
About Niron
Niron Magnetics is commercializing the first new magnetic material in decades powered by its breakthrough material formulation and advanced manufacturing process. The company’s proprietary magnet technology based on Iron Nitride enables magnets that are inherently high magnetization, free of rare earths and other critical materials, and solve supply chain reliability challenges, will drive innovation in various industries. Headquartered in Minneapolis, MN, Niron Magnetics is comprised of a team of professionals with a desire to make a positive impact on the global community. We were named one of “America's Top GreenTech Companies” for 2024 and 2025 by TIME Magazine and the “Innovation of the Year” at the 2025 mHUB Fourth Revolution Awards.
Our team is made up of people who think big, dare to innovate, and strive to impact the planet through technological innovation for our customers. Ready to work alongside amazing people, solve complex problems, and leave a legacy? Join our team.
What you’ll do
Niron Magnetics is seeking a Sr. Manager, I.T. Infrastructure and Security Operations to lead the teams and platforms that keep the company running and keep it secure. Reporting to the Sr. Director of Information Technology, you will own end-user support, systems and network administration, and the day-to-day execution of security operations across both our information technology (I.T.) and operational technology (O.T.) environments.
This is a hands-on, player-coach role. You will manage a small team of end-user support analysts, serve as the senior administrator for our core Microsoft and network platforms, and own the security stack. The Manager, Security Governance, Risk and Compliance also reports to you and sets the standards, control requirements, and service levels your team executes against. It is a strong fit for an experienced technologist who wants to stay close to the technology while building a high-performing operations function in a fast-growing, compliance-driven manufacturing environment.
Lead the Team and Daily Service
• Manage, coach, and develop the team, setting clear priorities and standards for responsiveness and quality.
• Own the end-user support experience end to end, from onboarding and offboarding through daily troubleshooting, and hold the team to a customer-first standard that treats every employee as a valued internal customer.
• Establish service levels, ticket workflows, and escalation paths using I.T. service management practices, and serve as the senior escalation point for complex or high-impact issues.
• Track support and security operations metrics, and use them to drive measurable improvement in service quality and team performance.
Administer Core Systems and Network Infrastructure
• Serve as the senior administrator for the Microsoft 365 and Azure environment across our commercial and government cloud tenants, including identity, email, collaboration, endpoint, and cloud services.
• Administer the company’s SD-WAN firewalls and network infrastructure, and monitor system and network health so connectivity stays secure and reliable across all sites.
• Own secure configuration and hardening across Azure, Microsoft 365, enterprise I.T., and O.T. environments, and keep systems patched and current.
• Coordinate with vendor partners on the configuration and administration of a secure and efficient GCC Azure tenant, aligned to the boundary and control requirements set by I.T. Security Governance, Risk and Compliance.
• Maintain accurate documentation of systems, configurations, and standard operating procedures, and support technology projects and rollouts across internal teams, O.T. engineering, and partners.
Run Day-to-Day Security Operations
• Own daily alert triage, investigation, containment, and remediation across SIEM, EDR, email security, and cloud security consoles, directing our managed SOC and MDR partners.
• Personally administer, tune, and optimize the security stack, including EDR and MDR tooling, SIEM, SASE and firewall-as-a-service, and data loss prevention.
• Own detection engineering and threat hunting, onboarding log sources and tuning detection content so coverage meets the requirements set by I.T. Security Governance, Risk and Compliance and keeps pace with the threats facing advanced manufacturing.
• Execute vulnerability remediation and patching to the risk ratings and service levels defined by Security Governance, Risk and Compliance, and drive penetration test and assessment findings to verified closure.
• Own incident response runbooks, evidence preservation, and forensic readiness, and execute containment, eradication, and recovery under the incident response plan.
• Implement the technical controls behind the insider threat and intellectual property protection program: monitoring, user activity visibility, and data loss prevention for proprietary process and manufacturing data, CUI, and classified material.
• Act as the mitigation arm of that program, supplying technical evidence for inquiries and executing containment, access revocation, and remediation at the direction of the Insider Threat Program Senior Official.
• Administer electronic access control and video surveillance systems in partnership with Facilities and our physical security vendor, including badge issuance and revocation systems, camera health, and retention.
Own O.T. Security Operations
• Own configuration and maintenance of O.T. and I.T. network segmentation and the industrial DMZ, aligned with the Purdue and ISA-95 models and with IEC 62443 and NIST SP 800-82.
• Broker, monitor, and control vendor and engineering remote access to O.T. assets, including multifactor authentication, jump hosts, approval workflow, and session recording.
• Coordinate patching and lifecycle management for HMI, historian, SCADA, and other industrial assets within plant change control windows, and own immutable and offline configuration backups proven by regular tested restores.
• Work with the Integrations Engineer and the Maintenance team to maintain a live O.T. asset inventory, protect PLC and HMI engineering workstations, and build security in new manufacturing lines and sites before commissioning.
Own Identity, Access, and Endpoint Controls
• Run the provisioning and deprovisioning process end to end so access is assigned accurately on day one and removed promptly on departure.
• Implement and enforce identity and access management, least privilege, and zero-trust principles, including multifactor authentication, conditional access, privileged access management, and movement toward phishing-resistant authentication for high-risk users, to the access model defined by I.T. Security Governance, Risk and Compliance.
• Enforce endpoint configuration baselines and device compliance policies across all managed devices.
Own Vendor and Managed-Service Partnerships
• Own the relationship with our I.T. and security managed-service providers, holding them accountable to service levels, response times, and quality standards through regular service reviews and escalation.
• Manage renewals, licensing, and service contracts, and lead vendor selection, evaluation and onboarding of new security technologies, and build versus buy decisions.
• Track partner performance and spend, and identify opportunities to improve value and service.
Own Resilience and Continuous Improvement
• Own backup job management, restore testing, and disaster recovery execution against the recovery objectives set with the business and validated by I.T. Security Governance, Risk and Compliance.
• Participate in tabletop exercises and post-incident reviews, and own the operational corrective actions that come out of them.
• Identify and lead improvements to tools, processes, and automation that increase reliability and reduce manual effort.
Support the Compliance Program
• Implement and operate the technical controls required to support NIST SP 800-171, CMMC, ISO 27001, CIS Controls, and other applicable security requirements.
• Produce technical implementation evidence for internal control testing, quarterly access reviews, and external audits, and partner with I.T. Security Governance, Risk and Compliance on remediation arising from assessments and findings.
• Work closely with the Facility Security Officer on the technical controls behind the facility clearance, including safeguarding of classified and controlled systems, electronic access control and visitor records, and evidence for self-inspections and DCSA security reviews.
How This Role Works with Security Governance, Risk and Compliance
Niron deliberately separates the execution of security from the assurance of security. This role executes. The Manager, Security Governance, Risk and Compliance defines what good looks like and independently verifies it.
• You operate the controls; they set the bar. Patching, identity administration, security tooling, monitoring, containment, and recovery are yours. Policies, control standards, configuration baselines, risk ratings, and remediation service levels are authored by I.T. Security Governance, Risk and Compliance, and closure is verified there.
• You do not self-certify. Your team produces control evidence on request. Audit findings, risk acceptance requests, and control exceptions are dispositioned by the Sr. Director of I.T. and the Security Committee rather than resolved inside the operations team.
• Insider threat splits oversight from mitigation. The Manager, I.T. Security Governance, Risk and Compliance owns the program as Insider Threat Program Senior Official and decides what is investigated; this role implements the controls and performs the mitigation.
• Independence is preserved by design. That role holds a direct line to the Sr. Director of I.T. and the Security Committee for risk decisions, audit findings, and security reporting, and they participate in its performance review.
What We’re Looking For
• 10+ years in I.T. operations, infrastructure, or systems administration, including 3+ years leading a team and running an end-user support function.
• Hands-on ownership of a production security stack, including SIEM, EDR or MDR, multifactor authentication, privileged access management, and data loss prevention, with direct experience in alert triage, vulnerability remediation, and incident response.
• Strong hands-on experience with Microsoft 365 and Azure administration (identity, email, collaboration, endpoint, and cloud services).
• Strong networking fundamentals with experience administering firewalls, SD-WAN, and network infrastructure.
• Demonstrated experience managing managed-service providers, including an MSSP or MDR partner, and holding vendors accountable to service levels.
• Working knowledge of IT service management practices, including ticketing, incident, change, and problem management.
• Experience operating inside a formal control framework, and comfort being measured against standards you did not write while working constructively with an independent assurance function.
• Excellent communication skills, the ability to translate technical topics for non-technical stakeholders, and a player-coach mindset: comfortable both leading a team and doing the work.
Nice to Have
• Experience in a multi-site manufacturing, industrial, or other regulated, compliance-driven environment.
• Familiarity with operational technology and industrial control systems, including Purdue model segmentation, industrial DMZ design, IEC 62443 and NIST SP 800-82, and protection of PLC and HMI engineering workstations.
• Experience supporting a Microsoft 365 Government Community Cloud (GCC or GCC High) tenant alongside a commercial tenant.
• Experience with detection engineering, threat hunting, or insider threat and intellectual property protection programs.
• Familiarity with NIST SP 800-171, CMMC, or ISO 27001 from an operator’s perspective, or experience supporting a cleared facility under 32 CFR Part 117.
• Certifications such as Microsoft Azure or Microsoft 365 administration, ITIL, or CompTIA Security+.
Our pay and benefits
Recruiters and Employment Agencies: Please note that Niron Magnetics does not accept unsolicited resumes from external agencies. Any unsolicited resumes submitted to our career site, hiring managers, or employees will be considered the property of Niron Magnetics. Consequently, we reserve the right to hire these candidates at our discretion without any financial obligation to the submitting agency.
The following notices apply only to positions involving access to export-controlled technology, technical data, or CUI as determined by the nature of the role and applicable program requirements
Export Control / ITAR Notice
This position may require access to information, technology, or technical data controlled under U.S. export control laws, including the International Traffic in Arms Regulations (ITAR, 22 C.F.R. Parts 120–130) and the Export Administration Regulations (EAR, 15 C.F.R. Parts 730–774), as well as Controlled Unclassified Information (CUI) as defined under 32 C.F.R. Part 2002. Where such access is required, the Company will evaluate all available license exceptions and exemptions before determining that a formal export authorization is necessary. If an export authorization is required, the Company will determine, based on legitimate business and regulatory considerations alone, whether to pursue one. The Company is not obligated to seek an export authorization in every circumstance, and any decision regarding authorization will never be based on a candidate's citizenship status, immigration status, or national origin. Each candidate's eligibility will be evaluated individually through a consistent, documented review process. The Company complies fully with all applicable federal anti-discrimination laws, including Title VII of the Civil Rights Act of 1964 (42 U.S.C. § 2000e et seq.), the anti-discrimination provisions of the Immigration and Nationality Act (8 U.S.C. § 1324b), and Executive Order 11246 as implemented by 41 C.F.R. Part 60. The Company does not discriminate on the basis of national origin, citizenship status, or immigration status in any aspect of employment.
Controlled Unclassified Information (CUI)
This role may involve access to Controlled Unclassified Information (CUI). Candidates selected for roles involving CUI will be required to comply with all applicable safeguarding and handling requirements, including those under NIST SP 800-171 and any governing contractual obligations.
Information Technology
Minneapolis, MN
Compartir en: