Senior Manager, IT Security & Compliance / FSO

Niron Magnetics, Inc.

Minneapolis (MN)

On-site

USD 145,000 - 190,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

NIRON Magnetics, Inc. is seeking a Senior Manager, IT Security to own the cybersecurity program across IT, OT, and facilities in a high-growth manufacturing setting.

You will be hands-on while leading a small team, shaping security policies, standards, and procedures, and coordinating with IT, OT, and facilities to protect data and operations. The role requires 7+ years in IT security with leadership experience, strong framework knowledge (NIST, ISO 27001, CIS), and a track record of managing

Qualifications

  • Bachelor’s degree in Information Security, Computer Science, or related field, or equivalent experience.
  • 7+ years in IT security roles, with at least 3 years in a leadership capacity.
  • Player-coach mindset: owns the program and hands-on keyboard.
  • Strong knowledge of cybersecurity frameworks (NIST, ISO 27001, CIS Controls) and regulatory compliance (CMMC, GDPR).
  • Hands-on experience with network security, cloud security, OT security, and physical security systems.
  • Familiarity with OT security standards (IEC 62443, NIST SP 800-82) and Purdue/ISA-95 model.
  • Experience with security-by-design for manufacturing environments.

Responsibilities

  • Own design, implementation, and operation of the cybersecurity program across IT/OT environments.
  • Serve as Facility Security Officer (FSO) and manage regulatory security governance and reporting.
  • Lead governance, risk management, and incident response, including threat detection and remediation.
  • Oversee internal and external penetration testing and vulnerability management.
  • Coordinate with IT, OT, Facilities, and business units and communicate with stakeholders at all levels.
  • Administer security tools (EDR/MDR, SIEM, IAM, MFA, PAM) and maintain secure configurations across cloud and OT.

Skills

Leadership
Cybersecurity governance
Regulatory compliance
Hands-on security
OT security

Education

Bachelor’s degree in Information Security/CS

Tools

EDR/MDR
SIEM
MFA
PAM
Data backup/recovery
Zero-trust

Job description

What you’ll do

As Niron’s Senior Manager, IT Security, youwill own the design, implementation, and ongoing operation ofthe cybersecurityprograms that protect our data, systems, tools, and facilities. You Will also serve as Niron’s Facility Security Officer (FSO), owning our regulatory security governance and compliance obligations. This role safeguards operational technology (OT) and information technology (IT) environments in a high-growth, advanced manufacturing setting.

This is a working leadership role: you will own the program and remain hands-on-keyboard.You will personally administer core security tools,monitorsystems, and respond to incidents, whilesettingthe policies, standards, and procedures the rest of the company follows. You will collaborate across IT, OT, Facilities, and business units, and communicate effectively with stakeholders at all levels. It is not a purely strategic role, nor a purely tactical one as you are the person who both builds the program and administers the tools and environment.

  • Cybersecurity Governance & Compliance

  • Design, implement, own, andmaintainenterprise-wide security policies, standards, and procedures.

  • Ensure alignment with applicable frameworks and regulatory obligations, including NIST 800-171, ISO 27001, CIS Controls, CMMC, and GDPR.

  • Serve as Niron’s Facility Security Officer (FSO), owning regulatory security governance, personnel access eligibility, andrequiredsecurity reporting.

  • Own the NIST SP 800-171 / CMMC program, including the System Security Plan (SSP), POA&M, control implementation evidence, and SPRS scoring and adapt as federal assessment requirements evolve.

  • Own internal and external penetration testing and vulnerability assessments, and drive remediation to closure.

  • Risk Management & Incident Response

  • Own andoperatethreat detection, response, and remediation by performing daily alert triage, investigation, containment, and remediation, with detection engineering and threat hunting.

  • Lead the insider-threat program andintellectual-propertyprotection controls for proprietary process and manufacturing data.

  • Coordinate the external managed SOC and incident escalation, and own incident response runbooks, evidence preservation, and post-incident review.

  • Conduct regular risk assessments and security audits.

  • Technical Security Ownership & Administration

  • Personally administer, tune, andoptimizethe security stack — EDR/MDR + SIEM, endpoint detection and response, SASE/firewall-as-a-service, multi-factor authentication, privileged access management, backup/recovery, and data-loss prevention.

  • Own secure configuration and hardening across the cloud (Azure, M365) and OT environments, working with internal teams and managed-service partners.

  • Implement and enforce identity and access management (IAM), least-privilege, and zero-trust principles, including a move toward phishing-resistant (FIDO2) authentication for high-risk users.

  • OT / Manufacturing Security

  • Working with the IT Operations Manager, coordinate on the configuration and maintenance of the OT/IT network segmentation and the industrial DMZ, aligned to a Purdue / ISA-95 and IEC 62443 / NIST SP 800-82 model.

  • Working closely with the Integrations engineer and the Maintenance Team, ensure the maintenance of a live OT asset inventory; protect PLC/HMI engineering workstations; and own immutable/offline configuration backups with tested restore.

  • Working with the IT Operations Manager, coordinate on the brokering, monitoring, and control of vendor and engineering remote access (MFA, jump host, session recording).

  • Support security-by-design for new manufacturing sites before commissioning and expansion.

  • GCC Environment

  • Working with the IT Operations Manager and vendor partners, coordinate on configuration and administration of a secure and efficient GCC Azure tenant

  • Training & Awareness

  • Own and administer the security awareness and phishing-simulation program for employees.

  • Maintain documentation for security processes and compliance audits.

  • Vendor & Partner Management

  • Manage relationships with external security vendors, managed-service partners, and auditors, and hold them accountable to service levels.

  • Evaluate and onboard new security technologies and services.

Qualifications
  • Bachelor’s degree in Information Security, Computer Science, or related field. Or equivalent experience

  • 7+ years of experience in IT security roles, with at least 3 years ina leadershipcapacity.

  • A player-coach mindset: comfortable both owning the program and remaining hands-on-keyboard, andleading a small team.

  • Strong knowledge of cybersecurity frameworks (NIST, ISO 27001, CIS Controls) and regulatory compliance (CMMC, GDPR).

  • Hands-on experience with network security, cloud security, OT security, and physical security systems.

  • Working knowledge of OT security standards (IEC 62443, NIST SP 800-82) and the Purdue / ISA-95 model.

  • Familiarity with electronic access control and video surveillance systems; Avigilon experience preferred.

  • Excellent communication and leadership skills.

Preferred Certifications & Training
  • CISSP (Certified Information Systems Security Professional)

  • CISM (Certified Information Security Manager)

  • CMMC CCP / CCA (Certified CMMC Professional / Assessor)

  • Microsoft SC-200 (Security Operations Analyst) or AZ-500 (Azure Security Engineer)

  • CompTIA Security+ orCySA+

  • GIAC certifications (e.g., GCIH, GCIA, GCFA)

  • GICSP or ISA/IEC 62443 for OT security

  • Familiarity with CMMC Level 2 requirements and SPRS scoring

  • Ongoing training in zero-trust architecture, OT cybersecurity, and physical security technologies

Our pay and benefits
  • Salary:$145,000-190,000

  • Equity position in Niron via stock option grant

  • Comprehensive medical, dental, and vision insurance

  • Mental healthcare

  • 401k plan with company match

  • Paid vacation, sick time, and holidays

  • Experience in a fun, high-performing, manufacturing environment

Recruiters and Employment Agencies

Please note that Niron Magnetics does not accept unsolicited resumes from external agencies. Any unsolicited resumes submitted to our career site, hiring managers, or employees will be considered the property of Niron Magnetics. Consequently, we reserve the right to hire these candidates at our discretion without any financial obligation to the submitting agency.

The following notices apply only to positions involving access to export-controlled technology, technical data, or CUI as determined by the nature of the role and applicable program requirements

Export Control / ITAR Notice

This position may require access to information, technology, or technical data controlled under U.S. export control laws, including the International Traffic in Arms Regulations (ITAR, 22 C.F.R. Parts 120–130) and the Export Administration Regulations (EAR, 15 C.F.R. Parts 730–774), as well as Controlled Unclassified Information (CUI) as defined under 32 C.F.R. Part 2002. Where such access is required, the Company will evaluate all available license exceptions and exemptions before determining that a formal export authorization is necessary. If an export authorization is required, the Company will determine, based on legitimate business and regulatory considerations all, whether to pursue one. The Company is not obligated to seek an export authorization in every circumstance, and any decision regarding authorization will never be based on a candidate’s citizenship status, immigration status, or national origin. Each candidate’s eligibility will be evaluated individually through a consistent, documented review process. The Company complies fully with all applicable federal anti-discrimination laws, including Title VII of the Civil Rights Act of 1964 (42 U.S.C. § 2000e et seq.), the anti‑discrimination provisions of the Immigration and Nationality Act (8 U.S.C. § 1324b), and Executive Order 11246 as implemented by 41 C.F.R. Part 60. The Company does not discriminate on the basis of national origin, citizenship status, or immigration status in any aspect of employment.

Controlled Unclassified Information (CUI)

This role may involve access to Controlled Unclassified Information (CUI). Candidates selected for roles involving CUI will be required to comply with all applicable safeguarding and handling requirements, including those under NIST SP 800-171 and any governing contractual obligations.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Manager, IT Security & Compliance / FSO
Senior Manager, IT Security & Compliance / FSO

Niron Magnetics • Minneapolis (MN)

On-site
USD 145,000 - 190,000
Equity grant via stock options
Medical, dental, vision insurance
Mental healthcare
+3
Senior Manager, I.T. Infrastructure and Security Operations
Senior Manager, I.T. Infrastructure and Security Operations

Niron Magnetics • Minneapolis (MN)

On-site
USD 150,000 - 190,000
Equity via stock option grant
Medical, dental, and vision insurance
401k plan with company match
+2
Manager, IT Operations
Manager, IT Operations

Niron Magnetics • Minneapolis (MN)

On-site
USD 100,000 - 135,000
Stock option grant
Medical, dental, and vision insurance
401k plan with company match
+1
Staff Process Safety Engineer
Staff Process Safety Engineer

Niron Magnetics • Minneapolis (MN)

On-site
USD 130,000 - 165,000
Equity via stock option grant
Medical, dental, and vision insurance
401k with company match
+1
Warehouse and Logistics Manager
Warehouse and Logistics Manager

Niron Magnetics, Inc. • Sartell (MN)

On-site
USD 100,000 - 135,000
Equity via stock option grant
Comprehensive medical, dental, and 9-5
Mental healthcare benefits
+3
Director of Communications
Director of Communications

Niron Magnetics, Inc. • Minneapolis (MN)

On-site
USD 160,000 - 195,000
Stock options
Medical, dental, and vision
401k with match
+3
Staff Process Safety Engineer
Staff Process Safety Engineer

Niron Magnetics, Inc. • Minneapolis (MN)

On-site
USD 130,000 - 165,000
Stock options
Medical insurance
Dental/ Vision insurance
+3
Plant Director
Plant Director

Niron Magnetics, Inc. • Sartell (MN)

On-site
USD 170,000 - 210,000
Stock options equity
Medical, dental, vision insurance
Mental healthcare
+2
Plant Director
Plant Director

Niron Magnetics • Sartell (MN)

On-site
USD 170,000 - 210,000
Equity grant
Medical insurance
Dental insurance
+3
Director of Communications
Director of Communications

Niron Magnetics • Minneapolis (MN)

On-site
USD 160,000 - 195,000
Equity grant
Medical, dental, vision insurance
401k with 6% company match
+1