1

Cissp Director Jobs in Reston, VA (NOW HIRING)

Data Architect-Zero Trust

Washington, DC · On-site

$180K - $220K/yr

Relevant certifications in cybersecurity (e.g., CISSP, CISM) and architecture (e.g., TOGAF, CISSP ... direct others. May be exposed to dust/dirt, humidity, and noise Foxhole Technology is an Equal ...

New

DoDM 8140.03 IAM LevelIII certification -- CISSP, CISM, GSLC, or equivalent. * Executive-level oral and written communication skills, including the ability to hold direct, accountable conversations ...

Showing results 41-60

Cissp Director information

What is a CISSP Director?

A CISSP Director is a senior-level cybersecurity professional who holds the Certified Information Systems Security Professional (CISSP) certification and is responsible for overseeing an organization’s information security strategy. This role typically involves managing security teams, developing policies and procedures, ensuring compliance with regulations, and safeguarding sensitive data from cyber threats. CISSP Directors collaborate with executive leadership to align security initiatives with business goals, respond to incidents, and oversee risk management activities. Their expertise helps ensure that the organization’s information assets are protected and that security best practices are consistently implemented.

What are the key skills and qualifications needed to thrive as a CISSP Director?

To thrive as a CISSP Director, you need deep expertise in information security principles, risk management, and security governance, typically validated by a CISSP certification and extensive experience in cybersecurity leadership. Familiarity with industry standards such as NIST, ISO 27001, as well as security architecture tools and incident response systems, is crucial. Outstanding leadership, strategic thinking, and communication skills set top candidates apart by enabling them to guide teams and influence organizational security culture. These skills are essential to protect critical assets, ensure compliance, and drive robust cybersecurity programs across the enterprise.

How does a CISSP Director typically collaborate with other departments to strengthen organizational cybersecurity?

A CISSP Director works closely with various departments such as IT, legal, HR, and executive leadership to develop and enforce security policies and protocols. They often facilitate cross-functional meetings to assess risks, ensure compliance with regulatory standards, and address security concerns across the organization. Effective communication and collaboration are essential, as the CISSP Director must translate technical risks into business impacts to gain buy-in from stakeholders. This role is pivotal in fostering a security-first culture and aligning cybersecurity strategies with organizational goals.

What is the difference between Cissp Director vs Cissp Manager?

AspectCissp DirectorCissp Manager
CertificationsCissp, possibly additional leadership or executive certificationsCissp, often with management or team leadership certifications
Work EnvironmentStrategic, executive-level, overseeing multiple teams or departmentsOperational, managing security teams and implementing policies
Employer & IndustryLarge organizations, corporations, government agenciesMid-sized to large companies, security teams
Search & Comparison IntentUnderstanding high-level security leadership rolesManaging security operations and teams

The Cissp Director typically holds a strategic, leadership role overseeing security programs at an organizational level, often requiring additional executive experience. The Cissp Manager focuses on managing security teams and implementing policies. While both roles require Cissp certification, the Director's scope is broader and more strategic, whereas the Manager's role is more operational and team-focused.

What are the most commonly searched types of Cissp jobs in Reston, VA?

The most popular types of Cissp jobs in Reston, VA are:

What job categories do people searching Cissp Director jobs in Reston, VA look for?

The top searched job categories for Cissp Director jobs in Reston, VA are:

What cities near Reston, VA are hiring for Cissp Director jobs?

Cities near Reston, VA with the most Cissp Director job openings:

Infographic showing various Cissp Director job openings in Reston, VA as of August 2026, with employment types broken down into 100% Full Time. Highlights an 67% In-person, and 33% Remote job distribution.

Director, Cybersecurity and IT Risk Management

Socket.dev

Vienna, VA • On-site

$170 - $180/hr

Other

Medical, Dental, Vision, Retirement, PTO

Posted 16 days ago


Job description

About SourceAmerica

SourceAmerica is a mission-driven nonprofit and AbilityOne-authorized enterprise that helps create employment opportunities for people with disabilities by building strong partnerships with the federal government and a nationwide network of nonprofit agencies. We connect federal customers with high-quality products and services while strengthening the capabilities of nonprofit agencies and the people they employ. More information can be found at www.SourceAmerica.org/who-we-are

About the Role

We are seeking a Director, Cybersecurity and IT Risk Management to provide strategic leadership and operational oversight for SourceAmerica’s cybersecurity, technology risk management, security governance, incident response, third-party risk management, security awareness, and compliance readiness programs. This leader will serve as a trusted advisor to IT leadership, executive leadership, business stakeholders, governance bodies, and partners on cybersecurity risk, regulatory and contractual obligations, cyber resilience, and secure technology enablement.

This is a high-impact leadership opportunity for a cybersecurity executive who can balance mission, risk, compliance, and business enablement in a federal-contracting and nonprofit environment. The Director will help protect SourceAmerica’s information assets, systems, mission, and federal contracting obligations while also supporting nonprofit agency partners where federal contracts, Controlled Unclassified Information, or technology risk obligations apply.

SourceAmerica offers both a hybrid and remote work model. **Due to the requirements of this position, the ideal candidate would live within 30 commuting miles or less of the SourceAmerica's National Office in Vienna, VA and work 2-3 days per week in the office.

What You’ll Do
  • Lead SourceAmerica’s cybersecurity, technology risk management, and security governance functions.
  • Develop and execute the enterprise cybersecurity strategy and roadmap aligned to organizational goals, federal contractor obligations, AbilityOne operational responsibilities, and risk tolerance.
  • Own the cybersecurity risk management framework, including risk assessment methodology, risk register, mitigation tracking, accepted risk documentation, and executive-level reporting.
  • Lead readiness and ongoing compliance activities for CMMC, NIST SP 800-171, Controlled Unclassified Information protection requirements, GSA CUI handling requirements, and other applicable federal, contractual, and regulatory security obligations.
  • Oversee security operations, including threat monitoring, vulnerability management, incident response, threat mitigation, control validation, and user awareness training.
  • Lead cybersecurity incident response activities, including investigation, containment, recovery, executive communication, lessons learned, and remediation tracking.
  • Build and lead cybersecurity components of third-party risk management, including vendor risk tiering, due diligence, contract security requirements, cloud/SaaS assessments, ongoing monitoring, and remediation tracking.
  • Provide security oversight for enterprise systems, cloud platforms, data platforms, artificial intelligence solutions, automation, and major technology initiatives.
  • Support AI governance by assessing cybersecurity, privacy, data protection, vendor, and operational risks associated with approved and emerging AI tools.
  • Present cybersecurity metrics, risk posture, control effectiveness, incident trends, vulnerability remediation, compliance readiness, and security program maturity to inform executive decision-making.
Salary Range

The salary for this position falls in a range between $170,000 - $180,000 depending on your experience and geographic location in the United States.

What You Bring
  • Bachelor’s degree required; master’s degree, MBA, or relevant advanced training preferred.
  • 15+ years of relevant cybersecurity, technology risk, security governance, or compliance experience.
  • 10+ years of management experience, with demonstrated ability to lead staff, vendors, managed security service providers, and cross-functional partners.
  • Current CISSP, CISM, CRISC, CISA, CGRC, or equivalent cybersecurity, risk, or compliance certification.
  • Strong knowledge of cybersecurity technologies, security operations, technology risk management, security governance, and regulatory compliance practices.
  • Working knowledge of NIST SP 800-171, CMMC, NIST Cybersecurity Framework, Controlled Unclassified Information requirements, and federal contractor cybersecurity expectations.
  • Experience interpreting federal contract cybersecurity and CUI requirements and translating them into practical guidance for business, technology, vendor, and partner audiences.
  • Experience communicating cybersecurity risk, compliance readiness, incident response matters, and mitigation priorities to executive and non-technical stakeholders.
  • Ability to work independently, solve complex problems under time pressure, build relationships across a national organization, and support a mission-driven culture.
Preferred Qualifications
  • Experience leading cybersecurity programs within federal contractors, government organizations, regulated industries, or mission-driven nonprofit organizations.
  • Experience supporting CMMC certification efforts, NIST SP 800-171 compliance programs, and CUI protection initiatives.
  • Experience supporting cloud-first and SaaS-centric environments, including Microsoft 365, Azure, Dynamics 365, and related Microsoft security technologies.
  • Experience leading third-party risk management programs, vendor security assessments, contract security reviews, and supply chain risk management initiatives.
  • Experience developing cybersecurity strategy, governance structures, executive reporting, risk registers, security metrics, and policy frameworks.
  • Experience presenting cybersecurity and technology risk matters to executive leadership, governance councils, audit committees, or boards.
Work Environment

Our organization offers both a hybrid work model—where employees work in our office two to three days per week and work from home the balance of the workweek—as well as a fully remote work model, depending on the job requirements. *Due to the requirements of this position, the ideal candidate would live within 30 commuting miles or less of the SourceAmerica's National Office in Vienna, VA and work 2-3 days per week in the office.

Employee Benefits

We offer a comprehensive employee benefits package that includes paid holidays, vacation time, sick leave, medical, dental, and vision insurance, a solid retirement plan, and more!

Accessibility Support

We’re committed to offering reasonable accommodation to job applicants with disabilities. If you need assistance or accommodation due to disability, please contact us at Human Resources (888) 411-8424 or hr@sourceamerica.org.

Equal Opportunity Employment

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. View our EEO Policy https://www.sourceamerica.org/sites/default/files/2022-01/eeo-policy.pdf.

#J-18808-Ljbffr