Facility Security Officer (FSO) & CMMC Manager
St. Michael's is hiring a Facility Security Officer (FSO) & CMMC Manager to serve as a key member of our corporate headquarters security team in Tampa, FL. In this full-time, in-office role, you will own the day-to-day administration of the company's National Industrial Security Program (NISP) and lead CMMC compliance efforts across the enterprise. You will report directly to Human Resources and collaborate with IT, contracts, and program leadership to maintain a robust security posture while enabling business growth in the DoD contracting space.
Tampa, FL (Hybrid Work Schedule with 3 days on site per week)
Who You Are
- Active Top-Secret Clearance (with ability to maintain SCI eligibility)
- FSO certification (FSO Program Management for Non-Possessing Facilities) or the ability to obtain the certification within 6 months of hire
- 3+ years serving as an FSO / AFSO in a cleared contractor environment
- 1+ years of direct experience implementing and managing CMMC Level 2+ frameworks, including NIST 800-171 controls, SPRS scoring, and third-party assessments (C3PAO readiness)
- Expert knowledge of NISPOM, DISS, eApp, NBIS, ACCS, PIEE, and SWFT
- Demonstrated ability to conduct security vulnerability assessments, develop POA&Ms, and lead corrective actions
- Experience training personnel on security awareness, insider threat, and CUI handling
- Bachelor's degree preferred; high school diploma or equivalent required
Primary Responsibilities
Administer the FCL and personnel security program via DISS, NBIS, and NISSProcess, track, and adjudicate initial, periodic, and crossover clearances (Secret to TS / SCI)Lead annual self-inspections, DCSA audits, and insider threat program complianceDevelop and deliver security awareness training, briefings, and debriefingsManage DD Form 254 preparation / review for prime and subcontract awardsExperience managing FCL for joint venturesInvestigate and report security incidents, adverse information, and foreign travelEnsure CMMC Level 2+ and DFARS 7012 compliance for controlled unclassified information (CUI)Serve as the Insider Threat Program Senior Official (ITPSO)Lead enterprise-wide CMMC compliance program : maintain System Security Plans (SSPs), conduct gap assessments, oversee control implementation, and prepare for C3PAO auditsAdminister DISS, NISS, and e-APP; process initial, crossover, and upgrade clearance actionsDevelop and deliver annual security training (CMMC, OPSEC, phishing, CUI, etc.)Compile and submit SPRS scores; track NIST 800-171 and CMMC control status in real timeAt St. Michael's, we believe in rewarding hard work and supporting the people who keep our country safe. As an employee-owned company, you can share in our success through the Employee Stock Ownership Plan (ESOP). We also offer a comprehensive benefits package that includes medical, dental, and vision insurance; a 401(k)-retirement plan; paid time off; and professional development support. Join a company with a conscience - one that invests in your well-being and professional growth.