Cybersecurity Program Manager

Socket.dev

Alexandria (VA)

Hybrid

USD 180,000 - 210,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

3 weeks personal leave
11 paid holidays
Flexible time off
401(k) match 50% up to 10%
Medical, Dental and Vision Insurance
Life and Disability Insurance
Public Transportation Subsidies
Certifications and Training Allowance

Job summary

Gunnison Consulting Group seeks a senior cybersecurity program leader to direct enterprise security programs and governance for federal contracts. This role oversees program plans, budgets, and risk across multiple tasks and stakeholders, ensuring compliance with OMB, NIST, DHS/CISA, and FISMA directives.

You will drive CSI initiatives, KPI/KRIs dashboards, and A&A activities while managing eGRC activities and policy/documentation development. Hybrid work in the Washington, DC area preferred.

Qualifications

  • Masters degree in Management or related field.
  • PMP, ITIL, CRISC mandatory; CISSP preferred.
  • 10+ years managing information security teams (cloud, network, application).
  • Experience leading IT strategy, architecture, and security solution engagements.
  • Federal agency experience of similar size/complexity.

Responsibilities

  • Lead and oversee enterprise cybersecurity program management activities to ensure alignment with federal cybersecurity standards, agency objectives, and contract requirements.
  • Develop, implement, and maintain cybersecurity program management plans, strategic roadmaps, and governance frameworks to support long-term program maturity and operational effectiveness.
  • Manage cybersecurity program cost, schedule, performance, deliverables, risks, and resource allocation across multiple task areas and stakeholders.
  • Provide leadership and oversight for cybersecurity initiatives, ensuring compliance with OMB, NIST, DHS/CISA, FISMA, and other federal cybersecurity requirements and directives.
  • Direct the development and execution of a Continual Service Improvement (CSI) program focused on cybersecurity operational resilience, performance optimization, and risk reduction.
  • Establish and manage cybersecurity performance management processes, including development of KPIs, KRIs, dashboards, metrics, trend analysis, and executive reporting.
  • Oversee enterprise Governance, Risk, and Compliance (eGRC) activities, including policy integration, risk tracking, POA&M management, and compliance reporting.
  • Lead enterprise cybersecurity risk management activities, including annual risk assessments, risk identification, mitigation planning, and tracking of corrective actions.
  • Manage Assessment and Authorization (A&A) activities for enterprise systems and services, including continuous monitoring, ATO/ATU support, security control validation, and compliance documentation.

Skills

Program management
Cybersecurity leadership
Risk management
A&A oversight
eGRC governance
Regulatory compliance

Education

PMP
ITIL
CRISC (mandatory)
CISSP (preferred)

Tools

None

Job description

Description

* This position is contingent upon a future opening with Gunnison.

Salary: $180,000-$210,000

Work location: Hybrid, 2-3 days per week on-site in Alexandria, VA. The first 30 days of work will be full-time on-site.

  • Lead and oversee enterprise cybersecurity program management activities to ensure alignment with federal cybersecurity standards, agency objectives, and contract requirements.
  • Develop, implement, and maintain cybersecurity program management plans, strategic roadmaps, and governance frameworks to support long-term program maturity and operational effectiveness.
  • Manage cybersecurity program cost, schedule, performance, deliverables, risks, and resource allocation across multiple task areas and stakeholders.
  • Provide leadership and oversight for cybersecurity initiatives, ensuring compliance with OMB, NIST, DHS/CISA, FISMA, and other federal cybersecurity requirements and directives.
  • Direct the development and execution of a Continual Service Improvement (CSI) program focused on cybersecurity operational resilience, performance optimization, and risk reduction.
  • Establish and manage cybersecurity performance management processes, including development of KPIs, KRIs, dashboards, metrics, trend analysis, and executive reporting.
  • Oversee enterprise Governance, Risk, and Compliance (eGRC) activities, including policy integration, risk tracking, POA&M management, and compliance reporting.
  • Lead enterprise cybersecurity risk management activities, including annual risk assessments, risk identification, mitigation planning, and tracking of corrective actions.
  • Manage Assessment and Authorization (A&A) activities for enterprise systems and services, including continuous monitoring, ATO/ATU support, security control validation, and compliance documentation.
  • Direct the development, review, and maintenance of cybersecurity policies, standards, procedures, security documentation, and governance artifacts to ensure alignment with evolving federal and agency requirements.
  • Provide strategic cybersecurity advisory services related to emerging technologies, zero trust architecture, regulatory changes, cybersecurity trends, and agency-wide security initiatives.
  • Coordinate and support cybersecurity awareness, communications, and training programs to strengthen organizational security posture, stakeholder engagement, and user compliance.
Requirements
  • US Citizenship required
  • Master’s degree in Management or related field
  • 10+ years managing information security teams (cloud, network, application)
  • Experience leading IT strategy, architecture, and security solution engagements
  • Federal agency experience of similar size/complexity
  • Certifications: PMP, ITIL, CRISC (mandatory); CISSP (preferred)

Clearance Requirement: Ability to obtain and maintain a Public Trust.

