Enterprise Cybersecurity Compliance Lead

Booz Allen HamiltonMcLean, VA
Remote

About The Position

This opportunity is to support the Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team. The role involves facilitating an effective enterprise-wide cybersecurity compliance function, focusing on maintaining compliance while enabling business efforts across federal, non-federal, international, and company areas as the business evolves. The lead will take a hands-on approach, accountable for assessing and managing cybersecurity requirements with key stakeholders using a data-driven, threat-informed, and risk-based approach. Collaboration with cross-functional teams across Booz Allen and client teams is essential to ensure alignment and application of practices that support business goals, meet regulatory requirements, and define policies and standards for cybersecurity. Due to the nature of work performed, U.S. citizenship is required.

Requirements

  • 8+ years of experience leading and maturing teams, including educating and developing direct reports while translating complex regulatory and technical requirements into clear, actionable guidance for technical staff and stakeholders
  • Experience with facilitating cybersecurity compliance programs across federal, non-federal, and international frameworks and leading enterprise compliance programs and audit coordination, including oversight of internal and external audits, evidence collection, and remediation tracking across government and commercial standards, including Federal, Non-federal, and Global cybersecurity standards
  • Experience driving cross-functional alignment between architecture, legal, and operations
  • Ability to apply data-driven, threat-informed, and risk-based approaches to manage requirements, measure control effectiveness, continuous monitoring, and utilize automation and analytics tools to prioritize remediation and guide cross-functional executive decision-making
  • Ability to translate complex regulatory requirements into actionable business outcomes by developing governance artifacts, implementing compliant workflows, and integrating "compliance-by-design" into products and services
  • Ability to translate complex security mandates into plain language guidance for business teams, ensuring clear implementation expectations and navigating conflicting priorities to maintain business velocity while ensuring enterprise-wide compliance
  • HS diploma or GED
  • Ability to obtain a CMMC certification, such as Certified CMMC Assessor (CCA) or Certified CMMC Professional (CCP), within 12 months of start date
  • U.S. citizenship is required

Nice To Haves

  • 10+ years of experience with cyber risk
  • Experience in navigating complex technical challenges by identifying pragmatic solutions, determining the level of effort (LOE), and prioritizing resources to drive projects from initial comprehension to successful closure with minimal supervision
  • Experience in coaching junior-to-mid-level staff through career progression, fostering a culture of continuous learning, and building a "compliance-ready" mindset across non-technical business units
  • Experience implementing GRC automation platforms, such as eMASS, ServiceNow, RSA Archer, CSAM, or Telos Xacta
  • Ability to demonstrate excellent executive presence
  • Possession of excellent verbal and written communication skills, including translating technical risks into logical conclusions for senior leadership
  • Cyber Risk Certifications, including Certified Information Systems Security Professional (CISSP) or Project Management Professional (PMP) Certification

Responsibilities

  • Support the Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team.
  • Facilitate an effective enterprise-wide cybersecurity compliance function with a focus on maintaining compliance while enabling business efforts.
  • Lead with a hands-on approach that has accountability for assessing and managing cybersecurity requirements with key stakeholders using a data-driven, threat-informed, and risk-based approach.
  • Collaborate with cross-functional teams across the Booz Allen enterprise and client teams to ensure alignment and application of practices that support business goals, meet regulatory requirements, and define policies and standards for cybersecurity.

Benefits

  • Health benefits
  • Life benefits
  • Disability benefits
  • Financial benefits
  • Retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Senior

Education Level

High school or GED

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service