
Information Assurance Lead – Governance, Risk, Compliance
Posted Jul 25

Posted Jul 25
This is a fully remote position, open to applicants in Texas.
• Lead the development and execution of the Information Assurance roadmap, ensuring that all internal and customer-facing systems are in line with the organization's risk appetite and the current threat landscape.
• Act as the main point of contact and leader for all security audits and certifications (NIST, CMMC, ISO 27001).
• Supervise technical security evaluations and threat modeling for intricate networks.
• Collaborate with Engineering, Legal, and Program stakeholders to embed strong security controls and defensive measures into the system development life cycle (SDLC).
• Spearhead the incorporation of cybersecurity requirements into the procurement process; work with Safety and Mission Assurance to establish technical security baselines for suppliers and manage the complete audit process to ensure adherence to NIST 800-53/171 and CMMC standards.
• Promote automation within the compliance sector by integrating security tools (SIEM, GRC platforms, etc.) to establish a continuous monitoring environment.
• Convert complex security risks into business contexts for leadership, offering actionable insights on emerging adversary trends, defensive preparedness, and regulatory updates.
• Execute and uphold agile project management methodologies throughout the project lifecycle.
• Bachelor’s degree in Information Security, Cybersecurity, Computer Science, or a related field; or equivalent practical experience, defined as 8+ years of progressively responsible experience in Information Assurance, Cybersecurity, Risk Management, or IT Audit.
• A minimum of 8+ years in technical cybersecurity roles, including at least 3 years primarily focused on cybersecurity compliance, governance, risk, or audit functions.
• Relevant industry certifications are highly preferred, such as CISSP, CISM, CISA, GSNA, CCA, or similar credentials that demonstrate expertise in security leadership, governance, and assurance.
• Proven expert-level knowledge of NIST cybersecurity frameworks (e.g., SP 800-53, SP 800-171), CMMC requirements, and the protection of sensitive, regulated, and export-controlled information (ITAR/EAR), along with practical application of threat-informed defense models (MITRE ATT&CK/D3FEND/SPARTA).
• A history of delivering results in ambiguous, fast-paced environments.
• Exhibits sound judgment in proactive problem-solving, positively influencing challenging situations.
• Demonstrated organizational skills to meet tight deadlines while ensuring high-quality outcomes.
• Axiom Space promotes a work environment that embraces diverse perspectives.
• Must be willing to work evenings and weekends as necessary to achieve critical project milestones.
CVS Health
FreedomCare
Northrop Grumman
Get handpicked remote jobs straight to your inbox weekly.