Education
Bachelor's degree in Information Security, computer science, information technology, cybersecurity, or a related field.
General Experience
- Minimum of 5 years’ experience in information security , with at least 3 years’ experience in implementing cyber assessment and remediation plans, procedures, and cyber defense operations.
- Minimum of 3 years of Information System Security Management.
- 2 years experience in program management.
- Demonstrated experience in the development and implementation of information security policies, standards, and procedures.
- Excellent leadership, communication, and interpersonal skills.
- Proven ability to manage complex projects and drive results in a dynamic environment.
- Analytical and problem-solving skills, with the ability to analyze complex security issues and develop effective solutions.
Specialized Experience
- In-depth knowledge of information security frameworks, standards, and best practices (e.g., NIST Cybersecurity Framework, NIST 800-53/800-171).
- Experience tracking adoption rates and implementing centrally managed cyber services.
- Experience in developing strategic plans, roadmaps, and business cases for new cybersecurity initiatives
Required Qualifications
- Graduate degree or certifications such as CISSP, CISM, or CISA
- Strong knowledge of industry standards, regulations, and best practices related to information security, including ISO 27001, NIST Cybersecurity Framework, and General Data Protection Regulation (GDPR).
- Excellent communication and collaboration skills, with the ability to effectively communicate technical concepts.
- Project management skills, with experience in planning, scheduling, and monitoring the delivery of cybersecurity services.
- Proven experience in managing large-scale cybersecurity projects, including planning, execution, monitoring, and closing phases.
- Ability to coordinate cross-functional teams and manage multiple projects simultaneously.
- Experience working with state government agencies or similar large-scale organizations.
- The candidate must be able to travel to the Client and various agencies within the Baltimore/Annapolis region.
- Familiarity with federal, state, and local information security and privacy regulations.