
Senior Cybersecurity Assessment Lead
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Execute thorough technical, operational, and program inspections, assessments, and audits of agency systems, applications, and enterprise services.
• Provide leadership in tasks and projects, allocate responsibilities, mentor team members, set priorities, track actions and dependencies, eliminate obstacles, and ensure timely completion.
• Conduct quality assurance reviews of deliverables, ensuring accurate completion of assessment activities and milestone reporting.
• Gather, analyze, and present risk-informed information related to IT and cybersecurity.
• Enhance and continuously develop the cybersecurity assessment program in collaboration with federal leadership and staff.
• Define, create, and communicate program strategy and strategic goals.
• Establish and maintain program processes, procedures, standards, and assessment methodologies.
• Lead or participate in assessment program projects and strategic initiatives, including planning, coordinating with stakeholders, managing action items, monitoring progress, and completing deliverables.
• Support enterprise strategic planning and program oversight, which includes cybersecurity capability roadmaps, governance improvements, performance metrics, and modernization goals.
• Provide insights at the executive level regarding program status, risk posture, performance metrics, trend analysis, recurring findings, systemic gaps, and areas for improvement.
• Formulate recommendations and analyses for strategic decisions and program priorities.
• Counsel assessment leadership and customer stakeholders on cybersecurity governance, assessment efficacy, operational maturity, and mission outcomes.
• Acquire and maintain DOE Derivative Classifier certifications as necessary.
• Keep up professional certifications through continuing education and ongoing professional development.
• Stay updated on emerging threats, technologies, federal mandates, and best practices in cybersecurity.
• Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field, with over 10 years of relevant professional experience, which includes more than 8 years specifically in cybersecurity; additional directly related experience may be considered in place of the degree requirement.
• At least one DoD 8570 / 8140 compliant certification at the IAT Level III or IAM Level III, such as CISSP, CISM, CASP+, CISA, GSLC, or GCIH.
• Advanced experience in leading and conducting IT and cybersecurity inspections, independent assessments, compliance reviews, and audits.
• Proven experience in independently planning, executing, and finalizing assessment engagements.
• Experience in leading projects or complex initiatives, developing work plans, coordinating stakeholders, managing priorities and dependencies, tracking progress, and driving deliverables to completion.
• Ability to formulate organizational or program strategies and translate mission objectives into actionable plans, roadmaps, initiatives, and measurable outcomes.
• Knowledge of federal cybersecurity requirements, mandates, and compliance frameworks, including FISMA, NIST SP 800-37, NIST SP 800-53, NIST SP 800-115, CNSSI 1253, and relevant OMB policies and memoranda.
• Outstanding verbal and written communication skills.
• Active or current DOE Q Clearance or Top Secret clearance with SCI eligibility.
• Capability to successfully obtain and maintain a polygraph, as required.
• U.S. Citizenship is mandatory.
• Preferred experience in supporting Department of Energy environments, directives, and mission systems.
• Familiarity with organizational maturity assessment models.
• Experience in developing strategic plans, capability roadmaps, program strategies, or similar strategic planning documents.
• Experience in creating cybersecurity policies, standards, procedures, implementation guidance, strategic documentation, and process documentation.
• Practical experience with secure configuration management and system hardening, including DISA STIGs and CIS benchmarks.
• Experience in securing AWS, Azure, or hybrid federal cloud environments.
• Working knowledge of Zero Trust principles, architectures, and maturity frameworks.
• Experience with enterprise vulnerability management and Tenable Security Center / Tenable.sc.
• Prior experience as an ISSM or in a comparable cybersecurity leadership role.
• Availability for significant travel, ranging from 25% to 50%.
• Opportunities for professional development that encourage career advancement.
• A culture that prioritizes employees.
• Reasonable accommodations for applicants or employees with disabilities.
• Remote work opportunities when not traveling.
• A workplace that promotes equal employment opportunity and affirmative action.
• A drug-free workplace.
Robots & Pencils
Latitude IT Solutions | SDVOSB
Latitude IT Solutions | SDVOSB
11:11 SYSTEMS
Get handpicked remote jobs straight to your inbox weekly.