Senior IT Security and Compliance Manager

Virginia Tech

Blacksburg (VA)

On-site

USD 90,000 - 110,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Virginia Tech is seeking an information security leader to protect university systems and data across executive leadership areas. The role oversees compliance, incident response, disaster recovery, and security assessments for a 24/7 unit, with after-hours work as needed.

The candidate will manage endpoint protection, run vulnerability checks, and mentor staff while aligning with university policies and standards. Strong communication and multi-project governance are essential.

Qualifications

  • Bachelor's degree in Business Information Technology, CS, or related field or related equivalent experience.

Responsibilities

  • Manage compliance with CIS IG2 throughout supported areas.
  • Manage Microsoft Defender for Endpoint for supported areas to prevent, detect, investigate, and respond to advanced cyber threats.
  • Coordinate and run security training programs for data protection and adherence to university standards and policies.
  • Run scripts and programs to provide vulnerability checks against department servers and web applications.
  • Assist in the design and implementation of appropriate access protection and audit control procedures.
  • Routinely monitor practices to ensure that user access, system access, resources and information are secure.
  • Communicate threats, findings, and mitigation strategies effectively to supported areas when necessary.
  • Manage, and participate in, the procurement and departmental security review processes.
  • Provide guidance, tools, and subject matter expertise for departments performing IT risk assessments.
  • Lead, develop, and mentor employees involved in compliance and risk-related activities.
  • Serve as liaison between supported offices and the IT Security Office.
  • Author and improve documentation to support consistent and reliable procedures.
  • Work with and advise Deputy Executive Director on IT security policies and standards.

Skills

Information security
Policy compliance
Project management
Effective communication
Security testing

Education

Bachelor's degree in Business Information Technology / Computer Science or related field
Master's degree preferred

Tools

OWASP ZAP
nikto
nmap
Defender for Endpoint
Splunk

Job description

Job Description

Serve as the IT security expert helping to create a strong information technology security foundation for the President, Executive Vice President and Chief Operating Officer, and Executive Vice President and Provost senior management areas. Reporting to the Deputy Executive Director, Business and Management Systems this position provides information security and compliance services to all supported departments. The position ensures that all workstations, server systems, applications, networks, databases, and data are properly secured from threats while meeting the mission critical production environments requirements and uptime. Serves as a departmental contact for any issues relating to information security or compliance with regulatory guidance. Shares responsibility for monitoring and maintaining the systems, disaster recovery planning, incident response, and security assessments. Due to the criticality of this position and its support of a 24 X 7 unit, after hours may be required.

Responsibilities of this position include:
  • Manage compliance with CIS IG2 throughout supported areas
  • Manage Microsoft Defender for Endpoint for supported areas to prevent, detect, investigate, and respond to advanced cyber threats
  • Coordinate and run security training programs for data protection and adherence to university standards and policies
  • Run scripts and programs to provide vulnerability checks against department servers and web applications
  • Assist in the design and implementation of appropriate access protection and audit control procedures.
  • Routinely monitor practices to ensure that user access, system access, resources and information are secure
  • Communicate threats, findings, and mitigation strategies effectively to supported areas when necessary
  • Manage, and participate in, the procurement and departmental security review processes
  • Provide guidance, tools, and subject matter expertise for departments performing IT risk assessments
  • Lead, develop, and mentor employees involved in compliance and risk-related activities
  • Serve as liaison between supported offices and the IT Security Office
  • Author and improve documentation to support consistent and reliable procedures
  • Work with and advise Deputy Executive Director on IT security policies and standards
Required Qualifications
  • Bachelorâs degree in Business Information Technology, Computer Science, or a related field or related equivalent experience
  • Significant information security, audit, and/or compliance work experience, with experience measuring compliance against various regulations, industry standards, and/or policies
  • Demonstrated ability to own and manage multiple projects and programs
  • Demonstrated ability to effectively communicate, written and oral, across a broad range of campus audiences
  • Experience using appropriate security software, such as OWASP ZAP, nikto, and nmap, to perform vulnerability tests
  • Ability to self-learn and maintain a strong proficiency in technical tools, counter measures, and techniques
  • Experience installing, securely configuring, and administrating Unix/Linux, OSX or Windows Server operating systems.
  • Ability to install and configure security software or hardware applications such as firewalls, intrusion detection systems, network mapping tools, and vulnerability scanners
  • Ability to quickly understand technical concepts and determine the implications of relevant requirements and policies.
  • Strong analytical, organizational, and problem-solving skills
Preferred Qualifications
  • Master's degree in business information technology, or a related field. CISA, CISM, CRISC, or CISSP certification
  • Experience supervising direct reports or mentoring employees as a team lead
  • Experience in evaluating business processes and making recommendations for improvements
  • Experience working in a higher education environment
  • Experience working with Splunk and Defender for endpoints
  • Experience working with Snort, Nessus, Rapid 7, OWASP ZAP, Burp Suite, Metasploit, OSSEC, OSSIM or equivalent tools
Overtime Status

