2070Health brand banner

IT Manager

2070HealthDelhi, IndiaPosted Nov 20
via Workable

About 2070Health

W Health has set up India’s first healthcare focused Venture Studio called  2070Health - an innovation platform that builds transformative healthcare companies from scratch by discovering disruptive opportunities in whitespaces. Distinct from the accelerator approach, our venture studio is closely involved in idea generation, day-to-day operations, and strategic decisions of growing the new business. Companies incubated in the last 24 months include Elevate NowNivaan Care, Reveal Healthtech , BabyMD and Everhope Oncology.

Role Overview

The IT Manager will be responsible for managing and securing the entire IT infrastructure of the organization, ensuring compliance with the Cybersecurity & Cyber Resilience Framework (CSCRF), and supporting employees across multiple office locations. This role covers IT operations, cybersecurity designing, implementation, asset management, networking, hardware/software lifecycle, vendor management, patching, backup, endpoint security, and user support.

The IT Manager will work on designing and implementation of all cybersecurity controls.

Key Responsibilities

1. IT Infrastructure & Operations

A. End-User & Hardware Management

  • Manage and support laptops, desktops, printers, peripherals for ~40 staff across multiple cities.
  • Enforce device hardening and security baselines (as per OS, endpoint, and network hardening policies).
  • Ensure secure device provisioning, configuration, updates, and decommissioning.

B. Network & Connectivity Management

  • Manage office networking setups across cities (LAN, WiFi, firewalls, switches, routers).
  • Ensure WPA3, VLAN segmentation, RBAC, and secure co-working network controls.
  • Maintain VPN access, MFA enforcement, bandwidth policies, and network monitoring.

C. SaaS & Application Support

  • Administer critical SaaS tools (email, collaboration tools, cloud storage, CRM, monitoring tools).
  • Manage access provisioning, de-provisioning, privilege controls, and license renewals.

2. Cybersecurity & CSCRF Compliance

A. Designing & Implementation of Cybersecurity Controls

  • Enforce all policies:
    • Risk management
    • Asset management
    • Authentication & authorization
    • Data protection & encryption
    • Network security
    • Patch management
    • Incident response
    • VAPT & vulnerability management
    • Third-party vendor security
    • Backup & disaster recovery

B. Identity & Access Management (IAM)

  • Apply least privilege and time-bound access principles.
  • Manage MFA for all critical systems and remote access points.
  • Review access logs and dormant accounts.

C. Incident Detection & Response

  • Monitor endpoint alerts, email security, network anomalies.
  • Log, escalate, and document security incidents as per incident management SOP.
  • Support forensic investigations, RCA, and SEBI reporting requirements.

D. Patch Management & Updates

  • Monitor OEM advisories, deploy updates as per severity timelines:
    • Critical: 7 days
    • High: 15 days
    • Medium/Low: 30 days
  • Maintain patch logs, testing records, and change control approvals.

E. Vulnerability Management

  • Coordinate VAPT activities with CERT-In empanelled auditors.
  • Track remediation progress and ensure revalidation. 

3. Asset Management & Documentation

A. IT Inventory Ownership

  • Maintain a detailed asset register for all hardware, software, and cloud resources.
  • Track asset lifecycle from purchase to disposal.
  • Validate annual inventories and reconcile with physical assets.

B. Software Compliance

  • Maintain SBOMs for critical systems (as mandated in policy).
  • Ensure only licensed and approved software is installed.
  • Prevent unauthorized devices or applications.

 

4. Data Protection, Backup & DR

  • Implement daily/weekly backups for critical data and server images.
  • Manage off-site/cloud backup storage.
  • Test restore procedures periodically to meet RPO/RTO targets.
  • Ensure encryption at rest and in transit for all sensitive data.

 

5. Vendor & Third-Party Management

  • Ensure all IT vendors adhere to cybersecurity requirements.
  • Manage NDAs, MSAs, SLAs, and third-party audit documentation.
  • Validate controls from co-working space providers (network segregation, CCTV access, etc.).
  • Perform quarterly vendor security reviews.

 

6. Support & Employee Training

  • Provide L1/L2 support for IT issues, outages, and hardware failures.
  • Conduct employee cybersecurity awareness training (phishing, data handling, passwords).

Ensure HODs and teams are aligned with acceptable use policy.

Technical Skills

  • Strong knowledge of Windows/macOS administration
  • Office 365/Google Workspace administration
  • Endpoint security tools (AV/EDR)
  • VLAN, firewalls, VPNs, WiFi protocols, network segmentation
  • Backup/disaster recovery systems
  • Hands-on patching, asset management, logging, MFA
  • Experience with VAPT coordination & vulnerability remediation
  • Familiarity with SEBI cybersecurity requirements (preferred)

Experience

  • 4–8 years in IT administration or IT infrastructure roles
  • Multi-location IT operations experience
  • Experience working in regulated industries (preferred)

 Behavioral Competencies

  • High ownership and accountability
  • Strong documentation discipline
  • Ability to work independently across distributed teams
  • Proactive problem-solving and risk identification
  • Confidentiality and ethics benchmark

Similar roles

  • Euromonitor logo

    Software Engineer 2

    Euromonitor·Bengaluru, India

    ABOUT EUROMONITOR Euromonitor International leads the world in data analytics and research into markets, industries, economies and consumers. We provide truly global insight and data on thousands of products and services; we are the first destination for organisations seeking growth. With our guidance, our clients can make bold, strategic decisions with confidence. OVERVIEW OF THE ROLE We are seeking a…

    • Hybrid
    • Full-time
  • Mobileye logo

    Autosar Cybersecurity Software Development (m/w/d)

    Mobileye·Koblenz, Germany

    We are looking for skilled Security Engineers with hands-on experience in automotive software development to join Mobileye’s Automotive Software team. In this role, you will work on designing and implementing security solutions, ensuring the security and robustness of automotive systems. This is a real engineering role for those who love problem-solving, working at a low level, and getting their hands…

    • On-site
    • Full-time
    • Blue Cardtied; settle 21–33mo
  • Authority.inc logo

    Cybersecurity Expert (United Kingdom)

    Authority.inc·London, Canada

    ROLE DESCRIPTION The Cybersecurity Expert Commentary role is a remote contract position open to experts located anywhere in the United Kingdom. You will provide clear, accurate commentary on security operations, cyber risk, identity, cloud security, incident response, regulation, and security purchasing. The expected commitment is approximately four hours per month. You will review Authority.inc research, datasets, and forecasts to identify…

    • Remote
    • Contract
    • Express EntryPR day one, no employer
  • Datamark, Inc. logo

    Customer Service Agent

    Datamark, Inc.·Chennai, India

    DATAMARK, Inc. is currently seeking a professional and experienced Bilingual Interpreter to join our team. As a leading provider of business process outsourcing solutions, DATAMARK helps organizations worldwide manage their operations more efficiently and effectively. The Bilingual Interpreter will play a crucial role in facilitating effective communication between client and customers. * Determining the language needs of the caller *…

    • Remote
    • Full-time
  • Xenon7 logo

    AI Data Enablement Engineer

    Xenon7·Hyderabad, India

    Our Client's Digital Finance IT is building an AI-enablement layer on top of our enterprise data platform to enable business users across Finance to interact with governed data in natural language. We're hiring a Data Enablement Engineer to design, build, and operate the trusted datasets, semantic models, and embedded AI experiences that make this possible. This is a data platform…

    • Hybrid
    • Full-time
  • Xenon7 logo

    MLOps / Cloud Deployment Engineer

    Xenon7·Hyderabad, India

    Our Client's Digital Finance IT is scaling AI and agentic systems in production. We need an MLOps / Cloud Deployment Engineer to own the deployment, reliability, observability, and operational scale of these systems in a regulated enterprise environment. This is a cloud and platform engineering role with deep MLOps/LLMOps focus, not a model-building role. You will operate the runway that…

    • Hybrid
    • Contract
  • Meesho logo

    Cluster Head- Last mile - Kerala

    Meesho·Kochi, India

    About the Team Being part of Meesho's Fulfilment and Experience (F&E) team as Cluster Head LM, will zip you to the cockpit of our ever-burgeoning rocketship, where you get to directly shape the experience of the country's next billion e-commerce users. We are an eclectic mix of 100+ professionals with diverse skill sets ranging from running operations/support, supply chain know-how,…

    • On-site
    • Full-time
  • Tata Consultancy Services logo

    Oracle Fusion Finance Functional AP,Expense

    Tata Consultancy Services·India, Gambia

    Skill: Oracle Fusion Finance Functional AP, Expense Exp: 6 Location: Bangalore, Hyderabad, Kolkata. Required Skills (Must have) Strong functional knowledge of Oracle Fusion Financials AP and I Expense. Strong understanding of AP accounting lifecycle mainly on the Procure to Pay (P2P) flow. Minimum 2-3 years of experience in Oracle Fusion Cloud implementation or transformation projects. Participation in at least one…

    • Full-time