four sites: networking, Wi-Fi (including RADIUS-authenticated networks), conference rooms and AV, printers, and physical access systems where applicable. * Manage IT vendors, licensing, and renewals, and keep spend sensible. AI tooling and governance * Help shape and administer the company's AI usage policies: which tools are approved, how they're provisioned, and how sensitive data stays out of them. * Own AI tool spend and seat management, monitoring usage and controlling costs so budget goes where it delivers value. * Ensure employees are genuinely supported and productive with AI tools while steering usage toward the right tool for the job (not every task needs a frontier model). Security and compliance * Serve as the company's first line of defense: monitor for and respond to security events, phishing attempts, and incidents, and run the playbooks you'll write. * Own compliance with CMMC and other defense-related IT standards (e.g., NIST SP 800-171), including gap assessments, remediation plans, evidence collection, and audit readiness. * Establish and maintain policies and controls for handling sensitive and controlled information, and train employees on them. * Get in front of strategic security: build the roadmap for where our security program needs to be as the company scales, and drive it, rather than waiting for requirements to arrive. * Partner with leadership, legal, and engineering on customer and government security requirements, questionnaires, and audits. Strategy and scale * Advise leadership on IT strategy, budget, and build-vs-buy decisions as headcount and office footprint grow. * Design systems and processes that scale: self-service where it makes sense, automation where it pays off, documentation everywhere. * Lay the groundwork for a future IT team, and eventually help build it. ## Related Videos - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Introduction to sCrypt - a smart contract language for Bitcoin SV](https://www.wearedevelopers.com/videos/24-introduction-to-scrypt-a-smart-contract-language-for-bitcoin-sv) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)