Sr CUI Program Manager

OSI Systems, Inc.

Richardson (TX)

On-site

USD 136,000 - 144,000

Full time

10 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health plans
401(k) plan
Employee Stock Purchase Program (ESPP)
Paid time off

Job summary

OSI Systems, Inc. seeks a Sr CUI Program Manager to lead the enterprise CUI protection program in support of DoD contracts.

You will establish governance, controls, training, and assessment readiness across functions to safeguard CUI and related information assets. You will align with NIST SP 800-171, DFARS, and CMMC requirements, manage data flow and SSP coordination, and drive audit readiness, metrics, and executive reporting.

Qualifications

  • Bachelor’s degree in Cybersecurity, Information Technology, Security Management, or related field; equivalent DoD contractor experience may be considered
  • 8+ years of progressive experience in compliance, cybersecurity, information protection, government contracting, or security program management
  • Experience leading enterprise-level compliance or security programs involving CUI, CD Information, FCI, DoD contracts, or regulated government information
  • Strong knowledge of DFARS cybersecurity clauses, NIST SP 800-171, CMMC requirements, and federal safeguarding requirements
  • Experience supporting System Security Plans, POA&M, control ownership, assessment evidence, and audit responses
  • Proven ability to lead cross-functional initiatives and remediation of complex compliance gaps
  • Excellent written and verbal communication translating requirements into practical guidance
  • Strong organizational, analytical, and program management skills
  • Ability to handle sensitive government information with discretion and integrity
  • Ability to obtain and maintain a DoD Secret security clearance

Responsibilities

  • Develop and mature enterprise CUI program for DoD contract performance, including governance and reporting
  • Serve as senior SME for CUI, CD Information, FCI, and related safeguarding requirements
  • Lead implementation of CUI protections across DoD programs, contracts, systems, and suppliers
  • Coordinate with requirements like NIST SP 800-171, DFARS, and CMMC across programs
  • Review CUI Security Class Guides and ensure requirements are met
  • Partner with Contracts, IT, Supply Chain, and leadership to operationalize CUI obligations
  • Oversee scope definition, data flow mapping, system boundary, SSP coordination, and POA&M tracking
  • Coordinate with IT and Engineering for NIST 800-171 implementation and SPRS/CMMC readiness
  • Establish program metrics, risk indicators, and executive reporting
  • Lead CUI training for employees, suppliers, and subcontractors handling DoD information
  • Support cyber incident reporting and corrective actions with IT and Contracts
  • Monitor DoD policy changes to keep the program auditable and defensible
  • Advise senior leadership on risk, compliance posture, and strategic priorities
  • Uphold company values and Code of Ethics; report quality problems for corrective action

Skills

CUI program management
Governance & compliance
Cross-functional leadership
Communication skills
Risk management
DoD policy & standards knowledge
Security program management
Audit & evidence management

Education

Bachelor's degree in Cybersecurity or related field
Equivalent DoD contractor experience

Job description

Overview

Continental Electronics Corporation is a leading provider of RF technologies and innovative solutions with 80 years of proven performance. CEC has experienced significant recent growth and has established itself as the go-to supplier for a diversified product line supporting a wide spectrum of markets from commercial products, military customers, to space research laboratories.

The Sr Controlled Unclassified Information (CUI) Program Manager leads the enterprise CUI protection program for Continental Electronics Corporation. This role is responsible for establishing and sustaining governance, controls, training, assessment readiness, and cross-functional execution to protect CUI, Covered Defense Information, Federal Contract Information (FCI), and controlled technical information handled in support of DoD contracts.

