Information Privacy and Security, Senior Advisor

Peraton Inc
Reston, VA, United States
11 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$146,000.0 - $234,000.0
Working hours
Regular working hours

Tech stack

Cyber Security Information Technology Operations Plan of Action and Milestones

Job description

Peraton is seeking a Senior Information Privacy and Security, Senior Advisor in support of our IT Operations Cyber Risk and Compliance team. A top candidate will be well-versed in regulations and common contractual requirements affecting the Federal contracting community and Defense Industrial Base. This includes in-depth, current knowledge of the DIB Cyber Assessment Center requirements, Cybersecurity Maturity Model Certification, cyber executive orders, and relevant federal acquisition regulations. Candidates should be able to demonstrate significant prior industry engagement on such requirements with companies of similar size and scope., Maintain cybersecurity compliance identification, mitigation, and acceptance processes in coordination with security and IT operations. Works with business and functional areas to perform compliance assessments and make appropriate treatment decisions.

  • Provide information security governance, risk, and compliance (GRC) support for Peraton’s broad portfolio of businesses in defense, cyber, civilian, and space/intel.
  • Maintenance and reporting of key information security metrics and reports for both operational management and corporate executives.
  • Demonstrate ability to proactively build relationships with senior leaders throughout the organization, ensuring support for strategic cyber initiatives, while assisting in cybersecurity compliance goals in a diverse environment.
  • Responsible for compliance with DFARS/NIST 800-171, ISO 27001, ISO 31000, NIST Cybersecurity Framework, ITAR, and other Federal regulations, including any new regulatory initiatives applicable to the business (e.g. GDPR), and support control audits.
  • Assess and monitor enclave (DevNet and OffNet) environments to verify compliance with applicable contractual security policies and standards.

Requirements

  • Minimum of 12 years with BS/BA; Minimum of 10 years with MS/MA; Minimum of 7 years with Ph.D., or equivalent experience.
  • Proven experience working and assessing security controls within DoD and Federal enterprise environments.
  • Experience creating and maintaining NIST SP 800-171, NIST SP 800-53, and ISO/IEC 27001 frameworks and documentation (SSP, POA&M, CP, CM Plan, and others)
  • Strong understanding of information security and the relationship between threat, vulnerability, and information value in the context of risk management.
  • Ability to work with and guide the company’s operational units in managing overall cybersecurity compliance, complying with Federal mandates, and meeting client security requirements.
  • Strong understanding of risk-based decision-making (i.e. risk analysis, mitigation, resolution, acceptance, etc.)
  • US Citizenship

About the company

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure. Target Salary Range

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · WWC 2021

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · WWC 2023

Videos

See all

Related articles

See all