IT Security Manager
Washington, DC - USA
Job Summary
Amida Technology Solutions is a DC-based technology company focused on data interoperability integrity governance and security. We create solutions that collect reconcile transform and standardize data for business intelligence advanced analytics decision support and user transactions. We specialize in taking data from inception to impact.
Our team is composed of creative forward-looking thinkers who are passionate about using cutting-edge technology to improve lives and generate a positive impact on our country. We offer an entrepreneurial high-growth environment that values fresh ideas candid conversations and authentic teamwork.
Amida Technology Solutions is seeking an IT Security Manager. The selected candidate will lead our organizations cybersecurity strategy and operations overseeing the protection of company systems and data ensuring compliance with regulatory requirements and continuously improving our security posture. This role will report to the CFO. The ideal candidate will be motivated by the opportunity to support public agencies nonprofit organizations and private companies in transforming their data into actionable insights. The candidate must be able to work 3 days per week in our offices in DC or Richmond VA.
What you will do:
- Oversee and enhance Amidas IT and physical office cybersecurity and hygiene practices ensuring the protection and efficiency of cloud environments and user systems across three global office locations
- Manage security protocols and maintain optimal performance for operations across multiple continents
- Lead the development and implementation of enterprise-wide IT security policies procedures and standards across Google Workspace AWS Azure and government AWS and Azure
- Manage and mentor IT professionals
- Maintain a physical security program aligned with Amidas regulatory requirements
- Oversee incident response planning and execution including investigation containment eradication and post-mortem analysis of cloud information system and email compromise activity
- Conduct regular risk assessments and ensure appropriate mitigation plans are in place
- Uphold and enforce the high-quality standards provided by Tier I and II support staff with internal and external users including managing helpdesk staff and serving as point of escalation as required
- Ensure team follows processes such as IT onboarding and offboarding working collaboratively with other departments to improve processes
- Ensure compliance with relevant laws regulations and frameworks (e.g. ISO 27001 CMMC Levels I and II HITRUST e1 and r2 NIST GDPR HIPAA SOC 2)
- Collaborate with IT business stakeholders and third parties including clients to integrate security best practices into infrastructure and application design
- Manage third-party security tools and services (e.g. SIEM endpoint protection firewalls)
- Lead security awareness training and education and phishing exercises across the organization
- Prepare and present security metrics and reports to executive leadership
- Oversee vulnerability patch management and organizational backup programs
- Evaluate emerging security technologies and recommend investments aligned with business goals
- Perform security assessments of vendors applications and processes as they integrate with Amidas operational environment
- Maintain and manage a low-risk cyber score for cyber insurance suitability
- Other duties as assigned
Required Education:
- Bachelors degree in computer science information security or a related field
Required Experience:
- At least 10 years of experience in IT security with at least 3 years in a managerial or leadership role
- Experience managing incident response and leading forensic investigations
Required Skills:
- Strong knowledge of security architecture network and endpoint security cloud security (e.g. AWS Azure or GCP) and identity and access management
- Familiarity with governance risk and compliance (GRC) practices
- Technical writing of deliverables for executive and technical team audiences
- Excellent communication leadership and interpersonal skills
- Vendor applications and supply chain cyber risk assessment experience
Preferred:
- Industry certifications such as CISSP CISM CISA or equivalent are strongly preferred
- Experience in regulated industries (finance healthcare national security components etc.)
- Familiarity with DevSecOps practices and secure software development life cycle (SDLC)
- Knowledge of Zero Trust architecture principles
- Masters degree in computer science information security or a related field
Success at Amida
Communication is the key to success at Amida. Our people are known for their can-do attitude and their ability to work effectively with both internal and client teams. We pride ourselves on having a collegial multidisciplinary team with diverse backgrounds and experience. Our best team members pay intense attention to detail in all aspects of their work have great initiative are opinionated about the best ways of doing things and align quickly to decisions. A sense of humor is an asset at Amida.
Full-time regular employees at Amida enjoy a robust benefits package that includes a generous 401(k) match with immediate vesting 4 weeks of PTO paid parental leave medical insurance dental insurance vision insurance life/AD&D insurance and short-term disability. We also offer tuition/training assistance and team-building opportunities to encourage professional growth and collaboration.
All qualified applicants will receive consideration without regard to race color religion sex sexual orientation gender identity national origin disability protected veteran status or any other characteristic protected by law.
Required Experience:
Manager
About Company
Amida provides quality data management solutions that reduce costs and enhance infrastructure of your enterprise business.