Overview
The Cybersecurity Program Manager will be responsible for designing and implementing secure, scalable, and well-governed IT systems that support day-to-day operations across Amca and its factories, including compliance with NIST 800-171 standards, CMMC frameworks and other government and customer cybersecurity requirements.
This person will lead core IT and security initiatives across corporate systems, end-user devices, factory-connected equipment, vendor management, and internal support. The ideal candidate is practical, technically strong, and comfortable operating in a fast-paced aerospace and defense environment where security, reliability, and compliance matter.
Responsibilities
- Design, implement, and manage Amca's IT infrastructure, including networks, servers, cloud environments, identity and access management, endpoint management, backups, and security controls.
- Help build and maintain a secure IT environment aligned with government and customer requirements, including NIST 800-171 standards and CMMC frameworks .
- Establish systems and processes to manage and secure company devices, including laptops, mobile phones, and connected factory equipment.
- Support the design of secure architecture for engineering, manufacturing, prototyping, and qualification testing environments.
- Manage external IT, cybersecurity, MSP, MSSP, and software vendors; help select suppliers, define requirements, and oversee performance.
- Develop, maintain and enforce IT and cybersecurity policies, standards, procedures, and documentation.
- Provide internal IT support for employees, including onboarding, offboarding, troubleshooting, access provisioning, and device support.
- Partner with leadership to assess risks, prioritize investments, and implement practical controls that support growth.
- Manage the integration and migration of acquisition IT infrastructure and systems.
- Monitor systems for uptime, security, and compliance; coordinate incident response, remediation, and recovery efforts as needed.
- Help integrate acquired businesses into a secure, standardized IT environment over time.
Qualifications
- 2+ years of experience in IT infrastructure, systems administration, cybersecurity, or IT operations, preferably in a regulated or security-sensitive environment.
- Experience building or managing secure IT environments for companies with government, defense, aerospace, or regulated industry requirements.
- Familiarity with CMMC, NIST 800-171, and other compliance frameworks, as well as general cybersecurity best practices.
- Comprehensive hands-on proficiency in network infrastructure, cybersecurity, cloud computing, and enterprise system
- Strong knowledge of endpoint/device management, cloud and server architecture, identity/access controls, networking, backup/recovery, and vendor management.
- Ability to balance strategic planning with hands-on execution and internal support.
- Excellent judgment, organization, and communication skills.
- Experience supporting manufacturing or factory environments, including operational technology or connected equipment.
- Experience working with outside IT providers while building internal capabilities.
- Experience working with GCC High or other GovCloud environments.