Skip to main content
Anduril Industries logo

Information Systems Security Manager

Anduril Industries
Costa Mesa, California, United StatesPosted 3 days ago

Job Description

<div class="content-intro"><p>Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril’s family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years.</p></div><h3>ABOUT THE TEAM</h3> <p>Anduril employs a variety of networks and networking infrastructures to support global operations. Information Systems Security Managers are in charge of directly supporting business lines that wish to deploy Anduril products in classified environments. Information Systems Security Managers lead lean teams of Information Systems Security Officers to enable the program personnel to create contract deliverables. Well versed in Information Technology and the Risk Management Framework, Information Systems Security Managers are the driving force of Anduril's classified deployments. Forward thinkers capable of managing Business Line needs as well as critical thinking skills in order to drive customer requirements are the best candidates for a Information Systems Security Manager.</p> <h3>ABOUT THE JOB&nbsp;</h3> <h4>WHAT YOU’LL DO&nbsp;</h4> <ul> <li>Provide expertise in documenting security controls to reduce the administrative cost of deploying Anduril’s products into operational environments.</li> <li>Partner with program and security teams to coordinate security artifacts in support of classified deployments.</li> <li>Apply technology standards from the commercial space in classified, air-gapped environments.</li> <li>Collaborate with Information System Owners to understand key stakeholders’ needs and provide complex technical solutions to meet contractual obligations.</li> <li>Tailor NIST 800-53 controls to determine applicability to the network environment and oversee the implementation of Continuous Monitoring for respective programs.</li> <li>Define, document, and conduct security scanning on Anduril’s products and accredited information systems.</li> <li>Scope, shape, and orchestrate the development of features to ensure products meet compliance goals.</li> </ul> <h4>REQUIRED QUALIFICATIONS&nbsp;</h4> <ul> <li>Design, develop, and implement secure systems and networks per NIST RMF, JSIG, and other industry standards.</li> <li>Integrate security best practices into Anduril’s Software Development Lifecycle (SDLC) and infrastructure design, collaborating with internal IT and engineering teams.</li> <li>Conduct security risk assessments, vulnerability assessments, and audits to identify and mitigate threats.</li> <li>Recommend and implement security solutions, such as IDS/IPS, encryption protocols, and secure communications technologies.</li> <li>Develop and enforce access controls, encryption strategies, and other technical measures to safeguard systems.</li> <li>Maintain and update System Security Plans (SSPs), POA&amp;Ms, and other accreditation documentation.</li> <li>Security Management (ISSM):</li> <li>Manage the organization’s security posture, ensuring compliance with internal policies and external regulatory frameworks.</li> <li>Oversee Authorization and Accreditation (A&amp;A) processes to obtain/maintain system Authority to Operate (ATO).</li> <li>Lead incident response efforts, including investigation, root cause analysis, containment, and reporting.</li> <li>Conduct regular audits, continuous monitoring, and risk assessments to ensure ongoing compliance and system resilience.</li> <li>Collaborate with government security officials, stakeholders, and teams to address security gaps and improve controls.</li> <li>Develop and deliver security awareness training and ensure adherence to security best practices.</li> <li>Provide leadership and mentorship to security team members, fostering a culture of cybersecurity excellence.</li> <li>Currently possesses and is able to maintain an active U.S. Top Secret security clearance.</li> </ul> <h4>PREFERRED QUALIFICATIONS&nbsp;</h4> <ul> <li>Experience with application security paradigms such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA). As well as the tools needed to perform these actions.</li> <li>Proven experience in securing micro-services architecture, including implementing best practices and compliance with DoD cybersecurity standards.</li> <li>Experience with cybersecurity in unmanned and ground control system within DoD environments.</li> <li>Experience with containerization and kubernetes along with the best practices for securing them.</li> <li>Experience with Cloud Service Providers (CSPs) and the various tools they offer for implementing security and compliance best practices.