AeroVironment logo
AeroVironmentPosted 2 weeks ago

Vice President of Cybersecurity & Chief Information Security Officer (CISO)

$245,500–$393,000 year

On-siteGermantown, Maryland, United States or Simi Valley, California, United States

Full TimeSenior LevelLarge

Job Summary

Develop and execute comprehensive cybersecurity strategy aligned with business objectives and national security requirements to ensure confidentiality, integrity, and availability of information assets. Establish and maintain information security governance frameworks, policies, and standards while serving as the primary liaison with government customers, DCMA, and DCSA. Lead enterprise risk management activities, oversee cybersecurity budget planning, and ensure compliance with NIST SP 800-171, CMMC 2.0, DFARS, ITAR, and international regulations including UK MoD and GDPR. Direct security operations including the SOC, incident response, and threat intelligence, while managing SIEM, EDR, IAM, and DevSecOps integration. Build and mentor high-performing security teams, foster a culture of security awareness, and develop succession planning strategies for the organization.

Required Qualifications

  • Bachelor's degree in computer science, Information Security, Cybersecurity, Engineering, or related technical field
  • Minimum 15 years of progressive experience in information security
  • At least 10 years in senior leadership roles
  • Extensive experience in defense contracting environment with classified programs
  • Proven track record implementing and maintaining DoD cybersecurity compliance programs (NIST 800-171, CMMC, RMF)
  • Demonstrated experience managing enterprise-wide security programs in complex, multi-site organizations
  • Experience leading organizations through CMMC certification and FedRAMP authorization processes
  • Strong background in both physical and cyber security operations
  • Active Top Secret/SCI security clearance
  • Eligibility for Special Access Programs (SAP)
  • CISSP (Certified Information Systems Security Professional)
  • One or more of the following: CISM (Certified Information Security Manager), CISA (Certified Information Systems Auditor), CRISC (Certified in Risk and Information Systems Control)
  • Deep understanding of NIST Cybersecurity Framework, NIST SP 800-53, NIST SP 800-171
  • Expertise in CMMC 2.0 requirements and assessment processes
  • Knowledge of DoD Cloud Computing Security Requirements Guide (SRG) and FedRAMP
  • Understanding of DFARS, FAR, ITAR, EAR, and related defense contracting regulations
  • Proficiency with security technologies: SIEM, EDR/XDR, IAM, PAM, DLP, CASB, firewall/IDS/IPS
  • Understanding of secure software development practices and DevSecOps methodologies
  • Knowledge of zero trust architecture principles and implementation
  • Familiarity with classified network operations and cross-domain solutions
  • Strategic thinking with ability to translate security requirements into business enablement
  • Executive presence with proven ability to communicate complex security concepts to technical and non-technical audiences
  • Strong risk management and decision-making capabilities under pressure
  • Proven ability to influence and build consensus across organizational boundaries
  • Experience managing and developing diverse, geographically distributed teams
  • Budget management and financial acumen
  • Ability to work in an office environment (Constant)
  • Required to sit and stand for long periods
  • Talk, hear, and use hands and fingers to operate a computer and telephone keyboard (Frequent)
  • Position may require up to 25% travel to company facilities, customer sites, and industry events
  • Occasional after-hours availability for incident response and maintenance windows
  • Work in both office environments and Sensitive Compartmented Information Facilities (SCIFs)
  • May require access to classified information and restricted areas
  • U.S. Citizenship
  • Clearance Level TS/SCI
  • Qualify as a U.S. person under the ITAR and the EAR, or a person to be approved for an export license by the governing agency whose technology comes under its jurisdiction

Desired Qualifications

  • Master's degree in related fields
  • GSLC (GIAC Security Leadership Certification)
  • CCSP (Certified Cloud Security Professional)
  • CGEIT (Certified in the Governance of Enterprise IT)
  • CAP (Certified Authorization Professional)
  • CMMC-AB Certified Professional or Provisional Assessor

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce