> Markdown version of [/jobs/ext/2714842-enterprise-cybersecurity-policy-writer](https://www.wearedevelopers.com/jobs/ext/2714842-enterprise-cybersecurity-policy-writer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Enterprise Cybersecurity Policy Writer - **Company:** Dark Wolf Solutions - **Location:** Hill Air Force Base, UT, United States - **Experience:** Expert - **Salary:** $120,000.0 - $170,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Word, Microsoft Excel, Amazon Web Services, Microsoft Azure, Cloud Computing Security, Cyber Security, Information Systems, Document Management Systems, Information Systems Security Architecture Professional, Microsoft Office, Microsoft PowerPoint, Management of Software Versions - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/senior-enterprise-cybersecurity-policy-writer-dark-wolf-solutions-8408841 ## About the Role * Minimum of 8+ years of direct experience in developing, writing, and managing cybersecurity policies, standards, and procedures for large enterprise or government organizations. * Demonstrated expertise with federal cybersecurity frameworks and regulations (e.g., NIST RMF, FISMA, DoD 8500.01, DoDM 5200.01, CMMC). * Proven experience in stakeholder engagement and consensus-building for policy adoption. Skills: Exceptional written and verbal communication skills, with a keen eye for detail, grammar, and clarity. * Strong analytical and critical thinking abilities to interpret complex technical and regulatory information. Proficiency with Microsoft Office Suite (Word, Excel, PowerPoint) and document management systems. * Ability to work independently and collaboratively in a fast-paced, dynamic environment. * A Bachelors degree in a relevant field or 3+ years of relevant experience in lieu of degree. * US Citizenship and an active Top Secret security clearance with SCI eligibility., * Master's degree in a relevant field. * Relevant professional certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CRISC (Certified in Risk and Information Systems Control), or CIPP/G (Certified Information Privacy Professional/Government). Experience with Governance, Risk, and Compliance (GRC) tools and platforms. * Familiarity with cloud security policies (e.g., FedRAMP, AWS/Azure Government security best practices). * Experience supporting Authorization to Operate (ATO) processes within government environments. ## Description Dark Wolf is seeking a highly skilled and experienced Senior Enterprise Cybersecurity Policy Writer to join our growing team. This pivotal role involves the development, revision, and continuous maintenance of comprehensive cybersecurity policies, standards, guidelines, and procedures for large-scale enterprise and government environments. The successful candidate will ensure that all documentation aligns with federal regulations, industry best practices, and organizational objectives, playing a critical role in strengthening our clients' security posture and compliance. Responsibilities include but are not limited to: * Leading the full lifecycle development, drafting, and revision of enterprise-level cybersecurity policies, standards, procedures, and guidelines, ensuring clarity, conciseness, and enforceability. * Ensuring all developed documentation complies with federal cybersecurity mandates and frameworks, including but not limited to FISMA, NIST Special Publications (e.g., NIST SP 800-53, 800-171, CSF), DoD Instructions (e.g., DoDI 8500.01, DoDM 5200.01), CMMC, and other relevant government acquisition regulations (FAR/DFARS). * Collaborating extensively with technical subject matter experts (SMEs), legal teams, compliance officers, program managers, and senior leadership to gather requirements, validate technical accuracy, and achieve consensus on policy implementation. * Conducting thorough gap analyses between existing documentation, regulatory requirements, and operational practices, recommending and developing new policies or updates to mitigate identified risks. * Translating complex technical cybersecurity concepts and requirements into clear, understandable, and actionable policy language for diverse audiences, from technical staff to non-technical leadership. * Establishing and maintaining robust document control processes, versioning, and repositories to ensure accessibility, accuracy, and auditability of all security documentation. * Providing expertise and support during internal and external audits, assessments, and Authorization to Operate (ATO) processes by presenting and defending policy documentation. * Staying abreast of evolving cybersecurity threats, technologies, and regulatory changes, proactively recommending updates to policies and procedures to maintain an agile and effective security posture. ## Related Videos - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Developing the Rich Text Editor for DeepL.com](https://www.wearedevelopers.com/videos/1172-developing-the-rich-text-editor-for-deepl-com) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [In-depth .NET Azure Functions: Isolated mode, performance and durable AI agents](https://www.wearedevelopers.com/videos/100207-in-depth-net-azure-functions-isolated-mode-performance-and-durable-ai-agents) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)