IT Security & SOC Operations Lead

    Highlights

    Notes 5+ years in security/IT operations or security engineering for a multi-unit retail or restaurant environment under PCI-DSS/SOX regulation, with hands-on experience administering enterprise security tooling, identity/access controls, security monitoring, integrations, and vendor relationships. Experience supporting a franchise or multi-brand corporate structure with a dual-domain identity footprint (an acquired subsidiary retaining its own AD/Azure tenant alongside the parent company's) is a strong plus.

    Numbers & Facts

    LocationTampa, FL

    Description

    Title: IT Security & SOC Operations Lead
    Location: Miami, FL 5 days onsite
    Type: 12-18 months (potential to convert in the future)


    Notes
    • 5+ years in security/IT operations or security engineering for a multi-unit retail or restaurant environment under PCI-DSS/SOX regulation, with hands-on experience administering enterprise security tooling, identity/access controls, security monitoring, integrations, and vendor relationships
    • Hands-on experience with Microsoft Entra ID / Active Directory and preferably Okta, PAM, EDR/XDR, email security, DLP/DSPM, and related security platform
    • Experience supporting a franchise or multi-brand corporate structure with a dual-domain identity footprint (an acquired subsidiary retaining its own AD/Azure tenant alongside the parent company's) is a strong plus.
    • Hands-on experience operating or onboarding a modern SOC/XDR or managed SOC service, preferably CrowdStrike Falcon or ReliaQuest GreyMatter
    • Administer Okta and Microsoft Entra ID / Active Directory identity, MFA policy exceptions, and SAML-based federated access
    • Own BeyondTrust/Bomgar privileged access management and the pending Password Safe → Keeper evaluation.
    • Own, administer, maintain and continuously improve enterprise cybersecurity tooling, including CrowdStrike, Proofpoint, Varonis and related security platforms
    • Manage platform configuration, integrations, policies, detection rules, workflows, upgrades, licensing and vendor support
    • Coordinate PCI-DSS annual re-validation and weekly SOX log reporting
    • Operationally monitor and triage security alerts and events generated by enterprise cyber tooling
    • CISSP, Security+, or other relevant industry-recognized security certifications are preferred but not required

    Similar Jobs