Information System Security Officer
Hexcel Corporation · Amesbury, MA · 3 wk ago
Information Technology$85k–$146k/yrFull-time
About the role
The Information System Security Officer plays a critical role in supporting the site’s IT infrastructure and operations. Reporting directly to the Site IT Manager, this individual contributor ensures the reliability, security, and efficiency of local IT systems and services.
Responsibilities
- Plan, deploy, maintain, and upgrade hardware and software in a Microsoft Windows environment, ensuring system performance and compliance with enterprise standards.
- Adapt commercial technologies to meet site-specific needs while aligning with centralized IT policies and initiatives.
- Lead and expand the industrial security program, including development and enforcement of information system security policies, standards, and procedures.
- Manage daily security operations, including configuration management, change control, monitoring, incident response, and mitigation.
- Conduct vulnerability and risk assessments and support certification, accreditation, CMMC, and RMF continuous monitoring activities.
- Develop, maintain, and manage security documentation (e.g., SSPs, RARs, POA&Ms, SCTMs), along with system inventories and security records.
- Oversee internal audits and inspections, coordinate responses, and implement corrective actions to ensure compliance.
- Create and maintain internal procedures, user documentation, and provide staff training on information security practices.
- Collaborate with IT teams, auditors, management, and stakeholders—including the FSO and Insider Threat Working Group—to ensure security and continuous improvement.
- Serve as the site liaison for enterprise IT initiatives, prepare security status reports, and maintain required IA certifications (IAT II or IAM I).
Requirements
- High school diploma or GED equivalent, required.
- Minimum of 5 years’ experience or equivalent combination of education and experience.
- Bachelor's degree with 3+ years’ experience, preferred.
- Ability to obtain & maintain Security+/SSCP/CISSP with 6 months of employment.
- Knowledge of databases, spreadsheets and report writing.
- Experience with risk management, incident response, and security authorization packages.
- Strong understanding of information security principles and compliance requirements.
- Proficiency in developing and implementing security policies and procedures.
- Strong analytical, organizational, leadership, and communication skills.
- Able to manage initiatives of moderate scope independently and collaboratively.
- Must be able to obtain a secret security clearance.
Qualifications
- U.S. citizen due to U.S. federal government contracts that require the employment of only persons who are U.S. citizens.
Pay
Complete salary range for this role: $85,354 to $146,320
Schedule
N/A