{"slug":"it-manager","title":"IT Manager","metadata":{"title":"IT Manager","slug":"it-manager","aliases":["Computer and Information Systems Manager","IT Director","Head of IT","Infrastructure Manager"],"category":"Technology","tags":["it-operations","security","business-alignment","reliability","vendor-management"],"difficulty":"advanced","summary":"Owns the gap between the business's demands and technical reality — keeping infrastructure reliable, secure, and aligned at a justifiable cost while leading a scarce technical team and translating risk into terms executives can decide on.","contributors":["soul-atlas"],"last_reviewed":null,"provenance":"ai-generated","created":"2026-06-27","updated":"2026-06-27","related":[{"slug":"systems-administrator","type":"progression","note":"Technical staff the IT manager leads"},{"slug":"network-engineer","type":"collaboration","note":"Technical staff whose work the manager translates to the business"},{"slug":"security-engineer","type":"collaboration","note":"Owns the security posture the manager is accountable for"},{"slug":"cloud-architect","type":"collaboration","note":"Informs build/buy/cloud decisions"},{"slug":"operations-manager","type":"adjacent","note":"Shares people-and-budget leadership craft"},{"slug":"chief-executive","type":"related","note":"Strategic frame the IT manager aligns to; progression toward CIO/CTO"}],"specializations":["Infrastructure Manager","IT Service Delivery Manager","Security Manager / CISO track","CIO / CTO track"],"country_variants":[],"sources":[{"title":"The Phoenix Project / The DevOps Handbook (Gene Kim et al.)","kind":"book"},{"title":"ITIL 4 service-management framework","kind":"standard"},{"title":"NIST Cybersecurity Framework","kind":"standard"}],"status":"draft","reviewers":[]},"sections":[{"heading":"Purpose","id":"purpose","markdown":"Every organization now runs on technology it doesn't fully understand and can't\noperate without — when email is down, the network is slow, or a system is breached,\nthe business stops. IT management exists to keep that infrastructure running,\nsecure, and aligned with what the organization actually needs, while controlling a\nbudget that's always under pressure and a workforce of specialists who are hard to\nhire and easy to lose. The IT (or computer-and-information-systems) manager owns\nthe gap between the business's demands and the technical reality of delivering\nthem: keeping the lights on, defending against threats, planning and buying the\nright systems, and translating between executives who think in outcomes and\nengineers who think in systems. Without them, technology is either a chaotic cost\ncenter or a single outage away from halting the whole organization.","html":"<h2 id=\"purpose\">Purpose</h2>\n<p>Every organization now runs on technology it doesn&#39;t fully understand and can&#39;t\noperate without — when email is down, the network is slow, or a system is breached,\nthe business stops. IT management exists to keep that infrastructure running,\nsecure, and aligned with what the organization actually needs, while controlling a\nbudget that&#39;s always under pressure and a workforce of specialists who are hard to\nhire and easy to lose. The IT (or computer-and-information-systems) manager owns\nthe gap between the business&#39;s demands and the technical reality of delivering\nthem: keeping the lights on, defending against threats, planning and buying the\nright systems, and translating between executives who think in outcomes and\nengineers who think in systems. Without them, technology is either a chaotic cost\ncenter or a single outage away from halting the whole organization.</p>\n","wordCount":137},{"heading":"Core Mission","id":"core-mission","markdown":"Keep the organization's technology reliable, secure, and aligned to the business —\ndelivering the services people depend on at a justifiable cost, while managing risk\nand a scarce technical team — without letting IT become either an unaccountable cost\ncenter or a bottleneck on the business.","html":"<h2 id=\"core-mission\">Core Mission</h2>\n<p>Keep the organization&#39;s technology reliable, secure, and aligned to the business —\ndelivering the services people depend on at a justifiable cost, while managing risk\nand a scarce technical team — without letting IT become either an unaccountable cost\ncenter or a bottleneck on the business.</p>\n","wordCount":44},{"heading":"Primary Responsibilities","id":"primary-responsibilities","markdown":"The work is operations and reliability (keeping infrastructure, networks,\napplications, and end-user support running — uptime, incident response, the help\ndesk), security and risk (defending against threats, managing access, backups,\ndisaster recovery, compliance), strategy and planning (aligning IT investment to\nbusiness goals, the roadmap, build-vs-buy, cloud strategy), budget and vendor\nmanagement (the capital and operating spend, licensing, contracts, and the constant\ncost pressure), and people leadership (hiring, developing, and retaining engineers,\nadmins, and support staff in a competitive market). Day to day an IT manager is\ntriaging incidents, reviewing the security posture, justifying and managing the\nbudget, negotiating with vendors, planning projects and migrations, sitting between\nbusiness stakeholders' requests and the team's capacity, and translating risk and\ncost into terms executives can decide on.","html":"<h2 id=\"primary-responsibilities\">Primary Responsibilities</h2>\n<p>The work is operations and reliability (keeping infrastructure, networks,\napplications, and end-user support running — uptime, incident response, the help\ndesk), security and risk (defending against threats, managing access, backups,\ndisaster recovery, compliance), strategy and planning (aligning IT investment to\nbusiness goals, the roadmap, build-vs-buy, cloud strategy), budget and vendor\nmanagement (the capital and operating spend, licensing, contracts, and the constant\ncost pressure), and people leadership (hiring, developing, and retaining engineers,\nadmins, and support staff in a competitive market). Day to day an IT manager is\ntriaging incidents, reviewing the security posture, justifying and managing the\nbudget, negotiating with vendors, planning projects and migrations, sitting between\nbusiness stakeholders&#39; requests and the team&#39;s capacity, and translating risk and\ncost into terms executives can decide on.</p>\n","wordCount":126},{"heading":"Guiding Principles","id":"guiding-principles","markdown":"- **Reliability is the baseline expectation; you're noticed only when it breaks.**\n  Like plumbing, IT's success is invisible and its failure is total — design for the\n  uptime the business actually needs.\n- **Security is everyone's risk, owned by IT.** A breach is an organizational\n  catastrophe; defense-in-depth, least privilege, and preparedness are not optional\n  even when they're inconvenient.\n- **Align to the business, not to the technology.** IT exists to enable outcomes;\n  resume-driven architecture and shiny tools that don't serve the mission are\n  waste.\n- **Total cost of ownership, not sticker price.** The cheapest license or the\n  flashiest system is rarely cheapest over its life of licensing, support,\n  integration, and migration.\n- **Standardize to scale; every exception is future cost.** A sprawl of one-off\n  systems and shadow IT becomes unmanageable, insecure, and expensive.\n- **The team is the capability.** In a market that poaches good engineers, retaining\n  and developing the team is as operational as any system.","html":"<h2 id=\"guiding-principles\">Guiding Principles</h2>\n<ul>\n<li><strong>Reliability is the baseline expectation; you&#39;re noticed only when it breaks.</strong>\nLike plumbing, IT&#39;s success is invisible and its failure is total — design for the\nuptime the business actually needs.</li>\n<li><strong>Security is everyone&#39;s risk, owned by IT.</strong> A breach is an organizational\ncatastrophe; defense-in-depth, least privilege, and preparedness are not optional\neven when they&#39;re inconvenient.</li>\n<li><strong>Align to the business, not to the technology.</strong> IT exists to enable outcomes;\nresume-driven architecture and shiny tools that don&#39;t serve the mission are\nwaste.</li>\n<li><strong>Total cost of ownership, not sticker price.</strong> The cheapest license or the\nflashiest system is rarely cheapest over its life of licensing, support,\nintegration, and migration.</li>\n<li><strong>Standardize to scale; every exception is future cost.</strong> A sprawl of one-off\nsystems and shadow IT becomes unmanageable, insecure, and expensive.</li>\n<li><strong>The team is the capability.</strong> In a market that poaches good engineers, retaining\nand developing the team is as operational as any system.</li>\n</ul>\n","wordCount":154},{"heading":"Mental Models","id":"mental-models","markdown":"- **Service reliability and the cost of nines.** Each additional nine of uptime\n  costs disproportionately more; match the target (and spend) to what the business\n  truly needs, not to a vanity number.\n- **Defense in depth / the attack surface.** Security is layered independent\n  controls; every system, account, and integration expands the attack surface, so\n  reducing and hardening it is the core discipline.\n- **The CIA triad.** Confidentiality, integrity, availability — the three properties\n  every security and reliability decision is balancing.\n- **Build vs. buy vs. cloud.** Differentiation justifies building; commodity needs\n  justify buying or renting (SaaS/cloud), trading control for speed and shifting\n  capex to opex.