Logo for Infusion for Health

IT Infrastructure and Security Manager

Role overview

Qualifications

  • 5+ years administering Microsoft environments at multi-site scale, including Entra ID/Azure, Microsoft 365, on-prem Active Directory and Group Policy, and Intune
  • Hands-on experience with Microsoft Defender (XDR and/or Defender for Office 365) and at least one SIEM platform
  • Practical network competence with firewalls, VPN/SD-WAN, VLANs, and DNS, with the ability to supervise a network engineer
  • Direct experience producing evidence for a SOC 2, HITRUST, or comparable audit

Responsibilities

  • Own identity and access hygiene, including a working joiner/mover/leaver process, elimination of stale and orphaned accounts, and scheduled rotation of admin and service account credentials
  • Document, approve, and technically enforce security policies across the environment using Group Policy, Intune, and Conditional Access, in support of HIPAA security requirements
  • Maintain 100% MFA and Conditional Access coverage for users and administrators
  • Deliver a monthly security posture report to the CIO covering open risks, aging remediation, and audit readiness

About the company

Infusion for Health logo

Infusion for Health

Infusion for Health is dedicated to providing the best infusion services in the market: the highest clinical quality/safety, the lowest patient out-of-pocket cost, and the most enjoyable patient experience.

Company details

Company typeSME
Company size51 - 200

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Join Our Team as an IT Infrastructure & Security Manager (Remote – USA)

About Us
Infusion for Health is a premier, referral-based infusion center serving patients across California, Arizona, Nevada, Washington, Colorado, and Missouri. Our unique centers feature private, comfortable rooms for a personalized patient experience. We are committed to delivering exceptional infusion therapy in a patient-focused, compassionate environment, supported by a team of skilled professionals.

Why Infusion for Health?

  • Patient-Centered Care: Our mission is to provide top-notch service and clinical care in a comfortable setting.
  • Growth Opportunities: As we continue to expand, we offer opportunities for career advancement and professional development.
  • Supportive Environment: Join a team where your expertise is valued, and you can make a real difference in patients’ lives.

Job Overview

This role owns day-to-day security posture, identity hygiene, and compliance readiness across a multi-site healthcare environment (Microsoft 365, Entra ID, Azure, on-prem Active Directory, and site firewalls). The work is hands-on and includes directing and independently verifying work performed by an outsourced IT partner and offshore resources. This is a remote role in the USA; PST hours highly preferred.

Compensation: $85,000-$100,000/year DOE

Duties and Responsibilities

  • Own identity and access hygiene, including a working joiner/mover/leaver process, elimination of stale and orphaned accounts, and scheduled rotation of admin and service account credentials.
  • Document, approve, and technically enforce security policies across the environment using Group Policy, Intune, and Conditional Access, in support of HIPAA security requirements.
  • Maintain 100% MFA and Conditional Access coverage for users and administrators.
  • Administer and monitor Microsoft Defender (XDR and/or Defender for Office 365) and at least one SIEM platform; oversee related email protection controls (including DMARC/SPF/DKIM).
  • Ensure server and domain controller patching cadence is met and backups are verified.
  • Build and run SOC 2 Type II evidence collection as a repeatable process and keep the organization on track for attestation.
  • Deliver a monthly security posture report to the CIO covering open risks, aging remediation, and audit readiness.
  • Hold the IT partner and offshore resources accountable for SLA performance; independently verify completed work and conduct third-party access reviews.
  • Supervise network-related work as needed (site firewalls, VPN/SD-WAN, VLANs, DNS).
  • Follow through on aging remediation items and communicate risk clearly to non-technical leaders.

Experience

Required

  • 5+ years administering Microsoft environments at multi-site scale, including Entra ID/Azure, Microsoft 365, on-prem Active Directory and Group Policy, and Intune
  • Hands-on experience with Microsoft Defender (XDR and/or Defender for Office 365) and at least one SIEM platform
  • Practical network competence with firewalls, VPN/SD-WAN, VLANs, and DNS, with the ability to supervise a network engineer
  • Direct experience producing evidence for a SOC 2, HITRUST, or comparable audit
  • Strong PowerShell skills for automation and auditing
  • Clear communication with non-technical stakeholders and a demonstrated ability to hold vendors accountable
  • Comfort being hands-on while also directing and verifying others’ work

Highly Preferred

  • Healthcare industry experience and familiarity with HIPAA security requirements
  • Certifications such as SC-200, AZ-500, Security+, or CISSP
  • Experience supervising or working within a managed service provider (MSP) delivery model

Monday to Friday

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
Β·

IT Infrastructure Manager Related jobs

Other jobs at Infusion for Health

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.