Information Systems Security Manager
Anduril
Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril’s family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years.
ABOUT THE TEAM
Anduril employs a variety of networks and networking infrastructures to support global operations. Information Systems Security Managers are in charge of directly supporting business lines that wish to deploy Anduril products in classified environments. Information Systems Security Managers lead lean teams of Information Systems Security Officers to enable the program personnel to create contract deliverables. Well versed in Information Technology and the Risk Management Framework, Information Systems Security Managers are the driving force of Anduril's classified deployments. Forward thinkers capable of managing Business Line needs as well as critical thinking skills in order to drive customer requirements are the best candidates for a Information Systems Security Manager.
ABOUT THE JOB
WHAT YOU’LL DO
- Provide expertise in documenting security controls to reduce the administrative cost of deploying Anduril’s products into operational environments.
- Partner with program and security teams to coordinate security artifacts in support of classified deployments.
- Apply technology standards from the commercial space in classified, air-gapped environments.
- Collaborate with Information System Owners to understand key stakeholders’ needs and provide complex technical solutions to meet contractual obligations.
- Tailor NIST 800-53 controls to determine applicability to the network environment and oversee the implementation of Continuous Monitoring for respective programs.
- Define, document, and conduct security scanning on Anduril’s products and accredited information systems.
- Scope, shape, and orchestrate the development of features to ensure products meet compliance goals.
REQUIRED QUALIFICATIONS
- Design, develop, and implement secure systems and networks per NIST RMF, JSIG, and other industry standards.
- Integrate security best practices into Anduril’s Software Development Lifecycle (SDLC) and infrastructure design, collaborating with internal IT and engineering teams.
- Conduct security risk assessments, vulnerability assessments, and audits to identify and mitigate threats.
- Recommend and implement security solutions, such as IDS/IPS, encryption protocols, and secure communications technologies.
- Develop and enforce access controls, encryption strategies, and other technical measures to safeguard systems.
- Maintain and update System Security Plans (SSPs), POA&Ms, and other accreditation documentation.
- Security Management (ISSM):
- Manage the organization’s security posture, ensuring compliance with internal policies and external regulatory frameworks.
- Oversee Authorization and Accreditation (A&A) processes to obtain/maintain system Authority to Operate (ATO).
- Lead incident response efforts, including investigation, root cause analysis, containment, and reporting.
- Conduct regular audits, continuous monitoring, and risk assessments to ensure ongoing compliance and system resilience.
- Collaborate with government security officials, stakeholders, and teams to address security gaps and improve controls.
- Develop and deliver security awareness training and ensure adherence to security best practices.
- Provide leadership and mentorship to security team members, fostering a culture of cybersecurity excellence.
- Currently possesses and is able to maintain an active U.S. Top Secret security clearance.
PREFERRED QUALIFICATIONS
- Experience with application security paradigms such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA). As well as the tools needed to perform these actions.
- Proven experience in securing micro-services architecture, including implementing best practices and compliance with DoD cybersecurity standards.
- Experience with cybersecurity in unmanned and ground control system within DoD environments.
- Experience with containerization and kubernetes along with the best practices for securing them.
- Experience with Cloud Service Providers (CSPs) and the various tools they offer for implementing security and compliance best practices.
The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril's total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including:
Healthcare Benefits
- US Roles: Comprehensive medical, dental, and vision plans at little to no cost to you.
- UK & AUS Roles: We cover full cost of medical insurance premiums for you and your dependents.
- IE Roles: We offer an annual contribution toward your private health insurance for you and your dependents.
Additional Benefits
- Income Protection: Anduril covers life and disability insurance for all employees.
- Generous time off: Highly competitive PTO plans with a holiday hiatus in December. Caregiver & Wellness Leave is available to care for family members, bond with a new baby, or address your own medical needs.
- Family Planning & Parenting Support: Coverage for fertility treatments (e.g., IVF, preservation), adoption, and gestational carriers, along with resources to support you and your partner from planning to parenting.
- Mental Health Resources: Access free mental health resources 24/7, including therapy and life coaching. Additional work-life services, such as legal and financial support, are also available.
- Professional Development: Annual reimbursement for professional development
- Commuter Benefits: Company-funded commuter benefits based on your region.
- Relocation Assistance: Available depending on role eligibility.
Retirement Savings Plan
- US Roles: Traditional 401(k), Roth, and after-tax (mega backdoor Roth) options.
- UK & IE Roles: Pension plan with employer match.
- AUS Roles: Superannuation plan.
The recruiter assigned to this role can share more information about the specific compensation and benefit details associated with this role during the hiring process.
To view Anduril's candidate data privacy policy, please visit https://anduril.com/applicant-privacy-notice/.
