Enterprise Cybersecurity Policy Writer

Dark Wolf Solutions
Hill Air Force Base, UT, United States
1 day ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$120,000.0 - $170,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Word Microsoft Excel Amazon Web Services Microsoft Azure Cloud Computing Security Cyber Security Information Systems Document Management Systems Information Systems Security Architecture Professional Microsoft Office Microsoft PowerPoint Management of Software Versions

Job description

Dark Wolf is seeking a highly skilled and experienced Senior Enterprise Cybersecurity Policy Writer to join our growing team. This pivotal role involves the development, revision, and continuous maintenance of comprehensive cybersecurity policies, standards, guidelines, and procedures for large-scale enterprise and government environments. The successful candidate will ensure that all documentation aligns with federal regulations, industry best practices, and organizational objectives, playing a critical role in strengthening our clients’ security posture and compliance. Responsibilities include but are not limited to:

  • Leading the full lifecycle development, drafting, and revision of enterprise-level cybersecurity policies, standards, procedures, and guidelines, ensuring clarity, conciseness, and enforceability.
  • Ensuring all developed documentation complies with federal cybersecurity mandates and frameworks, including but not limited to FISMA, NIST Special Publications (e.g., NIST SP 800-53, 800-171, CSF), DoD Instructions (e.g., DoDI 8500.01, DoDM 5200.01), CMMC, and other relevant government acquisition regulations (FAR/DFARS).
  • Collaborating extensively with technical subject matter experts (SMEs), legal teams, compliance officers, program managers, and senior leadership to gather requirements, validate technical accuracy, and achieve consensus on policy implementation.
  • Conducting thorough gap analyses between existing documentation, regulatory requirements, and operational practices, recommending and developing new policies or updates to mitigate identified risks.
  • Translating complex technical cybersecurity concepts and requirements into clear, understandable, and actionable policy language for diverse audiences, from technical staff to non-technical leadership.
  • Establishing and maintaining robust document control processes, versioning, and repositories to ensure accessibility, accuracy, and auditability of all security documentation.
  • Providing expertise and support during internal and external audits, assessments, and Authorization to Operate (ATO) processes by presenting and defending policy documentation.
  • Staying abreast of evolving cybersecurity threats, technologies, and regulatory changes, proactively recommending updates to policies and procedures to maintain an agile and effective security posture.

Requirements

  • Minimum of 8+ years of direct experience in developing, writing, and managing cybersecurity policies, standards, and procedures for large enterprise or government organizations.
  • Demonstrated expertise with federal cybersecurity frameworks and regulations (e.g., NIST RMF, FISMA, DoD 8500.01, DoDM 5200.01, CMMC).
  • Proven experience in stakeholder engagement and consensus-building for policy adoption. Skills: Exceptional written and verbal communication skills, with a keen eye for detail, grammar, and clarity.
  • Strong analytical and critical thinking abilities to interpret complex technical and regulatory information. Proficiency with Microsoft Office Suite (Word, Excel, PowerPoint) and document management systems.
  • Ability to work independently and collaboratively in a fast-paced, dynamic environment.
  • A Bachelors degree in a relevant field or 3+ years of relevant experience in lieu of degree.
  • US Citizenship and an active Top Secret security clearance with SCI eligibility., * Master’s degree in a relevant field.
  • Relevant professional certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CRISC (Certified in Risk and Information Systems Control), or CIPP/G (Certified Information Privacy Professional/Government). Experience with Governance, Risk, and Compliance (GRC) tools and platforms.
  • Familiarity with cloud security policies (e.g., FedRAMP, AWS/Azure Government security best practices).
  • Experience supporting Authorization to Operate (ATO) processes within government environments.

Benefits & conditions

This location is located on Hill AFB in Ogden, Utah. On-site presence is expected 5 days per week. We are hiring for multiple levels, with base salary estimates ranging from $120,000.00 - $170,000.00, commensurate on experience and technical skillset.

We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:24 min

Estimating project expenditures with Azure Pricing Calculator

Radu Vunvulea Radu Vunvulea · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:58 min

Mitigating diverse browser quirks and unsupported clipboard metadata formats

Markus Over Markus Over

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all