IT Security Manager

Saint Francis Ministries
Salina, United States of America
7 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate

Job location

Salina, United States of America

Tech stack

Microsoft Windows
Microsoft Active Directory
Computer Security
Data Governance
Information Leak Prevention
Identity and Access Management
IT Management
Role-Based Access Control
Azure
Security Information and Event Management
Software Vulnerability Management
Data Classification

Job description

The IT Security Manager is responsible for helping lead the organization's cybersecurity operations, IT risk management, and compliance efforts. This role ensures that security controls, monitoring capabilities, and response processes are implemented, maintained, and continuously improved to protect the organization's systems, data, and infrastructure.

This position oversees security operations, incident response, vulnerability management, identity security, and regulatory compliance alignment. The IT Security Manager works closely with IT leadership to ensure the organization maintains a strong security posture aligned with business objectives, regulatory requirements, and evolving threats.

  • Oversee daily cybersecurity operations across endpoint, cloud, identity, and network environments.
  • Manage and monitor security tools, including SIEM, endpoint protection, MDR, identity platforms, and related technologies.
  • Lead incident response activities, including triage, investigation, escalation, and coordination of remediation efforts.
  • Maintain and continuously improve the Cybersecurity Incident Response Plan (CIRP), and support tabletop exercises.
  • Ensure implementation and enforcement of security controls, including MFA, least privilege, privileged access management, and secure configuration baselines.
  • Monitor and investigate authentication, identity, and security events across Active Directory, Microsoft Entra ID (Azure AD), Microsoft 365, and related platforms.
  • Oversee vulnerability management processes, including scanning, prioritization, and remediation tracking.
  • Coordinate patching efforts with infrastructure teams to ensure timely resolution of security vulnerabilities.
  • Maintain audit-ready documentation to support SOC audits, cyber insurance renewals, and regulatory reviews.
  • Support compliance efforts aligned with organizational and regulatory requirements (e.g., HIPAA, CJIS, and other applicable standards).
  • Assist in the implementation and operationalization of security frameworks, such as NIST Cybersecurity Framework (CSF).
  • Monitor and support data protection efforts, including Data Loss Prevention (DLP) policies and data classification initiatives.
  • Collaborate with IT leadership and data governance efforts to ensure proper handling and protection of sensitive data.
  • Manage and oversee the organization's security awareness training program, including onboarding and annual compliance.
  • Investigate and respond to security alerts, anomalies, and potential threats across the environment.
  • Develop and maintain security policies, procedures, and operational documentation.
  • Generate and analyze reports related to security incidents, vulnerabilities, compliance status, and risk trends.
  • Collaborate with IT leadership, infrastructure teams, and business units to align security with operational needs.
  • Support vendor risk considerations and security reviews related to third-party systems and services.
  • Drive continuous improvement of security processes, tools, and operational efficiency.
  • Supervise and mentor cybersecurity staff as applicable.
  • Establish performance expectations, KPIs, and ensure adherence to SLAs.
  • Strong analytical and problem-solving skills related to cybersecurity risks and operational challenges.
  • Effective communication and coordination skills across IT, leadership, and organizational stakeholders.

Requirements

  • Bachelor's degree or 4-7 years equivalent experience
  • Four or more years of experience in the IT field
  • Must be at least 21 years of age
  • Must pass a drug screen, MVR check, KBI check, Child Abuse and Neglect Central Registry Clearance check and Adult Registry Check
  • Must pass a DCF and KBI background check
  • Ability to lift up to 50 pounds.
  • Must have a valid driver's license, acceptable driving record, and reliable transportation

Apply for this position