Security Operations Manager

LUX Infusion
$115,000 - $135,000

About The Position

The Security Operations Manager is responsible for leading and maturing the organization's cybersecurity operations program with a primary focus on healthcare security, identity and access management, Single Sign-On (SSO) strategy, threat detection, incident response, and regulatory compliance. This role serves as both a technical leader and people leader, providing mentorship and professional development to Security Analysts while establishing scalable security operations capabilities across the enterprise. The Security Operations Manager will oversee day-to-day security operations, security monitoring, vulnerability management, incident response, identity security initiatives, and compliance activities supporting HIPAA, HITECH, and other healthcare regulatory requirements. This position partners closely with Infrastructure, Applications, Compliance, HR, and business stakeholders to ensure the confidentiality, integrity, and availability of enterprise systems and Protected Health Information (PHI).

Requirements

  • Bachelor's Degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience).
  • 7+ years of progressive cybersecurity experience.
  • 3+ years of experience leading security operations or security engineering initiatives.
  • Experience within healthcare, specialty pharmacy, or other highly regulated industries.
  • Hands-on experience implementing and administering enterprise SSO and IAM platforms.
  • Strong experience with: Microsoft Entra ID (Azure AD), Single Sign-On (SAML, OIDC, OAuth), Multi-Factor Authentication (MFA), SIEM platforms, EDR/XDR technologies, Vulnerability Management, Security Incident Response.
  • Experience supporting HIPAA compliance and healthcare security assessments.

Nice To Haves

  • CISSP
  • HCISPP
  • CISM
  • GIAC Certifications
  • Microsoft Identity & Access Administrator Certification
  • HITRUST experience
  • Healthcare cybersecurity leadership experience

Responsibilities

  • Lead and manage Security Operations (SecOps) activities across infrastructure, applications, cloud platforms, and endpoints.
  • Develop and maintain security monitoring, threat detection, incident response, and security governance processes.
  • Serve as the primary escalation point for complex security incidents and investigations.
  • Direct security event analysis, triage, containment, eradication, and recovery activities.
  • Establish operational metrics, dashboards, and KPIs to measure security effectiveness.
  • Drive continuous improvement initiatives to enhance enterprise cybersecurity maturity.
  • Coordinate security activities with managed security service providers and strategic security partners.
  • Lead enterprise Identity and Access Management (IAM) strategy and implementation.
  • Design, implement, and maintain Single Sign-On (SSO) platforms and identity federation technologies.
  • Manage security controls related to Azure AD/Entra ID, MFA, conditional access, RBAC, and privileged access management.
  • Partner with application owners to onboard business-critical applications into SSO platforms.
  • Establish identity governance processes, user lifecycle management standards, and access review programs.
  • Conduct identity risk assessments and develop remediation plans.
  • Oversee authentication modernization initiatives and Zero Trust security models.
  • Ensure compliance with HIPAA, HITECH, HITRUST, NIST CSF, and healthcare cybersecurity best practices.
  • Lead security risk assessments and remediation planning.
  • Support internal and external audits.
  • Develop and maintain healthcare-focused security policies, standards, and procedures.
  • Monitor controls protecting Protected Health Information (PHI) and Electronic PHI (ePHI).
  • Collaborate with Compliance, Legal, and Operations teams on security and privacy matters.
  • Participate in breach investigations, reporting requirements, and corrective action programs.
  • Oversee SIEM, EDR, vulnerability management, email security, and threat intelligence platforms.
  • Direct proactive threat hunting activities.
  • Lead cyber incident response exercises and tabletop simulations.
  • Manage forensic investigations and root-cause analysis efforts.
  • Coordinate post-incident reviews and remediation planning.
  • Maintain incident response playbooks and operational procedures.
  • Direct vulnerability management programs across servers, endpoints, cloud environments, and applications.
  • Establish risk-based prioritization methodologies for remediation.
  • Oversee remediation tracking and reporting.
  • Evaluate new technologies, vendors, and cloud services for cybersecurity risk.
  • Conduct third-party security assessments and vendor reviews.
  • Supervise, coach, and mentor Security Analysts and junior cybersecurity staff.
  • Develop career growth plans, training programs, and technical development pathways.
  • Conduct regular one-on-one meetings and performance coaching.
  • Provide guidance on incident investigations, technical analysis, and security operations best practices.
  • Foster a collaborative culture focused on continuous learning and operational excellence.
  • Create succession planning and cross-training opportunities within the security team.
  • Participate in recruiting, interviewing, onboarding, and workforce planning activities.
  • Promote cybersecurity awareness throughout the organization.
  • Deliver technical and non-technical security presentations.
  • Partner with Infrastructure, Application Development, Service Desk, and Compliance teams on security initiatives.

Benefits

  • Purpose‑driven work with real impact
  • A patient‑first, clinician‑led culture
  • Supportive, collaborative teammates
  • The opportunity to grow with a company building something meaningful
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service