Information Systems Security Manager

Eleven Recruiting

  • Santa Ana, CA
  • 1 day ago
  • $150,000–$170,000 Per Year

Highlights

Required Qualifications: 5+ years of experience as an Information System Security Officer (ISSO) or ISSM supporting classified systems, with direct, hands-on experience in a classified manufacturing/OT environment specifically — general classified IT/network experience without manufacturing/OT exposure will not meet this requirement. Personnel / Industrial Security (Supporting the FSO) Partner with the FSO on personnel security clearance activities, including eligibility verification, access determinations, briefings, and debriefings, as capacity allows.

Numbers & Facts

LocationSanta Ana, CA
Salary$150,000–$170,000 Per Year

Description

Eleven Recruiting is searching for an Information Systems Security Manager (ISSM) to own the security posture of classified information systems supporting a cleared aerospace and defense manufacturing environment in the Orange County, CA area. This is fundamentally a classified information systems security role — the majority of the position is centered on securing and authorizing classified systems within an operational technology (OT) manufacturing environment, with physical security and personnel security as supporting functions.

This is a specialized and difficult-to-source role. The ideal candidate has spent their career progressing through classified information systems security — from standalone system support, to open storage network environments, to network-connected classified infrastructure — and has direct, hands-on experience securing a classified manufacturing/OT environment specifically. Candidates who have reached ISSO-level maturity in a classified manufacturing environment at a large prime, and are ready to step into ISSM-level ownership, are strongly encouraged to apply.

Responsibilities:
Classified Information Systems Security (Primary Focus)
  • Serve as the appointed Information Systems Security Manager (ISSM) for classified information systems, per NISPOM/32 CFR § 117 requirements.
  • Own the Risk Management Framework (RMF) Assessment & Authorization (A&A) process for classified systems in accordance with the DCSA Assessment and Authorization Process Manual (DAAPM).
  • Develop, maintain, and oversee System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), and Body of Evidence (BoE) documentation.
  • Secure classified operational technology (OT) and manufacturing systems — designing controlled communication pathways that satisfy manufacturing functionality while maintaining classified system boundaries within the open storage area.
  • Maintain the NISP eMASS instance and supporting authorization records; coordinate ATO submissions and reauthorizations with DCSA.
  • Perform continuous monitoring, self-inspections, and periodic reviews of classified systems; identify and remediate vulnerabilities and compliance gaps.
  • Serve as the primary point of coordination with DCSA's Information System Security Professional (ISSP) and other cognizant security authorities.
  • Appoint and oversee any Information System Security Officers (ISSOs) supporting day-to-day system implementation, in coordination with the ISSM's process-ownership responsibilities (QA, verification, policy, and corrective action).
Classified Physical Security
  • Support and maintain the facility's open storage area in accordance with physical security accreditation standards (access controls, alarm/intrusion detection, safeguarding requirements).
  • Assist with classified visit requests and coordinate incoming/outgoing classified visits as needed.
  • Support preparation for DCSA physical security reviews and customer audits.
Personnel / Industrial Security (Supporting the FSO)
  • Partner with the FSO on personnel security clearance activities, including eligibility verification, access determinations, briefings, and debriefings, as capacity allows.
  • Maintain required documentation related to classified access, nondisclosure agreements, and security training.
  • Perform additional security-related duties as assigned.

Required Qualifications:
  • 5+ years of experience as an Information System Security Officer (ISSO) or ISSM supporting classified systems, with direct, hands-on experience in a classified manufacturing/OT environment specifically — general classified IT/network experience without manufacturing/OT exposure will not meet this requirement.
  • Working knowledge of the Risk Management Framework (RMF) as implemented under the DAAPM (or prior ODAA Process Manual) for classified contractor systems.
  • Demonstrated experience with system security authorization documentation (SSP, POA&M, BoE) and eMASS.
  • Active U.S. Government Secret security clearance, currently in scope, required. (This position does not involve SAP, JSIG, or TS/SCI-level programs.)
  • U.S. citizenship required.
  • Relevant certification(s) supporting ISSM-level responsibility (e.g., a DoD 8570/8140-aligned IAM baseline certification).
  • Strong written and verbal communication skills; ability to translate government security requirements into practical processes for engineering, manufacturing, IT, and program teams.
  • Comfortable and committed to a fully onsite role — this is a non-negotiable requirement of the position.

Preferred Qualifications:
  • Direct experience securing manufacturing/OT systems designed for connectivity (e.g., networked production equipment) within a classified/open storage boundary.
  • Prior experience at a large prime contractor (e.g., Lockheed Martin, Boeing, Northrop Grumman, Raytheon) in a classified ISSO/ISSM capacity.
  • Experience standing up or maintaining an open storage area accreditation.
  • Experience supporting or serving as an Assistant Facility Security Officer (AFSO).
  • Familiarity with DISS, NISS, NBIS, SWFT, or other government security systems.
  • Experience with classified contract security requirements and DD Form 254.

Salary: $150,000 - $170,000

Your safety matters to us. To protect yourself from potential scams, remember that Eleven recruiters only contact you from @elevenrecruiting.com email addresses. Be cautious of emails from other domains. Legitimate Eleven recruiters will never ask for money, fees, or banking information before your first day. If you're ever unsure about a communication, don't click any links—visit https://jobs.elevenrecruiting.com/directly for confirmed position openings.

Similar Jobs

See more jobs