Exempt: Not eligible for overtime

Appointment Type

Regular

Salary Information

Salary range of $90,000 - $110,000

Hours per week

40

Review Date

8/15/2026

Additional Information

The successful candidate will be required to have a criminal conviction check.

About Virginia Tech

Dedicated to its motto,ÂUt ProsimÂ(That I May Serve), Virginia Tech pushes the boundaries of knowledge by taking a hands-on, transdisciplinary approach to preparing scholars to be leaders and problem-solvers. A comprehensive land-grant institution that enhances the quality of life in Virginia and throughout the world, Virginia Tech is anÂinclusive communityÂdedicated to knowledge, discovery, and creativity. The university offers more than 280 majors to a diverse enrollment of more than 36,000 undergraduate, graduate, and professional students in eightÂundergraduate colleges, aÂschool of medicine, aÂveterinary medicinecollege,ÂGraduate School, andÂHonors College. The university has a significant presence across Virginia, including Blacksburg, the greater Washington, D.C. area, the Health Sciences and Technology Campus in Roanoke, sites in Newport News and Richmond, and numerousÂExtension officesÂandÂresearch institutes. A leading global research institution, Virginia Tech conducts more than $650 million in research annually.

Virginia Tech endorses and encourages participation in professional development opportunities and university shared governance. These valuable contributions to university shared governance provide important representation and perspective, along with opportunities for unique and impactful professional development.

Virginia Tech does not discriminate against employees, students, or applicants on the basis of age, color, disability, sex (including pregnancy), gender, gender identity, gender expression, genetic information, ethnicity or national origin, political affiliation, race, religion, sexual orientation, or military status, or otherwise discriminate against employees or applicants who inquire about, discuss, or disclose their compensation or the compensation of other employees or applicants, or on any other basis protected by law.

If you are an individual with a disability and desire an accommodation, please contact Zach LaCroix at zlacroix@vt.edu during regular business hours at least 10 business days prior to the event.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Deputy Chief Information Security Officer – Virginia Tech
Deputy Chief Information Security Officer – Virginia Tech

V T CORPORATE RESOURCE CTR • Blacksburg (VA)

On-site
USD 120,000 - 160,000
Senior IT Auditor
Senior IT Auditor

VP Enterprise Risk & Integrity • Blacksburg (VA)

On-site
USD 85,000 - 95,000
IT Support Center Analyst
IT Support Center Analyst

Virginia Polytechnic Institute and State University (VT) • Virginia (MN)

On-site
USD 46,000 - 53,000
Senior IT Systems Administrator
Senior IT Systems Administrator

Virginia Polytechnic Institute and State University (VT) • Virginia (MN)

Hybrid
USD 90,000 - 120,000
Senior Director, Enterprise Application Infrastructure
Senior Director, Enterprise Application Infrastructure

Commonwealth of VA Careers • Virginia (MN)

Hybrid
USD 163,000 - 182,000
Senior Director, Enterprise Application Infrastructure
Senior Director, Enterprise Application Infrastructure

Virginia Polytechnic Institute and State University (VT) • Blacksburg (VA)

Hybrid
USD 163,000 - 182,000
Director, Research Security and Export Controls
Director, Research Security and Export Controls

Virginia Polytechnic Institute and State University (VT) • Blacksburg (VA), Northern (KY)

Hybrid
USD 126,000 - 154,000
Director, Research Security and Export Controls
Director, Research Security and Export Controls

Commonwealth of VA Careers • Blacksburg (VA)

Hybrid
USD 140,000 - 170,000
Hybrid work model
Senior IT Systems Administrator
Senior IT Systems Administrator

The Chronicle Of Higher Education, Inc. • Blacksburg (VA)

Hybrid
USD 90,000 - 104,000
Director, Research Security and Export Controls
Director, Research Security and Export Controls

Virginia Tech • Blacksburg (VA)

Hybrid
USD 140,000 - 180,000