Position Summary
Toth and Associates is seeking a hands-on, detail-oriented IT Security and Operations Specialist to support internal cybersecurity, compliance, onboarding, and IT operations. This technical role is responsible for implementing security tools, coordinating user onboarding and training, supporting policy compliance, maintaining IT documentation, and assisting with issue escalation and process development.
The position works closely with the Director of IT, other IT team members, and external vendors to ensure a stable, secure, and well-documented IT environment. It plays a key role in executing the company’s Information Security Policy and maintaining compliance with client and internal standards.
Essential Duties and Responsibilities
•Administer and support endpoint protection, MFA, encryption, and access control in accordance with security policies
•Monitor and respond to alerts and health reports from ThreatLocker, Huntress, NinjaOne, and related tools
•Manage phishing simulations and security awareness training (KnowBe4); analyze results, implement follow-up actions, and report regularly to the Director of IT
•Coordinate and lead IT onboarding to ensure all systems, accounts, and equipment are ready by the start date; deliver training to new employees on IT systems and security expectations
•Lead weekly IT team coordination meetings to track project updates and operational tasks
•Provide regular written reporting to the Director of IT on operations, training results, patch compliance, and active IT projects
•Maintain IT compliance documentation and monitor adherence to the Information Security Policy
•Track and maintain security or data handling agreements tied to client contracts
•Maintain internal records for IT vendor contracts, security agreements, and service obligations
•Track and coordinate software license renewals and vendor communications
•Create SOPs, document infrastructure systems, and contribute to the internal IT knowledgebase
•Coordinate remediation of patching or system health issues in line with defined SLAs
•Serve as a technical escalation point for internal IT support issues not resolved at first contact
•Collaborate with the Asset/Operations Specialist on hardware deployments, lifecycle tracking, and imaging standards
•Coordinate with the external MSP and vendors for infrastructure-level issues or escalations
Required Qualifications
•Associate’s degree in information technology, Computer Science, Cybersecurity, or a closely related field
•3–5 years of experience in IT operations, cybersecurity, or systems support
•Proficient in Microsoft 365 administration (Teams, Exchange, OneDrive, Intune)
•Hands-on experience with ThreatLocker, Huntress, and NinjaOne
•Strong understanding of Windows 10/11 systems, endpoint management, and patching practices
•Proven ability to document technical procedures and write internal SOPs
•Excellent organizational and task coordination skills
•Ability to work independently on-site and communicate effectively with technical and non-technical stakeholders
Preferred Qualifications
•Bachelor’s degree in information technology, Computer Science, Cybersecurity, or a closely related field
•Familiarity with cybersecurity frameworks (e.g., NIST CSF, CIS Controls)
•PowerShell scripting or automation experience
•Experience supporting audit or compliance reviews
•Understanding of engineering, AEC, or electric utility environments