Guidehouse-posted 3 months ago
$130,000 - $216,000/Yr
Full-time • Senior
Washington, DC
5,001-10,000 employees
Professional, Scientific, and Technical Services

The Senior Data Security Lead supports the development of the data protection strategy for the agency's systems, applications, and networks, and acts as the lead Subject Matter Expert (SME) for all data Pillar activities. This position is responsible for supporting the implementation and maintenance of robust security controls to ensure the confidentiality, integrity, and availability of mission-critical data assets. The lead guides a team of cybersecurity professionals and works closely with IT and business units to mitigate risks and maintain compliance with all federal cybersecurity policies and regulations.

  • Lead the development and implementation of Zero Trust data protection strategies, including encryption, tokenization, and data masking techniques to secure sensitive government data across networks and repositories.
  • Design and support the management of identity-centric access controls, defining granular permissions and enforcing least privilege access to government data, aligning with Zero Trust principles.
  • Coordinate and support the secure data lifecycle management practices, including data classification, data retention policies, and secure disposal procedures, integrated with Zero Trust data protection measures.
  • Ensure data security measures align with federal cybersecurity regulations, policies, and frameworks (e.g., NIST, FISMA), conducting data security audits and assessments to maintain compliance within government data environments.
  • Support the end-to-end engineering of platform security solutions, including the implementation of controls for identity and access management (IAM), data loss prevention (DLP), encryption, and secrets management.
  • Develop, implement, and enforce data security policies, standards, and procedures in alignment with federal guidelines, including FISMA, NIST SP 800-53, and the RMF.
  • Act as the SME for the implementation of security measures such as encryption and data masking to safeguard sensitive information.
  • Promote security awareness across the agency by providing training and guidance to employees on best practices for data security.
  • Work with internal and external stakeholders, such as system owners, external auditors, and other federal agencies like CISA, to coordinate security activities and ensure compliance.
  • Define and track key performance indicators (KPIs) and metrics to demonstrate the effectiveness of security controls and overall compliance status.
  • An ACTIVE and CURRENT SECRET federal security clearance.
  • Bachelor's Degree and NINE (9) years of progressive experience in federal cybersecurity, with a strong background in program management, compliance, and risk management OR a Master's Degree AND SEVEN (7) years of relevant experience.
  • In-depth knowledge of data classification standards, including Federal Information Processing Standard (FIPS) 199 - Standards for Security Categorization of Federal Information and Information Systems, and NIST RMF and Special Publications specific to data classification (e.g., SP 800-60 SP 800-53, SP 800-171 and SP 1800-39A).
  • Excellent verbal and written communication skills, specifically in report writing.
  • One or more of the following certifications: ISC2 Zero Trust Strategy Certificate, Certified Information Systems Security Professional (CISSP), Certified Authorization Professional (CAP), now part of the Certified in Governance, Risk and Compliance (CGRC), Certified Information Security Manager (CISM).
  • Experience working for or with the Department of State or another large Federal Agency.
  • Demonstrated experience in the areas of external client-facing management and/or consulting for large firms.
  • Experience consulting federal agencies on implementing Zero Trust requirements.
  • Extensive knowledge with security tools such as SIEM, DLP, and endpoint detection and response (EDR).
  • Medical, Rx, Dental & Vision Insurance
  • Personal and Family Sick Time & Company Paid Holidays
  • Position may be eligible for a discretionary variable incentive bonus
  • Parental Leave and Adoption Assistance
  • 401(k) Retirement Plan
  • Basic Life & Supplemental Life
  • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts
  • Short-Term & Long-Term Disability
  • Student Loan PayDown
  • Tuition Reimbursement, Personal Development & Learning Opportunities
  • Skills Development & Certifications
  • Employee Referral Program
  • Corporate Sponsored Events & Community Outreach
  • Emergency Back-Up Childcare Program
  • Mobility Stipend
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service