The salary range for this position depends upon multiple factors including location, the individual's knowledge, skills, competencies, and experience, and contract-specific budget constraints and organizational requirements.
Gunnison Consulting Group's total compensation package also includes bonus and profit-sharing opportunities, depending on company and employee performance. Available employee benefits include:

  • 3 weeks of Personal Leave your first year
  • 11 paid Holidays each year
  • 5 days of Flexible Time Off each year for approved training or certifications (self-study is ineligible)
  • 401(k) company match at 50% up to 10% of your salary
  • Medical, Dental and Vision Insurance
  • Life and Disability Insurance
  • Public Transportation Subsidies
  • Certifications and Training Allowance - Up to $5,000/year!
Why Join Gunnison?
  • Gunnison takes on ambitious projects. We target fun, challenging work that requires creative thinking and innovation.
  • Quality is our top priority.
  • Gunnison employee benefits meet or exceed what other companies in the Washington, D.C. metropolitan area offer.
  • There is a great sense of camaraderie at Gunnison. This is an atmosphere we will maintain as we continue to grow.
  • We are growing rapidly and the opportunity for individual professional growth with Gunnison is outstanding.
  • We hire for careers at Gunnison, not to fill a position.

Equal Opportunity/Affirmative Action Employer. Must be eligible for employment in the United States. We are unable to sponsor candidates at this time.
In 1994 Gunnison began serving the greater Washington, D.C. metro area, focused on tackling our customers' most ambitious technology projects. By creating a culture dedicated to enabling our customers and employees to achieve more than they ever thought they could, the company has thrived for over 25 years.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Program Manager
Cybersecurity Program Manager

Gunnison • Alexandria (VA)

Hybrid
USD 180,000 - 210,000
3 weeks Personal Leave
11 paid Holidays
Flexible Time Off
+5
Cyber Information Assurance Specialist
Cyber Information Assurance Specialist

Socket.dev • Alexandria (VA)

Hybrid
USD 140,000 - 155,000
3 weeks Personal Leave
11 paid Holidays
5 days Flexible Time Off
+5
Cybersecurity Incident and Application Analyst
Cybersecurity Incident and Application Analyst

Gunnison Consulting Group • Bethesda (MD)

Hybrid
USD 130,000 - 145,000
3 weeks Personal Leave your first year
11 paid Holidays each year
Flexible Time Off for training/certs
+5
Cyber Information Assurance Specialist
Cyber Information Assurance Specialist

Gunnison • Alexandria (VA)

Hybrid
USD 155,000 - 175,000
Bonus and profit-sharing opportunities
3 weeks personal leave
11 paid holidays
+2
Security Assessment & Authorization (SA&A) Lead
Security Assessment & Authorization (SA&A) Lead

Gunnison Consulting Group • Bethesda (MD)

Hybrid
USD 130,000 - 145,000
3 weeks Personal Leave
11 paid Holidays
5 days Flexible Time Off
+5
Lead Cybersecurity Engineer
Lead Cybersecurity Engineer

Gunnison • Bethesda (MD)

Hybrid
USD 140,000 - 190,000
3 weeks of Personal Leave
11 paid Holidays
Flexible Time Off
+5
Security Assessment & Authorization (SA&A) Lead
Security Assessment & Authorization (SA&A) Lead

Gunnison • Bethesda (MD)

Hybrid
USD 130,000 - 145,000
3 weeks of Personal Leave
11 paid Holidays
5 days Flexible Time Off
+5
Cyber Incident Management Lead
Cyber Incident Management Lead

Gunnison • Alexandria (VA)

Hybrid
USD 160,000 - 180,000
Bonus and profit-sharing
401(k) company match
Medical, Dental and Vision Insurance
+2
System Database Developer - SecDevOps
System Database Developer - SecDevOps

Gunnison Consulting Group • Bethesda (MD)

Hybrid
USD 130,000 - 145,000
3 weeks Personal Leave
11 paid Holidays
Flexible Time Off
+5
Digital Forensics Analyst
Digital Forensics Analyst

Gunnison • Alexandria (VA)

Hybrid
USD 125,000 - 145,000
401(k) employer match
Medical, Dental & Vision
Professional development funds
+2