> Markdown version of [/jobs/ext/2530392-director-of-information-assurance](https://www.wearedevelopers.com/jobs/ext/2530392-director-of-information-assurance). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Director of Information Assurance - **Company:** Peraton Inc - **Location:** Reston, VA, United States - **Experience:** Expert - **Salary:** $176,000.0 - $282,000.0 - **Contract:** Permanent contract - **Skills:** Xacta, Audit Trail, Configuration Management, Cyber Security, Information Systems, Federal Information Processing Standards (FIPS), Identity and Access Management, Zero Trust Network Access, Information Technology, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 4, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9078481/director-of-information-assurance ## About the Role * Bachelor's degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related field; Master's preferred. Equivalent combination of education and experience may substitute. * 16+ years of total professional experience * 10+ years of information security experience, including leading IA and system security operations in classified environments (DoD collateral and/or SCI) with responsibility overseeing hiring, performance, and career development. Managing geographically dispersed team experience preferred. * Demonstrated track record overseeing teams that have obtained and maintained ATOs from DCSA, DoD, and/or IC Authorizing Officials. * Active TS clearance with the ability to obtain an SCI * DoDM 8140.03 IAM Level III certification - CISSP, CISM, GSLC, or equivalent. * Executive-level oral and written communication skills, including the ability to hold direct, accountable conversations across all organizational levels., * Prior ISSO, ISSM, ISSE, or SCA experience in an IC environment; experience overseeing ISSMs of Record with DCSA, DIA, NSA, NRO, or CIA sponsors. * Experience authoring and defending accreditation packages in eMASS, Xacta, or equivalent tooling. * Experience partnering with Finance, Contracts, and Program Management to structure security roles as direct-billed program costs. * Prior experience running a corporate-overhead function with measurable efficiency and demand-justification discipline. * Familiarity with cross-domain solutions (CDS) and cross-domain accreditation. * Familiarity with Zero Trust reference architectures (DoD ZT Strategy, CISA ZTMM) in classified environments. ## Description Peraton is seeking a seasoned security executive to serve as Director of Information Assurance, the senior IA leader accountable for Peraton's ISSM program across the company's classified computing environments. This role leads a distributed team of direct-report managers plus their ISSM/ISSO staff supporting programs across the Department of Defense and the Intelligence Community. The role sits within Peraton's Office of the CIO, inside the CISO organization, and reports to the Vice President, Chief Information Security Officer., Team leadership * Lead and develop a distributed team of ISSMs and ISSOs across manager-led sub-teams; own hiring, performance, career development, and workforce planning. * Appoint qualified ISSMs and ISSOs to individual systems and hold the cadre accountable for accreditation, continuous monitoring, and audit quality. * Reinforce a culture of empowered front-line management and clear performance standards. * Manage the function's labor and tooling spend. Strategic priorities * Continuously align the IA workforce to program demand by refining role definitions, balancing capacity across enclaves, and developing the team to support both current commitments and pipeline growth. * Partner with Finance, Contracts, Compliance, and Program Management to convert appropriate IA roles from indirect to direct-charge where the business case supports it. * Build the metrics and narrative that convey IA scope, demand signal, and resourcing risk to the business. * Sustain and improve accreditation velocity, including ATO cycle time, POA&M aging, and continuous monitoring rigor. Accreditation oversight * Provide enterprise oversight of the authorization lifecycle for classified networks and standalone systems for new ATOs, continuous ATO, reciprocity, and re-authorization. * Set enterprise standards for RMF artifacts (SSPs, control assessments, SCTMs, POA&Ms, contingency plans); engage AOs, SCAs, and sponsors on enterprise-level matters. * Direct the risk assessment methodology (CNSSI 1253 / FIPS 199) applied to hardware and software proposed for program use. Operations and compliance * Establish and maintain enterprise standards for media protection, endpoint hardening, configuration management, vulnerability scanning, and security awareness for classified users. * Direct the continuous monitoring program, including audit log review, control self-assessments, and independent audits. * Ensure classified media handling and sanitization align with NIST SP 800-88 and program requirements. * Maintain the IA training curriculum in coordination with the FSO and security education team. Partnership and external engagement * Interact with government security officials, Authorizing Officials, and program sponsors on security matters, reporting, and briefings. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [No Keys for the Robot: GitOps as the Control Plane for Autonomous Agents](https://www.wearedevelopers.com/videos/100095-no-keys-for-the-robot-gitops-as-the-control-plane-for-autonomous-agents) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)