Cybersecurity Requirements and Data Protection Lead
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
New ideas are all around us, but only a few will change the world. That’s our focus at JPL. We ask the biggest questions, then search the universe for answers-literally. We build upon ideas that have guided generations, then share our discoveries to inspire generations to come. Your mission-your opportunity-is to seek out the answers that bring us one step closer. If you’re driven to discover, create, and inspire something that lasts a lifetime and beyond, you’re ready for JPL.
Located in Pasadena, California, JPL has a campus-like environment situated on 177 acres in the foothills of the San Gabriel Mountains and offers a work environment unlike any other: we inspire passion, foster innovation, build collaboration, and reward excellence.
As a senior leader within JPL’s Governance, Risk, and Compliance (GR&C) team, you will develop and maintain the cybersecurity requirements framework for JPL’s missions and business operations. You will support the JPL Privacy Manager and Controlled Unclassified Information (CUI) Liaison, oversee the lifecycle of sensitive data and ensure alignment with NASA, federal, and international regulations.
Key Responsibilities:
Strategy & Policy: Develop and maintain JPL’s cybersecurity requirements framework and policies to support mission-critical functions.
Privacy & Data Protection: Provide oversight for sensitive data in support of JPL’s designated Privacy Manager and CUI Liaison; guide strategies for Data Loss Prevention (DLP), encryption, and “Privacy by Design.”
Risk Management: Conduct comprehensive risk assessments across information and operational technology (IT/OT) systems, supply chains, acquisitions, and external subcontracts.
Compliance & Frameworks: Ensure institutional alignment with standards such as NIST 800-53, GDPR/CCPA, and CMMC; manage data mapping, classification, and ethical data usage.
Cross-Functional Leadership: Translate complex regulatory requirements into technical architectures by collaborating with legal, information technology, and mission leads.
Incident & Audit Support: Lead investigations into data breaches/disclosures and provide subject matter expertise for internal and external audits.
Requirements
- Typically requires a bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or similar discipline with a minimum of 9 years of cybersecurity experience; master’s degree in similar discipline with a minimum of 7 years of cybersecurity experience; or PhD in similar disciplines with a minimum of 5 years cybersecurity experience.
- Mastery in two or more of the following areas: NIST RMF, privacy frameworks (GDPR/CCPA), or system development lifecycle (SDLC).
- Proficiency with Splunk and DLP tools.
- Significant experience in aerospace, ground data systems, or cloud-based mission environments.
- Familiarity with Nessus and GR&C platforms (e.g., RSA Archer).
- Must be a US Citizen.
Preferred Qualifications:
- Current CISSP, CIPP/US (Certified Information Privacy Professional), CISM, or CGEIT desired.
Benefits & conditions
JPL has a catalog of benefits and perks that span from the traditional to the unique. This includes a variety of health, dental, vision, wellbeing, and retirement plans, paid time off, learning, rideshare, childcare, flexible schedule, parental leave and many more. Our focus is on work-life balance, and living healthy, fulfilling lives as we Dare Mighty Things Together. For benefits eligible positions, benefits are effective the first day of the month coincident with or immediately following the employee’s start date.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
Best Paying Jobs in Technology
7 Cloud Computing Trends Coming in 2025 for Developers