JOB PURPOSE:
To lead and oversee Gathern’s IT operations, infrastructure, and service delivery to ensure secure, reliable, and compliant technology environments.
ACCOUNTABILITIES:
- Lead IT operations activities, ensuring secure, stable, and high-performance technology environments across the organization.
- Oversee identity and access management, MFA enforcement, and Zero Trust controls across Microsoft 365 / Google Workspace and all internal applications.
- Govern and maintain ISO 27001 and NCA-ECC IT controls, documentation, and evidence to ensure readiness for internal and external audits.
- Supervise IT team members or external support providers, assigning tasks, monitoring performance, and ensuring timely service delivery.
- Direct the migration and integration of systems such as Google Workspace to Microsoft 365, ensuring data integrity and minimal downtime.
- Lead the continuous improvement of IT processes, SOPs, and service-management frameworks (incident, change, request, and asset management).
- Develop, maintain, and audit the IT asset register, license inventory, and configuration management database (CMDB).
- Ensure endpoint compliance, encryption, MDM/Intune policies, and patch management across all employee devices.
- Oversee procurement, vendor onboarding, and contract management while ensuring alignment with security and data-protection requirements.
- Conduct periodic DR testing, backup validation, and access governance reviews to ensure operational continuity and security.
- Collaborate with Engineering, Security, and Data teams to align IT operations with risk management, compliance, and business goals.
- Monitor IT security posture, infrastructure health, and control effectiveness; provide management with regular reports and insights.
- Coordinate IT-related tasks during ISO audits, penetration tests, and security assessments.
- Lead user training, onboarding sessions, and awareness programs to promote secure and effective system usage
Requirements
- Bachelor’s degree in Information Technology, Computer Science, or related field.
- Preferred certifications: ISO 27001 Implementer/Auditor, CompTIA Security+, Microsoft 365 Administrator, or Google Workspace Admin.
- +4 years in IT operations or system administration within a security-regulated environment.
- Proven experience in supporting or implementing ISO 27001 or NCA-ECC frameworks.
- Practical knowledge of Zero Trust architecture, IAM, endpoint security, and policy enforcement.
- Familiarity with procurement and vendor security reviews.
- Knowledge of Intune, MDM, SSO, VPN, and device-compliance policies.
- Experience with SIEM/logging tools, backup systems, and patch automation.
- Understanding of network segmentation, firewalls, and identity-based access.