Code Metal, Inc.

Code Metal, Inc., established in 2023 and based in Boston, Massachusetts, specializes in AI-driven development workflows tailored for edge computing. Leveraging expertise from MIT

Facility Security Officer

Location

Worldwide

Posted

1 day ago

Salary

0

Seniority

Senior

Professional CertificationExcel

Job Description

Facility Security Officer

Code Metal, Inc.

Facility Security Officer (FSO) Location Remote Employment Type Full time Department Operations About Code Metal Code Metal is redefining code translation for mission-critical industries, helping defense partners move more quickly and reliably from algorithm to silicon. Our platform accelerates deployment of DSP, RF, communications, and embedded signal processing algorithms onto heterogeneous compute targets, including GPUs, FPGAs, ASICs, and edge SoCs. We also support automotive, aerospace, and semiconductor partners deploying complex algorithms onto constrained hardware with speed and rigor. Facility Security Officer (FSO) Remote (U.S.-Based) | Full-Time Code Metal is currently seeking an experienced leader to serve as our Facility Security Officer (FSO). The selected individual will lead and implement the DoD Industrial Security Program. The FSO will coordinate and monitor highly sensitive aspects of the DoD Industrial Security Program and security activities while ensuring compliance with Government and company security policies and procedures. The successful candidate will interface with Code Metal personnel to include program leadership and government personnel to ensure full compliance with National Industrial Security Operating Manual (NISPOM), Contract Security Classification Specifications (DD254), and applicable federal regulations, policies, and contractual security requirements. Primary Responsibilities: - Serve as the primary point of contact with the Defense Counterintelligence and Security Agency (DCSA) and other government security stakeholders for all matters related to the National Industrial Security Program (NISP). - Maintain the facility security clearance (FCL), including preparation and submission of required documentation. - Develop, implement, and oversee the facility’s security program, including written procedures, internal controls, and compliance initiatives. - Manage personnel security processes, including initiation, tracking, and maintenance of personnel security clearances (PCLs) and access authorizations. - Conduct security briefings, debriefings, and training for cleared employees, including compliance initial, annual refresher, and specialized security training requirements. - Safeguard classified information by implementing appropriate physical, technical, and administrative security controls in accordance with NISPOM and ICD requirements. - Oversee classified information management, including receipt, storage, reproduction, transmission, inventory, and destruction in accordance with NISPOM requirements. - Conduct self-inspections, internal audits, and vulnerability assessments to ensure program effectiveness and identify areas for improvement. - Prepare for and support government security reviews, inspections, and assessments, including corrective action planning and follow-up. - Manage and report security incidents, violations, and adverse information in accordance with regulatory requirements and company policy. - Oversee visitor control and classified visit authorization processes, including validation and documentation of access requirements. - Ensure proper implementation of information systems security measures for classified systems in coordination with IT and cybersecurity personnel, as applicable. - Advise senior leadership, program managers, and employees on security requirements, risks, and best practices. - Maintain accurate security records and documentation to support compliance and audit readiness. - Establish and promote a strong security culture through training, communication, and continuous improvement initiatives. - Stay current on changes to NISP regulations, government guidance, and emerging security threats, and adjust procedures accordingly. - Bring security risks to the attention of the senior management as identified. - Work as a team player, exhibit flexibility, and excellent organizational skills. - Analyze moderate problems and provide focused solutions with the ability to effectively communicate information to various audiences. - Must be available to promptly address and manage urgent notifications and facility-related incidents in accordance with established procedures. Basic Qualifications: - 8+ years of relevant experience. - Experience establishing DoD Industrial Security Program for small businesses. - Completed DCSA FSO Curriculum – with certificate of completion. - Strong working knowledge of 32 CFR Part 117 National Industrial Security Operating Manual (NISPOM). - Working knowledge of SF-86, SF-312, DD-254, 441, 441-1, SF-328, and other government required forms. - Must be a US citizen; must possess and be able to maintain a current DOD Top Secret clearance, with ability to obtain an SCI. - Thorough understanding of security databases such as DISS, SAM.gov, and NISS. - Experience with ICD 705 requirements. - Experience creating and conducting security briefings, debriefings, indoctrinations, pre/post foreign travel briefings and refresher briefings, as appropriate. - Strong communications skills, both oral and written. Preferred Qualifications: - COMSEC Certification. - OPSEC Level II Certification. - Working knowledge of Microsoft Software Suite (e.g., Word, Excel, PowerPoint, and Power Business Intelligence). - Working knowledge of the Google Software Suite (e.g. Docs, Sheets, Slides, Workspace) - Working knowledge of other relevant DoD security guidance, DoD Manual 5205.07, Intelligence Community Directive (ICD) standards. - Experience conducting security incident inquiries. - Industrial Security Professional (ISP) Certification. Benefits - Pay depends on experience, but we strive to be at the upper end of the salary range - Health care plan with 100% premium coverage, including medical, dental, and vision - 401k with 5% matching - Paid Time Off (uncapped vacation, plus sick and public holidays) - Flexible hybrid or remote work arrangement - Relocation assistance for qualifying employees We are an equal opportunity employer. US Citizenship may be required for certain project assignments involving security clearance. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