Responsibilities
  • Develop, maintain, and mature the organization’s enterprise CUI program for DoD contract performance, including governance, policies, procedures, standards, workflows, reporting, and compliance roadmaps
  • Serve as the senior subject matter expert for CUI, Covered Defense Information, Federal Contract Information, controlled technical information, and related DoD safeguarding and dissemination requirements
  • Lead implementation and sustainment of CUI protection requirements across various DoD programs, contracts, information systems, enclaves, facilities, suppliers, and subcontractors
  • Coordinate alignment with applicable requirements, including 32 CFR Part 2002, DoD Instruction 5200.48, DFARS 252.204-7008, DFARS 252.204-7012, DFARS 252.204-7019, DFARS 252.204-7020, DFARS 252.204-7021, NIST SP 800-171, CMMC requirements, and customer-specific security direction
  • Review applicable CUI Security Class Guides (SCG) and work with Program Management to ensure requirements are met
  • Partner with Contracts, Information Technology, Supply Chain, Program Management, Engineering, Human Resources, and executive leadership to ensure CUI obligations are identified, flowed down, and operationalized
  • Oversee CUI scope definition, data flow mapping, system boundary identification, control ownership, System Security Plan coordination, Plan of Action and Milestones tracking, evidence collection, and assessment readiness activities
  • Coordinate with IT and Engineering stakeholders to support NIST SP 800-171 implementation, SPRS score maintenance, CMMC Level 2 readiness, DIBCAC assessment preparation, and customer audit response
  • Establish and monitor program metrics, risk indicators, corrective action plans, supplier compliance status, audit findings, POA&M closure, and executive-level reporting
  • Lead CUI training and awareness for employees, suppliers, and subcontractors handling DoD information.
  • Support cyber incident reporting coordination, potential CUI handling violation reviews, unauthorized disclosure response, customer notifications, and corrective actions in partnership with IT and Contracts.
  • Monitor changes in DoD policy, acquisition requirements, federal CUI requirements, CMMC implementation, NIST guidance, and customer expectations to ensure the program remains current, auditable, and defensible
  • Advise senior leadership on CUI risk, contract compliance posture, customer assessment readiness, resource needs, operational impacts, and strategic priorities across the Defense Industrial Base environment
  • Uphold the company’s core values of Integrity, Innovation, Accountability, and Teamwork
  • Demonstrate behavior consistent with the company’s Code of Ethics and Conduct
  • It is the responsibility of every employee to report to their manager or a member of senior management any quality problems or defects in order for corrective action to be implemented and to avoid recurrence of the problem
  • Duties may be modified or assigned at any time to meet the needs of the business
Qualifications
  • Bachelor’s degree in Cybersecurity, Information Technology, Business Administration, Security Management, Compliance, or a related field; equivalent DoD contractor experience may be considered
  • 8 or more years of progressive experience in compliance, cybersecurity, information protection, government contracting, industrial security, defense program support, or security program management
  • Demonstrated experience leading enterprise-level compliance or security programs involving CUI, Covered Defense Information, Federal Contract Information, DoD contracts, or regulated government information
  • Strong working knowledge of DFARS cybersecurity clauses, NIST SP 800-171, CMMC requirements, CUI Registry concepts, DoD CUI policy, risk management practices, and federal acquisition requirements related to safeguarding information
  • Experience supporting System Security Plans, POA&M, control ownership, assessment evidence, audit responses, corrective action plans, training materials, executive briefings, and compliance documentation
  • Proven ability to lead cross-functional initiatives, influence stakeholders without direct authority, and drive remediation of complex compliance gaps across technical and non-technical environments
  • Excellent written and verbal communication skills, including the ability to translate DoD contractual, regulatory, and technical requirements into practical business guidance
  • Strong organizational, analytical, problem-solving, and program management skills with attention to detail and accountability for results
  • Ability to manage sensitive government and contractor information with discretion, sound judgment, and a high degree of professional integrity
  • Selected candidates must be able to obtainand maintain aSecretsecurity clearance issued by the U.S. Government throughout the course of their employment.
Desired Qualifications
  • Professional certifications such as CISSP, CISM, CISA, CRISC, Security+, PMP, Certified CMMC Professional, Certified CMMC Assessor, Registered Practitioner, or other relevant CMMC ecosystem credentials
  • Experience supporting defense, aerospace, intelligence community support, engineering, manufacturing, or other Defense Industrial Base environments
  • Experience preparing for or supporting CMMC Level 2 assessments, DIBCAC assessments, NIST SP 800-171 assessments, SPRS submissions, supplier compliance reviews, DCMA inquiries, or DoD customer security audits
  • Familiarity with System Security Plans, POA&M, control evidence repositories, secure enclaves, data loss prevention, identity and access management, encryption, incident response, records management, export control coordination, and secure collaboration platforms
  • Experience with subcontractor flow-down, supplier cybersecurity due diligence, prime contractor requirements, customer data rights expectations, and protection of controlled technical information
  • Prior experience briefing executives, DoD customers, contracting officers, auditors, assessors, security officials, or board-level stakeholders
Leadership Competencies
  • Strategic Program Leadership: Builds scalable governance structures, roadmaps, and accountability models for enterprise CUI protection
  • Regulatory Judgment: Interprets federal and contractual requirements and converts them into practical, risk-based operating procedures
  • Cross-Functional Influence: Drives alignment across cybersecurity, compliance, legal, contracts, operations, and business teams
  • Assessment Readiness: Maintains evidence, control ownership, remediation discipline, and defensible documentation for audits and reviews
  • Executive Communication: Provides concise, risk-informed reporting to senior leaders and decision-makers
Pay

