1

Director Software Security Jobs in Washington (NOW HIRING)

iOS Vulnerability Engineer (Software)

Tysons, VA · On-site

$140K/yr

Join us to play a critical role in enhancing the security of cutting-edge iOS technologies ... With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional ...

iOS Vulnerability Engineer (Software)

Reston, VA · On-site

$145K/yr

Join us to play a critical role in enhancing the security of cutting-edge iOS technologies ... With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional ...

Ensure compliance with security policies and domain-specific standards * Collaborate with system ... With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional ...

Showing results 21-40

Director Software Security information

What does a director of software security do?

A Director of Software Security is responsible for developing, implementing, and overseeing strategies to protect an organization’s software systems from security threats. They manage security teams, set security policies, and ensure best practices are followed throughout the software development lifecycle. Their role also involves conducting risk assessments, responding to security incidents, and collaborating with other departments to ensure compliance with industry standards and regulations.

What are the key skills and qualifications needed to thrive as a director of software security?

To thrive as a Director of Software Security, you need deep expertise in cybersecurity principles, secure software development, risk management, and typically a bachelor's or master's degree in computer science or a related field. Familiarity with security frameworks (like NIST or ISO 27001), secure coding tools, penetration testing platforms, and relevant certifications such as CISSP or CSSLP is highly valued. Strong leadership, strategic thinking, and effective communication are crucial soft skills for guiding teams and influencing stakeholders. These skills and qualities are essential to effectively protect organizational assets, ensure regulatory compliance, and drive a culture of security throughout the software development lifecycle.

What are the main challenges a director of software security faces when aligning security initiatives with business objectives?

One of the key challenges for a Director of Software Security is balancing robust security measures with the need for agility and innovation in software development. This often requires close collaboration with engineering, product, and executive teams to ensure security protocols do not hinder business goals or time-to-market. Additionally, staying ahead of emerging threats while managing compliance requirements and resource constraints can be demanding. Effective communication and a strategic approach are essential for successfully integrating security into the organization's broader objectives.

What is the difference between Director Software Security vs Security Manager?

AspectDirector Software SecuritySecurity Manager
CredentialsTypically requires CISSP, CISM, or CISA certificationsOften holds CISSP or CISM certifications
Work EnvironmentStrategic leadership, overseeing security programs across multiple teamsOperational management, implementing security policies and procedures
Employer & Industry UsageUsed in large tech companies, finance, and healthcare sectorsCommon in various industries, including corporate and government sectors

The main difference is that the Director Software Security focuses on strategic planning and overseeing security initiatives at a high level, while the Security Manager handles day-to-day security operations and policy enforcement. Both roles require similar certifications but differ in scope and responsibilities.

What cities in Washington are hiring for Director Software Security jobs?

Cities in Washington with the most Director Software Security job openings:

Infographic showing various Director Software Security job openings in Washington as of August 2026, with employment types broken down into 81% Full Time, 15% Part Time, and 4% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution.

Director of Information Security

AeroVironment

Germantown, MD • On-site

Full-time

Medical, Dental, Vision, Retirement

Re-posted 16 days ago


Key responsibilities

  • Lead and mentor a team of information security professionals.

  • Develop and execute the organization's information security strategy and policies.

  • Review and advise on security compliance, risk assessments, and security program management.


AeroVironment rating

9.1

Company rating: 9.1 out of 10

Based on 7 frontline employees who took The Breakroom Quiz

7th of 72 rated aerospace companies


Job description

Worker Type

Regular


Job Description

Company Overview
AV is a leading defense technology company delivering mission-critical solutions to government and commercial customers. We are seeking an experienced Director of Information Security to lead our cybersecurity program and ensure the protection of sensitive national security information.
Summary
The Director of Information Security will lead the organization's information security program, ensuring compliance with defense industry regulations, managing information security, and supervising a team of ~5 professionals. This role requires deep expertise in defense contractor security requirements and the ability to balance rigorous security controls with operational efficiency.
Position Responsibilities
Leadership & Management
  • Lead and mentor a team of information security professionals including compliance specialists, compliance managers, and/or analysts
  • Develop and execute the information security strategy aligned with business objectives and threat landscape
  • Collaborate with executive leadership on security risk management, investment priorities, and incident response
  • Lead and write procedures on approving security exceptions,foreign travel,and deviations following established risk management frameworks
Compliance & Risk Management
  • Build compliance approaches for NIST SP 800-171, CMMC, DFARS, ITAR, EAR, and other defense industry information security requirements
  • Develop and maintain security policies, procedures, and standards
  • Conduct information security risk assessments and manage risk treatment plans
  • Oversee security audits, assessments, and government inspections
  • Maintain relationships with government and third party representatives
Program Management
  • Review and advise on continuous monitoring, compliance practices, and security automation priorities
  • Develop security metrics and reporting for leadership and government customers
  • Manage security budget and resource allocation
Business Partnership
  • Serve as trusted advisor to business units on security requirements
  • Facilitate security discussions with customers and partners
  • Balance security requirements with mission effectiveness and operational efficiency
  • Promote security awareness culture throughout the organization

Basic Qualifications (Required Skills & Experience)

Education
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field
  • Master's degree preferred
Experience
  • Minimum 10 years of progressive information security experience
  • Minimum 5 years in leadership role managing security teams
  • Minimum 5 years working in defense contractor or government environment
  • Experience managing security programs supporting classified systems and information
  • Demonstrated experience implementing and maintaining NIST 800-171 and CMMC compliance
Technical Knowledge
  • Expert knowledge of NIST SP 800-171, CMMC 2.0, and DFARS cybersecurity requirements
  • Working knowledge of NIST Cybersecurity Framework, ISO 27001/27002, and CIS Controls
  • Understanding of cloud security principles and FedRAMP requirements
  • Familiarity with network security, endpoint protection, SIEM, and security operations technologies
  • Knowledge of export control regulations (ITAR/EAR) and related IT security implications
Compliance Frameworks
  • NIST SP 800-171 (Protecting CUI in Nonfederal Systems)
  • CMMC (Cybersecurity Maturity Model Certification) 2.0
  • DFARS 252.204-7012, 7019, 7020, 7021, and related clauses
Skills
  • Strong leadership and people management capabilities
  • Excellent written and verbal communication skills, including ability to present to executive audiences
  • Risk management and decision-making under uncertainty
  • Project and program management
  • Budget management and financial planning
  • Vendor management and contract oversight
  • Ability to translate complex technical security concepts for non-technical stakeholders

Other Qualifications & Desired Competencies

Certifications (Preferred)
  • CISSP (Certified Information Systems Security Professional)
  • CISA (Certified Information Systems Auditor)
  • CCP (CMMC Certified Professional)
  • CCA (CMMC Certified Assessor)
  • CAP (Certified Authorization Professional)
  • Security+ or equivalent DoD 8570 IAT Level II certification
Additional Experience
  • Experience in aerospace, intelligence, or weapons systems environment
  • FedRAMP (Federal Risk and Authorization Management Program)
  • FIPS 140-2/140-3 cryptographic module validation
  • DoD Cloud Computing SRG
  • NIST SP 800-37 (RMF Application) and SP 800-53
  • ISO 27001 certification experience
  • Security architecture design
  • Software security and secure development lifecycle
  • Supply chain risk management
  • Export control and OPSEC experience
  • Government liaison and relationship management
  • Change management and organizational transformation

Physical Demands

  • Ability to work in an office environment (Constant)
  • Required to sit and stand for long periods; talk, hear, and use hands and fingers to operate a computer and telephone keyboard (Frequent)

Special Requirements

  • U.S. Citizen, U.S. Permanent Resident (Green Card holder) orasylee/refugee status as defined by 8 U.S.C. 1324b(a)(3) required.


Clearance Level

No Clearance

The salary range for this role is:

$170,500 - $272,750

AeroVironment considers several factors when extending an offer, including but not limited to, the location, the role and associated responsibilities, a candidate's work experience, education/training, and key skills.

ITAR Requirement:

This position requires access to information that is subject to compliance with the International Traffic Arms Regulations ("ITAR") and/or the Export Administration Regulations ("EAR"). In order to comply with the requirements of the ITAR and/or the EAR, applicants must qualify as a U.S. person under the ITAR and the EAR, or a person to be approved for an export license by the governing agency whose technology comes under its jurisdiction. Please understand that any job offer that requires approval of an export license will be conditional on AeroVironment's determination that it will be able to obtain an export license in a time frame consistent with AeroVironment's business requirements. A "U.S. person" according to the ITAR definition is a U.S. citizen, U.S. lawful permanent resident (green card holder), or protected individual such as a refugee or asylee. See 22 CFR 120.15. Some positions will require current U.S. Citizenship due to contract requirements.

Benefits: AV offers an excellent benefits package including medical, dental vision, 401K with company matching, a 9/80 work schedule and a paid holiday shutdown. For more information about our company benefit offerings please visit: http://www.avinc.com/myavbenefits.

We also encourage you to review our company website at http://www.avinc.com to learn more about us.

Principals only need apply. NO agencies please.

About AV:

AV isn't for everyone. We hire the curious, the relentless, the mission-obsessed. The best of the best.

We don't just build defense technology-we redefine what's possible. As the premier autonomous systems company in the U.S., AV delivers breakthrough capabilities across air, land, sea, space, and cyber. From AI-powered drones and loitering munitions to integrated autonomy and space resilience, our technologies shape the future of warfare and protect those who serve.

Founded by legendary innovator Dr. Paul MacCready, AV has spent over 50 years pushing the boundaries of what unmanned systems can do. Our heritage includes seven platforms in the Smithsonian-but we're not building history, we're building what's next.

If you're ready to build technology that matters-with speed, scale, and purpose-there's no better place to do it than AV.

We are proud to be an EEO/AA Equal Opportunity Employer, including disability/veterans. AeroVironment, Inc. is an Equal Employment Opportunity (EEO) employer and welcomes all qualified applicants. Qualified applicants will receive fair and impartial consideration without regard to race, sex, color, religion, national origin, age, disability, protected veteran status, genetic data,sexual orientation, gender identity or other legally protected status.

ITAR

U.S. Citizenship required

What AeroVironment employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom