
Cyber Security Administrator (onsite only)
Vivo
Job description
The Cyber Security Administrator is responsible for the security of VIVO's servers, network, endpoints, and user accounts. Your primary focus will be owning the day-to-day security program, including endpoint security, identity and access management, vulnerability management, application auditing, and user security awareness training. You will also serve as the secondary owner and administrator for our network and server environment, acting as backup to the Software Development & Support Manager for infrastructure operations. IT Support staff are the first line for device setup, software installation, and physical hardware installs; this role sets the security requirements and priorities that guide that work, and provides support coverage as security workload permits.
Key Accountability #1 - Endpoint, Server, and Network Security
-
Administer endpoint security across a mixed Windows, macOS, and ChromeOS fleet, including EDR policy configuration and tuning
-
Establish and maintain hardening standards, baseline configurations, and endpoint configuration management for servers and endpoints
-
Own vulnerability and patch management as a recurring program, including prioritization, defined remediation timelines, and monitoring of security advisories for the systems we run
-
Validate backup integrity through regular tested restores
-
Serve as secondary owner for server and network operations, contributing to segmentation, wireless, and firewall design and sharing on-call rotation and after-hours maintenance windows
Key Accountability #2 - Identity and Access Management
-
Design and maintain standard access tiers and the access request and approval workflow
-
Administer access to VPN, file shares, and business applications, including multi-factor authentication and single sign-on policy
-
Document and operate a joiner/mover/leaver process for onboarding, role changes, and terminations
-
Conduct periodic access reviews and remediate accumulated or orphaned access
-
Administer the company password management platform and maintain ongoing password health reporting
Key Accountability #3 - Security Program, Detection, and Response
-
Develop and maintain written security policy, standards, asset inventory, and environment documentation
-
Deliver ongoing user security awareness training, including phishing simulation and targeted follow-up, and teach security concepts to IT staff and end users
-
Conduct security review and auditing of web and desktop applications before and after deployment
-
Maintain log aggregation, monitoring, and alerting so security-relevant activity is visible and actionable
-
Own the incident response plan and lead response, containment, after-action review, and annual tabletop exercises
Key Accountability #4 - IT Support
-
Provide in-house technical support to end users
-
Install, configure, and maintain computer systems and software
-
Network and server support as needed
-
Cloud software and application support
-
Basic hardware troubleshooting and maintenance
Demonstration of Vivo Values and Standards of Behavior:
Integrity - Developing relationships on the foundation of trust and upstanding character
Initiative - Having a work ethic that is proactive in seeing and improving company needs
Invested - Devoting our time, talents and ingenuity to making VIVO the best it can be
Adaptive - Having the courage to boldly take risks and grow in an ever-changing market
Respect - Placing value in others to foster an environment of mutual compassion and synergy
Serve - Working together to nurture a culture of humility as we give back to others
Qualifications:
Education - High school diploma required, Bachelor's degree in Cyber Security, Information Systems, Computer Science or similar major preferred
Experience - 2 to 4 years of relevant experience required, including meaningful time in a security-focused role or a systems and network background with demonstrated growth into security ownership. The ideal candidate must have hands-on experience with identity and access management, linux server administration, endpoint security administration, and vulnerability management. In addition, they should be able to exercise independent judgment on risk tradeoffs rather than relying on prescriptive rules.
License/Certification - Security+, CISSP, GIAC, or vendor-specific security certifications preferred
Knowledge/Skills/Abilities - Gmail, Google Drive applications required. Critical thinker and problem solver with great attention to detail and excellent communication skills. A meaningful portion of this role is written documentation and policy that others must follow.
-
Identity and access management, including VPN and file share permissioning
-
Linux server administration
-
Networking fundamentals, including VLANs, routing, firewalls, and wireless design
-
Endpoint detection and response administration, ideally SentinelOne
-
Endpoint configuration management (Intune/Entra, Jamf or equivalent, Google Admin)
-
Remote monitoring and management platforms, ideally Pulseway
-
Managing security across a mixed Windows, macOS, and ChromeOS fleet
-
Vulnerability and patch management at a program level
-
Log aggregation, monitoring, and alerting
-
Incident response planning and execution
-
Security awareness training and phishing simulation programs
-
Password management platforms, ideally Bitwarden
-
Understanding of security frameworks and hardening benchmarks
-
Ability to build a security function where little previously existed
Benefits include ย
Free Health insurance for employees or health buy out option
Dental insurance
Vision insurance
Paid time off and holidays
Referral program
401K Retirement plan - employer match 80 cents on the dollar up to 6%
Anniversary bonus plan