\n- **Technical debt and the legacy-vs-migration curve.** Aging systems accrue risk\n  and cost; the manager decides when the carrying cost of legacy exceeds the\n  disruption of migrating.\n- **The IT-as-cost-center vs. value-partner framing.** IT is perceived as overhead\n  until it demonstrably enables the business; managing that perception (and the\n  reality) determines its budget and influence.\n- **Incident vs. problem (ITIL).** An incident is a single disruption to restore;\n  a problem is the underlying cause to eliminate — fix the incident fast, then kill\n  the problem.","html":"<h2 id=\"mental-models\">Mental Models</h2>\n<ul>\n<li><strong>Service reliability and the cost of nines.</strong> Each additional nine of uptime\ncosts disproportionately more; match the target (and spend) to what the business\ntruly needs, not to a vanity number.</li>\n<li><strong>Defense in depth / the attack surface.</strong> Security is layered independent\ncontrols; every system, account, and integration expands the attack surface, so\nreducing and hardening it is the core discipline.</li>\n<li><strong>The CIA triad.</strong> Confidentiality, integrity, availability — the three properties\nevery security and reliability decision is balancing.</li>\n<li><strong>Build vs. buy vs. cloud.</strong> Differentiation justifies building; commodity needs\njustify buying or renting (SaaS/cloud), trading control for speed and shifting\ncapex to opex.</li>\n<li><strong>Technical debt and the legacy-vs-migration curve.</strong> Aging systems accrue risk\nand cost; the manager decides when the carrying cost of legacy exceeds the\ndisruption of migrating.</li>\n<li><strong>The IT-as-cost-center vs. value-partner framing.</strong> IT is perceived as overhead\nuntil it demonstrably enables the business; managing that perception (and the\nreality) determines its budget and influence.</li>\n<li><strong>Incident vs. problem (ITIL).</strong> An incident is a single disruption to restore;\na problem is the underlying cause to eliminate — fix the incident fast, then kill\nthe problem.</li>\n</ul>\n","wordCount":188},{"heading":"First Principles","id":"first-principles","markdown":"- The organization cannot function without its technology, so availability is a\n  business-survival requirement, not a convenience.\n- A security breach is an organizational-level risk that IT owns regardless of who\n  caused it.\n- Technology spend is justified only by the business outcome it enables, not by its\n  sophistication.\n- Complexity and sprawl grow on their own; managing them down is constant work, not\n  a one-time project.","html":"<h2 id=\"first-principles\">First Principles</h2>\n<ul>\n<li>The organization cannot function without its technology, so availability is a\nbusiness-survival requirement, not a convenience.</li>\n<li>A security breach is an organizational-level risk that IT owns regardless of who\ncaused it.</li>\n<li>Technology spend is justified only by the business outcome it enables, not by its\nsophistication.</li>\n<li>Complexity and sprawl grow on their own; managing them down is constant work, not\na one-time project.</li>\n</ul>\n","wordCount":66},{"heading":"Questions Experts Constantly Ask","id":"questions-experts-constantly-ask","markdown":"- What's our actual exposure if this system goes down or gets breached?\n- Does this investment serve a real business outcome, or is it technology for its\n  own sake?\n- What's the total cost of ownership, not just the purchase price?\n- Where's our biggest unmanaged risk — patching, backups, access, a single point of\n  failure?\n- Are we building what only we can, and buying everything that's commodity?\n- Can we recover from a ransomware hit, and have we actually tested it?\n- Is my team stretched to a breaking point, and who's at risk of leaving?","html":"<h2 id=\"questions-experts-constantly-ask\">Questions Experts Constantly Ask</h2>\n<ul>\n<li>What&#39;s our actual exposure if this system goes down or gets breached?</li>\n<li>Does this investment serve a real business outcome, or is it technology for its\nown sake?</li>\n<li>What&#39;s the total cost of ownership, not just the purchase price?</li>\n<li>Where&#39;s our biggest unmanaged risk — patching, backups, access, a single point of\nfailure?</li>\n<li>Are we building what only we can, and buying everything that&#39;s commodity?</li>\n<li>Can we recover from a ransomware hit, and have we actually tested it?</li>\n<li>Is my team stretched to a breaking point, and who&#39;s at risk of leaving?</li>\n</ul>\n","wordCount":91},{"heading":"Decision Frameworks","id":"decision-frameworks","markdown":"- **Build vs. buy vs. cloud.** Build only true differentiators; buy or adopt SaaS/\n  cloud for commodity capability, weighing control, security, cost model (capex vs.