×
Register Here to Apply for Jobs or Post Jobs. X

Senior Manager, IT Security & Compliance​/FSO

Job in Minneapolis, Hennepin County, Minnesota, 55400, USA
Listing for: Socket.dev
Full Time position
Listed on 2026-08-27
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 145000 - 190000 USD Yearly USD 145000.00 190000.00 YEAR
Job Description & How to Apply Below
Position: Senior Manager, IT Security & Compliance / FSO

What you’ll do

As Niron’s
Senior Manager, IT
Security,youwill own the design, implementation, and ongoing operation ofthe cybersecurityprograms that protect our data, systems, tools, and facilities. You will also serve as Niron’s Facility Security Officer (FSO), owning our regulatory security governance and compliance obligations. This role safeguards operational technology (OT) and information technology (IT) environments in a high-growth, advanced manufacturing setting.

This is a working leadership role: you will own the program and remain hands-on-keyboard.

You will personally administer core security tools,monitor systems, and respond to incidents, whilesettingthe policies, standards, and procedures the rest of the company follows. You will collaborate across IT, OT, Facilities, and business units, and communicate effectively with stakeholders at all levels. It is not a purely strategic role, nor a purely tactical one as you are the person who both builds the program and administers the tools and environment.

  • Cybersecurity Governance & Compliance
  • Design, implement, own, andmaintainenterprise-wide security policies, standards, and procedures.
  • Ensure alignment with applicable frameworks and regulatory obligations, including NIST 800-171, ISO 27001, CIS Controls, CMMC, and GDPR.
  • Serve as Niron’s Facility Security Officer (FSO), owning regulatory security governance, personnel access eligibility, andrequiredsecurity reporting.
  • Own the NIST SP 800-171 / CMMC program, including the System Security Plan (SSP), POA&M, control implementation evidence, and SPRS scoring and adapt as federal assessment requirements evolve.
  • Own internal and external penetration testing and vulnerability assessments, and drive remediation to closure.
  • Risk Management & Incident Response
  • Own and operate threat detection, response, and remediation by performing daily alert triage, investigation, containment, and remediation, with detection engineering and threat hunting.
  • Lead the insider-threat program and intellectual-property protection controls for proprietary process and manufacturing data.
  • Coordinate the external managed SOC and incident escalation, and own incident response runbooks, evidence preservation, and post-incident review.
  • Conduct regular risk assessments and security audits.
  • Technical Security Ownership & Administration
  • Personally administer, tune, andoptimizethe security stack — EDR/MDR + SIEM, endpoint detection and response, SASE/firewall-as-a-service, multi-factor authentication, privileged access management, backup/recovery, and data-loss prevention.
  • Own secure configuration and hardening across the cloud (Azure, M365) and OT environments, working with internal teams and managed-service partners.
  • Implement and enforce identity and access management (IAM), least-privilege, and zero-trust principles, including a move toward phishing-resistant (FIDO2) authentication for high-risk users.
  • OT / Manufacturing Security
  • Working with the IT Operations Manager, coordinate on the configuration and maintenance of the OT/IT network segmentation and the industrial DMZ, aligned to a Purdue / ISA-95 and IEC 62443 / NIST SP 800-82 model.
  • Working closely with the Integrations engineer and the Maintenance Team, ensure the maintenance of a live OT asset inventory; protect PLC/HMI engineering workstations; and own immutable/offline configuration backups with tested restore.
  • Working with the IT Operations Manager, coordinate on the brokering, monitoring, and control of vendor and engineering remote access (MFA, jump host, session recording).
  • Support security-by-design for new manufacturing sites before commissioning and expansion.
  • GCC Environment
  • Working with the IT Operations Manager and vendor partners, coordinate on configuration and administration of a secure and efficient GCC Azure tenant
  • Training & Awareness
  • Own and administer the security awareness and phishing-simulation program for employees.
  • Maintain documentation for security processes and compliance audits.
  • Vendor & Partner Management
  • Manage relationships with external security vendors, managed-service partners, and auditors, and hold them accountable to service levels.
  • Evaluate and onboard new…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary