IT/IS Manager
Role details
Job location
Tech stack
Job description
The IT/IS Manager owns the company's IT infrastructure and information security posture end-to-end - networks, servers, endpoints, cloud services, and helpdesk operations. This role carries direct, primary ownership of our ISO 27001-aligned Information Security Management System (ISMS): you will lead the build-out, maturation, and ongoing governance of our security program against the ISO 27001 framework, driving the organization toward certification and sustained compliance. We're looking for a candidate who can speak fluently to ISO 27001 controls, risk assessment methodology, and audit processes from day one - this is a core requirement of the role, not a future development area. You'll also manage day-to-day IT operations and a small team. This is an ideal role for an experienced, security-first IT leader who wants to own an ISO 27001 program from the ground up within a hands-on manufacturing environment., * Lead and manage the IT infrastructure function: networks, servers, storage, virtualization, endpoints, and cloud/SaaS platforms.
-
Own the company's information security program - policies, risk assessments, access controls, vulnerability management, incident response, and security awareness training.
-
Own and lead the company's ISO 27001 program end-to-end: gap assessments, risk treatment plans, Statement of Applicability, ISMS documentation, control implementation, internal audits, and certification/surveillance audit readiness.
-
Serve as the organization's subject-matter expert on ISO 27001, advising leadership on scope, control selection, and compliance roadmap; champion ISO 27001 principles across all IT and security initiatives.
-
Manage and mentor IT support staff; oversee helpdesk operations and ensure timely resolution of end-user issues.
-
Develop, implement, and enforce IT policies, standards, and procedures (acceptable use, data protection, backup/recovery, change management).
-
Own business continuity and disaster recovery planning, including backup strategy, testing, and documentation.
-
Manage relationships with IT vendors, managed service providers, and software/hardware suppliers, including contract and license management.
-
Administer identity and access management (Active Directory/Azure AD, MFA, role-based access) across the organization.
-
Monitor network and system security; respond to and document security incidents; lead remediation efforts.
-
Partner with leadership to align IT/security strategy and budget with business goals and growth plans.
-
Evaluate and implement new technologies and systems to improve efficiency, security, and scalability across the organization.
-
Maintain compliance with applicable data protection and industry regulations relevant to a manufacturing environment.
-
Manage IT budget, including hardware/software procurement, licensing, and capital planning.
Requirements
-
Bachelor's degree in Information Technology, Computer Science, Information Security, or a related field (or equivalent experience).
-
5-10 years of progressive IT experience, including 3+ years in a management or supervisory role.
-
Strong working knowledge of network administration, server infrastructure (on-prem and cloud), and endpoint management.
-
Direct experience building, implementing, or maintaining an information security program.
-
Strong, demonstrable expertise in the ISO 27001 framework, required: hands-on experience with risk assessments, Statement of Applicability, Annex A controls, ISMS documentation, and internal/external audit processes.
-
Proven track record leading or playing a lead role in an ISO 27001 certification or recertification effort, from gap assessment through successful audit.
-
Experience with identity and access management, MFA, and least-privilege access models.
-
Solid understanding of backup/disaster recovery planning and business continuity practices.
-
Experience managing IT vendors, contracts, and budgets.
-
Strong leadership, communication, and people-management skills; ability to translate technical risk into business terms for leadership.
-
Demonstrated ability to balance hands-on technical work with team management and strategic planning.
Preferred Qualifications
-
ISO 27001 Lead Implementer or Lead Auditor certification strongly preferred.
-
Relevant complementary certifications such as CISSP, CISM, or Security+.
-
Experience in a manufacturing or industrial environment, including familiarity with OT/IT boundary considerations.
-
Experience leading a successful ISO 27001 certification effort from gap assessment through audit.
-
Familiarity with ERP systems and securing business-critical applications.
-
Experience with SIEM tools, vulnerability scanning, and security monitoring platforms.
Work Environment & Physical Requirements
-
Primarily an office environment within a manufacturing facility; occasional time in server/network closets and on the production floor.
-
May require occasional lifting of IT equipment (up to 25 lbs).
-
Standard business hours, with availability for after-hours support during critical outages or security incidents.
Benefits & conditions
Pulled from the full job description
-
Health insurance
-
401(k) matching
-
Paid time off
-
Vision insurance
-
Dental insurance
-
Disability insurance
-
Paid holidays, Salary range: $95,000 - $125,000 annually, commensurate with experience. Benefits package to include:
-
Medical, dental, and vision insurance
-
401(k) with company match
-
Paid time off and paid holidays
-
Life and disability insurance
-
Professional development, training, and certification support
Automation Displays Inc. is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.