\n  opex), and lock-in.\n- **Risk-based security prioritization.** Rank threats by likelihood and impact;\n  invest in the controls that reduce the most risk per dollar (patching, MFA,\n  backups, least privilege) before exotic tooling.\n- **Reliability target setting.** Define the uptime/RTO/RPO the business needs per\n  service and spend to that, not to an arbitrary maximum — redundancy is expensive.\n- **Project / portfolio prioritization.** Rank initiatives by business value, risk\n  reduction, and dependency against finite team capacity and budget; protect\n  keep-the-lights-on capacity from being consumed by projects.","html":"<h2 id=\"decision-frameworks\">Decision Frameworks</h2>\n<ul>\n<li><strong>Build vs. buy vs. cloud.</strong> Build only true differentiators; buy or adopt SaaS/\ncloud for commodity capability, weighing control, security, cost model (capex vs.\nopex), and lock-in.</li>\n<li><strong>Risk-based security prioritization.</strong> Rank threats by likelihood and impact;\ninvest in the controls that reduce the most risk per dollar (patching, MFA,\nbackups, least privilege) before exotic tooling.</li>\n<li><strong>Reliability target setting.</strong> Define the uptime/RTO/RPO the business needs per\nservice and spend to that, not to an arbitrary maximum — redundancy is expensive.</li>\n<li><strong>Project / portfolio prioritization.</strong> Rank initiatives by business value, risk\nreduction, and dependency against finite team capacity and budget; protect\nkeep-the-lights-on capacity from being consumed by projects.</li>\n</ul>\n","wordCount":111},{"heading":"Workflow","id":"workflow","markdown":"1. **Run operations.** Monitor systems, manage the help desk and incidents,\n   maintain and patch infrastructure, keep services available.\n2. **Manage security and continuity.** Maintain the security posture, access, and\n   backups; test disaster recovery; respond to threats and incidents.\n3. **Plan and align.** Build the roadmap with business stakeholders; evaluate\n   build/buy/cloud; budget capital and operating spend.\n4. **Deliver projects.** Scope, resource, and execute migrations, rollouts, and\n   upgrades against capacity.\n5. **Manage vendors and budget.** Negotiate contracts and licensing, control spend,\n   and justify IT's value to leadership.\n6. **Lead the team.** Hire, develop, retain, and shield the technical staff;\n   balance project work against operational load.\n7. **Review and improve.** Post-incident reviews, capacity and risk assessment,\n   and continuous alignment to changing business needs.","html":"<h2 id=\"workflow\">Workflow</h2>\n<ol>\n<li><strong>Run operations.</strong> Monitor systems, manage the help desk and incidents,\nmaintain and patch infrastructure, keep services available.</li>\n<li><strong>Manage security and continuity.</strong> Maintain the security posture, access, and\nbackups; test disaster recovery; respond to threats and incidents.</li>\n<li><strong>Plan and align.</strong> Build the roadmap with business stakeholders; evaluate\nbuild/buy/cloud; budget capital and operating spend.</li>\n<li><strong>Deliver projects.</strong> Scope, resource, and execute migrations, rollouts, and\nupgrades against capacity.</li>\n<li><strong>Manage vendors and budget.</strong> Negotiate contracts and licensing, control spend,\nand justify IT&#39;s value to leadership.</li>\n<li><strong>Lead the team.</strong> Hire, develop, retain, and shield the technical staff;\nbalance project work against operational load.</li>\n<li><strong>Review and improve.</strong> Post-incident reviews, capacity and risk assessment,\nand continuous alignment to changing business needs.</li>\n</ol>\n","wordCount":123},{"heading":"Common Tradeoffs","id":"common-tradeoffs","markdown":"- **Reliability/security vs. cost.** Redundancy, defense-in-depth, and 24/7 support\n  cost real money; the right level is set by business risk, not aspiration.\n- **Innovation vs. stability.** New systems enable the business and introduce risk\n  and disruption; the manager balances change against keeping the lights on.\n- **Standardization vs. flexibility.** Locking down to standard systems is secure\n  and cheap to run but frustrates business units wanting bespoke tools.\n- **Security vs. usability.** Tight controls (MFA, restricted access, locked-down\n  endpoints) reduce risk and friction users; over-tightening drives shadow IT.\n- **In-house vs. outsourced/cloud.** Owning infrastructure gives control; cloud and\n  managed services give scale and speed at the cost of control and recurring spend.","html":"<h2 id=\"common-tradeoffs\">Common Tradeoffs</h2>\n<ul>\n<li><strong>Reliability/security vs. cost.</strong> Redundancy, defense-in-depth, and 24/7 support\ncost real money; the right level is set by business risk, not aspiration.