Job Requirements
Chantilly, VA
Top Secret Polygraph not specified
Senior Level Career (10+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries
Job Description
NEXTPOINT GROUP
IT Technical Lead— Internal IT & Office Operations
Position Description
Reports to: Chief Technology Officer
Direct reports: 1 (IT Support) and part-time engineering resources. However, function expected to grow with scale
Location / schedule: Onsite — 4-5 days – Some flexibility but mostly onsite.
Clearance: Must be eligible to obtain and maintain a Top Secret clearance (company-sponsored)
Role Summary
NextPoint Group is a ~250-person defense and intelligence services firm. The IT Director owns internal IT end to end: the corporate network and identity stack, the endpoint fleet, the managed service provider (MSP) relationship, compliance-driven security controls, and the physical office environment.
This is not a help-desk role and it is not a ticket queue. It is the single accountable owner for how NextPoint's own technology and workplace run, with the MSP executing under this person's direction rather than setting the agenda.
The role exists because NextPoint has outgrown a reactive, task-executing IT function. We need an operator who can set standards, hold a vendor to them, close audit findings, and absorb acquisition integrations without the CTO being pulled into day-to-day IT.
Core Responsibilities
MSP and Vendor Ownership
• Own the outsourced IT provider relationship: scope, SLAs, escalation paths, ticket quality, and quarterly business reviews.
• Hold the MSP to measurable performance; drive remediation when it slips; run a re-scope or re-compete if it does not recover.
• Own the IT vendor portfolio — Microsoft licensing, endpoint/EDR, backup, telecom, hardware resellers — and the annual IT budget.
Corporate IT Operations
• Microsoft 365 / Entra ID tenant administration: identity, conditional access, MFA, licensing, mail flow, SharePoint and Teams governance.
• Endpoint lifecycle: procurement, Intune baselines and imaging, encryption, patching, asset tracking, recovery, and disposal.
• Corporate network: HQ LAN and Wi-Fi, firewall, VPN and remote access, ISP redundancy.
• Backup, recovery, and business continuity — including tested restores, not merely configured jobs.
• Onboarding and offboarding: same-day provisioning and same-day deprovisioning, with auditable evidence.
Security and Compliance
• Execute and sustain the internal control environment supporting NIST SP 800-171, DFARS 252.204-7012, and CMMC Level 2, in partnership with the CTO, who owns the compliance program.
• Maintain system security documentation, IT-assigned POA&M items, and evidence packages for assessments and customer audits.
• Support the FSO and security organization on cleared-environment requirements, media control, and incident reporting timelines.
• Run vulnerability remediation, periodic access reviews, and logging and monitoring in coordination with the MSP.
Growth and M&A Integration
• Integrate acquired companies: tenant and domain consolidation, identity migration, endpoint re-baselining, license true-up, and decommissioning of legacy infrastructure.
• Provide IT input to diligence on target-company environments — cost, risk, and remediation effort.
Office and Facilities Operations
• Run the HQ office: space and seating, moves/adds/changes, badging and physical access control, and visitor management.
• Own conference room and AV technology, printing, office equipment, and the vendors behind them — janitorial, landlord and property management, and security systems.
• Support office expansion, relocation, and new-site standup as the company grows.
Team
• Manage, develop, and set direction for one direct and part-time employees; build the case and structure for additional headcount as scale justifies it.
Required Qualifications
• 8+ years in IT operations, including 3+ years owning a corporate IT function or leading an IT team.
• Demonstrated ownership of an outsourced MSP relationship OR lead a Project Delivery Team - scoping, SLA enforcement, escalation, and vendor performance management. This is a screening gate, not a preference.
• Deep hands-on Microsoft 365, Entra ID, and Intune administration.
• Working knowledge of network and endpoint security fundamentals: firewalls, VPN, EDR, patch and vulnerability management, backup and recovery.
• Experience operating in a regulated environment with documented controls and external audit or assessment exposure.
• Budget ownership and vendor negotiation experience.
• People management experience.
• Clear written communication with executives, able to state status, risk, and cost without technical hand-holding.
Preferred Qualifications
• Government contracting experience; direct exposure to NIST 800-171, DFARS 7012, or CMMC.
• IT integration/transition work in an M&A context.
• Experience in a private-equity-backed company with reporting and control discipline.
• Facilities or office operations ownership alongside IT.
• Certifications: Security+, Microsoft endpoint or identity administrator, ITIL, CISSP.
Clearance and Eligibility
• U.S. citizenship required.
• Must be eligible to obtain and maintain a Top Secret clearance; NextPoint will sponsor. Candidates must be willing to be submitted for investigation and have no disqualifying history.
• An active TS or TS/SCI is a plus and may accelerate the offer.
What Success Looks Like
First 90 days
MSP contract, SLAs, and actual performance assessed and documented. Complete asset and license inventory. Onboarding/offboarding process documented and running clean. Top five risks presented to the CTO with cost and timeline.
First 6 months
MSP operating to a defined and enforced SLA with a QBR cadence. Endpoint baseline standardized and patch compliance measured. Tested restore completed. IT-owned POA&M items on schedule. IT budget built and defended.
First 12 months
Internal IT running without CTO intervention. Compliance evidence audit-ready on demand. One acquisition integrated or an office standup/move executed. Direct report developed against a defined plan.
