- Location
- Johannesburg, ZA
- Workplace
- Remote
- Type
- Full-time
- Seniority
- Manager
- Education
- Master
- Source
- Breezy HR
Description
We are seeking a hands-on IT Manager to own Sourcefin's technology environment end to end — from Microsoft 365 identity and endpoint security through to incident response, MSP oversight, and technical support for our ISO 27001 programme. Reporting to the TechOps Lead, you will be the primary technical authority for a small but critical team, setting the standards that our IT Technician provisions against day-to-day and stepping in directly on complex or escalated issues.
The role suits a generalist who is equally comfortable configuring conditional access policies, tuning Defender detections, holding an MSP to account on missed SLAs, or leading triage on a suspected compromise. You take ownership rather than escalating and waiting, document clearly under pressure, and take pride in measurable outcomes: near-100% Defender/Intune coverage, alerts actioned within SLA, ISO control gaps closed on schedule, and every incident triaged with a clear, documented root cause.
Duties & Responsibilities
• Microsoft 365 Tenant & Identity: Own tenant-level configuration in Entra ID, including conditional access policies, MFA standards, and the overall identity and access model. Set the joiner/mover/leaver policy and role-based access templates that the IT Technician provisions against day-to-day, owning privileged and admin access directly and stepping in on complex or escalated issues. Own licensing strategy and governance (SKU selection, tenant-wide cost and compliance optimisation) and run periodic access reviews to confirm day-to-day provisioning and de-provisioning is being executed correctly.
• Endpoint & Device Management (Intune): Manage device enrolment, compliance policies, and configuration profiles via Intune. Enforce baseline device security standards — encryption, patching, app control — across all company devices, and maintain a current, accurate device and asset inventory.
• Security Controls & Threat Protection (Defender): Own Microsoft Defender across endpoints, identities, and email — monitoring alerts, tuning detection rules, and actioning threats. Maintain and improve technical security controls in line with the Information Security Policy (firewalls, email security, backup, encryption, patching), and run or coordinate vulnerability management, from scanning and patching cadence through to tracking remediation to closure.
• ISO 27001 Support (Technical): Partner with the Compliance Manager to identify technical control gaps against ISO/IEC 27001:2022 Annex A controls and drive remediation. Provide and maintain technical evidence for audits (config exports, logs, access reviews) on request, and own the technical controls that map directly to certification requirements: access control, logging and monitoring, backup, cryptography, and secure configuration.
• Incident Management: Act as technical lead for security and infrastructure incidents — suspected compromise, outage, or data exposure — at escalation level rather than first-line ticket handling. Run incident triage, containment, and recovery, document root cause and remediation, and feed learnings back into controls and the risk register with the Compliance Manager.
• MSP Relationship Management: Own the relationship with Sourcefin's managed service provider as day-to-day point of contact and escalation owner. Hold the MSP accountable to their contracted scope — particularly endpoint monitoring and patching — tracking SLA performance and escalating persistent shortfalls. Set the standards expected of the MSP, and verify (rather than simply trust) that patch compliance and monitoring coverage meet them, checking MSP reporting against what Intune and Defender show directly.
• General IT Operations: Own the broader tech environment beyond security: networking, backups/DR, SaaS administration, and vendor/ISP relationships, plus hardware standards, procurement, and lifecycle policy. Maintain IT documentation (network diagrams, runbooks, how-tos) so the environment is never a single point of knowledge failure, and act as second-line escalation for the IT Technician on issues needing deeper access or expertise.
Desired Experience
• Around 5 years of relevant experience across IT administration and security.
• Hands-on experience administering Microsoft 365 / Entra ID, Intune, and Microsoft Defender in a production environment.
• Solid grasp of core security fundamentals: identity and access management, endpoint protection, patching, backup/DR, and network security basics.
• Comfortable being the sole or primary owner of the tech environment in a small team — a true generalist across networking, cloud, endpoints, and vendor management, not just one lane.
• Experience supporting, or ideally participating in, an ISO 27001 or similar security framework implementation.
• Strong incident response instincts: calm under pressure, methodical triage, and clear, structured documentation after the fact.
• Practical, solution-first mindset — comfortable owning problems end-to-end rather than escalating and waiting.