FSO/ISSM

Mercury Systems

Oxnard (CA)

On-site

USD 110,000 - 140,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Mercury Systems in Oxnard, CA seeks a Facility Security Officer (FSO) and Information Systems Security Manager (ISSM) to oversee NISP compliance and RMF-based security across multiple locations. You will implement security policies, manage SSPs in eMASS, coordinate with DoD and CSA, and lead risk assessments to protect personnel, information, and facilities.

This dual-role requires vigilance, strong documentation, and the ability to interact with program managers and engineering teams to

Qualifications

  • Typically requires 4 years of experience in cybersecurity, RMF, and C&A processes.
  • Active Secret Clearance.
  • Experience with eMASS and RMF procedures.
  • Ability to conduct thorough risk assessments and manage complex documentation.
  • Experience with network assets and peripheral equipment.
  • Maintain facility and personnel information in DISS and NISS.

Responsibilities

  • Collaborate with the Corporate ISSM to ensure all accredited information systems meet RMF requirements.
  • Prepare, maintain, and upload System Security Plans (SSPs) and supporting artifacts in eMASS.
  • Ensure SSPs accurately reflect system configuration and required security controls.
  • Support certification testing and assessments conducted by the Cognizant Security Agency (CSA).
  • Maintain facility information system records in eMASS.
  • Develop and maintain procedures supporting Configuration Management for security relevant hardware, software, and firmware.
  • Conduct risk and vulnerability assessments of classified systems and verify the effectiveness of security controls.
  • Ensure compliance with DoD certification and accreditation requirements, including DoDI 8510.01 (RMF for DoD IT).
  • Install, update, and maintain security-related software tools to detect malware and intrusions.
  • Provide Security guidance to Program Managers, Engineering/Production, Management, and HR.
  • Administer and coordinate DoD and other industrial security programs to ensure compliance with 32 CFR 117.
  • Coordinate due diligence and risk assessments to identify improvements in physical security controls.
  • Maintain and provide security classification guidance of DD254's and related documents.
  • Operate and maintain security education, training, and awareness programs.
  • Respond to intrusion alarms as needed.
  • Manage physical security for the site including intrusion detection, access control, CCTV, and containers.
  • Be liaison for the facility with DSCA and other government agencies.

Skills

RMF procedures
eMASS familiarity
Risk assessments
Network assets management
DISS / NISS data management
Security policy adherence

Education

Master's degree in Information Systems
CISSP or CASP certification
FSO/ISSM Certification within 6 months

Tools

eMASS
DISS
NISS

Job description

Job Summary

In this role, you will serve as the Facility Security Officer (FSO) for the Oxnard, CA site, with full responsibility for ensuring compliance with the National Industrial Security Program (NISP). In this dual-function position, you will also act as the Information Systems Security Manager (ISSM), overseeing the security of classified information systems across multiple Mercury locations.


As the FSO, you will manage all aspects of NISP compliance, implement and enforce security policies and procedures, and ensure full adherence to U.S. Government requirements. As the ISSM, you will be responsible for the overall security posture of classified information systems, including configuration, protection, assessment, and accreditation under the DoD Risk Management Framework (RMF).


Key responsibilities include aligning security program goals with organizational objectives, assessing and mitigating risk, ensuring regulatory compliance, protecting personnel, information, facilities, and business operations.


Job Responsibilities


  • Collaborate with the Corporate ISSM to ensure all accredited information systems meet RMF requirements.

  • Prepare, maintain, and upload System Security Plans (SSPs) and supporting artifacts in eMASS.

  • Ensure SSPs accurately reflect system configuration and required security controls.

  • Support certification testing and assessments conducted by the Cognizant Security Agency (CSA).

  • Maintain facility information system records in eMASS.

  • Develop and maintain procedures supporting Configuration Management (CM) for security relevant hardware, software, and firmware.

  • Conduct risk and vulnerability assessments of classified systems and verify the effectiveness of security controls.

  • Ensure compliance with DoD certification and accreditation requirements, including DoDI 8510.01 (RMF for DoD IT).

  • Install, update, and maintain security-related software tools to detect malicious code, viruses, and unauthorized intrusions.

  • Provide Security guidance to and regularly interact with Program Managers, Engineering/Production, Management, and Human Resources.

  • Responsible for the administration and coordination of the DOD and other industrial security programs and activities to ensure compliance with 32 CFR 117 and other government and company security policies and procedures.

  • Coordinate due diligence and risk assessments whose objective is to identify improvements in the existing physical security controls in place for non-NISP security function at assigned facilities.

  • Maintain and provide security classification guidance of DD254's, Security Classification Guides, and other documents related to security requirements for assigned programs.

  • Operate and maintain a security education, training, and awareness program to include indoctrinations, annual refresher training, debriefings, courier, travel, event specific briefings, and OPSEC procedures.

  • Respond to intrusion alarms as needed.

  • Manage physical security for the site, including intrusion detection, access control, CCTV, security hardware, and GSA approved containers.

  • Respond to intrusion alarms as necessary.

  • Be the direct liaison for the facility with the Defense Counterintelligence and Security Agency (DSCA) and other government agencies.


Required Qualifications


  • Typically requires 4 years of experience in cybersecurity, information systems security, RMF, and Certification & Accreditation (C&A) processes.

  • Active Secret Clearance.

  • Experience working with eMASS and RMF procedures.

  • Demonstrated ability to conduct thorough risk assessments and manage complex documentation.

  • Experience of network assets and peripheral equipment.

  • Maintain facility and personnel information in DISS and NISS.


Preferred Qualifications


  • Experience with large, multifacility networks in Windows and Linux environments.

  • Familiarity with cyber incident response, including preservation, containment, and eradication.

  • CISSP, CASP, or similar certification.

  • FSO & ISSM Certification with in 6 months of hire.

  • Master's degree in Information Systems or related field.

  • High initiative, strong attention to detail, analytical skills, and organizational capability.

  • Ability to work effectively both independently and collaboratively.


#LI-RL1


\"This position requires you to access information that is subject to U.S. export regulations. You may only access such information if you are a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. government.\"


Why should you join Mercury Systems?

Mercury Systems is a technology company that makes the world a safer, more secure place. We push processing power to the tactical edge, making the latest commercial technologies profoundly more accessible for today's most challenging aerospace and defense missions. From silicon to system scale, Mercury enables customers to accelerate innovation and turn data into decision superiority. Headquartered in Andover, Massachusetts, Mercury employs more than 2,300 people in 24 locations worldwide. To learn more, visit mrcy.com


Our Culture

We are committed to making Mercury a great place to work, no matter where our employees are located. We offer a casual and enjoyable atmosphere that allows employees to learn and grow. We help and care for one another and work as one to achieve results for us and for our customers. We value communication and transparency, and strive to foster two-way dialogue at all levels of the organization. We are committed to lifelong learning, offering comprehensive skills training and tuition reimbursement. Whether you're just starting out on your career journey or you are an experienced professional, it's important to us that you feel recognized and rewarded for your contributions.


To find out more aboutWhy Mercury?, or visit the Mercury Community or find answers to general questions at Mercury FAQs


Mercury Systems is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex (including pregnancy), sexual orientation, gender identity, national origin, genetic information, creed, citizenship, disability, protected veteran or marital status.


As an equal opportunity employer, Mercury Systems is committed to a diverse workforce. In order to ensure reasonable accommodation for individuals protected by Section 503 of the Rehabilitation Act of 1973, the Vietnam Veterans' Readjustment Act of 1974, and Title I of the Americans with Disabilities Act of 1990, applicants that require accommodation in the job application process may contact the number below for assistance.


(978) 256-1300


Click here read about our recent press release.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Systems Security Engineer (SSE)
Systems Security Engineer (SSE)

Mercury Systems • Scott (LA)

On-site
USD 140,000 - 190,000
Int Facilities Technician (2nd Shift)
Int Facilities Technician (2nd Shift)

mercurysystemscareers • Arizona

On-site
USD 42,000 - 62,000
Test Engineer III
Test Engineer III

mercurysystemscareers • Torrance (CA)

On-site
USD 90,000 - 120,000
Principal Operations Program Manager
Principal Operations Program Manager

Mercury Systems • California (MO)

On-site
USD 140,000 - 190,000
RF Engineer II
RF Engineer II

Mercury Systems, Inc. • Oxnard (CA)

Hybrid
USD 38,000 - 77,000
Bonus opportunities
Health insurance
Stock purchase plan
+2
1st Shift Mechanical Assembler
1st Shift Mechanical Assembler

Mercury-Systems • Phoenix (AZ)

On-site
USD 34,000 - 68,000
9/80 schedule
Health insurance
Stock-based awards
+1
Senior Test Technician (2nd shift 1:00pm-10:30pm)
Senior Test Technician (2nd shift 1:00pm-10:30pm)

mercurysystemscareers • Arizona

On-site
USD 65,000 - 90,000
Systems Engineer II
Systems Engineer II

Mercury Systems • Torrance (CA)

On-site
USD 77,000 - 154,000
Bonus opportunities
Health insurance
Company-paid holidays and time off
+3
2027 Configuration and Data Management Intern
2027 Configuration and Data Management Intern

Mercury Systems, Inc. • Gulf Breeze (FL), Northern (KY)

Hybrid
USD 23,000 - 52,000
2027 Information & Engineering Systems Intern
2027 Information & Engineering Systems Intern

Mercury Systems • Andover (MA)

On-site
USD 22,000 - 31,000