Pay may range from $136,000 to $144,000 annually

The pay range above represents annual base salary only. Final compensation will be determined based on factors such as your job level, geographic location, date of hire, experience, job-related knowledge and skills, and education in conjunction with market and business considerations.

Base salary is one component of your total rewards package. You may be eligible for long-term incentives, potential discretionary bonuses, and the ability to purchase company stock at a discounted rate through the Employee Stock Purchase Program (ESPP). OSI also offers comprehensive benefits including various options for health plans, access to 401(k) retirement plan, health savings account, disability insurance, life insurance, AD&D insurance, leave of absence programs and an array of voluntary benefits. In addition, paid time off is offered to be used for vacation, holidays, bereavement, and jury duty. Full-Time salaried employees are entitled to flexible time-off.

NOTICE TO THIRD PARTY AGENCIES

OSI Systems, Inc. and its subsidiaries (collectively “OSI”) does not accept unsolicited resumes from recruiters or employment agencies. If any person or entity, including a recruiter or agency, submits any information, including any resume or information regarding any potential candidate, without a signed agreement in place with OSI, OSI explicitly reserves the right to use such information, and pursue and/or hire such candidates, without any financial obligation to the person, recruiter or agency. Any unsolicited information or resumes, including those submitted directly to hiring managers, are considered and deemed to be the property of OSI.

Equal Opportunity Employer - Disability and Veteran
Know Your Rights

https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12ScreenRdr.pdf

Poster Link:

https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12ScreenRdr.pdf

OSi System Divisions

OSI Systems, Inc. has three operating divisions: (a) Security, providing security and inspection systems, turnkey security screening solutions and related services; (b) Healthcare, providing patient monitoring, diagnostic cardiology and anesthesia systems; and (c) Optoelectronics and Manufacturing, providing specialized electronic components and electronic manufacturing services for original equipment manufacturers with applications in the defense, aerospace, medical and industrial markets, among others.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr CUI Program Manager
Sr CUI Program Manager

Continental Electronics Corporation • Richardson (TX)

On-site
USD 136,000 - 144,000
Sr CUI Program Manager
Sr CUI Program Manager

Rapiscan Systems, Inc. • Richardson (TX)

On-site
USD 136,000 - 144,000
Jr Information Systems Security Officer
Jr Information Systems Security Officer

Rapiscan Systems, Inc. • Richardson (TX)

Hybrid
USD 44,000 - 50,000
Jr Information Systems Security Officer
Jr Information Systems Security Officer

Continental Electronics Corporation • Richardson (TX)

On-site
USD 44,000 - 50,000
Health plans
401(k) retirement plan
Paid time off
Jr Information Systems Security Officer
Jr Information Systems Security Officer

OSI Systems, Inc. • Richardson (TX)

On-site
USD 44,000 - 50,000
Health plans
401(k) retirement plan
Paid time off
+1
Sr Information Systems Security Manager
Sr Information Systems Security Manager

Rapiscan Systems Inc. • Richardson (TX)

On-site
USD 145,000 - 155,000
Health plans
401(k) plan
Employee stock purchase plan (ESPP)
+1
Sr Systems Engineer
Sr Systems Engineer

OSI Systems, Inc. • Richardson (TX)

On-site
USD 107,000 - 154,000
Health plans
401(k) plan
Employee Stock Purchase Program (ESPP)
+1
Sr Systems Engineer
Sr Systems Engineer

Rapiscan Systems Inc. • Richardson (TX)

On-site
USD 107,000 - 154,000
Health plans
401(k) retirement plan
Employee Stock Purchase Program (ESPP)
+1
Sr Systems Engineer
Sr Systems Engineer

Continental Electronics Corporation • Richardson (TX)

On-site
USD 107,000 - 154,000
Mechanical Engineer 3
Mechanical Engineer 3

Rapiscan Systems, Inc. • Richardson (TX)

On-site
USD 114,000 - 125,000
Health plans
401(k) retirement plan
Disability insurance
+3