Safeguards Security & Compliance Lead
SkyePoint Decisions · 21 hours ago
SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results.
This is a contingent position based upon contract win.
SkyePoint Decisions is seeking a Safeguards Security & Compliance Lead to join our team supporting a federal customer. This position is contingent on contract win.
The Safeguards Security & Compliance Lead provides senior technical and programmatic leadership for customer's IRS Publication 1075 and Federal Tax Information (FTI) security and compliance activities. The Lead coordinates the multidisciplinary Safeguards team and integrates risk assessment, security assessment and inspection, continuous monitoring, findings and FTI POA&M management, policy and requirements, cloud/security architecture, compliance artifacts, and executive reporting into a cohesive and defensible Safeguards program. The position translates IRS 1075 and applicable Federal security requirements into actionable controls and implementation guidance; directs development and quality review of Safeguards plans, reports, scorecards, and supporting evidence; coordinates FTI compliance activities with FSA business offices, system owners, hosting/processing locations, external contractors, and Government stakeholders; and drives identified risks, findings, and deficiencies through remediation and closure. The Lead also supports Blue/White/Red Team activities, crosswalks IRS 1075 requirements to NIST, DHS, OMB, and related requirements, and provides senior security guidance for assigned ATO activities.
This is a remote position.
Responsibilities:
- Lead planning, coordination, execution, and quality control of the FSA Safeguards program; develop and maintain the Safeguards Program Management Plan, requirements documentation, Safeguard Security Report, Inspection Plan, procedures, scorecards, executive presentations, and implementation guidance.
- Translate IRS Publication 1075, FTI protection requirements, and applicable NIST, DHS, OMB, and Federal security requirements into actionable controls, crosswalks, processes, evidence requirements, and stakeholder guidance; support required FTI security/disclosure training and compliance activities.
- Coordinate FSA business offices, system owners, technical teams, external contractors, hosting/processing locations, and Government stakeholders to maintain consistent Safeguards execution, documentation, reporting, and readiness.
- Direct IRS 1075 security/vulnerability risk assessments, security assessments and inspections of systems and FTI hosting/processing locations, and Blue/White/Red Team activities; coordinate cloud security expertise and assess compliance evidence, policies, procedures, and technical artifacts.
- Maintain integrated visibility of Safeguards risks, findings, dependencies, corrective actions, and FTI POA&Ms; track remediation to defined timelines, validate closure, and communicate material issues and trends through dashboards, scorecards, reports, and executive briefings.
- Lead continuous monitoring and recurring compliance reviews; identify control weaknesses, emerging risks, and systemic issues and recommend changes that improve FTI protection, assessment readiness, and Safeguards program effectiveness.
- Lead Safeguards requirements gathering and change coordination; maintain alignment among IRS 1075 requirements, FSA security processes, system changes, policies, procedures, and compliance artifacts.
- Direct quality reviews of assessment evidence, security documentation, findings, reports, policies, procedures, and other Safeguards deliverables for completeness, accuracy, traceability, and compliance before Government submission or use.
- Provide senior security and compliance guidance for assigned non-FTI ATO activities and coordinate multidisciplinary Safeguards specialists to resolve complex assessment, architecture, cloud, risk, policy, and compliance issues.
Required Qualifications:
- Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, Engineering, or a related discipline.
- Over 10 years of experience in information assurance, cybersecurity, security compliance, security assessment, risk management, or a directly related subject area.
- Senior industry professional certification such as Certified Information Systems Security Professional (CISSP) or equivalent.
- Demonstrated experience providing technical and management leadership on major cybersecurity, information assurance, compliance, or technology assignments, including establishing goals and plans that meet project objectives.
- Expert domain and technical knowledge of information assurance/security, including Federal security requirements, security controls, assessments, risk management, continuous monitoring, findings/POA&M management, and compliance.
- Experience directing and controlling client activities and managing methods, staffing, resources, and execution necessary to meet technical and contractual requirements.
- Experience interfacing and negotiating with clients and senior management, including communicating technical risks, priorities, findings, corrective actions, and recommendations that affect program implementation.
- Demonstrated ability to make high-impact technical and management decisions requiring expert domain knowledge and affecting project execution, cybersecurity posture, compliance, or mission outcomes.
- Experience leading multidisciplinary cybersecurity/compliance teams and supervising personnel or technical workstreams, as required.
- Experience with IRS Publication 1075/FTI security requirements or comparable regulated-data security environments, including assessments/inspections, compliance evidence, remediation, continuous monitoring, and defensible security documentation.
- Ability to obtain a 6c Public Trust. At least an active Secret clearance is highly preferred.
- U.S. Citizenship is required.
Compensation:
Salary Range: TBD
The SkyePoint Decisions salary range for this position is a general guideline only. It represents an estimated range for this position and is just one piece of our total compensation package.
Salary at SkyePoint is determined by various factors, including but not limited to location, work schedule, the candidate’s combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability, market data and business considerations.
In addition to a competitive salary, SkyePoint offers benefits including a certification incentive program, PTO, floating federal holiday options, several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, Vision, ST/LT Disability, Life Insurance, and 401k matched.
What We Can Offer You:
- At SkyePoint, we go B.I.G. (beginning in GRATITUDE) by recognizing all we have and giving back to our employees, families, and communities. It instills a positive mindset that permeates all we do. By beginning in gratitude, SkyePoint can continue to spread living in gratitude each day.
- Great Benefits: Several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, ST/LT Disability, Life Insurance, floating federal holiday options, and 401k matched
- Certificate Incentive Program: To promote professional development, we recognize and reward employees who obtain new certifications aligned with business needs.
- Flexible Work Environment
SkyePoint Decisions is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development. We possess a common vision of excellence and foster a collaborative team culture built upon individual performance and accountability. We invest in our people and systems to create value for our clients. It is the SkyePoint Way. We are grateful for the opportunity to work with exceptional people and give back to the communities we serve. Our employees value the flexibility at SkyePoint that allows them to balance quality work and their personal lives.
SkyePoint Decisions is a participating E-Verify Employer.
U.S. Citizenship is required for most positions.
Equal Opportunity Employer/Veterans/Disabled.
CCPA Disclosure Notice Here