What are the responsibilities and job description for the Cybersecurity & IT Operations Lead position at EVONA?
Cybersecurity & IT Operations Lead
About the Role
We are seeking a Cybersecurity & IT Operations Lead to oversee and manage day-to-day IT operations across both remote and in-office environments. In this role, you will collaborate with the Information Systems Security Manager and Engineering team to implement and maintain strong cybersecurity and compliance measures. Responsibilities will range from user access management, Microsoft administration, and hardware management to leading initiatives such as migration to GCC High and ensuring compliance with security frameworks like NIST, CMMC, and FedRAMP.
This position is both hands-on and strategic, requiring technical expertise, leadership skills, and a strong focus on security and regulatory compliance. If you're a results-driven professional with a passion for IT systems and cybersecurity, this role offers an opportunity to have a significant impact on the company’s security posture and operational efficiency.
Key Responsibilities
IT Operations:
- IT Infrastructure Management: Oversee company-wide IT systems, including laptops, servers, network devices, cloud services, and collaboration tools.
- User Access & Device Management: Deploy and maintain laptops, software, and cloud accounts for remote and hybrid employees, ensuring smooth onboarding and offboarding.
- System Monitoring & Incident Management: Proactively monitor and troubleshoot IT systems to maintain availability, security, and performance.
- Office Network & Security: Secure the office network, manage firewalls, VPNs, and ensure reliable local backups.
Cybersecurity:
- Compliance & Security Controls: Collaborate with security teams to enforce cybersecurity measures aligned with NIST, CMMC, and FedRAMP requirements.
- Vulnerability Management: Conduct regular security assessments, penetration testing, and risk mitigation.
- Endpoint Security: Manage and deploy endpoint security solutions such as antivirus, EDR, and MDM.
- Security Monitoring: Implement and monitor IDS, SIEM, and other security tools to detect and mitigate threats.
- Risk Management: Assess and mitigate cybersecurity risks affecting company operations and compliance.
- COMSEC Equipment Management: Oversee inventory control, security procedures, and user training for COMSEC equipment.
Required Qualifications:
- 5 years of experience in IT operations, cybersecurity, and systems administration, with at least 2 years in a leadership or team lead role.
- Strong expertise in IT infrastructure management (Mac systems, networking, cloud services).
- Experience administering Microsoft 365 (Exchange, Teams, SharePoint, Azure AD).
- Familiarity with endpoint security solutions (EDR, antivirus, MDM).
- Proficiency with firewalls, VPNs, cloud platforms (AWS, Azure), and SIEM tools.
- Ability to troubleshoot hardware issues and support in-office IT systems.
- Strong problem-solving and communication skills for engaging both technical and non-technical teams.
- Experience with COMSEC equipment management.
- Availability to work 3-5 days in-office at the Denver location.
Preferred Qualifications:
- Hands-on experience with security frameworks (NIST, CMMC, SOC 2, FedRAMP).
- Certifications such as CISSP, CISM, CISA, or CompTIA Security .
- Experience with GCC High environments and Microsoft Government Cloud tools.
- Knowledge of security tools like ThreatLocker or similar.
- Familiarity with IT automation tools (Ansible, Puppet, Terraform).
Additional Requirements:
This position requires compliance with U.S. Government export regulations (ITAR). Applicants must be U.S. citizens, lawful permanent residents (green card holders), refugees, or asylees, or be eligible to obtain the required authorizations.
Why You’ll Love Working Here
- Work in a cutting-edge industry with a direct impact on mission success.
- Work-life balance: Unlimited PTO with a 15-day minimum, plus US federal holidays.
- Health & wellness benefits, including mental health support.
- 100% employer-covered health insurance for employees and their families.
- 401(k) matching (4%) to help you save for retirement.
- Quarterly company offsites in exciting locations.
- Be part of an evolving company culture where your contributions shape the future.
Interview Process
- Screening Call (30m): Discussion on experience, role expectations, and career alignment. (75% Behavioral, 25% Technical)
- Technical Interview (45m): Interview with the principal platform engineer, covering IT administration and security.
- Cybersecurity Interview (45m): Discussion with the Information Systems Security Manager and/or CEO on security strategy and administration.
- Reference Check: Two references from the last five years (former managers or colleagues).
- Offer: A verbal and formal offer will be provided within 24 hours of selection.
About the Company
The company is transforming IT and cybersecurity operations for cutting-edge technology environments. Our mission is to enhance operational efficiency, security, and compliance through innovative solutions. With a team of experts from top-tier technology and aerospace companies, we are revolutionizing secure IT infrastructure management.
Join us in shaping the future of secure IT operations and cybersecurity leadership!
Salary : $140,000