IT & Security Lead (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Location: Denver, CO, United States. The role supports three sites and involves physical access security across manufacturing and laboratory environments. Administrative access to systems containing export-controlled technical data may require verification as a U.S. person or export authorization.
Salary: $150,000–$170,000 base per year, plus equity participation and annual bonus eligibility.
Company
is a venture-backed quantum hardware company building cryogenic infrastructure, including dilution refrigerators and cryogenic RF wiring, for quantum computing companies, national labs, and research institutions.
What you will do
- Own and mature the security baseline across three sites, including endpoint protection, patching, vulnerability management, logging, backups, access reviews, and security metrics.
- Set security architecture and technical standards for Microsoft 365, Entra ID, Defender, Intune, MFA, conditional access, privileged access, email authentication, and endpoint security.
- Lead incident response for phishing, account compromise, and endpoint incidents; maintain runbooks, detection coverage, and tabletop exercises.
- Implement access controls, evidence, reviews, and offboarding hygiene for export-controlled technical data in partnership with Trade Compliance.
- Secure CAD, PLM, source code, repositories, secrets, CI/CD pipelines, laboratory networks, manufacturing systems, ERP endpoints, and physical site access.
- Provide secondary IT support, manage the MSP and technology vendors, oversee procurement and licenses, and automate routine administration.
Requirements
- 8+ years of experience in IT or security with progressive ownership as a senior or sole technical decision-maker.
- Hands-on experience running patching, access reviews, and at least one end-to-end security incident.
- Deep production experience with Microsoft 365, Entra ID, conditional access, Intune, and Defender.
- Experience supporting manufacturing, laboratory, or hardware engineering environments rather than exclusively software companies.
- Ability to provide hands-on troubleshooting and end-user support while maintaining focus on the security program.
- Ability to work with systems containing U.S. export-controlled technical data; U.S. person verification or export authorization may be required.
Nice to have
- Experience with export controls, ITAR/EAR, CMMC, GDPR, or similar regulated data requirements.
- Multi-site or international support experience, MSP management, OT or laboratory network segmentation, and CAD/PLM platforms.
- Source code security, secrets management, CI/CD security, physical access controls, or relevant certifications such as CISSP, CISM, SC-200, or AZ-500.
Culture & Benefits
- High-autonomy founding security role with authority over security architecture and implementation.
- Opportunity to build and lead the security function as the company scales.
- Collaboration with scientists, engineers, Operations, Trade Compliance, and executive leadership.
- Medical, dental, and vision insurance, 401(k), paid time off, equity participation, and annual bonus eligibility.
- Fast-moving, resource-constrained environment focused on quantum physics, engineering, and manufacturing.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →