Information Privacy and Security, Senior Advisor

Peraton

$146K — $234K *
Hume, VA 22639In-Person
Aerospace & Defense
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • 12+ years of experience with a BS/BA; 10+ years with MS/MA; 7+ years with a Ph.D. or equivalent experience.
  • Experience in assessing security controls in DoD and Federal environments.
  • Expertise in creating and maintaining NIST SP 800-171, NIST SP 800-53, and ISO/IEC 27001 documentation.
  • Strong grasp of information security, including risk management concepts.
  • Proficient in guiding operational units in meet cybersecurity compliance and Federal mandates.
  • Solid understanding of risk-based decision-making principles.
  • US Citizenship required.

Responsibilities

  • Maintain cybersecurity compliance processes in coordination with security and IT operations.
  • Provide GRC support for a diverse portfolio across defense, cyber, civilian, and space/intel sectors.
  • Report on key information security metrics for management and executive review.
  • Build relationships with senior leaders to support cybersecurity initiatives and compliance goals.
  • Ensure compliance with DFARS/NIST 800-171, ISO 27001, NIST Cybersecurity Framework, and relevant Federal regulations.
  • Assess enclave environments against security policies and contractual standards.

Benefits

  • Comprehensive health insurance options.
  • 401(k) retirement plan with company match.
  • Opportunities for professional development and certification reimbursement.
  • Flexible work arrangements including telecommuting options.
  • Generous paid time off policy.
Full Job Description
Responsibilities

Peraton is seeking a Senior Information Privacy and Security, Senior Advisor in support of our IT Operations Cyber Risk and Compliance team. A top candidate will be well-versed in regulations and common contractual requirements affecting the Federal contracting community and Defense Industrial Base. This includes in-depth, current knowledge of the DIB Cyber Assessment Center requirements, Cybersecurity Maturity Model Certification, cyber executive orders, and relevant federal acquisition regulations. Candidates should be able to demonstrate significant prior industry engagement on such requirements with companies of similar size and scope.

Responsibilities:
  • Maintain cybersecurity compliance identification, mitigation, and acceptance processes in coordination with security and IT operations. Works with business and functional areas to perform compliance assessments and make appropriate treatment decisions.
  • Provide information security governance, risk, and compliance (GRC) support for Peraton's broad portfolio of businesses in defense, cyber, civilian, and space/intel.
  • Maintenance and reporting of key information security metrics and reports for both operational management and corporate executives.
  • Demonstrate ability to proactively build relationships with senior leaders throughout the organization, ensuring support for strategic cyber initiatives, while assisting in cybersecurity compliance goals in a diverse environment.
  • Responsible for compliance with DFARS/NIST 800-171, ISO 27001, ISO 31000, NIST Cybersecurity Framework, ITAR, and other Federal regulations, including any new regulatory initiatives applicable to the business (e.g. GDPR), and support control audits.
  • Assess and monitor enclave (DevNet and OffNet) environments to verify compliance with applicable contractual security policies and standards.


Qualifications

Required Qualifications:
  • Minimum of 12 years with BS/BA; Minimum of 10 years with MS/MA; Minimum of 7 years with Ph.D., or equivalent experience.
  • Proven experience working and assessing security controls within DoD and Federal enterprise environments.
  • Experience creating and maintaining NIST SP 800-171, NIST SP 800-53, and ISO/IEC 27001 frameworks and documentation (SSP, POA&M, CP, CM Plan, and others)
  • Strong understanding of information security and the relationship between threat, vulnerability, and information value in the context of risk management.
  • Ability to work with and guide the company's operational units in managing overall cybersecurity compliance, complying with Federal mandates, and meeting client security requirements.
  • Strong understanding of risk-based decision-making (i.e. risk analysis, mitigation, resolution, acceptance, etc.)
  • US Citizenship

Desired Qualifications:
  • CISSP, CISA, CISM, CRISC or information security professional certification applicable to risk management.


Target Salary Range

$146,000 - $234,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Similar Jobs

More Jobs at Peraton

More Aerospace & Defense Jobs

Find similar Information Privacy and Security, Senior Advisor jobs: