Manager, IT Security

Orlando Utilities Commission•Orlando, FL
•Hybrid

About The Position

OUC - The Reliable One is seeking a Manager, IT Security to lead the Cyber Defense and Threat Operations team and strengthen the enterprise security posture. This role involves overseeing the Security Operations Center (SOC), managing defensive cyber operations, continuous threat monitoring, incident response, and maturing SOC processes and technologies. The ideal candidate will guide a team responsible for alert investigation, threat detection, phishing response, digital forensics, containment and recovery coordination, and MTTD/MTTR improvement. This is an opportunity to build and mature a newer cybersecurity business unit, expand SOC operations, implement best-in-class tools, contribute to retiring legacy security systems, and guide OUC’s transition into next-generation cybersecurity technologies, including AI-driven defense capabilities. The position offers competitive pay and a flexible work schedule, playing a central role in advancing OUC’s security posture and organizational resilience.

Requirements

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Digital Forensics or an IT related field from an accredited college or university.
  • Minimum of seven (7) years of experience in IT security.
  • Three (3) years of experience supervising and developing a team of direct reports in an IT department.
  • Experience developing technical cybersecurity policies, procedures for the IT department.
  • Proven ability to develop cybersecurity policies, standards, and procedures for an IT department that scale as a program matures.
  • Hands-on experience managing SOC operations, threat detection, security monitoring, incident coordination, phishing response, and digital forensic investigations.
  • Strong leadership skills with the ability to coach, mentor, and build team capabilities, while establishing accountability metrics, operational rhythm, KPIs, and structured processes.
  • Excellent communication and collaboration skills to work effectively across cybersecurity, infrastructure, and business units.
  • Knowledge of regulatory compliance requirements related to cybersecurity and the utilities sector.
  • A solid understanding of IT and network security principles, technologies, and best practices is essential.
  • Proficiency in developing, implementing, and maintaining security policies and procedures aligned with industry best practices, regulatory requirements, and the organization's risk profile.
  • A commitment to staying up-to-date with the latest cybersecurity trends, threats, and technologies, as well as evolving industry standards and regulations.
  • Security log management tools and techniques.
  • Conducting cybersecurity forensic analysis.
  • Security assessment and vulnerability scanning tools.
  • Strong analytical and problem-solving skills.
  • Ability to manage multiple projects simultaneously and prioritize tasks effectively.
  • Ability to identify, analyze, and prioritize risks, and develop appropriate mitigation strategies to protect the organization's assets.
  • Excellent communication and presentation skills to effectively convey complex security concepts to both technical and non-technical stakeholders, and to build consensus around security initiatives.
  • Strong leadership and team management skills to build, develop, and lead a high-performing IT security team, and to collaborate effectively with other departments and stakeholders within the organization.
  • The ability to analyze complex security issues and develop creative solutions to address challenges and mitigate risks.
  • Ability to make arithmetic computations using whole numbers, fractions and decimals, and compute rates, ratios, and percentages.
  • Ability to use Microsoft Office Suite (Outlook, Excel, Word, etc.) and standard office equipment (computer, telephone, etc.).
  • Applicants must be legally authorized to work in the United States at the time of application.

Nice To Haves

  • CISSP (Certified Information Systems Security Professional) or equivalent certification.
  • CompTIA Security+, CISM, or CISA certifications.
  • Preferred experience with continuous monitoring tools, digital forensics, and technologies such as CrowdStrike, ThreatLocker, and Microsoft security technologies.
  • Familiarity with Capability Maturity Model Integration (CMMI).

Responsibilities

  • Lead the organization's IT security program, including managing the security log environment, incident response planning and preparedness, and developing technical cybersecurity standards, procedures, and architectural references for the IT department.
  • Serve as an integral member of the IT infrastructure and cybersecurity team providing security consulting and subject matter expertise.
  • Provide security-based guidance to IT and other departments to ensure that IT systems and networks are secure.
  • Develop technical cybersecurity policies, standards, procedures, and architectural references for the IT department aligned with the enterprise cybersecurity policies.
  • Analyze operational security needs and contribute to the proposal, development, design, integration, and installation of security systems and applications.
  • Manage and set priorities for the monitoring and maintenance of the security infrastructure and security technologies.
  • Develop incident response plans and procedures, and ensure that IT staff are trained to respond to security incidents effectively.
  • Manage the security log environment and ensure that logs are collected, analyzed, and monitored for potential security incidents.
  • Ensure that cybersecurity threat monitoring is conducted 24 hours a day with alerts and respond as needed.
  • Collaborate with cybersecurity, legal, internal audit, and other stakeholders to maintain compliance with established security policies and governance.
  • Prepare educational materials and disseminate messages and updates on cybersecurity threat prevention techniques to all OUC staff on a regular basis.
  • Act as an ongoing security consultant and subject matter expert to IT and other departments to ensure that IT systems and networks are secure.
  • Stay up to date with the latest cybersecurity threats, vulnerabilities, and industry best practices.
  • Develop threat assessment implementation timelines and perform ongoing cybersecurity assessments and vulnerability scans to identify potential security risks in collaboration with other IT departments.
  • Collaborate with Infrastructure teams (network, server, desktop, service desk) to develop and implement security controls to mitigate identified security risks.
  • Plan and execute incident response and recovery processes, including developing incident response plans, conducting tabletop exercises, and coordinating with internal and external stakeholders during an incident.
  • Develop the annual IT Security budgets and Operational Plan.
  • Provide guidance and support on IT Security to IT project teams to ensure that security considerations are integrated into project plans and design specifications.
  • Manage external security vendor partnerships including assessing and mitigating potential security risks from third-party vendor relationships.
  • Assume on-call responsibilities and response for the duration of critical incidents.

Benefits

  • Competitive compensation
  • Low-cost medical, dental, and vision benefits
  • Paid life insurance premiums with no probationary period
  • OUC’s Hybrid Retirement Program includes a fully-funded cash balance account, defined contribution with employer matching along with a health reimbursement account
  • Generous paid vacation, holidays, and sick time
  • Paid parental leave
  • Educational Assistance Program, to include tuition reimbursement, paid memberships in professional associations, paid conference and training opportunities
  • Wellness incentives and free access to all on-site OUC fitness facilities
  • Access to family-oriented recreational areas
  • Paid Conference and Training Opportunities
  • Hybrid work schedule
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service