Vice President of Cybersecurity & Chief Information Security Officer (CISO)
Germantown, MDAll locationsGermantown, MDSimi Valley, CA On-site
Salary not listedJobFig found this opening at its original source and checks that it remains available.
About the role
The “Vice President of Cybersecurity & Chief Information Security Officer (CISO)” is a senior executive responsible for establishing, implementing, and maintaining AV’s enterprise vision, strategy, and cybersecurity program to ensure the confidentiality, integrity, and availability of the organization’s information assets and technology resources. The CISO provides strategic leadership for the organization’s cybersecurity function in support of both classified and unclassified defense programs. This role is responsible for ensuring compliance with Department of Defense (DoD) cybersecurity requirements, advancing the organization’s Cybersecurity Maturity Model Certification (CMMC) posture, implementing and maintaining alignment with National Institute of Standards and Technology (NIST) frameworks, and ensuring adherence to applicable federal laws, regulations, and contractual obligations. Additionally, the CISO will develop and execute cybersecurity strategies that support AV’s accelerated growth, acquisition, and integration initiatives. Reporting to the Chief Information Officer (CIO), the CISO serves as the principal advisor to executive leadership and the Board of Directors on all matters related to cybersecurity, information security governance, cyber risk management, and the protection of Controlled Unclassified Information (CUI), classified national security information, and other sensitive organizational assets.
What you'll bring
- Bachelor’s degree in computer science, Information Security, Cybersecurity, Engineering, or related technical field required
- Minimum 15 years of progressive experience in information security, with at least 10 years in senior leadership roles
- Extensive experience in defense contracting environment with classified programs
- Proven track record implementing and maintaining DoD cybersecurity compliance programs (NIST 800-171, CMMC, RMF)
- Demonstrated experience managing enterprise-wide security programs in complex, multi-site organizations
- Experience leading organizations through CMMC certification and FedRAMP authorization processes
- Strong background in both physical and cyber security operations
- CISSP (Certified Information Systems Security Professional)
- One or more of the following: CISM (Certified Information Security Manager), CISA (Certified Information Systems Auditor), CRISC (Certified in Risk and Information Systems Control)
- In order to comply with the requirements of the ITAR and/or the EAR, applicants must qualify as a U.S. person under the ITAR and the EAR, or a person to be approved for an export license by the governing agency whose technology comes under its jurisdiction.
- Please understand that any job offer that requires approval of an export license will be conditional on AeroVironment’s determination that it will be able to obtain an export license in a time frame consistent with AeroVironment’s business requirements.
- See 22 CFR § 120.15.