- Salary
- $121k – $134k
- Location
- Roanoke, VA, US
- Type
- Full-time
- Department
- Operations
- Seniority
- Manager
- Experience
- 5+ years
- Education
- Bachelor
- Source
- ApplicantPro
Description
R&K Solutions is seeking an Information Security and IT Operations Manager who is responsible for leading the organization's information security program while also managing day-to-day IT operations. This role ensures that company systems, networks, data, devices, and users are properly supported, secured, monitored, and maintained.
The position combines cybersecurity leadership, compliance oversight, infrastructure management oversight, help desk coordination, vendor management, incident response, and operational planning. The manager works closely with leadership, technical staff, software teams, vendors, and end users to ensure IT services are reliable, secure, compliant, and aligned with business needs.
R&K is an employee-owned company and EOE including Veteran/Disability.
Duties
Leadership and Coordination
•Supervise or coordinate IT and security staff, contractors, vendors, and support resources.
•Establish priorities for IT operations and security initiatives based on business impact and risk.
•Report IT performance, operational metrics, service levels, cybersecurity posture, risks, incidents, and improvement plans to leadership.
•Support budgeting, planning, purchasing, and lifecycle replacement of IT assets.
•Provide technical and security guidance for new systems, software releases, infrastructure changes, and business initiatives.
•Promote a culture of security, accountability, responsiveness, and continuous improvement.
Information Security Management
•Develop, maintain, and enforce information security policies, procedures, standards, and guidelines.
•Manage the organization's cybersecurity program, including risk management, compliance, incident response, access control, and security awareness.
•Support compliance with applicable frameworks and requirements to include CMMC, NIST, FedRAMP, DoD Cloud Computing Security Requirements, contractual requirements, and company security policies.
•Lead or coordinate security assessments, internal reviews, audits, and evidence collection activities.
•Monitor security risks and recommend mitigation strategies to leadership.
•Oversee vulnerability management, patch management, endpoint protection, security monitoring, logging, and remediation activities.
•Coordinate security incident response activities, including investigation, containment, communication, documentation, and corrective actions.
IT Operations Management
•Oversee daily IT operations, including user support, systems administration, network operations, endpoint management, software licensing, and infrastructure maintenance.
•Manage help desk activities to ensure timely response and resolution of user issues.
•Oversee that laptops, desktops, servers, network devices, mobile devices, printers, and related equipment are properly configured, secured, maintained, and inventoried.
3 Version 2020.10
•Oversee cloud services, Microsoft 365, identity management, email, file storage, collaboration tools, and other business applications.
•Manage backup, recovery, business continuity, and disaster recovery processes.
•Ensure systems are patched, monitored, available, and operating efficiently by managing staff and processes.
•Coordinate IT onboarding and offboarding activities for employees, contractors, and partners.
•Maintain hardware and software inventories, license records, support agreements, and renewal schedules.
•Evaluate, recommend, and implement IT tools, systems, and process improvements.
•Coordinate with vendors, service providers, and internal teams to resolve technical issues and support business needs.
Required Qualifications
•Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Information Systems, or a related field; equivalent experience may be considered.
•5 years experience managing IT operations, systems administration, help desk support, cybersecurity, or a combination of these areas.
•1-3 years supervisory experience.
•Strong understanding of information security principles, risk management, access control, vulnerability management, incident response, and security compliance.
•Experience supporting Amazon Web Services (AWS) could computing environments.
•Experience supporting Microsoft 365, Windows environments, endpoint management, networking, and identity management.
•Ability to develop policies, procedures, technical documentation, reports, and management briefings.
•Ability to lead both strategic security initiatives and hands-on operational support.
•Ability to prioritize competing issues, incidents, projects, and support requests.
•Ability to balance operational needs with security and compliance requirements.
•Ability to communicate technical issues clearly to both technical and non-technical audiences.
•Ability to work independently and coordinate across multiple teams.
•Strong problem-solving, communication, organizational, and leadership skills.
•Strong documentation and process improvement skills.
•Experience coordinating with vendors, internal teams, leadership, and end users.
•Experience with CMMC, NIST SP 800-171, NIST SP 800-53, FedRAMP, DoD Cloud Computing Security Requirements, or similar security frameworks.
4 Version 2020.10
•U.S. citizenship is required and candidate must be able to obtain and maintain a U.S. Government Secret security clearance.
Desired Qualifications
•Security certifications such as CISSP, CISM, Security+, CCSP, or equivalent.
•IT certifications such as Microsoft, Azure, AWS, Cisco, ITIL, or related credentials.
•Experience supporting small to mid-sized business IT environments.
•Experience managing security tools such as endpoint detection and response, vulnerability scanning, mobile device management, SIEM/logging, email security, and backup solutions.
•Experience supporting government contractors or regulated environments.