> Markdown version of [/jobs/ext/1881403-information-privacy-and-security-senior-advisor](https://www.wearedevelopers.com/jobs/ext/1881403-information-privacy-and-security-senior-advisor). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Privacy and Security, Senior Advisor - **Company:** Peraton Inc - **Location:** Reston, VA, United States - **Experience:** Expert - **Salary:** $146,000.0 - $234,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Technology Operations, Plan of Action and Milestones - **Published:** August 1, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/17769488?backUrl=%2Fcareer%2F17769488%2FInformation-Privacy-Security-Senior-Advisor-Virginia-Reston ## About the Role * Minimum of 12 years with BS/BA; Minimum of 10 years with MS/MA; Minimum of 7 years with Ph.D., or equivalent experience. * Proven experience working and assessing security controls within DoD and Federal enterprise environments. * Experience creating and maintaining NIST SP 800-171, NIST SP 800-53, and ISO/IEC 27001 frameworks and documentation (SSP, POA&M, CP, CM Plan, and others) * Strong understanding of information security and the relationship between threat, vulnerability, and information value in the context of risk management. * Ability to work with and guide the company's operational units in managing overall cybersecurity compliance, complying with Federal mandates, and meeting client security requirements. * Strong understanding of risk-based decision-making (i.e. risk analysis, mitigation, resolution, acceptance, etc.) * US Citizenship ## Description Peraton is seeking a Senior Information Privacy and Security, Senior Advisor in support of our IT Operations Cyber Risk and Compliance team. A top candidate will be well-versed in regulations and common contractual requirements affecting the Federal contracting community and Defense Industrial Base. This includes in-depth, current knowledge of the DIB Cyber Assessment Center requirements, Cybersecurity Maturity Model Certification, cyber executive orders, and relevant federal acquisition regulations. Candidates should be able to demonstrate significant prior industry engagement on such requirements with companies of similar size and scope., Maintain cybersecurity compliance identification, mitigation, and acceptance processes in coordination with security and IT operations. Works with business and functional areas to perform compliance assessments and make appropriate treatment decisions. * Provide information security governance, risk, and compliance (GRC) support for Peraton's broad portfolio of businesses in defense, cyber, civilian, and space/intel. * Maintenance and reporting of key information security metrics and reports for both operational management and corporate executives. * Demonstrate ability to proactively build relationships with senior leaders throughout the organization, ensuring support for strategic cyber initiatives, while assisting in cybersecurity compliance goals in a diverse environment. * Responsible for compliance with DFARS/NIST 800-171, ISO 27001, ISO 31000, NIST Cybersecurity Framework, ITAR, and other Federal regulations, including any new regulatory initiatives applicable to the business (e.g. GDPR), and support control audits. * Assess and monitor enclave (DevNet and OffNet) environments to verify compliance with applicable contractual security policies and standards. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Beyond the Numbers: Engineering Recruiting Excellence Through Quality, Data, and Team Empowerment](https://www.wearedevelopers.com/videos/1491-beyond-the-numbers-engineering-recruiting-excellence-through-quality-data-and-team-empowerment) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)