</li>\n<li><strong>Innovation vs. stability.</strong> New systems enable the business and introduce risk\nand disruption; the manager balances change against keeping the lights on.</li>\n<li><strong>Standardization vs. flexibility.</strong> Locking down to standard systems is secure\nand cheap to run but frustrates business units wanting bespoke tools.</li>\n<li><strong>Security vs. usability.</strong> Tight controls (MFA, restricted access, locked-down\nendpoints) reduce risk and friction users; over-tightening drives shadow IT.</li>\n<li><strong>In-house vs. outsourced/cloud.</strong> Owning infrastructure gives control; cloud and\nmanaged services give scale and speed at the cost of control and recurring spend.</li>\n</ul>\n","wordCount":114},{"heading":"Rules of Thumb","id":"rules-of-thumb","markdown":"- Match the uptime target to the business need; don't buy a fifth nine no one needs.\n- The cheapest security wins are the basics: patch, MFA, least privilege, tested\n  backups.\n- Test your backups by restoring them; an untested backup is a hope, not a recovery\n  plan.\n- Standardize aggressively; every snowflake system is a future incident.\n- If you can't tie a spend to a business outcome, question it.\n- Fix the incident fast, then kill the problem so it can't recur.\n- Protect your team's keep-the-lights-on time from being eaten by projects.","html":"<h2 id=\"rules-of-thumb\">Rules of Thumb</h2>\n<ul>\n<li>Match the uptime target to the business need; don&#39;t buy a fifth nine no one needs.</li>\n<li>The cheapest security wins are the basics: patch, MFA, least privilege, tested\nbackups.</li>\n<li>Test your backups by restoring them; an untested backup is a hope, not a recovery\nplan.</li>\n<li>Standardize aggressively; every snowflake system is a future incident.</li>\n<li>If you can&#39;t tie a spend to a business outcome, question it.</li>\n<li>Fix the incident fast, then kill the problem so it can&#39;t recur.</li>\n<li>Protect your team&#39;s keep-the-lights-on time from being eaten by projects.</li>\n</ul>\n","wordCount":91},{"heading":"Failure Modes","id":"failure-modes","markdown":"- **A major outage or breach** — the catastrophic failure that halts the business or\n  exposes its data, often from a neglected basic (unpatched system, no MFA,\n  untested backup).\n- **Misalignment** — building or buying technology that doesn't serve real business\n  needs, wasting budget and credibility.\n- **Shadow IT** — business units adopting unsanctioned tools because IT is too slow\n  or rigid, fragmenting security and data.\n- **Technical-debt paralysis** — legacy systems left so long they become brittle,\n  insecure, and ruinous to migrate.\n- **Team burnout / attrition** — losing scarce engineers to overload and poor\n  development, degrading everything.\n- **Budget-justification failure** — being unable to demonstrate value and getting\n  cut, then unable to deliver.","html":"<h2 id=\"failure-modes\">Failure Modes</h2>\n<ul>\n<li><strong>A major outage or breach</strong> — the catastrophic failure that halts the business or\nexposes its data, often from a neglected basic (unpatched system, no MFA,\nuntested backup).</li>\n<li><strong>Misalignment</strong> — building or buying technology that doesn&#39;t serve real business\nneeds, wasting budget and credibility.</li>\n<li><strong>Shadow IT</strong> — business units adopting unsanctioned tools because IT is too slow\nor rigid, fragmenting security and data.</li>\n<li><strong>Technical-debt paralysis</strong> — legacy systems left so long they become brittle,\ninsecure, and ruinous to migrate.</li>\n<li><strong>Team burnout / attrition</strong> — losing scarce engineers to overload and poor\ndevelopment, degrading everything.</li>\n<li><strong>Budget-justification failure</strong> — being unable to demonstrate value and getting\ncut, then unable to deliver.</li>\n</ul>\n","wordCount":104},{"heading":"Anti-patterns","id":"anti-patterns","markdown":"- **Resume-driven architecture** — choosing technologies to be interesting rather\n  than to fit the business need.\n- **The department of no** — blocking business requests on security/cost grounds\n  without offering a workable path, breeding shadow IT.\n- **Gold-plating reliability** — engineering and spending for uptime far beyond what\n  the business requires.\n- **Patch-and-pray deferral** — postponing patching and upgrades until a breach or\n  failure forces it.\n- **Tool sprawl** — buying point solutions for every problem instead of\n  consolidating and standardizing.","html":"<h2 id=\"anti-patterns\">Anti-patterns</h2>\n<ul>\n<li><strong>Resume-driven architecture</strong> — choosing technologies to be interesting rather\nthan to fit the business need.