Director of IT & Security
Moxxi Digital · New York, NY · 1 mo ago
HybridInformation Technology$165k–$210k/yrFull-time
The Opportunity
We're hiring a Director, IT & Security to own internal technology end-to-end: the systems, access, security, and infrastructure behind everything we do. You'll run the day-to-day, set the strategy, and operate as the company's most senior owner of internal technology, reporting to the Head of Engineering.
What You'll Drive
- IT Operations and Systems
- Own administration and lifecycle management across our core stack: Microsoft 365, Google Workspace, Slack, Linear, Jira, Zendesk, and AI applications (Cursor, ChatGPT, Claude).
- Run onboarding and offboarding end to end, provisioning and revoking access cleanly and quickly across every system and entity.
- Own vendor relationships, subscriptions, licensing, and spend. Know what we pay for, what we use, and where consolidation creates leverage.
- Serve as the escalation point for the team's day-to-day IT needs, resolving issues directly and building the processes and automation that prevent them.
- Identity and Access Across the Portfolio
- Own identity and access management across multiple entities and tenants.
- Own credential and secrets management, including the password manager, shared-credential hygiene, and how privileged access is stored, rotated, and revoked.
- Administer user access into our proprietary platform, with a path toward role-based access control as our internal tooling matures.
- Define the target-state architecture for identity and access across the portfolio, and drive us there.
- Security
- Own the security baseline across identity, MFA and SSO, endpoint protection, access reviews, and vendor risk.
- Own the security of our office network, from wifi to perimeter, hands-on or through the right vendors, and adapt the setup as how we work evolves.
- Drive our defenses against cyber threats, from phishing and account compromise to incident readiness and response.
- Keep our corporate domains trusted: email authentication and anti-spoofing (SPF, DKIM, DMARC), with the registrar and DNS accounts behind them locked down.
- Bring a security and operations lens to domain architecture and process, partnering with the engineering team that runs day-to-day domain operations.
- Establish practical policies and standards that fit a fast-moving company, and build security awareness into how the whole team operates.
- Corporate Information Management
- Own file architecture, sharing standards, and governance at the corporate level across the portfolio.
- Set sane defaults so information is easy to find, simple to share, and secure without anyone thinking about it.
- Own backups, business continuity, and disaster recovery for corporate systems, including verifying that recovery actually works.
What You Bring
- 6+ years in IT, systems administration, or IT operations, including 3+ years owning IT end to end at a growing company, not as one seat inside a large IT organization.
- Deep hands-on administration experience across the modern SaaS stack: Microsoft 365, Google Workspace, Slack, and the identity and access management that ties them together.
- A working command of security fundamentals across identity, network, endpoints, and access, with the judgment to prioritize what matters most.
- Enough command of DNS and email authentication (SPF, DKIM, DMARC) to keep corporate domains trusted and their accounts secure.
- Fluency with AI tools. You use LLMs and AI tooling daily to script, automate, troubleshoot, and get up to speed on unfamiliar systems. This is a requirement, not a nice-to-have.
- Technical range. You script and automate to remove manual work, or you have the drive to build that muscle fast.
- A point of view. You have a track record of designing systems and processes, not just running them, and of bringing order to complexity.
- Unflappable range. Scope here shifts as the company grows, and you absorb new surface area as part of the job, not an exception to it.
- Exceptional judgment and communication. You operate independently, prioritize ruthlessly, and explain technical trade-offs clearly to non-technical stakeholders.
- Start-up DNA: bias for action, low ego, willingness to roll up sleeves and operate with limited resources. Comfort operating in a high-pace, always-on, real-time business.
Bonus Points
- Experience managing IT across multiple corporate entities, tenants, or a portfolio of companies.
- Experience administering an internal or proprietary application with user access management.
- Experience with MDM and endpoint management (e.g., Intune, Jamf).
- Exposure to SOC 2, ISO 27001, or similar frameworks, and what it takes to get an organization ready for them.
- Relevant certifications (e.g., Microsoft 365, Google Workspace, CompTIA, security).
Compensation
The base salary range for this role is $165,000 to $210,000, depending on experience. Salary Range: $165,000 USD - $210,000 USD