OUC - The Reliable One, is presently seeking a Manager, IT Security to join the Technology division. At OUC, we don't just work - we're building a bright future of innovation and transformation for future generations. We are looking for a strategic, accountabilitydriven professional to lead OUC's Cyber Defense and Threat Operations team and strengthen our enterprise security posture. In this role, you will oversee the Security Operations Center (SOC), managing defensive cyber operations, continuous threat monitoring, incident response, and the maturation of SOC processes and technologies. You will guide a highperforming group responsible for alert investigation, threat detection, phishing response, digital forensics, containment and recovery coordination, and MTTD/MTTR improvement. We are looking for a collaborative, peoplefocused leader who excels at developing talent, driving engagement, and building structure within a growing cybersecurity function. This role offers the opportunity to build and mature a newer cybersecurity business unit, expand and shape SOC operations, implement bestinclass tools, contribute to the retirement of legacy security systems, and help guide OUC's transition into nextgeneration cybersecurity technologies, including modern AIdriven defense capabilities. With competitive pay and a flexible work schedule, the Manager, IT Security plays a central role in advancing OUC's security posture and organizational resilience. OUC is an industry leader and the second largest municipal utility in Florida committed to innovation, sustainability, and our community, OUC's mission is to provide exceptional value to our customers and community by delivering sustainable and reliable services and solutions. Join a team of visionary Change Agents, Strategists, and Community Ambassadors who understand the vital role of diverse experiences in powering creativity and industry transformation. At OUC, each position contributes to the success and achievement of our goals. Click here to learn more about what we do. The ideal candidate will have:
- A bachelor's degree in IT, Computer Science, Cybersecurity, Digital Forensics, or a related field from an accredited college or university
- 7+ years of experience in IT security, including 3+ years supervising and developing a team of direct reports in an IT department, to include:
- Proven ability to develop cybersecurity policies, standards, and procedures for an IT department that scale as a program matures
- Hands-on experience managing SOC operations, threat detection, security monitoring, incident coordination, phishing response, and digital forensic investigations
- Strong leadership skills with the ability to coach, mentor, and build team capabilities, while establishing accountability metrics, operational rhythm, KPIs, and structured processes
- Excellent communication and collaboration skills to work effectively across cybersecurity, infrastructure, and business units
- Preferred certifications: CISSP, Security+, CISM, or CISA
- Preferred experience with continuous monitoring tools, digital forensics, and technologies such as CrowdStrike, ThreatLocker, and Microsoft security technologies; familiarity with Capability Maturity Model Integration (CMMI)
OUC offers a very competitive compensation and benefits package. Our Total Rewards package includes, to cite a few:
- Competitive compensation
- Low-cost medical, dental, and vision benefits and paid life insurance premiums with no probationary period.
- OUC's Hybrid Retirement Program includes a fully-funded cash balance account, defined contribution with employer matching along with a health reimbursement account
- Generous paid vacation, holidays, and sick time
- Paid parental leave
- Educational Assistance Program, to include tuition reimbursement, paid memberships in professional associations, paid conference and training opportunities
- Wellness incentives and free access to all on-site OUC fitness facilities
- Access to family-oriented recreational areas
- Paid Conference and Training Opportunities
- Hybrid work schedule
Click here to view our Benefits Summary. Salary Range: $140,760- $175,950 annually - commensurate with experience Location: "The Greenest Building in Downtown"- Reliable Plaza, 100 W. Anderson Street, Orlando, FL 32801 Applicants must be legally authorized to work in the United States at the time of application. This organization does not offer or sponsor employment visas for internship or full-time positions. Please see below a complete Job description for this position. Job Purpose:
Lead the organization's IT security program, which includes managing the security log environment, incident response planning and preparedness, and developing technical cybersecurity standards, procedures, and architectural references for the IT department. The IT Security Manager will serve as an integral member of the IT infrastructure and cybersecurity team providing security consulting and subject matter expertise. This role will also provide security-based guidance to IT and other departments to ensure that IT systems and networks are secure.