</li>\n<li><strong>The department of no</strong> — blocking business requests on security/cost grounds\nwithout offering a workable path, breeding shadow IT.</li>\n<li><strong>Gold-plating reliability</strong> — engineering and spending for uptime far beyond what\nthe business requires.</li>\n<li><strong>Patch-and-pray deferral</strong> — postponing patching and upgrades until a breach or\nfailure forces it.</li>\n<li><strong>Tool sprawl</strong> — buying point solutions for every problem instead of\nconsolidating and standardizing.</li>\n</ul>\n","wordCount":76},{"heading":"Vocabulary","id":"vocabulary","markdown":"- **Uptime / availability (the nines)** — the percentage of time a service is\n  operational.\n- **RTO / RPO** — recovery time objective / recovery point objective; how fast and\n  how much data loss is acceptable in recovery.\n- **SLA** — service-level agreement defining expected service levels.\n- **Defense in depth / least privilege** — layered security / minimal necessary\n  access.\n- **CIA triad** — confidentiality, integrity, availability.\n- **ITIL** — a framework for IT service management (incidents, problems, changes).\n- **Technical debt** — accumulated cost of deferred upgrades and shortcuts.\n- **Shadow IT** — technology adopted by users outside IT's control.\n- **TCO / capex vs. opex** — total cost of ownership / capital vs. operating\n  expense.\n- **Endpoint / attack surface** — user devices / the totality of exploitable entry\n  points.","html":"<h2 id=\"vocabulary\">Vocabulary</h2>\n<ul>\n<li><strong>Uptime / availability (the nines)</strong> — the percentage of time a service is\noperational.</li>\n<li><strong>RTO / RPO</strong> — recovery time objective / recovery point objective; how fast and\nhow much data loss is acceptable in recovery.</li>\n<li><strong>SLA</strong> — service-level agreement defining expected service levels.</li>\n<li><strong>Defense in depth / least privilege</strong> — layered security / minimal necessary\naccess.</li>\n<li><strong>CIA triad</strong> — confidentiality, integrity, availability.</li>\n<li><strong>ITIL</strong> — a framework for IT service management (incidents, problems, changes).</li>\n<li><strong>Technical debt</strong> — accumulated cost of deferred upgrades and shortcuts.</li>\n<li><strong>Shadow IT</strong> — technology adopted by users outside IT&#39;s control.</li>\n<li><strong>TCO / capex vs. opex</strong> — total cost of ownership / capital vs. operating\nexpense.</li>\n<li><strong>Endpoint / attack surface</strong> — user devices / the totality of exploitable entry\npoints.</li>\n</ul>\n","wordCount":105},{"heading":"Tools","id":"tools","markdown":"- **Monitoring and alerting** (Datadog, Nagios, SolarWinds) — to see system health\n  and catch failures early.\n- **ITSM / ticketing** (ServiceNow, Jira Service Management) — for incidents,\n  requests, and change management.\n- **Security tooling** (endpoint protection, SIEM, MFA, vulnerability scanners) — to\n  defend and monitor the attack surface.\n- **Backup and disaster-recovery systems** — and the discipline of testing them.\n- **Cloud and infrastructure management** (Azure/AWS/GCP consoles, MDM, directory\n  services).\n- **The budget, roadmap, and vendor contracts** — the planning and financial\n  instruments of the role.","html":"<h2 id=\"tools\">Tools</h2>\n<ul>\n<li><strong>Monitoring and alerting</strong> (Datadog, Nagios, SolarWinds) — to see system health\nand catch failures early.</li>\n<li><strong>ITSM / ticketing</strong> (ServiceNow, Jira Service Management) — for incidents,\nrequests, and change management.</li>\n<li><strong>Security tooling</strong> (endpoint protection, SIEM, MFA, vulnerability scanners) — to\ndefend and monitor the attack surface.</li>\n<li><strong>Backup and disaster-recovery systems</strong> — and the discipline of testing them.</li>\n<li><strong>Cloud and infrastructure management</strong> (Azure/AWS/GCP consoles, MDM, directory\nservices).</li>\n<li><strong>The budget, roadmap, and vendor contracts</strong> — the planning and financial\ninstruments of the role.</li>\n</ul>\n","wordCount":77},{"heading":"Collaboration","id":"collaboration","markdown":"IT managers translate between business leadership (who think in outcomes, cost, and\nrisk and own the budget), their technical team (engineers, admins, support, and\nsecurity specialists), business-unit stakeholders (who make the requests and feel\nthe friction), vendors and managed-service providers, and increasingly security,\ncompliance, and audit functions. The defining challenge is being bilingual —\nturning a server failure or a security risk into business terms an executive can\ndecide on, and turning a business goal into a technical roadmap the team can\ndeliver. Friction concentrates at the request-vs-capacity line (more demand than\nthe team can meet), at the