</li> </ul><div class="content-pay-transparency"><div class="pay-input"><div class="title">US Salary Range</div><div class="pay-range"><span>$146,000</span><span class="divider">&mdash;</span><span>$194,000 USD</span></div></div></div><div class="content-conclusion"><p><span data-contrast="auto">The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril's total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including:</span><span data-ccp-props="{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:240,&quot;335559739&quot;:240}">&nbsp;</span></p> <p>&nbsp;</p> <h3 class="detailElios"><strong>Benefits</strong></h3> <p><span data-contrast="auto">At Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you’re supported in health, recovery, and whatever comes next.&nbsp;</span><em><span data-contrast="auto">For more information, <a href="https://www.anduril.com/careers">Explore Our Benefits</a>.</span></em></p> <p>&nbsp;</p> <div class="RichText column1"> <h3 class="detailElios"><strong>Protecting Yourself from Recruitment Scams</strong></h3> <p class="detailElios">Anduril is committed to maintaining the integrity of our Talent acquisition process and the security of our candidates. We've observed a rise in sophisticated phishing and fraudulent schemes where individuals impersonate Anduril representatives, luring job seekers with false interviews or job offers. These scammers often attempt to extract payment or sensitive personal information.</p> </div> <div class="RichText column2"> <p class="detailElios">To ensure your safety and help you navigate your job search with confidence, please keep the following critical points in mind:</p> <ul> <li> <p class="detailElios"><strong>No Financial Requests:&nbsp;</strong>Anduril will never solicit payment or demand personal financial details (such as banking information, credit card numbers, or social security numbers) at any stage of our hiring process. Our legitimate recruitment is entirely free for candidates.</p> </li> <li><strong>Please always verify communications:</strong> <ul> <li>Direct from Anduril: If you receive an email from one of our recruiters, it will <em>only</em> come from an <code>@anduril.com</code> address.</li> <li>Via Agency Partner: If contacted by a recruiting agency for an Anduril role, their email will clearly identify their agency. If you suspect any suspicious activity, please verify the agency's authenticity by reaching out to <a href="mailto:contact@anduril.com">contact@anduril.com</a>.&nbsp;</li> </ul> </li> <li> <p class="detailElios"><strong>Exercise Caution with Unsolicited Outreach:</strong>&nbsp;If you receive any communication that appears suspicious, contains grammatical errors, or makes unusual requests, do not engage. Always confirm the sender's email domain is @anduril.com before providing any personal information or clicking on links.</p> </li> <li> <p class="detailElios"><strong>What to Do If You Suspect Fraud:</strong>&nbsp;Should you encounter any questionable or fraudulent outreach claiming to be from Anduril, please report it immediately to&nbsp;<a href="mailto:contact@anduril.com">contact@anduril.com</a>. Your proactive caution is invaluable in protecting your personal information and upholding the security and trustworthiness of our recruitment efforts.</p> </li> </ul> </div> <h3>&nbsp;</h3> <h3><strong>Data Privacy</strong></h3> <p><span data-contrast="auto">To view Anduril's candidate data privacy policy, please visit </span><span data-contrast="none"><span data-ccp-charstyle="Hyperlink"><a href="https://anduril.com/applicant-privacy-notice/">https://anduril.com/applicant-privacy-notice/</a></span></span><span data-contrast="auto">.</span><span data-ccp-props="{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:240,&quot;335559739&quot;:240}">&nbsp;</span></p> <p>&nbsp;</p> <p><span data-ccp-props="{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:240,&quot;335559739&quot;:240}">By submitting your application, you consent to Anduril Industries using a third-party service provider to conduct pre-employment risk, integrity, and due diligence screening and assessing potential risks as part of your application process. This third-party service provider provides risk-intelligence services that may include analysis of sanctions and watchlists, adverse media, public-record information, and other lawful open-source or commercial data sources. This third-party service provider does not act as a consumer reporting agency. Use of this provider helps to ensure compliance with applicable laws and protect technology, intellectual property, and organizational security.</span></p></div>

About Anduril Industries

Anduril Industries logo

Anduril Industries

anduril.com

On-site

Want AI-powered job matching?

Upload your resume and get every job scored, your resume tailored, and hiring manager emails found - automatically.

Get Started Free