Primary Functions:
- Provide subject matter expertise and consulting for the strategic design of the organization's IT security and manage the IT security program;
- Develop technical cybersecurity policies, standards, procedures, and architectural references for the IT department aligned with the enterprise cybersecurity policies;
- Analyze operational security needs and contribute to the proposal, development, design, integration, and installation of security systems and applications;
- Manage and set priorities for the monitoring and maintenance of the security infrastructure and security technologies;
- Work with the Director of Cybersecurity to develop incident response plans and procedures, and ensure that IT staff are trained to respond to security incidents effectively;
- Manage the security log environment and ensure that logs are collected, analyzed, and monitored for potential security incidents;
- Ensure that cybersecurity threat monitoring is conducted 24 hours a day with alerts and respond as needed;
- Collaborate with cybersecurity, legal, internal audit, and other stakeholders to maintain compliance with established security policies and governance;
- Prepare educational materials and disseminate messages and updates on cybersecurity threat prevention techniques to all OUC staff on a regular basis;
- Act as an ongoing security consultant and subject matter expert to IT and other departments to ensure that IT systems and networks are secure;
- Stay up to date with the latest cybersecurity threats, vulnerabilities, and industry best practices;
- Develop threat assessment implementation timelines and perform ongoing cybersecurity assessments and vulnerability scans to identify potential security risks in collaboration with other IT departments;
- Collaborate with Infrastructure teams (network, server, desktop, service desk) to develop and implement security controls to mitigate identified security risks;
- Plan and execute incident response and recovery processes, including developing incident response plans, conducting tabletop exercises, and coordinating with internal and external stakeholders during an incident;
- Develop the annual IT Security budgets and Operational Plan;
- Provide guidance and support on IT Security to IT project teams to ensure that security considerations are integrated into project plans and design specifications;
- Manage external security vendor partnerships including assessing and mitigating potential security risks from third-party vendor relationships;
- Perform other duties as assigned.
Technical Requirements:
- Working knowledge of all, but not limited to the following:
- Knowledge of regulatory compliance requirements related to cybersecurity and the utilities sector;
- A solid understanding of IT and network security principles, technologies, and best practices is essential;
- Proficiency in developing, implementing, and maintaining security policies and procedures aligned with industry best practices, regulatory requirements, and the organization's risk profile;
- A commitment to staying up-to-date with the latest cybersecurity trends, threats, and technologies, as well as evolving industry standards and regulations;
- Security log management tools and techniques;
- Conducting cybersecurity forensic analysis;
- Security assessment and vulnerability scanning tools;
- Strong leadership and interpersonal skills;
- Strong analytical and problem-solving skills;
- Ability to manage multiple projects simultaneously and prioritize tasks effectively;
- Ability to identify, analyze, and prioritize risks, and develop appropriate mitigation strategies to protect the organization's assets;
- Excellent communication and presentation skills to effectively convey complex security concepts to both technical and non-technical stakeholders, and to build consensus around security initiatives;
- Strong leadership and team management skills to build, develop, and lead a high-performing IT security team, and to collaborate effectively with other departments and stakeholders within the organization;
- The ability to analyze complex security issues and develop creative solutions to address challenges and mitigate risks;
- Ability to make arithmetic computations using whole numbers, fractions and decimals, and compute rates, ratios, and percentages;
- Ability to use Microsoft Office Suite (Outlook, Excel, Word, etc.) and standard office equipment (computer, telephone, etc.).
Education/ Certification/ Years of Experience Requirements:
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Digital Forensics or an IT related field from an accredited college or university;
- Minimum of seven (7) years of experience in IT security, to include:
- Three (3) years of experience supervising and developing a team of direct reports in an IT department (required);
- Experience developing technical cybersecurity policies, procedures for the IT department;
- Certifications (preferred):
- CISSP (Certified Information Systems Security Professional) or equivalent certification;
- CompTIA Security+, CISM, or CISA.
Working Conditions: This job is absent of disagreeable working conditions. This job is performed in an office environment. During critical incidents including but not limed to cybersecurity related incidents, this role is required to assume on-call responsibilities and response for the duration of the incident activation. Physical Requirements: This job consists of sitting, walking, and standing. This job requires constant speaking and hearing, writing, typing, and detailed inspection. OUC-The Reliable One is an Equal Opportunity Employer who is committed through responsible management policies to recruit, hire, promote, train, transfer, compensate, and administer all other personnel actions without regard to race, color, ethnicity, national origin, age, religion, disability, marital status, sex, sexual orientation, gender identity or expression, genetic information and any other factor prohibited under applicable federal, state, and local civil rights laws, rules, and regulations. EOE M/F/Vets/Disabled
|