Information Systems Security Manager

Posted 4 Days Ago
Be an Early Applicant
Cedar Park, TX, USA
In-Office
Expert/Leader
Aerospace
The Role
Lead information assurance for space and enterprise systems, map CNSSP-12 into engineering requirements, manage RMF (NIST SP 800-37) accreditation to obtain ATOs, enforce NIST/CMMC/STIG compliance, run risk assessments, oversee compliance teams, incident response, and red-team/testing to ensure secure architectures for ground and space segments.
Summary Generated by Built In

About Firefly Aerospace

Firefly Aerospace is a space and defense technology company on a mission to reliably and repeatedly launch, land, and operate space systems from Earth to the Moon and beyond. As the partner of choice for critical space missions, Firefly is the first commercial company to launch a satellite to orbit with 24-hour notice and the first company to achieve a successful Moon landing. Headquartered in north Austin, Texas, Firefly is looking for passionate, hardworking innovators to join our team and help fuel our successful trajectory into space.

SUMMARY

As the Information System Security Manager at Firefly Aerospace, you will play a critical role in ensuring all mission-critical systems and enterprise networks maintain rigorous compliance with national security and corporate mandates. This role operates at the critical intersection of cybersecurity policy and system engineering, focusing heavily on translating CNSSP-12 requirements into actionable engineering architectures. You will lead the information assurance strategy, manage the Risk Management Framework (RMF) life cycle per NIST SP 800-37 Rev. 2, and drive continuous compliance for corporate standards including CMMC and NIST SP 800-171. This position offers the opportunity to architect security compliance for advanced space systems and corporate infrastructure. You will report directly to Director of Cybersecurity and collaborate closely with security leaderships, systems engineers, and operations teams to embed security into the development life cycle and ensure our systems achieve and maintain full authorization.

RESPONSIBILITIES

Space Systems Engineering: CNSSP-12 Compliance

Translate complex CNSSP 12 (National Information Assurance Policy for Space Systems) mandates into measurable system engineering requirements and architectural constraints.

· Coordinate directly with system owners, space vehicle engineers, and DevOps teams to

embed security controls into the system development life cycle (SDLC).

· Lead the design and oversee the implementation of secure network architectures for

ground and space segments.

· Conduct security impact assessments, threat modeling, and risk assessments on

proposed space vehicle architectures and system changes.

Risk Management Framework (RMF) Accreditation

· Manage the full system life cycle accreditation processes under NIST SP 800-37 Rev. 2,

driving systems through the RMF to secure Authorities to Operate (ATO).

· Develop and maintain critical accreditation documentation, including System Security

Plans (SSPs), POAMs, and Security Assessment Reports (SARs).

· Provide regular status reports, continuous monitoring metrics, and compliance

briefings to senior management and government Authorizing Officials (AOs).

· Ensure system configurations continuously comply with DISA STIGs and DoD Security

Technical Implementation Guides.

Corporate Compliance; Security Operations

· Lead and manage the corporate-wide cybersecurity compliance initiatives, ensuring

strict adherence to NIST SP 800-171, NIST SP 800-53 and Space Policy Directive 5 (SPD – 5) across enterprise.

· Manage a diverse, multi-location Information Assurance team, setting goals, driving

accountability, and mentoring security personnel.

· Support incident response activities, ensure timely reporting to government

stakeholders (e.g., DCSA), and lead tabletop exercises to evaluate and improve cross-

functional readiness.

· Oversee red-teaming and penetration testing activities to uncover vulnerabilities and

ensure network resilience.

QUALIFICATIONS

Required:

· BS or MS degree in Computer Science, Cybersecurity, Information Technology, or a

related technical discipline. Equivalent experience may be considered.

  • Proven ability to translate high-level policies (such as CNSSP-12) into technical engineering requirements.

· At least 10 years of experience in information assurance, cybersecurity compliance, or

risk management within the aerospace, federal, or DoD contracting environment.

· Demonstrated expertise in applying NIST SP 800-37 Rev. 2 (RMF), Space Policy Directive 5 (SPD – 5), NIST SP 800-171, NIST SP 800-53, and FISMA standards.

· Hands-on experience with DoD security tools (e.g., eMASS, ACAS, HBSS, SPRS).

· Exceptional leadership and communication skills to effectively interface with technical

and non-technical executive stakeholders.

Desired:

· Direct experience acting as an ISSM or Security Control Assessor (SCA) for space-based systems.

· Familiarity with satellite telemetry, tracking, and commanding (TT&C) encryption and security requirements.

· Hands-on experience executing a CMMC Level 2 implementation.

· Active clearance or ability to obtain and maintain clearance.

· Experience with requirements management platforms (e.g., Jama, DOORS) used in systems engineering.

Firefly offers outstanding benefits for our employees, including generous health, dental and vision plans with low plan deductibles, parental leave, educational reimbursement, short term disability, and flexible PTO options.

To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State.

Firefly Aerospace, Inc. is an Equal Opportunity Employer; employment with Firefly is governed based on merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.

Skills Required

  • BS or MS in Computer Science, Cybersecurity, Information Technology, or related technical discipline (or equivalent experience)
  • Proven ability to translate CNSSP-12 into technical engineering requirements
  • At least 10 years experience in information assurance, cybersecurity compliance, or risk management within aerospace, federal, or DoD contracting
  • Demonstrated expertise applying NIST SP 800-37 Rev. 2, SPD-5, NIST SP 800-171, NIST SP 800-53, and FISMA
  • Hands-on experience with DoD security tools (eMASS, ACAS, HBSS, SPRS)
  • Exceptional leadership and communication skills for interfacing with technical and non-technical executive stakeholders
  • Direct experience acting as an ISSM or Security Control Assessor (SCA) for space-based systems
  • Familiarity with satellite telemetry, tracking, and commanding (TT&C) encryption and security requirements
  • Hands-on experience executing a CMMC Level 2 implementation
  • Active security clearance or ability to obtain and maintain clearance
  • Experience with requirements management platforms (e.g., Jama, DOORS)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Cedar Park, TX
384 Employees
Year Founded: 2017

What We Do

Firefly Aerospace Inc. (”Firefly”) is developing a family of launch and in-space vehicles and services that provide industry-leading affordability, convenience, and reliability. Firefly’s launch vehicles utilize common technologies, manufacturing infrastructure, and launch capabilities, providing LEO launch solutions for up to ten metric tons of payload at the lowest cost per kg in the small-launch class. Combined with Firefly’s in-space vehicles, such as the Space Utility Vehicle and Blue Ghost lunar lander, Firefly will provide the space industry with a single source for missions from LEO to the surface of the Moon or beyond.

Similar Jobs

Decision Technologies, Inc. Logo Decision Technologies, Inc.

Information Systems Security Manager (ISSM)

Aerospace • Professional Services • Defense
In-Office
Austin, TX, USA
109 Employees
130K-150K Annually

General Dynamics Information Technology Logo General Dynamics Information Technology

Information Systems Security Manager (ISSM) I

Aerospace • Information Technology • Professional Services • Security • Software
In-Office
San Antonio, TX, USA
21625 Employees
100K-135K Annually
In-Office
Arlington, TX, USA
53 Employees

Similar Companies Hiring

Caliola Engineering Thumbnail
Software • Machine Learning • Hardware • Defense • Data Privacy • App development • Aerospace
Colorado Springs, CO
68 Employees
Red 6 Thumbnail
Aerospace • Hardware • Software • Virtual Reality • Defense
Orlando, Florida
186 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account