Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Cyber Security Services

DC Water

Director, Cyber Security Services

The intent of this job description is to provide a representative summary of the major duties, locations, and responsibilities performed by incumbent(s) in this job. Incumbent(s) may not be required to perform all duties in this description, and incumbent(s) may be required to perform work-related tasks other than those specifically listed in this description. This job description is not a "contract" between the employee and the Authority. The job duties and essential functions may be changed at the discretion of the General Manager.

At DC Water, we provide more than 700,000 District of Columbia residents and 24.6 million annual visitors with essential water, wastewater, and stormwater services. DC Water also provides wholesale wastewater treatment services for 1.8 million people in Montgomery and Prince George's counties in Maryland, and Fairfax and Loudoun counties in Virginia. We aspire to be known for superior service, ingenuity, and stewardship to advance the health and well-being of our diverse workforce and communities. To achieve this vision, we commit to our shared mission every day—exceeding expectations by providing high quality water services in a safe, environmentally friendly, and efficient manner.

The Director, Cyber Security Services is responsible for identifying, assessing, and quantifying cybersecurity risks across the enterprise, encompassing both information technology (IT) and operational technology (OT) environments. This role evaluates, designs, develops, and oversees the implementation of cybersecurity and disaster recovery programs across all aspects of the Authority's computing infrastructure to mitigate cyber risks and ensure the highest levels of cyber resilience. The Director, Cyber Security Services collaborates with a wide range of internal and external stakeholders, including IT and engineering leadership, security professionals, and regulatory partners such as WaterISAC, CISA, DHS, TSA, the FBI, and local law enforcement, as well as cybersecurity hardware and software vendors, to identify, plan, and implement physical and cybersecurity initiatives and programs that meet or exceed industry standards and Authority requirements.

  • Maintains awareness of industry specific developments regarding cybersecurity and assesses the impact on Authority systems and develops plans and schedules as necessary to ensure compliance. Monitors implementation plans for successful execution.
  • Directs the Authority's patch management and release management processes to ensure all systems are patched in a timely manner. Coordinates patching and maintenance with third party providers to ensure cloud solutions remain compliant.
  • Conducts vendor risk assessments and ensures all IT vendors comply with Authority IT standards and guidelines, especially those related to cybersecurity.
  • Leads risk management activities to enhance assessment and mitigate cyber risks for both IT and OT systems.
  • Directs a network of security professionals and vendors via a matrix structure to evaluate, assess, and develop strategies regarding potential threats to the Authority's computer and information infrastructure.
  • Designs and implements protection goals, objectives, and metrics consistent with the corporate strategic plan to ensure the highest level of cyber resiliency; creates work breakdown structures (WBS), project plans, project cost estimates, project recommendations, status reports, and executive presentations focused on mitigating cybersecurity risks.
  • Ensures security audits, risk analyses, vulnerability assessments, and network testing are conducted successfully.
  • Directs the development and implementation of global security policies, standards, guidelines, and procedures to ensure ongoing maintenance of security posture.
  • Manages IT Assets and IT Inventory functions.
  • Develops executive-level dashboards and reporting frameworks that clearly measure and communicate cyber risk, performance, and program maturity.
  • Translates technical cybersecurity risks into clear business impacts and recommendations for executive leadership to support informed decision-making.
  • Briefs leadership on the company's cybersecurity posture, key risks, and mitigation strategies to ensure strong governance and alignment with risk tolerance.
  • Collaborates with executives to prioritize security initiatives and spending based on appropriate risk management and/or financial methodology.
  • Maintains relationships with local, state, and federal law enforcement and other related government agencies.
  • Oversees incident response planning as well as the investigation of security breaches and assists with disciplinary and legal matters associated with such breaches as necessary.
  • Directs activities of third party and internal resources in testing of cybersecurity protocols to ensure successful implementation and protections.
  • Mentors the entire organization on security best practices by executing employee education/awareness programs.
  • Ensures compliance with training initiatives designed to maintain enterprise-wide awareness levels.
  • Leads the Cyber Threat Intelligence (CTI) Program by gathering and analyzing threat intelligence from a network of intelligence sources including but not limited to WaterISAC, DHS, the FBI, and others to ensure the Authority assets are properly secured.
  • Guides enterprise strategic planning and operations related to cyber resiliency in collaboration with IT management.
  • Prepares, champions, and manages the budget to support cyber resiliency capabilities for the enterprise.
  • Works with outside consultants as appropriate to conduct independent security audits, assessment of security best practices and evaluation of products and services to meet a broad range of security needs for the Authority.
  • Manages the IT Change Management process.
  • Works with IT management on the design, implementation and testing of the enterprise Disaster Recovery Program and coordinates with the Emergency Management Group to ensure alignment with the broader Business Continuity Plan.
  • Evaluates custom and third party hardware and software solutions from the perspective of security to ensure that all deployed solutions are secured in a manner consistent with the Authority's approved security policies and procedures.
  • Leads the Enterprises Incident Response team as it relates to issues concerning cybersecurity and/or business continuity and disaster recovery.
  • Performs other duties and projects at the discretion of the Vice-President, Information Technology.

