Job Description:
Position Summary
Yorktown Systems Group (YSG) is seeking an experienced IT Operations Manager / Information Systems Security Manager (ISSM) to lead the day-to-day management of the company's information technology operations and cybersecurity program. Reporting to the Director of Corporate Enterprise Assurance, this position is responsible for planning, implementing, securing, and maintaining YSG's enterprise technology environment in support of Department of Defense (DoD) customers and corporate operations.
The IT Operations Manager/ISSM oversees enterprise IT infrastructure, cloud services, cybersecurity compliance, end-user support, vendor relationships, technology projects, and the annual IT budget. Serving as the organization's Information Systems Security Manager (ISSM), this individual will ensure compliance with applicable cybersecurity requirements while delivering secure, reliable, and scalable technology solutions that enable business growth and operational excellence.
This position is ideal for a hands-on technology leader who enjoys balancing strategic planning with day-to-day operational execution in a dynamic government contracting environment.
Why Join YSG?
Yorktown Systems Group is a growing, employee-focused government contractor dedicated to delivering innovative solutions that support the Department of Defense and national security missions. Our culture values collaboration, accountability, continuous improvement, and exceptional customer service.
As the IT Operations Manager/ISSM, you will play a critical role in protecting the company's information assets while helping shape the future of YSG's technology environment. You'll work closely with executive leadership to modernize IT infrastructure, strengthen cybersecurity, implement emerging technologies, and ensure compliance with evolving government requirements. This role offers the opportunity to make a meaningful impact on both corporate operations and mission success.
Essential Responsibilities
IT Operations Management
- Lead the daily operation, administration, and maintenance of the company's enterprise IT environment.
- Supervise, mentor, and develop IT personnel while fostering a collaborative, service-oriented culture.
- Manage enterprise infrastructure, including cloud services, servers, storage, networking, endpoint devices, collaboration platforms, and communications systems.
- Ensure the availability, reliability, performance, and scalability of enterprise systems.
- Oversee IT service delivery and end-user support to ensure timely resolution of technical issues.
- Maintain hardware, software, licensing, and technology asset inventories throughout their lifecycle.
Information Systems Security (ISSM)
Serve as the organization's Information Systems Security Manager (ISSM) by:
- Managing and continuously improving YSG's cybersecurity program.
- Maintaining compliance with CMMC Level 2 and applicable Department of Defense cybersecurity requirements.
- Implementing and maintaining security controls aligned with NIST SP 800-171 and other applicable cybersecurity frameworks.
- Maintaining System Security Plans (SSPs), Plans of Action & Milestones (POA&Ms), security policies, procedures, and supporting documentation.
- Conducting security risk assessments and coordinating vulnerability management activities.
- Leading cybersecurity incident response, investigations, corrective actions, and reporting.
- Managing user access, privileged accounts, authentication, and least-privilege enforcement.
- Coordinating security awareness training and promoting cybersecurity best practices throughout the organization.
- Supporting internal audits, customer assessments, and cybersecurity compliance reviews.
Infrastructure & Cloud Administration
Manage and continuously improve:
- Microsoft 365
- Microsoft Azure
- Microsoft Entra ID
- Microsoft Intune
- Windows Server
- Virtualization platforms
- Enterprise networking
- Endpoint management
- Identity and access management
- Backup and disaster recovery solutions
- Collaboration and communication platforms
Ensure systems remain secure, resilient, and aligned with business and contractual requirements.
Strategic Technology Planning
- Collaborate with the Director of Corporate Enterprise Assurance and executive leadership to develop and implement the organization's technology roadmap.
- Evaluate emerging technologies and recommend solutions that improve operational efficiency, security, and business performance.
- Identify opportunities to automate business processes and enhance service delivery.
- Support long-term infrastructure planning and technology modernization initiatives.
Budget & Financial Management
- Develop and manage the annual IT operating and capital budgets.
- Forecast technology expenditures and recommend investments aligned with organizational priorities.
- Monitor budget performance and ensure effective stewardship of IT resources.
- Prepare business cases supporting technology investments and infrastructure improvements.
- Manage software licensing, maintenance agreements, subscriptions, and hardware lifecycle planning.
- Identify opportunities to improve efficiency while controlling technology costs.
Project Management
- Lead and manage technology initiatives including:
- Infrastructure modernization
- Cloud migrations
- Software implementations
- Cybersecurity enhancements
- Network improvements
- Business application deployments
- Ensure projects are delivered on schedule, within budget, and aligned with organizational objectives.
Vendor Management
- Manage relationships with hardware, software, cloud, telecommunications, and managed service providers.
- Negotiate contracts, licensing agreements, and service level agreements.
- Evaluate vendor performance and ensure contractual obligations are met.
- Research and recommend new technologies that support business objectives.
Business Continuity & Disaster Recovery
- Develop, maintain, and test Business Continuity and Disaster Recovery Plans.
- Ensure backup and recovery capabilities support business resilience.
- Coordinate recovery activities during outages or emergency situations.
Policy Development & Compliance
- Develop, maintain, and enforce IT policies, standards, and operating procedures.
- Ensure compliance with contractual, regulatory, and corporate requirements.
- Maintain accurate technical documentation, system configurations, inventories, and operational procedures.
- Support audits, assessments, and continuous process improvement initiatives.
Leadership & Communication
- Provide regular updates to leadership regarding IT operations, cybersecurity posture, compliance status, project progress, technology risks, and budget performance.
- Build strong partnerships across all business functions.
- Foster a culture of accountability, collaboration, customer service, and continuous improvement.
- Encourage ongoing professional development for IT staff.
Required Qualifications
- Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field, or an equivalent combination of education and experience.
- Seven (7) or more years of progressively responsible experience managing enterprise IT operations.
- Three (3) or more years of experience leading technical teams.
- Experience serving as an Information Systems Security Manager (ISSM), Information Systems Security Officer (ISSO), or comparable cybersecurity leadership role.
- Experience supporting Department of Defense or Federal Government contractors.
- Demonstrated experience implementing and maintaining NIST SP 800-171 security controls.
- Experience supporting CMMC compliance initiatives.
- Strong knowledge of Microsoft 365, Azure, Entra ID, Intune, Windows Server, enterprise networking, virtualization, endpoint management, and backup technologies.
- Experience developing and managing departmental budgets.
- Excellent analytical, organizational, project management, and communication skills.
- Must have an ACTIVE secret security clearance
Preferred Qualifications
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- Security+
- Microsoft Certified: Azure Administrator Associate
- Microsoft Certified: Cybersecurity Architect Expert
- Certified Information Systems Auditor (CISA)
- ITIL Foundation
- Project Management Professional (PMP)
- Experience supporting Microsoft GCC High environments
- Experience with Microsoft Defender, Microsoft Sentinel, Conditional Access, and Zero Trust architectures
Core Competencies
- IT Operations Leadership
- Cybersecurity & Information Assurance
- CMMC & NIST Compliance
- Enterprise Infrastructure Management
- Cloud Technologies
- Strategic Technology Planning
- Budget Development & Financial Management
- Team Leadership & Staff Development
- Vendor & Contract Management
- Project Management
- Risk Management
- Business Continuity & Disaster Recovery
- Customer Service Excellence
- Process Improvement
Work Environment & Travel
This position is based in Huntsville, Alabama, and candidates should reside within commuting distance of the office. Limited travel (approximately 5–10%) is required for conferences, professional development, customer meetings, and occasional support of company operations.