Senior IT Manager
Job description
Senior IT Manager at Pomelo Care.
About the role
You will lead the IT function for a rapidly scaling, high-growth startup and define what world-class IT delivery looks like in a healthcare environment. This position is a hands-on leadership role where you will manage, coach, and grow a distributed IT Support team while simultaneously managing the highest technical escalations. You will act as the technical and strategic owner of the end-to-end IT stack, including identity and access, device management, and the broader SaaS ecosystem. You will set the standard for operational excellence, vendor management, and automation across all internal tools. This role requires a player-coach mindset, balancing day-to-day execution with long-term roadmap ownership. You will work closely with Security and Engineering to ensure that compliance frameworks like HIPAA and SOC 2 are embedded into daily operations, not treated as afterthoughts.
Key facts
What you'll do
- Manage, coach, and grow our team of IT Support Engineers, overseeing hiring, development, performance management, and career progression.
- Set the technical bar for the team by taking ownership of the hardest escalations and demonstrating best practices in system administration and security.
- Teach and mentor engineers on troubleshooting methodologies, tooling standards, and efficient workflows that scale.
- Own the roadmap and strategic direction for our core IT systems, including identity and access management, device management, Google Workspace, Slack, and the complete SaaS stack.
- Negotiate and manage all IT vendor relationships, procurement processes, and spend analysis to cut redundant tooling and optimize the stack for efficiency.
- Drive automation initiatives to eliminate manual, repetitive IT tasks, reducing toil and increasing reliability for the entire organization.
- Design and execute smooth, scalable onboarding and offboarding processes that support a distributed, fast-growing workforce.
- Partner directly with the Security team to implement and maintain controls necessary for HIPAA compliance and SOC 2 HITRUST certification.
- Gather and interpret audit evidence, run parts of the certification process, and ensure that controls remain effective as the company scales.
- Leverage compliance automation platforms like Vanta or Drata to streamline evidence collection and continuous monitoring of IT controls.
- Serve as the primary liaison between IT and executive leadership, handling sensitive requests with discretion and maintaining clear communication.
- Build cross-functional partnerships with Engineering and other departments to align IT strategy with business objectives and product delivery.
Requirements
- Bring 7+ years of professional experience in IT support or IT operations, demonstrating a consistent track record of ownership and execution in complex environments.
- Show 2+ years of proven experience managing a team, with a history of building and leveling up high-performing engineers and support staff.
- Demonstrate a player-coach attitude, being equally comfortable coaching team development and diving into technical work to show what great looks like.
- Exhibit strong customer service and communication skills, setting the tone for how the IT team treats internal stakeholders and partners.
- Be comfortable engaging directly with executives and senior leadership, handling sensitive information and requests with the highest level of discretion.
- Possess deep, hands-on experience with identity and access platforms such as Okta, and modern device management solutions like Jamf or Kandji (Iru).
- Show advanced proficiency with Google Workspace and Slack, including administration, security settings, and integration management at scale.
- Have a strong understanding of endpoint management, mobile device management (MDM), and security best practices for distributed workforces.
Nice to have
- Have previously built or scaled an IT function within a fast-paced startup environment, navigating ambiguity and rapid change.
- Bring experience working in a healthcare company where HIPAA compliance and patient data protection are central to daily responsibilities.
- Possess a formal background in information security, with knowledge of security frameworks, risk assessments, and incident response.
- Hold hands-on experience with SOC 2 and HITRUST, including implementing controls, defining policies, and gathering evidence for audits.
- Have practical experience with compliance automation and monitoring platforms such as Vanta or Drata, using data to drive continuous control improvements.
Practical notes
This is a full-time role based in New York City or fully remote within the continental United States. The position offers comprehensive benefits including 16 weeks of paid parental leave, a competitive 401(k) program, equity grants, and flexible work arrangements. Travel is not required for this role. The standard work schedule is 40 hours per week. This role is not eligible for visa sponsorship.