1

Information Security Manager Jobs in Decatur, AL

Coordinate Quarterly Security Manager meetings. Coordinate scheduling and perform INFOSEC Reviews ... Additional Qualification 12 years of relevant Information Security experience. Bachelor of Science ...

... Information (SCI) environments across multiple locations. The Business Area Security Manager will ... partner closely with business, program, operations, manufacturing, and government stakeholders to ...

... Information (SCI) environments across multiple locations. The Business Area Security Manager will ... partner closely with business, program, operations, manufacturing, and government stakeholders to ...

... Information (SCI) environments across multiple locations. The Business Area Security Manager will ... partner closely with business, program, operations, manufacturing, and government stakeholders to ...

IT Manager

Huntsville, AL · On-site

$94K - $115K/yr

The IT Manager will lead and execute IT initiatives with a focus on AI, RPA, and information security while supporting business operations through system development, integration, and IT planning. ...

IT Manager

Huntsville, AL · On-site

$94K - $115K/yr

The IT Manager will lead and execute IT initiatives with a strong focus on AI, RPA, and information security while supporting business operations through system development and integration.

Showing results 41-60

Information Security Manager information

See Decatur, AL salary details

$58.6K

$127.6K

$187.5K

How much do information security manager jobs pay per year?

As of Aug 18, 2026, the average yearly pay for information security manager in Decatur, AL is $127,591.00, according to ZipRecruiter salary data. Most workers in this role earn between $103,600.00 and $150,500.00 per year, depending on experience, location, and employer.

What is an information security manager?

The job duties of an information security manager involve overseeing the effort to protect networks, computers, and data from cyber attacks, viruses, and other security breaches. In this career, your responsibilities include creating IT security features that can protect your company’s data. In addition to building systems to protect against hacking, you must also be ready to lead the response when a security breach occurs. As an information security manager, you are responsible for creating and implementing practices and policies that employees can use to protect their employer's networks and data.

What does an information security manager do?

An Information Security Manager is responsible for overseeing an organization's information security program, ensuring that sensitive data is protected from threats such as cyberattacks and unauthorized access. They develop and implement security policies, conduct risk assessments, and manage teams to respond to security incidents. Information Security Managers also ensure compliance with relevant laws and regulations and regularly educate staff on best security practices. Their role is critical in maintaining the confidentiality, integrity, and availability of information assets.

What are some common challenges information security managers face when implementing new security protocols within an organization?

Information Security Managers often encounter resistance to change from staff when introducing new security protocols, as these measures can sometimes disrupt established workflows. Balancing security requirements with business needs is also a frequent challenge, requiring negotiation and effective communication across departments. Additionally, staying ahead of constantly evolving threats and ensuring that all team members are properly trained can be demanding, but overcoming these challenges is crucial for maintaining a robust security posture.

What is the difference between Information Security Manager vs Security Analyst?

AspectInformation Security ManagerSecurity Analyst
CertificationsCISSP, CISM, CISACompTIA Security+, GIAC Security Essentials
Work EnvironmentOversees security policies, manages teams, strategic planningMonitors security systems, analyzes threats, implements security measures
Employer & Industry UsageUsed in organizations with dedicated security teams across industriesCommon in IT departments, security operations centers

The main difference is that the Information Security Manager focuses on strategic security management and team leadership, while the Security Analyst handles day-to-day security monitoring and threat analysis. Both roles require relevant certifications and are vital in maintaining organizational security, but they differ in scope and responsibilities.

What are the most commonly searched types of Information Security jobs in Decatur, AL?

The most popular types of Information Security jobs in Decatur, AL are:

What cities near Decatur, AL are hiring for Information Security Manager jobs?

Cities near Decatur, AL with the most Information Security Manager job openings:

Senior Information Systems Security Engineer

ECS

Huntsville, AL • On-site

$170K - $190K/yr

Full-time

Re-posted 8 days ago


Job description

Everforth ECS Federal is seeking a Senior Information Systems Security Engineer to work in our Huntsville, AL office.
Please Note: This position is contingent upon contract award.
Salary Range: $170,000 - $190,000
The Senior ISSE SME will support cybersecurity, risk management, and security authorization activities for law enforcement and national security organizations. This role will provide technical security engineering, Risk Management Framework lifecycle support, and secure architecture expertise for complex federal information systems operating in sensitive and mission-critical environments.
The Senior Information Systems Security Engineer will work closely with system owners, security officers, security managers, technical teams, and cybersecurity stakeholders to strengthen system security posture, improve the quality of authorization artifacts, and support timely, defensible risk-based authorization decisions.
Responsibilities
  • Serve as a senior security engineering advisor for assigned federal information systems throughout the Security Assessment and Authorization lifecycle.
  • Provide technical security engineering support for Risk Management Framework activities, including Prepare, Categorize, Select, Implement, Assess, Authorize, and Monitor.
  • Advise system owners, security officers, security managers, and technical teams on secure architecture, control implementation, vulnerability remediation, least privilege, least functionality, system boundaries, data flows, and interconnections.
  • Support development, review, and maintenance of security authorization artifacts, including System Security Plans, control implementation descriptions, Plans of Action and Milestones, risk assessments, network diagrams, data flow diagrams, hardware/software inventories, and assessment evidence.
  • Help ensure assigned systems maintain compliant authorizations by proactively tracking authorization schedules, documentation status, control gaps, and remediation activities.
  • Develop and update security test plans and assessment approaches to detect, document, and mitigate risk to information systems.
  • Support vulnerability and patch management activities by tracking technical findings, coordinating remediation approaches, and helping ensure remediation actions are managed to closure.
  • Provide technical input for federal cybersecurity compliance, emergency directive, vulnerability reporting, audit readiness, and continuous monitoring activities.
  • Coordinate with cybersecurity, engineering, infrastructure, and mission stakeholders to resolve technical security issues and improve security authorization execution quality.
  • Mentor junior and mid-level cybersecurity personnel by providing technical guidance, reviewing work products, sharing RMF and security engineering best practices, and helping build team capability across assigned systems and portfolios.
  • Contribute to portfolio and program improvements by identifying recurring risks, documentation gaps, process inefficiencies, automation opportunities, and lessons learned, then recommending practical improvements to strengthen security authorization quality, timeliness, and consistency.
  • Track, report, and communicate security risks, remediation status, documentation quality issues, and improvement opportunities to program leadership and government stakeholders.
  • Maintain current knowledge of NIST RMF, NIST SP 800-53 Rev. 5, NIST SP 800-53A, FISMA, CNSS, DOJ, IC, and other applicable federal cybersecurity guidance.

  • Active Top Secret clearance with SCI eligibility.
  • Ability to meet federal law enforcement and national security suitability, access, and polygraph requirements.
  • U.S. citizenship required; no dual citizenship.
  • Eight or more years of experience in secure design, analysis, and testing of information security systems and products.
  • Eight or more years of experience applying security methods, standards, and approaches to ensure baseline security safeguards are implemented and documented.
  • Eight or more years of experience creating or updating security test plans to detect and mitigate risk to information systems.
  • Experience supporting RMF, Security Assessment and Authorization, ATO, POA&M, vulnerability management, audit readiness, and security control implementation activities.
  • Experience working with technical teams to translate security requirements into practical system, network, cloud, or infrastructure configurations.
  • Strong written and verbal communication skills, including the ability to brief risks, findings, recommendations, and remediation plans to technical and non-technical stakeholders.
  • CISSP or CEH certification required.