Related Categories

Related Job Pages

More Security Engineer Jobs

Cisco logo

Senior Splunk Technical Account Manager – Cybersecurity

Cisco

We securely connect everything to make anything possible.

Full TimeRemoteTeam 10,001+Since 1984H1B Sponsor

• Drive adoption and optimization of Splunk platform • Provide strategic technical guidance • Resolve complex customer challenges • Collaborate with cross-functional teams

United Kingdom

Role Description This opportunity as a Traveling Electronic Security Systems Technician is perfect for an experienced low-voltage technician who enjoys traveling! - Installs, repairs, tests, and maintains security projects - Serves as the face of Evergreen to our customers onsite by providing top-notch service and product training - Ensures safety through compliance with relevant State and Federal regulations - Handles service orders and project administration - Performs follow-up to ensure the client is ready for inspection Qualifications - Ability to travel extensively - Valid CPR/First Aid card - Valid electrician certificate or trainee card - High school diploma or equivalent - Electrical wiring experience - Basic computer skills (Microsoft Office) - Good communication skills to interface with customers - Ability to call and schedule appointments, follow instructions, and understand code requirements - Attention to detail - Ability to work autonomously - Ability to work well with others and come to work with a positive attitude - Valid driver’s license and proof of minimum liability insurance - Ability to pass pre-employment and continuing random background, drug, and MVR screenings Requirements - Relevant factory certifications and knowledge are always a plus. Great examples include: - Lenel - DAQ Access Control/IDS - Milestone CCTV - Pelco CCTV - Monitor Dynamics Access Control/IDS - AMAG - Various DDC and Building Utility Control Systems - Prior experience working on government contracts or military bases - Ability to obtain a U.S. government clearance Benefits - Awesome Travel Perks! - Additional weeks of paid leave for extended travel—up to 320 additional hours of time off! - Paid flights for weekends at home for regional travel - Weekly per diem for meals, incidentals, and lodging paid to you - Paid TSA Pre-Check - Work-related travel miles and hotel points are yours to keep - Employee Benefits - Competitive pay - Paid Time Off (PTO) - Paid holidays - Medical, dental, and vision insurance plans - 401(k) plan - Up to 4% match available - 100% vested from day one - Healthcare flexible spending accounts - Dependent care flexible spending accounts - Employee Assistance Program (EAP) - Company-sponsored group term life insurance - Corporate perks program - Opportunities to participate in voluntary benefits such as pet insurance, voluntary life insurance, disability insurance, long-term care, hospital indemnity insurance, critical illness insurance, legal services, identity theft protection, and accident insurance - Pay range is $30 - $45 per hour for well-qualified candidates. - Opportunities for training and advancement in a fast-paced, inclusive, and rewarding working environment.

United States
$30 - $45 / hour

Role Description Este profissional exerce um papel crítico na companhia, pois o Especialista será responsável por realizar estudos e auxiliar na implementação e manutenção da infraestrutura de segurança cibernética da empresa. Este profissional será responsável por garantir a integridade, confidencialidade e disponibilidade dos sistemas e dados da empresa, por meio da realização de estudos e proposição de novas soluções que serão implementadas pela área de projetos. Ela deve ter conhecimentos especializados em tecnologias de segurança, normas e regulamentações de conformidade, assim como habilidades para analisar e dar suporte especializado em incidentes de segurança. Qualifications - Formação: Bacharelado ou Tecnólogo nas áreas de Tecnologia de Informação. Requirements - Experiência comprovada em carteira ou carta/declaração de empregador anterior, em ao menos duas das seguintes áreas de conhecimento: Identidade e Acesso / AD / Intune / Antivirus / SOC / SCCM / Firewalls, IPS/IDS, IAM, PAM, SIEM, SOAR, EDR, WAF, CASB, DLP; Certifications - Certified Data Management Professional (CDMP) da DAMA International. - Certified Information Management Professional (CIMP) da eLearningCurve. - Pós-graduação ou MBA em Gestão da Informação, Gestão de Dados, ou Governança de TI. Benefits - Ambiente Inovador: Aqui você trabalha com um time diverso e colaborativo, que valoriza o seu conhecimento e incentiva seu crescimento. - Desenvolvimento Contínuo: Oferecemos treinamentos, certificações e programas de capacitação para você evoluir sempre. - Impacto Real: Atuamos em projetos estratégicos que transformam empresas e entregam resultados concretos. - Cultura que acolhe: Valorizamos a diversidade como parte da nossa cultura e acreditamos que a inovação nasce das diferenças.

Brazil

SAP Security Engineer (GRC – Technical)

Bright Vision Technologies

Bright Vision Technologies is a forward-thinking software development company dedicated to building innovative solutions that help businesses automate and optimize their operations. We leverage cutting-edge technologies to create scalable, secure, and user-friendly applications.

Role Description We are seeking an experienced SAP Security and GRC (Governance, Risk, and Compliance) Engineer to design, implement, and operate security and access-control frameworks for complex SAP landscapes, including S/4HANA, ECC, BW/4HANA, Fiori, BTP, and SuccessFactors. In this role you will be responsible for: - SAP role design - User provisioning - Segregation-of-duties analysis - Audit support - The technical operation of SAP GRC suites The ideal candidate will combine deep expertise in SAP authorization concepts with strong hands-on experience operating SAP GRC Access Control and Process Control, and will partner closely with audit, compliance, and business teams to deliver a secure, auditable SAP environment. Qualifications - Bachelor’s degree in Computer Science, Engineering, or a related technical discipline. - Five or more years of SAP Security / GRC experience in enterprise landscapes. - Strong hands-on experience with SAP authorization concepts and role design. - Deep experience operating SAP GRC Access Control (ARA, ARM, BRM, EAM). - Experience supporting SAP audits and remediation activities. - Hands-on experience securing Fiori, BTP, and cloud SAP applications. - Familiarity with SAP IDM or third-party IGA tooling. - Working knowledge of SAP Process Control. - Strong understanding of regulatory frameworks such as SOX, GxP, and PCI. - Excellent communication and documentation skills. Requirements - Design and maintain SAP authorization concepts and role structures aligned with business processes and least-privilege principles. - Build and maintain master, derived, composite, and business roles for S/4HANA, ECC, and Fiori applications. - Configure and operate SAP GRC Access Control (ARA, ARM, BRM, EAM), including ruleset management, mitigating controls, and emergency access management. - Perform segregation-of-duties analysis and remediation in collaboration with business process owners and internal audit. - Configure user provisioning workflows in SAP GRC ARM, including request types, approval paths, and integration with IDM/IAM platforms. - Operate SAP GRC Process Control for continuous controls monitoring and policy management. - Implement security for Fiori applications, including catalogs, groups, and front-end authorizations. - Configure and operate security for SAP BTP and cloud applications using XSUAA, IAS, and IPS. - Support SAP audits (SOX, GxP, PCI) and respond to audit findings with documented remediation plans. - Implement transport security, table logging, and audit logging in line with internal security policies. - Monitor and remediate SAP Security Notes in coordination with Basis and DBA teams. - Maintain comprehensive, current technical documentation — including architecture diagrams, design decisions, configuration references, runbooks, and operational procedures. - Mentor junior team members and support knowledge transfer across the security team. Benefits - Competitive base salary commensurate with experience, plus benefits.

United States
100K - 150K / year