The Senior Cybersecurity Manager owns the day-to-day operation, health, and continuous improvement of Concert Golf Partners’ (CGP) enterprise security platform stack across corporate offices and 40+ premier private golf clubs nationwide. This is a senior, hands-on platform and operations role for someone who has run enterprise security tooling at scale and can operate with limited oversight. The person in this seat keeps our endpoint, identity, email, monitoring, and vulnerability platforms running effectively, tuned, and reporting reliably — and brings the maturity to set operating standards, provide technical leadership, establish operational standards, and represent security operations to vendors, MSPs, and leadership. Secondarily, the role supports oversight of CGP’s cybersecurity remediation program and helping produce operational reporting for leadership. Reporting to the VP of Information Technology, this position is based in the Lake Mary, Florida corporate office and is expected to work primarily on-site, with cross-departmental collaboration, vendor governance, and occasional travel to club locations. Some tasks may require work outside normal business hours, weekends, or holidays depending on operational or security needs.
Compensation:
- Target Base Salary: Starting at $120,000 with flexibility based on experience, qualifications, and demonstrated expertise, plus eligibility for performance-based incentive compensation.
Primary Responsibilities — Cybersecurity Operations:
- Endpoint & threat protection: Administer and tune the enterprise Endpoint Detection & Response (EDR) platform across all managed endpoints — policy management, detection triage, containment actions, and coordination with managed monitoring on escalations.
- Identity & access: Operate identity and access controls through Microsoft Entra ID — conditional access, MFA/SSO enforcement, privileged access via the enterprise PAM platform, and access reviews aligned to least privilege.
- Email & collaboration security: Maintain the enterprise email security platform, including policy tuning, quarantine review, and authentication controls (DKIM/DMARC/SPF).
- Monitoring, logging & detection: Own the enterprise SIEM platform — log source health, detection tuning, alerting, and coverage across the Microsoft 365 and AWS (40+ accounts) environments; ensure AWS-native logging and detection (CloudTrail, GuardDuty, Security Hub) remain enabled and healthy.
- Vulnerability management: Run the enterprise vulnerability management platform — scan scheduling and scope (internal, external, network devices), triage, remediation tracking, and recurring metrics reporting to leadership.
- Device & asset management: Maintain Microsoft Intune (MDM/BYOD posture, compliance policies) and the enterprise asset inventory platform; keep an accurate, current view of the endpoint and asset estate.
- Patch & configuration health: Monitor patch and configuration status across endpoints and infrastructure; identify EOL/at-risk assets and drive them toward remediation or compensating controls (segmentation, isolation) where replacement isn’t immediately feasible.
- Security awareness operations: Administer the security awareness platform — phishing campaigns, training assignments, and completion tracking.
- Dashboards & metrics: Build and maintain security dashboards and recurring reporting (vulnerability age, remediation status, high-risk findings, overdue items) for IT and executive visibility.
Secondary Responsibilities — Cybersecurity Governance & Risk Management:
- Program tracking: Help maintain status, owners, dependencies, and timelines for the active cybersecurity remediation program; keep tracking artifacts current for review with leadership.
- Operational reporting: Prepare and maintain operational cybersecurity dashboards, remediation metrics, and status reporting for IT leadership to support enterprise cybersecurity operations and decision-making.
- Vendor & MSP coordination: Partner with the MSP and platform/software vendors on implementation, tuning, and issue resolution; help coordinate cross-vendor dependencies.
- Governance & documentation: Support the maintenance of security policies, standard operating procedures, and documentation (e.g., incident response, vulnerability management program, vendor due diligence artifacts).
- Cross-functional support: Provide IT input to business-led initiatives such as business continuity, privacy/compliance, and vendor risk, without owning those business functions outright.
Operational Leadership:
- Technical support & escalation: Serve as a senior-tier escalation point for internal teams and users, in person and remotely.
- Project execution: Plan and execute cybersecurity projects (e.g., platform implementations, control remediation, and security tooling upgrades), ensuring milestones are met on time and within budget.
- Application security support: Provide security-focused support for business-critical enterprise platforms (e.g., CRM and ERP systems).
- Training & enablement: Train corporate end-users and club leadership on cybersecurity best practices and the rollout of new secure technologies.
- Travel: Travel to club locations (~10–25%) for security evaluations, rollouts, and relationship-building with club management.
- Other duties as assigned.
Qualifications:
Education:
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field; or equivalent work experience.
Experience:
- 8+ years in IT operations, systems administration, and security, including 5+ years of hands-on enterprise security platform administration and 3+ years providing technical leadership for enterprise cybersecurity operations, including directing managed service providers, technology vendors, and cross-functional technical initiatives. Previous people leadership experience is beneficial but not required.
- Demonstrated ownership of security tooling in a multi-site or distributed environment.
Competencies:
- Hands-on administration of enterprise security platforms — EDR, SIEM, email security, vulnerability management, privileged access management (PAM), and mobile device management (MDM) — with hands-on experience across leading, enterprise-grade platforms in each of these categories strongly preferred.
- Deep working knowledge of Microsoft Entra ID / Microsoft 365 security and cloud security (AWS environments).
- Ability to triage detections, tune platforms, and manage vulnerabilities through remediation.
- Strong reporting and metrics skills — translating platform data into clear risk visibility for non-technical leadership.
- Experience managing external vendors and MSP relationships.
- Strong organizational skills to manage concurrent high-stakes priorities.
Preferred Qualifications:
- Certifications: CompTIA Security+, Network+, CISSP, CISM, or relevant Microsoft identity/security designations.
- Technical familiarity: Cloud security posture management, SIEM/log analytics platforms, and vulnerability management tooling; secondary familiarity with business-critical enterprise applications (e.g., CRM, ERP) and multi-site environments is a plus.
- Industry experience: Hospitality, country clubs, or premium golf operations.
Working Conditions:
- Professional indoor office environment located at the Lake Mary, Florida corporate office with moderate noise level.
Benefits:
- Comprehensive program including medical, dental, vision, other voluntary products, Flexible Spending Account, Health Savings Account, Paid Time Off, Paid Company Holidays, 401(k) Retirement & Savings Plan, travel reimbursement.
To Apply:
Please submit your resume and a brief cover letter describing your most impactful IT or cybersecurity operations experience.
Equal Employment Opportunity (EEO) Statement:
Our company is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.
Americans with Disabilities (ADA) Accommodation Notice:
If you require reasonable accommodation in completing an application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to Human Resources.