Chief Information Security Officer (CISO)
New
USFull-TimeExecutive
Salary175,000 - 290,000 USD per year
Apply NowOpens the employer's application page
Job Details
- Experience
- 10+ years
- Required Skills
- AWSAzure
Requirements
- 10+ years of progressive experience in cybersecurity, including leadership roles such as CISO, Deputy CISO, or Head of Security.
- Strong background in defense, aerospace, government contracting, or highly regulated environments.
- Deep expertise in NIST frameworks (including SP 800-171 and SP 800-53), DFARS, CMMC, CUI, and FCI requirements.
- Proven experience in cloud security architecture across AWS, Azure, and GovCloud environments.
- Hands-on experience with secure SDLC, application security, threat modeling, and DevSecOps implementation.
- Demonstrated success leading audits, compliance programs, security assessments, and remediation efforts (SSPs, POA&Ms, evidence collection).
- Strong operational security experience including incident response, threat detection, and vulnerability management programs.
- Ability to translate complex technical risks into business and mission impact for executive stakeholders.
- Experience with vendor risk management and supply chain security practices.
- Excellent cross-functional leadership and collaboration skills across engineering, product, legal, and executive teams.
Responsibilities
- Define and execute the enterprise-wide cybersecurity strategy, covering corporate systems, product environments, and operational infrastructure, ensuring alignment with mission and compliance requirements.
- Lead compliance and certification efforts including NIST SP 800-171, DFARS, CMMC, FedRAMP-aligned frameworks, and related government security standards.
- Build and scale secure software development lifecycle (SDLC), DevSecOps, and application security practices embedded into engineering workflows.
- Design and oversee cloud security architecture across AWS, Azure, and GovCloud environments, ensuring resilience, scalability, and data protection.
- Establish security operations capabilities including monitoring, threat detection, vulnerability management, incident response, and forensic readiness.
- Lead executive-level incident response activities, including regulatory reporting, customer communications, and crisis management coordination.
- Develop and enforce identity and access management, data protection, encryption, and logging standards across all systems.
- Oversee third-party and supply chain security programs, ensuring vendor compliance and risk mitigation across the ecosystem.
- Partner with security leadership counterparts to support classified programs, insider threat initiatives, and industrial security requirements.
- Build, mentor, and scale a high-performing cybersecurity team aligned with organizational growth.
View Full Description & ApplyYou'll be redirected to the employer's site