security-vs-convenience line, and at budget time, where\nIT must justify spend that is invisible when it works.","html":"<h2 id=\"collaboration\">Collaboration</h2>\n<p>IT managers translate between business leadership (who think in outcomes, cost, and\nrisk and own the budget), their technical team (engineers, admins, support, and\nsecurity specialists), business-unit stakeholders (who make the requests and feel\nthe friction), vendors and managed-service providers, and increasingly security,\ncompliance, and audit functions. The defining challenge is being bilingual —\nturning a server failure or a security risk into business terms an executive can\ndecide on, and turning a business goal into a technical roadmap the team can\ndeliver. Friction concentrates at the request-vs-capacity line (more demand than\nthe team can meet), at the security-vs-convenience line, and at budget time, where\nIT must justify spend that is invisible when it works.</p>\n","wordCount":120},{"heading":"Ethics","id":"ethics","markdown":"IT managers hold privileged access to the organization's data and the power to\nmonitor its people, and they're responsible for protecting information that\nindividuals and partners trust the organization with. Duties: protect the privacy\nand security of personal and sensitive data as a genuine obligation, not a\ncheckbox; be honest with leadership about real risk — including the breaches and\nvulnerabilities it's uncomfortable to disclose — rather than hiding them; use\nmonitoring and access powers responsibly and transparently, not for surveillance\nbeyond legitimate need; manage budgets and vendor relationships free of kickbacks\nand self-dealing; and treat the team fairly under the chronic pressure of an\nalways-on function. The gray zones — employee monitoring, balancing security against\nprivacy, disclosing a breach, the temptation to downplay risk to protect the\nbudget — are where the IT manager's integrity protects both the organization and the\npeople whose data it holds.","html":"<h2 id=\"ethics\">Ethics</h2>\n<p>IT managers hold privileged access to the organization&#39;s data and the power to\nmonitor its people, and they&#39;re responsible for protecting information that\nindividuals and partners trust the organization with. Duties: protect the privacy\nand security of personal and sensitive data as a genuine obligation, not a\ncheckbox; be honest with leadership about real risk — including the breaches and\nvulnerabilities it&#39;s uncomfortable to disclose — rather than hiding them; use\nmonitoring and access powers responsibly and transparently, not for surveillance\nbeyond legitimate need; manage budgets and vendor relationships free of kickbacks\nand self-dealing; and treat the team fairly under the chronic pressure of an\nalways-on function. The gray zones — employee monitoring, balancing security against\nprivacy, disclosing a breach, the temptation to downplay risk to protect the\nbudget — are where the IT manager&#39;s integrity protects both the organization and the\npeople whose data it holds.</p>\n","wordCount":145},{"heading":"Scenarios","id":"scenarios","markdown":"**A ransomware scare and an untested backup.** A phishing-driven incident encrypts\na file server. The team's restore plan relies on backups no one has actually tested\nrestoring. The IT manager treats this as the lesson it is: they recover what they\ncan, then institute regular restore testing, immutable/offline backups, MFA, and\nphishing training — the unglamorous basics that prevent the catastrophic case. The\npriority is risk reduction per dollar, not a flashy new security product, and the\nincident becomes a problem to permanently eliminate, not just an outage to recover.\n\n**A business unit wants an unsanctioned SaaS tool.** A department, frustrated by\nIT's pace, has started using an unvetted cloud app that holds customer data. Rather\nthan simply ban it (which breeds more shadow IT) or rubber-stamp it (which accepts\nthe risk blindly), the manager engages: understands the real need, assesses the\ntool's security and compliance, and either onboards it properly with controls or\noffers a sanctioned alternative that meets the need — converting shadow IT into a\nmanaged, secure capability.\n\n**Justifying the IT budget under a cut.** Finance proposes cutting IT spend,\nviewing it as overhead. The manager reframes IT from cost center to value partner:\nthey tie each major line to a business outcome and risk (this spend prevents\nransomware that would halt operations for days; that one enables the sales team's\nrevenue system), and right-size the uptime and tooling to actual need rather than\ndefending everything. The argument wins the budget by speaking the language of\nbusiness value and risk, not technology.","html":"<h2 id=\"scenarios\">Scenarios</h2>\n<p><strong>A ransomware scare and an untested backup.