> Markdown version of [/jobs/ext/2180462-information-assurance-deputy-director](https://www.wearedevelopers.com/jobs/ext/2180462-information-assurance-deputy-director). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Assurance Deputy Director - **Company:** York Inc - **Location:** Greenwood Village, CO, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Xacta, Active Directory, Audit Trail, Cyber Security, Linux, Network Topologies, Identity and Access Management, Information Security Management, IT Management, Information Technology Operations, Information Systems Security Architecture Professional, Windows Servers, Network Architecture, Network Segmentation, Public Key Infrastructure, Red Hat Enterprise Linux, Zero Trust Network Access, Security Content Automation Protocol, Security Software, Security Information and Event Management, VMware VSphere, Software Vulnerability Management, Data Logging, Juniper, Information Technology, Patch Management, Nessus, National Industrial Security Program Operating Manual (NISPOM), Splunk, Cisco - **Published:** August 22, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9112250/information-assurance-deputy-director ## About the Role * Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related technical discipline (Master's degree preferred). * Minimum of 8+ years of progressive experience in Information Assurance, Cybersecurity, and Mission IT operations, with at least 3-5+ years in a supervisory/management capacity. * Proven experience managing ATO pipelines under both DoD RMF (eMASS) and IC RMF (ICD 503 / XACTA). * Demonstrated experience leading network engineering and systems administration staff within secure environments. * Security Clearance: Active Top Secret / SCI clearance. * Exceptional oral/written communication skills, cross-functional project management, and government auditor interaction skills. * Mandatory Certifications (DoD 8140 / 8570 IAM Level III): + Must hold at least one active IAM Level III certification upon hire: + CISSP (Certified Information Systems Security Professional) + CISM (Certified Information Security Manager) + GSLC (GIAC Security Leadership Certification) + CCISO (Certified Chief Information Security Officer) * Technical & Core Competencies: + Compliance Frameworks: NIST SP 800-53, NIST SP 800-171, RMF, ICD 503, JSIG, DAAPM, NISPOM, CMMC 2.0. + Systems & Platforms: Windows Server / Linux RHEL administration, VMware vSphere, Cisco/Juniper networking, Active Directory/PKI, eMASS, XACTA. + Cybersecurity Tools: ACAS/Nessus, Splunk/SIEM platforms, HBSS/ESS, SCAP Compliant Compliance Checker. * Willingness to work full-time in our Greenwood Village, CO office; this position does not support remote or hybrid work. In compliance with local law, we are disclosing the compensation, or a range thereof, for roles in locations where legally required. Actual salaries will vary based on several factors, including but not limited to external market data, internal equity, location, skill set, experience, and/or performance. ## Description The Information Assurance Deputy Director serves as the senior cybersecurity authority overseeing the compliance, authorization, and operational resilience of secure enterprise networks, classified enclaves, and mission IT infrastructure. This leadership role unifies cybersecurity compliance and technical execution by managing DoD and IC Information System Security Managers (ISSMs) alongside the Mission IT Lead, Systems Administrators, and Network Architects. The Information Assurance Deputy Director will drive governance, risk, and compliance (GRC) strategies across multi-tenant classified programs while maintaining hands-on oversight over IT infrastructure design, continuous monitoring, and system administration. The ideal candidate bridges the gap between high-level federal compliance standards (DoD RMF, ICD 503, NISPOM, CMMC) and practical network architecture, ensuring mission platforms remain secure, operational, and fully compliant. This role will be fully on-site in our Greenwood Village, Colorado office. Responsibilities Governance, Risk & Compliance (GRC) Leadership * Oversee the end-to-end Risk Management Framework (RMF) lifecycle for all Department of Defense (DoD) and Intelligence Community (IC) classified and unclassified systems. * Lead the creation, submission, and maintenance of System Security Plans (SSPs), Security Control Traceability Matrices (SCTMs), Plan of Action & Milestones (POA&Ms), and Authorization to Operate (ATO) packages across eMASS and XACTA systems. * Serve as the primary cybersecurity interface to Authorizing Officials (AOs), Security Control Assessors (SCAs), DCSA, and customer security representatives. * Ensure organizational alignment with CMMC 2.0, NIST SP 800-53, NIST SP 800-171, NISPOM (32 CFR Part 117), ICD 503, and JSIG requirements. Technical & Mission IT Infrastructure Oversight * Provide operational direction to the Mission IT Lead to ensure network infrastructure and system administration efforts adhere strictly to cybersecurity architecture standards. * Review and approve system architectural designs, cross-domain solutions (CDS), hardware/software baseline updates, and network topology modifications for classified environments. * Enforce implementation of DISA Security Technical Implementation Guides (STIGs), Security Content Automation Protocol (SCAP) benchmarks, and automated continuous monitoring tools. * Drive Zero Trust Architecture (ZTA) initiatives, network segmentation, identity and access management (IAM), and centralized logging strategies across secure enclaves. Cybersecurity Operations & Incident Response * Lead the enterprise Cyber Incident Response Team (CIRT); direct containment, eradication, forensic investigations, and reporting of security incidents in compliance with federal guidelines. * Oversee vulnerability management programs, ensuring routine scanning (Tenable/Nessus, ACAS), patch management, and remediation timelines are strictly enforced. * Collaborate with the Insider Threat Program Senior Official to integrate audit logging, SIEM alerts, and user activity monitoring (UAM) mechanisms. Team Management & Operational Budgeting * Directly manage, mentor, and evaluate the performance of DoD/IC ISSMs and technical IT leadership. * Establish standardized operational procedures (SOPs), cybersecurity policies, and technical baselines across all program enclaves. * Manage hardware/software procurement requests, licensing, and cybersecurity budgeting requirements. This role will have direct reports. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)