Security & Privacy Lead ( Must Be A US Citizen)

BTI

Washington (District of Columbia)

On-site

USD 140,000 - 190,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Business Technology Integrators (BTI) is seeking a Security and Privacy Lead to provide leadership and technical oversight for cybersecurity, privacy, risk management, and platform security supporting the EEOC.

The role partners with the CISO, program leadership, and federal stakeholders to ensure that systems, cloud platforms, applications, and data are protected in accordance with NIST, FedRAMP, and FISMA requirements, while guiding security controls implementation and continuous monitoring

Qualifications

  • Experience working with a CISO and federal cybersecurity leadership functions.
  • Deep knowledge of NIST standards, guidelines, and security control frameworks.
  • Experience implementing or assessing NIST security and privacy controls.
  • Familiarity with FedRAMP requirements and cloud security authorization processes.
  • Experience with FISMA compliance, reporting, continuous monitoring, and risk-management.

Responsibilities

  • Serve as the program’s lead security and privacy subject-matter expert for cybersecurity, privacy, risk management, and platform security.
  • Collaborate with the EEOC CISO and security stakeholders to support cybersecurity objectives, policies, and governance.
  • Lead implementation and continuous monitoring of security and privacy controls across applications, infrastructure, and cloud environments.
  • Ensure systems comply with NIST, FedRAMP, and FISMA requirements; support FedRAMP authorization activities.
  • Develop, review, and maintain security documentation including SSPs, risk assessments, and incident-response procedures.
  • Provide security oversight across the system development life cycle and advise on secure architectures and configurations.

Skills

NIST standards
FedRAMP
FISMA compliance
CISO liaison
Cloud security
Risk management
Privacy controls
Security documentation
Executive communication
Security monitoring

Education

Bachelor’s degree in Cybersecurity or related field

Tools

NIST SP 800-53
FedRAMP authorization
IAM & encryption technologies
Security monitoring tools (SIEM)

Job description

Business Technology Integrators (BTI) is a Service-Disabled Veteran-Owned Small Business (SDVOSB) with more than 25 years of experience delivering innovative and reliable IT and engineering solutions to the Federal Government. BTI supports mission-critical programs across defense and civilian agencies, with core expertise in cybersecurity, program management, enterprise IT, and technical oversight services.

Position Overview

The Security and Privacy Lead will provide leadership and technical oversight for cybersecurity, privacy, risk management, and platform security activities supporting the EEOC. This individual will serve as the primary security and privacy subject-matter expert and will work closely with the Chief Information Security Officer (CISO), program leadership, technical teams, and federal stakeholders to ensure that systems, cloud platforms, applications, and data are protected in accordance with federal security requirements.

The Security and Privacy Lead will guide the implementation of security controls, oversee compliance and risk-management activities, and ensure alignment with the National Institute of Standards and Technology (NIST), Federal Risk and Authorization Management Program (FedRAMP), and Federal Information Security Modernization Act (FISMA) requirements.

Key Responsibilities
  • Serve as the program’s lead subject-matter expert for cybersecurity, privacy, risk management, and platform security.
  • Work directly with the EEOC CISO and other security stakeholders to support agency cybersecurity objectives, policies, and governance requirements.
  • Lead the implementation and continuous monitoring of security and privacy controls across applications, infrastructure, cloud environments, and technology platforms.
  • Ensure systems and services comply with applicable NIST standards, guidelines, and security control frameworks.
  • Support FedRAMP compliance and authorization activities for cloud-hosted platforms and services.
  • Ensure compliance with FISMA and other applicable federal cybersecurity and privacy requirements.
  • Assess security risks, vulnerabilities, threats, and compliance gaps and recommend appropriate corrective actions.
  • Develop, review, and maintain security documentation, including System Security Plans, security policies, risk assessments, control assessments, Plans of Action and Milestones, and incident-response procedures.
  • Provide security oversight throughout the system development life cycle, including architecture, design, development, testing, deployment, operations, and maintenance.
  • Review platform architectures and configurations to ensure secure access controls, identity management, data protection, encryption, logging, monitoring, and vulnerability management.
  • Coordinate security assessment and authorization activities and support the maintenance of system Authorizations to Operate.
  • Work with cloud architects, engineers, developers, administrators, and vendors to incorporate security and privacy requirements into technical solutions.
  • Support security incident response, investigation, reporting, remediation, and lessons-learned activities.
  • Monitor compliance findings and ensure that identified weaknesses are documented, tracked, and remediated within required timeframes.
  • Provide cybersecurity and privacy guidance to program leadership and communicate technical risks to both technical and nontechnical stakeholders.
  • Prepare and deliver security reports, compliance updates, risk briefings, and other required program deliverables.
  • Ensure that personally identifiable information and other sensitive agency information are handled, stored, transmitted, and protected appropriately.
Required Qualifications
  • Demonstrated experience serving in, supporting, or working closely with a Chief Information Security Officer (CISO) organization or federal cybersecurity leadership function.
  • Strong knowledge of NIST cybersecurity standards, guidelines, and security control frameworks.
  • Demonstrated experience implementing or assessing NIST security and privacy controls.
  • Strong knowledge of FedRAMP requirements and cloud security authorization processes.
  • Demonstrated knowledge of FISMA compliance, reporting, continuous monitoring, and risk-management requirements.
  • Experience overseeing platform security for cloud-hosted systems, enterprise applications, infrastructure, and integrated technology environments.
  • Experience identifying security risks, evaluating vulnerabilities, and developing effective mitigation and remediation strategies.
  • Knowledge of federal security assessment and authorization processes, including system documentation and continuous monitoring.
  • Experience integrating security and privacy requirements throughout the system development life cycle.
  • Strong understanding of access control, identity and access management, encryption, network security, vulnerability management, incident response, logging, and security monitoring.
  • Ability to communicate cybersecurity and privacy requirements clearly to agency executives, program managers, engineers, developers, and other stakeholders.
  • Strong written and verbal communication, analytical, organizational, and leadership skills.
  • Ability to work effectively with federal government stakeholders in Washington, DC.
Preferred Qualifications
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related discipline.
  • Relevant professional certification, such as CISSP, CISM, CCSP, CAP/CGRC, or an equivalent cybersecurity certification.
  • Experience supporting a federal civilian agency.
  • Experience securing FedRAMP-authorized cloud platforms or services.
  • Familiarity with federal privacy requirements, privacy impact assessments, and the protection of personally identifiable information.
  • Experience supporting enterprise modernization, cloud migration, or platform-integration initiatives within a federal environment.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Federal Security & Privacy Lead
Federal Security & Privacy Lead

BTI • Washington

On-site
USD 140,000 - 190,000
Privacy Specialist Lead
Privacy Specialist Lead

imagineeer-llc • Arlington (VA)

On-site
USD 120,000 - 180,000
401(k) matching
Competitive salary
Health insurance
+1
Chief Information Security Officer
Chief Information Security Officer

Private Company • Arlington (VA)

On-site
USD 150,000 - 200,000
Data Privacy and Security Counsel (US Federal)
Data Privacy and Security Counsel (US Federal)

Workday • Reston (VA)

On-site
USD 150,000 - 190,000
Security Specialist (Must Be A US Citizen)
Security Specialist (Must Be A US Citizen)

Socket.dev • Washington

On-site
USD 120,000 - 170,000
Security Specialist (Must Be A US Citizen)
Security Specialist (Must Be A US Citizen)

BTI • Washington

On-site
USD 150,000 - 190,000
Cybersecurity Specialist
Cybersecurity Specialist

Kaizen Lab Inc. • Charlotte (NC)

On-site
USD 120,000 - 180,000
Cybersecurity / Task Order Lead
Cybersecurity / Task Order Lead

Strategic Operational Solutions, Inc • Alexandria (VA)

On-site
USD 120,000 - 180,000
Lead Cyber Security Analysis SME
Lead Cyber Security Analysis SME

Xtremesolutions Inc • Washington

On-site
USD 120,000 - 160,000
Lead Cyber Security Analysis SME
Lead Cyber Security Analysis SME

Xtreme Solutions Inc • Washington

On-site
USD 140,000 - 210,000