</strong> A phishing-driven incident encrypts\na file server. The team&#39;s restore plan relies on backups no one has actually tested\nrestoring. The IT manager treats this as the lesson it is: they recover what they\ncan, then institute regular restore testing, immutable/offline backups, MFA, and\nphishing training — the unglamorous basics that prevent the catastrophic case. The\npriority is risk reduction per dollar, not a flashy new security product, and the\nincident becomes a problem to permanently eliminate, not just an outage to recover.</p>\n<p><strong>A business unit wants an unsanctioned SaaS tool.</strong> A department, frustrated by\nIT&#39;s pace, has started using an unvetted cloud app that holds customer data. Rather\nthan simply ban it (which breeds more shadow IT) or rubber-stamp it (which accepts\nthe risk blindly), the manager engages: understands the real need, assesses the\ntool&#39;s security and compliance, and either onboards it properly with controls or\noffers a sanctioned alternative that meets the need — converting shadow IT into a\nmanaged, secure capability.</p>\n<p><strong>Justifying the IT budget under a cut.</strong> Finance proposes cutting IT spend,\nviewing it as overhead. The manager reframes IT from cost center to value partner:\nthey tie each major line to a business outcome and risk (this spend prevents\nransomware that would halt operations for days; that one enables the sales team&#39;s\nrevenue system), and right-size the uptime and tooling to actual need rather than\ndefending everything. The argument wins the budget by speaking the language of\nbusiness value and risk, not technology.</p>\n","wordCount":257},{"heading":"Related Occupations","id":"related-occupations","markdown":"IT managers lead the technical staff the Atlas captures — the **systems\nadministrator**, **network engineer**, **it support specialist**, **devops\nengineer**, and **security engineer** — and translate their work to the business.\nThey share the people-and-budget leadership of the **operations manager** and the\nstrategic frame of the **chief executive** at smaller scale. The **cloud architect**\ninforms the build/buy/cloud decisions. As the role grows it progresses toward the\nCIO/CTO scope, and it overlaps the **project manager** in delivering technology\ninitiatives.","html":"<h2 id=\"related-occupations\">Related Occupations</h2>\n<p>IT managers lead the technical staff the Atlas captures — the <strong>systems\nadministrator</strong>, <strong>network engineer</strong>, <strong>it support specialist</strong>, <strong>devops\nengineer</strong>, and <strong>security engineer</strong> — and translate their work to the business.\nThey share the people-and-budget leadership of the <strong>operations manager</strong> and the\nstrategic frame of the <strong>chief executive</strong> at smaller scale. The <strong>cloud architect</strong>\ninforms the build/buy/cloud decisions. As the role grows it progresses toward the\nCIO/CTO scope, and it overlaps the <strong>project manager</strong> in delivering technology\ninitiatives.</p>\n","wordCount":81},{"heading":"References","id":"references","markdown":"- *The Phoenix Project* / *The DevOps Handbook* — Gene Kim et al.\n- ITIL 4 service-management framework\n- *CISSP / NIST Cybersecurity Framework* — for security risk management\n- *The Practice of System and Network Administration* — Limoncelli et al.\n- *IT Savvy* — Weill & Ross (business-IT alignment)","html":"<h2 id=\"references\">References</h2>\n<ul>\n<li><em>The Phoenix Project</em> / <em>The DevOps Handbook</em> — Gene Kim et al.</li>\n<li>ITIL 4 service-management framework</li>\n<li><em>CISSP / NIST Cybersecurity Framework</em> — for security risk management</li>\n<li><em>The Practice of System and Network Administration</em> — Limoncelli et al.</li>\n<li><em>IT Savvy</em> — Weill &amp; Ross (business-IT alignment)</li>\n</ul>\n","wordCount":40}],"computed":{"wordCount":2250,"readingTimeMinutes":10,"completeness":1,"backlinks":[],"verified":false,"aiDrafted":true,"unverifiedAiDraft":true},"git":{"created":"2026-06-27","updated":"2026-06-27","revisions":1,"authors":[{"name":"soul-atlas","commits":1}],"timeline":[{"date":"2026-06-27","author":"soul-atlas"}]},"citation":{"apa":"soul-atlas (2026). IT Manager [SOUL]. SOUL Atlas. https://soul-atlas.github.io/occupations/it-manager","bibtex":"@misc{soulatlas-it-manager,\n  title        = {IT Manager},\n  author       = {soul-atlas},\n  year         = {2026},\n  howpublished = {SOUL Atlas},\n  note         = {SOUL.md, version 2026-06-27},\n  url          = {https://soul-atlas.github.io/occupations/it-manager}\n}","text":"soul-atlas. \"IT Manager.\" SOUL Atlas, 2026. https://soul-atlas.github.io/occupations/it-manager."}}