IT Technical Lead— Internal IT & Office Operations
Position Description
Reports to: Chief Technology Officer
Direct reports: 1 (IT Support) and part-time engineering resources. However, function expected to grow with scale
Location / schedule: Onsite — 4-5 days – Some flexibility but mostly onsite.
Clearance: Must be eligible to obtain and maintain a Top Secret clearance (company-sponsored)
Role Summary
NextPoint Group is a ~250-person defense and intelligence services firm. The IT Director owns internal IT end to end: the corporate network and identity stack, the endpoint fleet, the managed service provider (MSP) relationship, compliance-driven security controls, and the physical office environment.
This is not a help-desk role and it is not a ticket queue. It is the single accountable owner for how NextPoint's own technology and workplace run, with the MSP executing under this person's direction rather than setting the agenda.
The role exists because NextPoint has outgrown a reactive, task-executing IT function. We need an operator who can set standards, hold a vendor to them, close audit findings, and absorb acquisition integrations without the CTO being pulled into day-to-day IT.
Core Responsibilities
MSP and Vendor Ownership
• Own the outsourced IT provider relationship: scope, SLAs, escalation paths, ticket quality, and quarterly business reviews.
• Hold the MSP to measurable performance; drive remediation when it slips; run a re-scope or re-compete if it does not recover.
• Own the IT vendor portfolio — Microsoft licensing, endpoint/EDR, backup, telecom, hardware resellers — and the annual IT budget.
Corporate IT Operations
• Microsoft 365 / Entra ID tenant administration: identity, conditional access, MFA, licensing, mail flow, SharePoint and Teams governance.
• Endpoint lifecycle: procurement, Intune baselines and imaging, encryption, patching, asset tracking, recovery, and disposal.
• Corporate network: HQ LAN and Wi-Fi, firewall, VPN and remote access, ISP redundancy.
• Backup, recovery, and business continuity — including tested restores, not merely configured jobs.
• Onboarding and offboarding: same-day provisioning and same-day deprovisioning, with auditable evidence.
Security and Compliance
• Execute and sustain the internal control environment supporting NIST SP 800-171, DFARS 252.204-7012, and CMMC Level 2, in partnership with the CTO, who owns the compliance program.
• Maintain system security documentation, IT-assigned POA&M items, and evidence packages for assessments and customer audits.
• Support the FSO and security organization on cleared-environment requirements, media control, and incident reporting timelines.
• Run vulnerability remediation, periodic access reviews, and logging and monitoring in coordination with the MSP.
Growth and M&A Integration
• Integrate acquired companies: tenant and domain consolidation, identity migration, endpoint re-baselining, license true-up, and decommissioning of legacy infrastructure.
• Provide IT input to diligence on target-company environments — cost, risk, and remediation effort.
Office and Facilities Operations
• Run the HQ office: space and seating, moves/adds/changes, badging and physical access control, and visitor management.
• Own conference room and AV technology, printing, office equipment, and the vendors behind them — janitorial, landlord and property management, and security systems.
• Support office expansion, relocation, and new-site standup as the company grows.
Team
• Manage, develop, and set direction for one direct and part-time employees; build the case and structure for additional headcount as scale justifies it.
Required Qualifications
• 8+ years in IT operations, including 3+ years owning a corporate IT function or leading an IT team.
• Demonstrated ownership of an outsourced MSP relationship OR lead a Project Delivery Team - scoping, SLA enforcement, escalation, and vendor performance management. This is a screening gate, not a preference.
• Deep hands-on Microsoft 365, Entra ID, and Intune administration.
• Working knowledge of network and endpoint security fundamentals: firewalls, VPN, EDR, patch and vulnerability management, backup and recovery.
• Experience operating in a regulated environment with documented controls and external audit or assessment exposure.
• Budget ownership and vendor negotiation experience.
• People management experience.
• Clear written communication with executives, able to state status, risk, and cost without technical hand-holding.
Preferred Qualifications
• Government contracting experience; direct exposure to NIST 800-171, DFARS 7012, or CMMC.
• IT integration/transition work in an M&A context.
• Experience in a private-equity-backed company with reporting and control discipline.
• Facilities or office operations ownership alongside IT.
• Certifications: Security+, Microsoft endpoint or identity administrator, ITIL, CISSP.
Clearance and Eligibility
• U.S. citizenship required.
• Must be eligible to obtain and maintain a Top Secret clearance; NextPoint will sponsor. Candidates must be willing to be submitted for investigation and have no disqualifying history.
• An active TS or TS/SCI is a plus and may accelerate the offer.
What Success Looks Like
First 90 days
MSP contract, SLAs, and actual performance assessed and documented. Complete asset and license inventory. Onboarding/offboarding process documented and running clean. Top five risks presented to the CTO with cost and timeline.
First 6 months
MSP operating to a defined and enforced SLA with a QBR cadence. Endpoint baseline standardized and patch compliance measured. Tested restore completed. IT-owned POA&M items on schedule. IT budget built and defended.
First 12 months
Internal IT running without CTO intervention. Compliance evidence audit-ready on demand. One acquisition integrated or an office standup/move executed. Direct report developed against a defined plan.
group id: 10457211