1

Information Security Manager Jobs in Alabama (NOW HIRING)

The Information Technology Security Manager serves in a supervisory capacity and is responsible for staffing and monitoring security systems. This position ensures all information security policies ...

Overview The Information Technology Security Manager serves in a supervisory capacity and is responsible for staffing and monitoring security systems. This position ensures all information security ...

Overview The Information Technology Security Manager serves in a supervisory capacity and is responsible for staffing and monitoring security systems. This position ensures all information security ...

Job Purpose: Support the implementation, monitoring, and continuous improvement of information security governance, risk management, and compliance program. This role contributes directly to ...

next page

Showing results 1-20

Information Security Manager information

See Alabama salary details

$56.6K

$123.4K

$181.3K

How much do information security manager jobs pay per year?

As of Aug 24, 2026, the average yearly pay for information security manager in Alabama is $123,363.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,200.00 and $145,500.00 per year, depending on experience, location, and employer.

What is an information security manager?

The job duties of an information security manager involve overseeing the effort to protect networks, computers, and data from cyber attacks, viruses, and other security breaches. In this career, your responsibilities include creating IT security features that can protect your company’s data. In addition to building systems to protect against hacking, you must also be ready to lead the response when a security breach occurs. As an information security manager, you are responsible for creating and implementing practices and policies that employees can use to protect their employer's networks and data.

What does an information security manager do?

An Information Security Manager is responsible for overseeing an organization's information security program, ensuring that sensitive data is protected from threats such as cyberattacks and unauthorized access. They develop and implement security policies, conduct risk assessments, and manage teams to respond to security incidents. Information Security Managers also ensure compliance with relevant laws and regulations and regularly educate staff on best security practices. Their role is critical in maintaining the confidentiality, integrity, and availability of information assets.

What are some common challenges information security managers face when implementing new security protocols within an organization?

Information Security Managers often encounter resistance to change from staff when introducing new security protocols, as these measures can sometimes disrupt established workflows. Balancing security requirements with business needs is also a frequent challenge, requiring negotiation and effective communication across departments. Additionally, staying ahead of constantly evolving threats and ensuring that all team members are properly trained can be demanding, but overcoming these challenges is crucial for maintaining a robust security posture.

What is the difference between Information Security Manager vs Security Analyst?

AspectInformation Security ManagerSecurity Analyst
CertificationsCISSP, CISM, CISACompTIA Security+, GIAC Security Essentials
Work EnvironmentOversees security policies, manages teams, strategic planningMonitors security systems, analyzes threats, implements security measures
Employer & Industry UsageUsed in organizations with dedicated security teams across industriesCommon in IT departments, security operations centers

The main difference is that the Information Security Manager focuses on strategic security management and team leadership, while the Security Analyst handles day-to-day security monitoring and threat analysis. Both roles require relevant certifications and are vital in maintaining organizational security, but they differ in scope and responsibilities.

What are the most commonly searched types of Information Security jobs in Alabama?

The most popular types of Information Security jobs in Alabama are:

What are popular job titles related to Information Security Manager jobs in Alabama?

For Information Security Manager jobs in Alabama, the most frequently searched job titles are:

What job categories do people searching Information Security Manager jobs in Alabama look for?

The top searched job categories for Information Security Manager jobs in Alabama are:

What cities in Alabama are hiring for Information Security Manager jobs?

Cities in Alabama with the most Information Security Manager job openings:

Infographic showing various Information Security Manager job openings in Alabama as of August 2026, with employment types broken down into 1% As Needed, 73% Full Time, 21% Part Time, and 5% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $123,363 per year, or $59.3 per hour.

Advisory Information Security Manager - ISSM

Jobtailor

Huntsville, AL • On-site

$110 - $170/hr

Other

Posted 5 days ago


Job description

  • Serve as the primary contractor cybersecurity authority on-site with Army and Navy Organization ISSMs, AODRs, and AOs
  • Build, manage, and maintain Assessment & Authorization packages in eMASS and customer databases
  • Evaluate NIST SP 800-53 Rev. 5 and CNSSI 1253 security controls across contractor-designed networks
  • Oversee ACAS, Nessus, and SCAP Compliance Checker vulnerability assessments and DISA STIG/SRG implementation
  • Draft, track, and remediate POA&Ms while negotiating risk levels and mitigation strategies
  • Establish and execute Continuous Monitoring strategies, annual security reviews, boundary modifications, and re-authorization events
  • Embed cybersecurity requirements into internal software, network, and systems engineering workflows
  • Develop and enforce internal baseline configuration guides using DISA STIGs and CIS Benchmarks
  • Review product architectures and software deliverables, including static/dynamic code analysis and dependency scanning
  • Establish cybersecurity SOPs, hardening checklists, and secure development guidelines
  • Lead vulnerability response and corrective measures for critical vulnerabilities or zero-day threats
  • Coordinate incident reporting, containment, investigation, and remediation
  • Prepare systems for government cybersecurity inspections and internal quality audits
  • Advise engineering managers and government leadership on security posture, risk trade-offs, and emerging threats
  • Translate DoD compliance requirements into actionable technical requirements for development teams
Requirements
  • Active TS security clearance required; TS/SCI preferred
  • DoD 8140/8570 baseline certification required at intermediate level: CompTIA Security+, SecurityX, Cloud+, GSEC, or equivalent
  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, Information Systems, or Software Engineering, or equivalent
  • 5+ years of relevant experience supporting Army or Navy customers through the full RMF lifecycle
  • Hands-on experience with the complete RMF lifecycle under DoDI 8510.01, NIST SP 800-53 Rev. 5, and CNSSI 1253
  • Advanced experience using eMASS to build, manage, and defend A&A packages for Army and/or Navy customers
  • Experience with ACAS/Nessus and SCAP Compliance Checker vulnerability assessment tools
  • Experience evaluating scan data and applying DISA STIGs/SRGs
  • Experience drafting, negotiating, and tracking POA&Ms through mitigation to secure ATO, ATO with Conditions, or IATT
  • Knowledge of system hardening across Linux/Windows, network infrastructure, containerized environments, and cloud architectures
  • Experience embedding cybersecurity requirements into software/systems engineering workflows and DevSecOps pipelines
  • Familiarity with SAST/DAST tools and SBOM management
  • Preferred certifications include CISSP, CISM, GCSA, GCIA, CISSP-ISSMP, CISA, CRISC, CCSP, and AWS/Azure Security Specialties
  • Direct Army or Navy program-office experience preferred
Core Competencies

Demonstrates expertise in cybersecurity risk management frameworks, vulnerability assessment tools, and compliance with DoD standards. Proficient in developing and enforcing security protocols, managing authorization packages, and advising on security posture for Army and Navy organizations.

Highest-signal resume keywords
  • Active TS Security Clearance
  • DoD 8140/8570 Baseline Certification
  • 5+ Years Supporting Army/Navy Customers
  • Advanced Experience with eMASS
  • Hands-On Experience with RMF Lifecycle
ATS Optimization Keywords Hard Skills
  • NIST SP 800-53 Rev. 5
  • ACAS Vulnerability Assessment
  • Nessus Vulnerability Assessment
  • SCAP Compliance Checker
  • DISA STIG Implementation
  • POA&M Drafting and Tracking
  • System Hardening
  • DevSecOps Integration
  • SAST/DAST Tools
  • Cloud Security
Soft Skills
  • Negotiation
  • Risk Management
  • Incident Response Coordination
  • Advisory Communication
Certifications & Qualifications
  • CompTIA Security+
  • SecurityX
  • Cloud+
  • GSEC
  • CISSP
  • CISM
  • GCSA
  • GCIA
  • CISA
  • CCSP
Industry Keywords
  • Cybersecurity
  • Risk Management Framework (RMF)
  • Continuous Monitoring
  • Authorization to Operate (ATO)
  • Army/Navy Compliance
Tools & Technologies
  • EMASS
  • DISA STIGs
  • CIS Benchmarks
  • Containerized Environments
  • Cloud Architectures
#J-18808-Ljbffr