Minimum Education
• Bachelor’s degree in Computer Science, Computer Engineering, Electrical Engineering, Business, or related field of study, required
• Advanced degree, a plus
• Related certification(s) required –Certified Information Systems Security Professional (CISSP), and Computer Information Security Manager (CISM), preferred - Certified Information Systems Auditor (CISA), or other
• Security clearance required
Minimum Experience
• 15 years of relevant information security, risk, and technology experience
• 7+ years’ experience in a supervisory capacity
• Experience operating in a matrixed organization supporting one or more business units or internal functions
• Experience in strategic advisory that directly influences the organization’s operating plan
• Experience in project management and responsibility for an operating budget
• Significant experience in managing third party relationships and suppliers
Knowledge, Skills, Abilities
• Excellent written and verbal communication skills with high emotional intelligence, including the ability to explain technical concepts to senior leaders, middle management, and individual contributors
• Ability to independently collaborate across a broad spectrum or stakeholders and senior leaders in a matrixed operating environment to achieve mutually beneficial results
• Collaborative ability to build rapport as a strategic partner, vertically within the function or business unit, as well as with senior leadership and other cross-functional teams
• Demonstrated ability to adapt to changes rapidly, meet necessary timelines, and perform in a fast-paced work environment
• Results-orientated with high drive to independently achieve objectives and formulate project plans or results from ambiguous directives
• Problem solver with a focus on process, organization and detail orientation
• Focus on continuous improvement with the ability to drive organizational change
• Demonstrated experience in key areas of cyber security such as: secure coding techniques, penetration testing, vulnerability management, network administration, event management, forensics, threat management, identity access management, data loss prevention, governance, and risk management practices
• Must demonstrate knowledge of common information security management frameworks such as ISO/IEC 27001, ITIL, COBIT and NIST and an understanding of relevant legal and regulatory requirements such as Health Insurance Portability and Accountability Act (HIPAA) and Payment Card Industry/Data Security Standard
• Familiarity with DoD cybersecurity policies, procedures, and frameworks, such as NISPOM, CMMC, NIST 800-53
• Experience working with or within DoD environments, understanding the unique security challenges and requirements of defense-related information systems
• Established familiarity with common security methodologies, tools, controls, and common security flaws that apply to software development including, but not limited to: Logging, Encryption, SAST, DAST, IDS, IPS, IAM
• Strong understanding how technical controls can be applied to solve specific Information Security and risk problems
• Demonstrated ability to define and articulate business impacts and risk to both technical and non-technical audiences
• Strong ability to influence engineering teams and business partners on security and IT architecture and project roadmaps to effectuate positive and protective change for the enterprise
• Demonstrated strength in the ability to motivate and lead a team of Information Security professionals
• High regard for ethics; compliance with all company policies and procedures
• Maintains regular and punctual attendance
• Proficient in Microsoft Office suite or related software, in particular Excel, Word, PowerPoint and Outlook
• Other software programs may be required
FlightSafety is an Equal Opportunity Employer/Vet/Disabled. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or disability.