Business Information Security Officer - Remote/Defense Industrial Base (DIB) Exp

1 day, 20 hours ago
Full-time
Lead
Cybersecurity
EVOTEK

EVOTEK

EVOTEK is North America’s premier enabler of digital business with a focus on innovation. They offer innovative IT solutions, strategic insights, advisory services, architecture, engineering, and strategic sourcing. With a strong emphasis on collaborat...

IT Services
51-250
Founded 2014

Description

  • Develop and implement the overall information security program, including goals, objectives, policies, and priorities.
  • Establish security architecture standards and work with clients to implement technical controls.
  • Drive domestic and international projects to meet cybersecurity, data protection, and privacy requirements.
  • Implement and improve security policies and procedures to reduce organizational risk.
  • Monitor compliance with information security policies and ensure third-party compliance.
  • Oversee incident response planning, data loss prevention, and breach remediation.
  • Manage risk assessment programs, vulnerability detection, and vulnerability testing.
  • Coordinate security reporting and assessments for regulators, clients, and management.
  • Align security strategy and roadmaps with customer requirements and business needs.
  • Participate in projects early to ensure cybersecurity controls are built into development lifecycles.
  • Ensure high-risk business applications are assessed and remediation plans are tracked to completion.

Requirements

  • 10+ years of cybersecurity experience, ideally in the oil industry or Defense Industrial Base sector.
  • Experience with cyber compliance assessments and regulatory compliance, especially NIST 800-171, CMMC, and DFARS.
  • Experience assessing threats and vulnerabilities from both business and technical perspectives.
  • Experience developing enterprise information security, IT risk, and privacy management programs.
  • Experience supporting customer-facing products, not just internal systems.
  • Ability to develop pragmatic security solutions that support business growth.
  • Ability to build a culture of accountability and security.
  • Strong communication skills with technical staff, non-technical staff, executives, and vendors/providers.
  • Ability to work independently and lead tasks as a self-starter.

Benefits

  • Salary range of $150,000 to $190,000, commensurate with experience, expertise, and location.
  • Performance bonuses.
  • 100% employer-paid medical, dental, and vision coverage for the employee.
  • 401(k) with employer match.
  • Flexible PTO policy.
  • Flexible working arrangements.
  • Annual company overnight retreat.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

RMF, Security & ATO Manager

Lever 251-1K Professional Services

Latitude IT Solutions is hiring an RMF, Security & ATO Manager to own compliance and authorization for a complex, multi-tenant VA health IT platform.

DevSecOps HIPAA
1 day, 20 hours ago

Microsoft Security Consultant

Quisitive 1K-5K Internet Software & Services

Quisitive is hiring a Microsoft Security Consultant to work with clients on assessing risk, designing and implementing Microsoft security solutions, and improving security maturity across Microsoft cloud and security environments.

Active Directory Azure Network Security PowerShell SOC
2 days, 19 hours ago

IT Risk Compliance Director

Assyst Tecnologia 1-10 Wireless Telecommunication Services

ASSYST is seeking an IT Risk Compliance Director to provide on-demand cybersecurity support for a Department’s enterprise environment by identifying, analyzing, and mitigating security risks and responding to threats and incidents.

Cybersecurity Network Security Penetration Testing
2 days, 20 hours ago

Cybersecurity Risk Advisor

Assyst Tecnologia 1-10 Wireless Telecommunication Services

ASSYST is seeking a Cybersecurity Risk Advisor to support a federal cybersecurity program by assessing FISMA system risk posture, advising executive leadership, and guiding stakeholders on RMF and privacy-related actions.

Cybersecurity HIPAA
2 days, 20 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers