- Location
- Miami, FL
- Type
- Full-time
- Department
- IT
- Seniority
- Manager
- Experience
- 2+ years
- Source
- PCRecruiter
Description
Apollo Technical has an immediate need for a Cloud Security Manager to support our client, a leader in maritime and hospitality technology solutions, in an internal owner and oversight capacity.
Position Overview
In this pivotal architect/manager-level role, you will serve as the internal accountable owner of our client's cybersecurity posture and outsourced SOC/NOC relationship. As the Cloud Security Manager, your focus is on governance, oversight, vendor management, and architectural strategy—not hands-on engineering. Having recently transitioned SOC/NOC operations to a third-party managed security service provider (MSSP), our client needs a technical authority who can negotiate, enforce, and audit SLAs to ensure the vendor delivers measurable security outcomes across an all-Azure environment and distributed ship-to-shore edge infrastructure.
Key Responsibilities
-
Vendor & MSSP Governance: Own the end-to-end operational relationship with the outsourced SOC/NOC provider. Enforce SLAs/SLOs (MTTD, MTTR, false-positive rates, alert coverage) and run QBRs to drive continuous vendor performance.
-
Azure & Cloud Security Architecture: Provide strategic security architecture direction across a 100% Azure/Microsoft estate (Defender for Cloud, Sentinel, Entra ID, Key Vault) and custom ship-to-shore data platforms across 25 distributed edge nodes.
-
Risk, Compliance & De-scoping: Govern the enterprise security program using NIST CSF and CIS Controls (IG1). Periodically validate third-party payment-wallet compliance (SAQ-A) and vendor AOCs to maintain de-scoped PCI DSS status.
-
Customer & B2B Security Assurance: Own technical responses to demanding B2B customer security questionnaires and maintain alignment with maritime regulatory standards (IMO, BIMCO).
Required Qualifications
-
Certifications: Active CISSP certification in good standing is required.
-
Career Trajectory: Must have built a foundation in hands-on technical engineering (SOC, Incident Response, Cloud Security) before transitioning into governance and vendor oversight.
-
Vendor Oversight: 5+ years of total information security experience, including 2+ years explicitly managing or governing an outsourced SOC/NOC or MSSP.
-
Technical Depth: Proven hands-on background in Azure / Microsoft Security solutions (Defender for Cloud, Sentinel, Entra ID).
-
Framework Command: Strong working fluency with NIST CSF, CIS Controls, and third-party risk management (TPRM).
Highly Desirable "Nice to Haves"
-
Cloud certifications such as CCSP or Azure Security Engineer Associate (AZ-500).
-
Experience in multi-site, distributed, or intermittent-connectivity edge environments (Maritime, Logistics, Hospitality, Retail).
-
Practical working knowledge of PCI DSS de-scoping parameters.
-
Bilingual proficiency in English / Spanish (for nearshore LATAM vendor coordination).
Ideal Candidate Profile
Our "Green Flag" candidate is a seasoned security professional with deep, lived engineering credibility who is energized by contract negotiation, vendor oversight, and risk strategy rather than building code. You must possess the concrete engineering depth to hold third-party MSSPs accountable so they cannot mislead you, paired with the diplomatic skill to communicate risk effectively to executive leadership and B2B clients.
Additional Information
-
Role Type: Full-Time / Direct Hire.
-
Level: Architect / Manager (Governance-Led).
-
Reporting Structure: Accountable owner of vendor security operations; initial team-of-one with potential to seed internal function growth.