Senior Manager Audit and Compliance
Lexington, Middlesex County, Massachusetts, 02173, USA
Listed on 2026-08-02
-
Security
Information Security & Data Protection, Cybersecurity, Security Management & Operations
Senior Manager Audit and Compliance
Date: Jun 26, 2026
Location: Lexington, MA, US
Company: MIT Lincoln Laboratory
OverviewThe Security Department’s overall mission is to identify and counter security threats to the MIT Lincoln Laboratory’s mission of developing game‑changing technology in support of National Security. To accomplish this mission, the department formulates and implements policies, plans, and actions designed to protect facilities from vandalism, accidental destruction, and sabotage; and safeguards personnel, classified and unclassified information systems, personal identifiable information, property, and other assets from exploitation and recruitment by foreign intelligence agencies.
We foster a culture where security professionals are empowered to solve complex security problems in close collaboration with Laboratory research teams and Government counterparts. Our people are our most important resource, and we encourage a casual, flexible, opportunity‑filled working environment that is technology‑focused. Where mission needs can be met, the Security Department encourages flexible schedules and hybrid remote work arrangements.
Who are we?MIT Lincoln Laboratory is a Federally Funded Research and Development Center (FFRDC) whose mission is research in support of National Security.
Mission – The Security Department’s overall mission is to enable research and development while keeping the Lincoln Laboratory community safe and secure through the protection of information, network, facilities, and personnel.
Culture – We foster an inclusive, opportunity‑filled environment of empowered team members from diverse backgrounds.
What will you do?The Senior Security Manager, Audit & Compliance is responsible for leading the Laboratory’s independent security assurance and compliance program across unclassified, collateral, and special access environments. Reporting directly to the Chief Security Officer (CSO)/Chief Information Security Officer (CISO), this role provides objective oversight of security compliance, audit readiness, risk management, and continuous improvement efforts. The position operates independently from mission‑support security functions and serves as a key advisor to executive leadership on organizational security posture, regulatory compliance, and inspection readiness.
Key Responsibilities- Lead and manage the Laboratory’s security audit, compliance, inspection, and risk assessment programs.
- Supervise a team of security auditors, compliance specialists, and risk management professionals.
- Develop and implement audit methodologies, compliance monitoring processes, and risk‑based assessment strategies.
- Plan and oversee self‑inspections, government security reviews, compliance assessments, CMMC evaluations, CORA readiness activities, privacy reviews, and corrective action validation efforts.
- Prepare the organization for DCSA, Air Force, Intelligence Community, and program sponsor‑led inspections and assessments.
- Monitor changes to government security regulations and provide guidance to leadership on compliance requirements and associated risks.
- Evaluate security controls, classified facility compliance, access control procedures, safeguarding practices, and physical security requirements.
- Develop compliance metrics, dashboards, and executive reports to measure program effectiveness and identify trends.
- Lead corrective and preventive action (CAPA) initiatives and continuous improvement efforts to strengthen security performance and reduce risk.
- Partner with Laboratory leadership, government representatives, and oversight organizations to ensure effective remediation and long‑term compliance.
- Support policy development, governance initiatives, workforce training, and organizational awareness programs that promote a culture of compliance and accountability.
- Bachelor’s degree in Security Management, Cybersecurity, Information Assurance, Business Administration, Criminal Justice, or a related field, or equivalent combination of education and experience.
- Minimum of 10 years of experience in industrial security, compliance, audit, inspection, or risk management within a…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).