Information Privacy and Security, Senior Advisor

Peraton

$146K — $234K *
US-AnywhereRemote in Virginia, US
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • 12+ years of experience with BS/BA, 10+ years with MS/MA, or 7+ years with Ph.D.
  • Expertise in security controls for DoD and Federal environments.
  • Familiarity with NIST and ISO frameworks for documentation and compliance.
  • Strong grasp of risk management principles related to information security.
  • Ability to guide operational units in cybersecurity compliance for Federal mandates.
  • Knowledge of risk-based decision-making is critical.
  • US Citizenship required.

Responsibilities

  • Maintain processes for cybersecurity compliance identification and mitigation.
  • Provide governance, risk, and compliance (GRC) support for diverse business portfolios.
  • Report key information security metrics to management and executives.
  • Build and foster relationships with senior leaders on cyber initiatives.
  • Ensure compliance with DFARS, NIST, ISO standards, and Federal regulations.
  • Assess enclave environments for compliance with security policies.

Benefits

  • Health, dental, and vision insurance.
  • 401(k) retirement plan with company matching.
  • Paid time off and holiday pay.
  • Continuing education and professional development opportunities.
  • Flexible work schedule options.
Full Job Description
Responsibilities

Peraton is seeking a Senior Information Privacy and Security, Senior Advisor in support of our IT Operations Cyber Risk and Compliance team. A top candidate will be well-versed in regulations and common contractual requirements affecting the Federal contracting community and Defense Industrial Base. This includes in-depth, current knowledge of the DIB Cyber Assessment Center requirements, Cybersecurity Maturity Model Certification, cyber executive orders, and relevant federal acquisition regulations. Candidates should be able to demonstrate significant prior industry engagement on such requirements with companies of similar size and scope.

Responsibilities:

  • Maintain cybersecurity compliance identification, mitigation, and acceptance processes in coordination with security and IT operations. Works with business and functional areas to perform compliance assessments and make appropriate treatment decisions.
  • Provide information security governance, risk, and compliance (GRC) support for Peraton’s broad portfolio of businesses in defense, cyber, civilian, and space/intel.
  • Maintenance and reporting of key information security metrics and reports for both operational management and corporate executives.
  • Demonstrate ability to proactively build relationships with senior leaders throughout the organization, ensuring support for strategic cyber initiatives, while assisting in cybersecurity compliance goals in a diverse environment.
  • Responsible for compliance with DFARS/NIST 800-171, ISO 27001, ISO 31000, NIST Cybersecurity Framework, ITAR, and other Federal regulations, including any new regulatory initiatives applicable to the business (e.g. GDPR), and support control audits.
  • Assess and monitor enclave (DevNet and OffNet) environments to verify compliance with applicable contractual security policies and standards.
Qualifications

Required Qualifications:

  • Minimum of 12 years with BS/BA; Minimum of 10 years with MS/MA; Minimum of 7 years with Ph.D., or equivalent experience.
  • Proven experience working and assessing security controls within DoD and Federal enterprise environments.
  • Experience creating and maintaining NIST SP 800-171, NIST SP 800-53, and ISO/IEC 27001 frameworks and documentation (SSP, POA&M, CP, CM Plan, and others)
  • Strong understanding of information security and the relationship between threat, vulnerability, and information value in the context of risk management.
  • Ability to work with and guide the company’s operational units in managing overall cybersecurity compliance, complying with Federal mandates, and meeting client security requirements.
  • Strong understanding of risk-based decision-making (i.e. risk analysis, mitigation, resolution, acceptance, etc.)
  • US Citizenship

Desired Qualifications: 

  • CISSP, CISA, CISM, CRISC or information security professional certification applicable to risk management.
Target Salary Range$146,000 - $234,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Similar Jobs

More Jobs at Peraton

More Information Technology Jobs

Find similar Information Privacy and Security, Senior Advisor jobs: