1

Information Security Manager Jobs in Decatur, AL

Gathers information, records, and reports threats to information security, compromises, and other security violations through the Security Manager. * Conducts inspections to ensure compliance.

Amentum is seeking a Security Manager to join our team to support the U.S. Army Space and Missile ... and sensitive information. * Lead security measures and systems to protect ROSIE resources ...

Amentum is seeking a Security Manager to join our team to support the U.S. Army Space and Missile ... and sensitive information. * Lead security measures and systems to protect ROSIE resources ...

Security Manager DEFTEC delivers mission-critical solutions through skillfully delivered services ... You can apply for this role by submitting your information in the application portal on the left ...

next page

Showing results 1-20

People also search for

Information Security Manager information

See Decatur, AL salary details

$58.6K

$127.6K

$187.5K

How much do information security manager jobs pay per year?

As of May 31, 2026, the average yearly pay for information security manager in Decatur, AL is $127,591.00, according to ZipRecruiter salary data. Most workers in this role earn between $103,600.00 and $150,500.00 per year, depending on experience, location, and employer.

What Is an Information Security Manager?

The job duties of an information security manager involve overseeing the effort to protect networks, computers, and data from cyber attacks, viruses, and other security breaches. In this career, your responsibilities include creating IT security features that can protect your company’s data. In addition to building systems to protect against hacking, you must also be ready to lead the response when a security breach occurs. As an information security manager, you are responsible for creating and implementing practices and policies that employees can use to protect their employer's networks and data.

What are the key skills and qualifications needed to thrive as an Information Security Manager, and why are they important?

To thrive as an Information Security Manager, you need a strong understanding of cybersecurity principles, risk management, and regulatory compliance, typically backed by a relevant degree and professional certifications like CISSP or CISM. Familiarity with security information and event management (SIEM) systems, vulnerability assessment tools, and incident response frameworks is essential. Leadership, strategic thinking, and excellent communication skills help you effectively manage teams and convey complex security concepts to stakeholders. These skills and qualities are crucial for protecting organizational assets, ensuring regulatory compliance, and maintaining business continuity.

What are some common challenges Information Security Managers face when implementing new security protocols within an organization?

Information Security Managers often encounter resistance to change from staff when introducing new security protocols, as these measures can sometimes disrupt established workflows. Balancing security requirements with business needs is also a frequent challenge, requiring negotiation and effective communication across departments. Additionally, staying ahead of constantly evolving threats and ensuring that all team members are properly trained can be demanding, but overcoming these challenges is crucial for maintaining a robust security posture.

What does an Information Security Manager do?

An Information Security Manager is responsible for overseeing an organization's information security program, ensuring that sensitive data is protected from threats such as cyberattacks and unauthorized access. They develop and implement security policies, conduct risk assessments, and manage teams to respond to security incidents. Information Security Managers also ensure compliance with relevant laws and regulations and regularly educate staff on best security practices. Their role is critical in maintaining the confidentiality, integrity, and availability of information assets.

What is the difference between Information Security Manager vs Security Analyst?

AspectInformation Security ManagerSecurity Analyst
CertificationsCISSP, CISM, CISACompTIA Security+, GIAC Security Essentials
Work EnvironmentOversees security policies, manages teams, strategic planningMonitors security systems, analyzes threats, implements security measures
Employer & Industry UsageUsed in organizations with dedicated security teams across industriesCommon in IT departments, security operations centers

The main difference is that the Information Security Manager focuses on strategic security management and team leadership, while the Security Analyst handles day-to-day security monitoring and threat analysis. Both roles require relevant certifications and are vital in maintaining organizational security, but they differ in scope and responsibilities.

What cities near Decatur, AL are hiring for Information Security Manager jobs? Cities near Decatur, AL with the most Information Security Manager job openings:
Information Systems Security Manager

Information Systems Security Manager

Relogic Research

Huntsville, AL • On-site

Full-time

Posted 3 days ago


Job description

INFORMATION SYSTEMS SECURITY MANAGER (ISSM)
ReLogic Research, Inc. is seeking a self-starting and highly-motivated individual to join our team! ReLogic's central focus is to continually promote a culture that stimulates personal, professional, and intellectual growth, while developing elegant solutions to tough problems. We encourage teammates to be self-governing based on high standards of professionalism and judgement. This is a 100% onsite role because of the need for consistent, in-person collaboration and due to the security nature of this particular role.
Primary Responsibilities
  • Responsible for supporting adherence to all aspects of a rigorous Risk Management Framework (RMF) compliance program as stipulated by NISPOM/DAAPM, JSIG, ICD 503, STIGs and associated NIST publications.
  • To obtain and maintain Authority to Operate (ATO) approvals for various systems by adhering to the Risk Management Framework (RMF).
  • Assume responsibilities for leading the development, management and improvement of the IT risk practice.
  • Partner with managers and team members to ensure risk and compliance issues are identified, assessed, mitigated, monitored and reported.
  • Monitor and enforce adherence to all applicable regulatory requirements and internal corporate policies.
  • Lead internal issue/event investigations, coordinating risk mitigation efforts and providing compliance recommendations.
  • Audit and measure processes against industry standard frameworks and monitor for quality and compliance.
  • Oversee the effective completion of self-certification and audit activities.
  • Utilize and maintain a depth understanding of applications and tools required for risk execution and reporting needs.
  • Provide effective mentoring and guidance to other IT personnel and may assist in developing policy, standards and procedures.
  • Provide oversight for all classified systems compliance, and ensure the execution of our strong self-inspection program.
  • Assist in daily requirements of industrial security.

Requirements & Desired Skills
  • In receipt of bachelor's degree and a minimum of 3 years of ISSM or relevant cyber security experience
  • Able to interface with other Information Assurance team members, other security disciplines (industrial security, physical security, special programs security, etc.), program personnel and government security representatives.
  • Strong analytical, oral communication, and written skills
  • Active Secret security clearance or ability to receive and maintain clearance
  • Familiarity with Facility Security requirements for DoD
  • Experience with the development of core documentation including System Security Plans, Standard Operating Procedures, Plan of Actions and Milestones, Remediation Plans, and Configuration Management Plans.
  • Experience with the review and creation of mitigation reports from compliance and vulnerability scanning tools (Nessus, SPLUNK, SCAP, ACAS, SCC).
  • Experience with the development of core documentation including System Security Plans, Standard Operating Procedures, Plan of Actions and Milestones, Remediation Plans, and Configuration Management Plans.
  • Experience with the administration and oversight of Windows and Linux systems.

ReLogic's policy is to ensure equal employment opportunity without discrimination or harassment based on race, color, religion, gender (including pregnancy or childbirth), sex, sexual orientation, gender identity, gender expression, national origin, age, citizenship, disability, military obligation, or any other characteristic protected by law. In cases of disability, ReLogic follows the Americans with Disability Act (ADA). ReLogic prohibits and does not tolerate discrimination or harassment.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.