Imagine working at the forefront of innovation in fluid-flow technology, with over 1,400 colleagues across the globe, and contributing to a legacy of excellence that spans eight manufacturing facilities on four continents. Armstrong Fluid Technology is more than just a leader in our industry; we are a community of the brightest and most creative minds, driven by a shared mission to engineer the future and safeguard our planet.
As part of our team, you'll be immersed in an environment that fosters growth, creativity, and collaboration. Here, you'll have the opportunity to push boundaries, tackle exciting challenges, and develop cutting-edge solutions that promote energy efficiency and reduce environmental impact. Every day offers the chance to make a meaningful contribution to a more sustainable future, driving innovations that help lower global carbon footprints. Together, we’re creating a legacy that goes beyond business—one that’s changing the world for the better.
In this role, you will serve as a frontline defender of our organization's digital assets, infrastructure, and sensitive data against an evolving landscape of cyber threats. You will be a primary driver and active participant in improving our organization’s cyber posture & maturity across a multitude of projects and active initiatives. Making a change to protect our organization is your mandate and passion to be the right fit!
Key Accountabilities
- Manage identity lifecycles by executing proactive user account controls procedures.
- Enforce Zero Trust principles across the IT environment utilizing Microsoft IAM and Privileged Identity Management (PIM) frameworks
- Architect and deploy Microsoft Entra Conditional Access Policies to guarantee secure authentication to all Microsoft 365 cloud resources.
- Engineer global patch deployments for operating systems and third-party applications via Microsoft Intune to neutralize zero-day vulnerabilities
- Harden collaboration environments across Exchange Online and Teams using Defender for Office 365 threat policies, transport rules, and blocklists
- Orchestrate incident response and threat containment operations in close alignment with internal IT teams and external security partners.
- Govern data protection by implementing Microsoft Purview Information Protection to eliminate unauthorized data sharing and cloud exfiltration
- Author and maintain corporate IT security controls, policies, and procedural documentation to continuously mature the organizational security posture
- Conduct technical risk assessments and deliver strategic recommendations to mitigate vulnerabilities in accordance with security best practices
- Drive regulatory compliance (including ISO 27001, NIST, GDPR, and HIPAA) while tracking emerging threat intelligence and AI-driven security technologies
What We’re Looking For
To thrive in this role, you should bring:
Education and Experience
- University Degree or equivalent.
- 5 years’ experience in a similar capacity
- Demonstrated knowledge of IT Security frameworks, controls and best practices
Technical Skills
- Identity & Access Management (IAM): Advanced proficiency in Microsoft Entra ID, Conditional Access Policies, and Privileged Identity Management (PIM)
- Endpoint & Patch Management: Expertise in Microsoft Intune for global OS, third-party application deployment, and zero-day vulnerability remediation
- Cloud & Collaboration Security: Hands-on experience hardening Exchange Online, Teams, and M365 environments using Defender for Office 365
- Data Loss Prevention (DLP): Skilled in implementing and monitoring Microsoft Purview Information Protection to prevent cloud and endpoint exfiltration
- Risk & Compliance Frameworks: Strong working knowledge of security governance standards including NIST, ISO 27001, GDPR, and HIPAA
Soft Skills
- Analytical Thinking: Strong capacity to dissect complex security logs, evaluate risk telemetry, and isolate root causes during incidents
- Cross-Functional Collaboration: Proven ability to partner effectively with internal IT engineering teams and external security vendors to resolve threats
- Crisis Communication: Calm and articulate demeanor when conveying critical security incidents, remediation steps, and technical details to non-technical stakeholders
- Continuous Learning: Proactive mindset dedicated to tracking emerging exploit vectors, zero-day threats, and evolving AI-driven defensive technologies
- Detail Orientation: Sharp focus required to maintain meticulous security policy documentation, audit user access controls, and detect subtle system anomalies.
Why Armstrong Fluid Technology?
By joining us, you’ll become part of a global community dedicated to pushing the boundaries of fluid-flow technology while upholding Armstrong's commitment to sustainability. You’ll have endless opportunities to learn, grow, and make a significant impact on the world. Together, we'll build tomorrow’s solutions today.
Skills Required
- University degree or equivalent
- Five years of experience in a similar capacity
- Knowledge of IT security frameworks, controls, and best practices
- Advanced proficiency in Microsoft Entra ID, Conditional Access Policies, and Privileged Identity Management
- Expertise with Microsoft Intune for operating system and application deployment and vulnerability remediation
- Experience securing Exchange Online, Teams, and Microsoft 365 using Defender for Office 365
- Experience implementing and monitoring Microsoft Purview Information Protection and data loss prevention
- Working knowledge of NIST, ISO 27001, GDPR, and HIPAA
What We Do
Armstrong Fluid Technology is a global leader and innovator in the design, engineering, and manufacturing of intelligent fluid-flow equipment, control solutions, and optimization technologies. Focusing on HVAC, plumbing, and fire safety applications, the company provides energy-efficient and cost-effective solutions and performance management services to building and facility professionals worldwide, leveraging edge computing, IoT, and machine learning to optimize building mechanical systems.








