Amida Technology Solutions is a DC-based technology company focused on data interoperability, integrity, governance, and security. We create solutions that collect, reconcile, transform, and standardize data for business intelligence, advanced analytics, decision support, and user transactions. We specialize in taking data from inception to impact.
Our team is composed of creative, forward-looking thinkers who are passionate about using cutting-edge technology to improve lives and generate a positive impact on our country. We offer an entrepreneurial, high-growth environment that values fresh ideas, candid conversations, and authentic teamwork.
Amida Technology Solutions is seeking an
IT Security Manager. The selected candidate will lead our organization's cybersecurity strategy and operations, overseeing the protection of company systems and data, ensuring compliance with regulatory requirements, and continuously improving our security posture. This role will report to the CFO. The ideal candidate will be motivated by the opportunity to support public agencies, nonprofit organizations, and private companies in transforming their data into actionable insights.
The candidate must be able to work 3 days per week in our offices in DC or Richmond, VA. What you will do: - Oversee and enhance Amida's IT and physical office cybersecurity and hygiene practices, ensuring the protection and efficiency of cloud environments and user systems across three global office locations
- Manage security protocols and maintain optimal performance for operations across multiple continents
- Lead the development and implementation of enterprise-wide IT security policies, procedures, and standards across Google Workspace, AWS, Azure, and government AWS and Azure
- Manage and mentor IT professionals
- Maintain a physical security program aligned with Amida's regulatory requirements
- Oversee incident response planning and execution, including investigation, containment, eradication, and post-mortem analysis of cloud, information system, and email compromise activity
- Conduct regular risk assessments and ensure appropriate mitigation plans are in place
- Uphold and enforce the high-quality standards provided by Tier I and II support staff with internal and external users, including managing helpdesk staff and serving as point of escalation as required
- Ensure team follows processes such as IT onboarding and offboarding, working collaboratively with other departments to improve processes
- Ensure compliance with relevant laws, regulations, and frameworks (e.g., ISO 27001, CMMC Levels I and II, HITRUST e1 and r2, NIST, GDPR, HIPAA, SOC 2)
- Collaborate with IT, business stakeholders, and third parties, including clients, to integrate security best practices into infrastructure and application design
- Manage third-party security tools and services (e.g., SIEM, endpoint protection, firewalls)
- Lead security awareness training and education and phishing exercises across the organization
- Prepare and present security metrics and reports to executive leadership
- Oversee vulnerability, patch management, and organizational backup programs
- Evaluate emerging security technologies and recommend investments aligned with business goals
- Perform security assessments of vendors, applications, and processes as they integrate with Amida's operational environment
- Maintain and manage a 'low-risk' cyber score for cyber insurance suitability
- Other duties as assigned
Required Education: - Bachelor's degree in computer science, information security, or a related field
Required Experience: - At least 10 years of experience in IT security, with at least 3 years in a managerial or leadership role
- Experience managing incident response and leading forensic investigations
Required Skills: - Strong knowledge of security architecture, network and endpoint security, cloud security (e.g., AWS, Azure, or Google Cloud Platform), and identity and access management
- Familiarity with governance, risk, and compliance (GRC) practices
- Technical writing of deliverables for executive and technical team audiences
- Excellent communication, leadership, and interpersonal skills
- Vendor, applications, and supply chain cyber risk assessment experience
Preferred: - Industry certifications such as CISSP, CISM, CISA, or equivalent are strongly preferred
- Experience in regulated industries (finance, healthcare, national security components etc.)
- Familiarity with DevSecOps practices and secure software development life cycle (SDLC)
- Knowledge of Zero Trust architecture principles
- Master's degree in computer science, information security, or a related field
Success at Amida Communication is the key to success at Amida. Our people are known for their can-do attitude and their ability to work effectively with both internal and client teams. We pride ourselves on having a collegial, multidisciplinary team with diverse backgrounds and experience. Our best team members pay intense attention to detail in all aspects of their work, have great initiative, are opinionated about the best ways of doing things, and align quickly to decisions. A sense of humor is an asset at Amida.
Full-time, regular employees at Amida enjoy a robust benefits package that includes a generous 401(k) match with immediate vesting, 4 weeks of PTO, paid parental leave, medical insurance, dental insurance, vision insurance, life/AD&D insurance, and short-term disability. We also offer tuition/training assistance and team-building opportunities to encourage professional growth and collaboration.
All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other characteristic protected by law.