management
Posted YesterdayDirector of Information Security
Arlington, United StatesOn-site
Responsibilities
- requirements Develop and maintain security policies, procedures, and standards Conduct information security risk assessments and manage risk treatment plans Oversee security audits, assessments, and government inspections Maintain relationships with government and third party representatives Program Management Review and advise on continuous monitoring, compliance practices, and security automation priorities Develop security metrics and reporting for leadership and government customers Manage security
- experience Security architecture design Software security and secure development lifecycle Supply chain risk management Export control and OPSEC
Requirements
- requirements and the ability to balance rigorous security controls with operational efficiency. Position
- requirements with mission effectiveness and operational efficiency Promote security awareness culture throughout the organization Basic
- Qualifications (Required Skills & Experience) Education Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field Master's degree preferred
- Experience managing security programs supporting classified systems and information Demonstrated
- experience implementing and maintaining NIST 800-171 and CMMC compliance Technical Knowledge Expert knowledge of NIST SP 800-171, CMMC 2.0, and DFARS cybersecurity
- requirements Working knowledge of NIST Cybersecurity Framework, ISO 27001/27002, and CIS Controls Understanding of cloud security principles and FedRAMP
- requirements Familiarity with network security, endpoint protection, SIEM, and security operations technologies Knowledge of export control regulations (ITAR/EAR) and related IT security implications Compliance Frameworks NIST SP 800-171 (Protecting CUI in Nonfederal Systems) CMMC (Cybersecurity Maturity Model Certification) 2.0 DFARS 252.204-7012, 7019, 7020, 7021, and related clauses Skills Strong leadership and people management capabilities Excellent written and verbal communication skills, including
- Qualifications & Desired Competencies Certifications (Preferred) CISSP (Certified Information Systems Security Professional) CISA (Certified Information Systems Auditor) CCP (CMMC Certified Professional) CCA (CMMC Certified Assessor) CAP (Certified Authorization Professional) Security+ or equivalent DoD 8570 IAT Level II certification Additional Experience
- Experience in aerospace, intelligence, or weapons systems environment FedRAMP (Federal Risk and Authorization Management Program) FIPS 140-2/140-3 cryptographic module validation DoD Cloud Computing SRG NIST SP 800-37 (RMF Application) and SP 800-53 ISO 27001 certification
- experience Government liaison and relationship management Change management and organizational transformation Physical Demands Ability to work in an office environment (Constant) Required to sit and stand for long periods; talk, hear, and use hands and fingers to operate a computer and telephone keyboard (Frequent) Special Requirements U.S. Citizen, U.S.
- From AI-powered drones and loitering munitions to integrated autonomy and space resilience, our technologies shape the future of warfare and protect those who serve.
Benefits
- Clearance Level No Clearance The salary range for this role is: $170,500 - $272,750 AeroVironment considers several factors when extending an offer, including but not limited to, the location, the role and associated responsibilities, a candidate’s work experience, education/training, and key skills.
- benefits package including medical, dental vision, 401K with company matching, a 9/80 work schedule and a paid holiday shutdown.
- We are proud to be an EEO/AA Equal Opportunity Employer, including disability/veterans.
Contact
- For more information about our company benefit offerings please visit: http://www.avinc.com/myavbenefits .
- We also encourage you to review our company website at http://www.avinc.com to learn more about us. Principals only need apply. NO agencies please.
Additional details
- Worker Type Regular Job Description Company Overview AV is a leading defense technology company delivering mission-critical solutions to government and commercial customers.
- We are seeking an experienced Director of Information Security to lead our cybersecurity program and ensure the protection of sensitive national security information.
- Summary The Director of Information Security will lead the organization's information security program, ensuring compliance with defense industry regulations, managing information security, and supervising a team of ~5 professionals.
- This role requires deep expertise in defense contractor security
- requirements Facilitate security discussions with customers and partners Balance security
- Permanent Resident (Green Card holder) or asylee/refugee status as defined by 8 U.S.C. 1324b(a)(3) required.
- ITAR Requirement: This position requires access to information that is subject to compliance with the International Traffic Arms Regulations (“ITAR”) and/or the Export Administration Regulations (“EAR”).
- requirements of the ITAR and/or the EAR, applicants must qualify as a U.S. person under the ITAR and the EAR, or a person to be approved for an export license by the governing agency whose technology comes under its jurisdiction.
- Please understand that any job offer that requires approval of an export license will be conditional on AeroVironment’s determination that it will be able to obtain an export license in a time frame consistent with AeroVironment’s business requirements.
- A “U.S. person” according to the ITAR definition is a U.S. citizen, U.S. lawful permanent resident (green card holder), or protected individual such as a refugee or asylee.