Supervisory Responsibilities: Directs a group of consultants and employees to ensure the security program and objectives are met.

Key Working Relationships: Interacts with Senior and Executive Level Staff members and employees throughout the Authority and representatives from other utilities and other government organizations and agencies.

The qualifications listed below are representative of the knowledge, skill, and ability necessary for an individual to perform each essential responsibility satisfactorily. Reasonable amounts of training are provided.

Required Skills & Qualifications

Preferred Skills & Qualifications

* The work environment characteristics described in the physical requirements section of the required skills & qualifications table are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential responsibilities.

At DC Water, our people make us an industry leader. Join a group of thinkers, innovators, and problem solvers focused on protecting life's most precious resource in the nation's capital.

  • Take pride in your work. We provide an essential service and do work that matters. A career at DC Water is an exciting opportunity to help improve the environment and make a lasting difference for the community.

  • Connect to a strong culture. Everything we do is grounded in our shared values—accountability, trust, teamwork, customer focus, safety, and well-being.

  • Be your true self. We are an inclusive organization that embraces diversity, and we recognize and celebrate employees' individuality and unique contributions.

  • Build your skills and career path. We are committed to developing a future-ready workforce by helping our employees develop skills for the jobs of tomorrow.

We are proud to be an EEO/AA employer M/F/D/V.

We maintain a drug-free workplace and perform pre-employment substance abuse testing.

The Americans with Disabilities Act prohibits discrimination against "qualified individuals with disabilities."

If a reasonable accommodation is needed to participate in the job application or interview process, to

perform essential job functions, and/or to receive other benefits and privileges of employment, please

email View email address on click.appcast.io.

Vacancy posted 12 hours ago
Similar jobs that could be interesting for youBased on the Director, Cyber Security Services in Washington DC vacancy
  •  ...Director, Cyber Security Practice Hybrid (Maryland, Virginia, Washington, DC) Tria Federal delivers digital services and technology solutions that support the health and safety of veterans, service members and civilians. For two decades, federal agencies have relied... 
    Suggested
    Contract work

    Softrams

    Washington DC
    4 days ago
  • $208.5k - $235.75k

     ...Cybersecurity Architecture and Engineering Services Director to join our team of talented...  ...supporting the Uniform Mortgage-Backed Security (UMBS) of Fannie Mae and Freddie Mac....  ...Services will lead the overall design of cyber security architecture, cyber security engineering... 
    Suggested
    Full time
    Work experience placement
    Work at office
    Remote work

    U.S. Financial Technology

    Bethesda, MD
    5 days ago
  • $229.1k

     ...Director, Cyber Security Operations The ACLU seeks applicants for the full-time position of Director, Cyber Security Operations in the Administration...  ...determined that employment in this position at the ACLU does not qualify for the Public Service Loan Forgiveness Program.... 
    Suggested
    Full time
    Work at office
    2 days per week

    ACLU

    Washington DC
    4 hours ago
  •  ...relevant field, with at least 5 years of system administration experience and an active DoD Secret Clearance. Knowledge of networking, Linux/Unix, and VPNs is essential, along with experience managing technical issues and systems security. #J-18808-Ljbffr NewGen Technologies
    Suggested

    NewGen Technologies

    Arlington, VA
    2 days ago
  •  ...to identify trends and widespread remediation needs Collaborate with stakeholders such as Developers, Network Administrators, and Security Operations to ensure timely detection / remediation of vulnerabilities Proactive security engineering and SIEM optimization that... 
    Suggested
    Local area

    KPMG Careers

    Washington DC
    3 days ago
  •  ...Cyber Defense Analyst – Lead  Position Title: Cyber Defense Analyst - Lead Program: SBA – Enterprise Cybersecurity Services (ECS) Position Summary The Cyber Defense Analyst – Senior serves...  ...intelligence information with security events and operational... 

    cFocus Software Incorporated

    Washington DC
    2 days ago
  •  ...provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges...  ...'s Hunt and Incident Response Team (HIRT) secures the nation's infrastructure. HIRT provides... 
    Immediate start

    Nightwing

    Arlington, VA
    11 days ago
  •  ...next level! SecuriGence delivers essential technology services supporting critical national security missions. We are seeking an Cybersecurity Manager to...  ...compliance standards. Direct and manage Defensive Cyber Operations (DCO), leading the active defense of... 
    Contract work
    For contractors

    Chenega Corporation

    Arlington, VA
    8 days ago
  •  ...engineering, technical, and professional services serving the US government, allies and critical...  ...administration, and control system security to operate, maintain, sustain, upgrade, and...  ...be utilized Credentials that meet DoD Cyber Workforce requirements for specialty... 
    Contract work
    Work at office
    Remote work

    Amentum

    Washington DC
    8 days ago
  • $118.81k - $201.97k

     ...Description ICF is seeking an experienced Cyber Analysis Lead to support a Defense Human...  ...analysis, vulnerability assessments, and security monitoring across multiple DHRA systems....  ...ICF is a global advisory and technology services provider, but we're not your typical... 
    Full time
    Contract work
    Work experience placement
    Work at office

    ICF

    Alexandria, VA
    1 day ago
  •  ...Workplaces awardee and Washington Top Workplaces honoree, is seeking a Cyber Lead to support our growing team. The ideal candidate will be...  ..., assessments, vulnerability management, application security, threat modeling, risk management, and compliance activities. As... 
    Full time
    Contract work

    Spatial Front

    Arlington, VA
    2 days ago
  • $190k

     ...relationships ranging from cross-functional stakeholder groups to existing security teams. You're Good At: Understanding the role...  ...lifecycles, system designs, and IT architectures. Utilizing cyber risk quantification to reduce uncertainty around cyber risk and... 
    Work at office

    Boston Consulting Group

    Washington DC
    2 days ago
  • $154.05k - $278.48k

     ...Description Leidos has an exciting opportunity for Cyber Security Engineer—Technical Lead in our Intel Security Sector's Analysis Solutions...  ...and tools Familiar with Cloud Computing Technologies and Services (AWS, Oracle, Google) Knowledge of potential attack vectors... 
    Local area
    Immediate start
    Flexible hours

    Leidos

    Bethesda, MD
    1 day ago
  • $116.9k - $243.1k

     ...At Accenture Federal Services, nothing matters more than helping the US federal government...  ...ingenuity for clients across defense, national security, public safety, civilian, and military...  ...! Overview: We are seeking an elite Cyber Threat Hunt Lead to build and guide a... 
    Live in
    Work at office
    Local area

    Accenture

    Arlington, VA
    4 days ago
  •  ...obtain a Public Trust Clearance ~ GCTI or relevant vendor Cyber Threat Intelligence certification, such as Mandiant Cyber...  ...our clients' toughest IT challenges with integrity, security, and outstanding service by delivering both technology and talent. We have helped... 

    Newgen

    Washington DC
    1 day ago
  •  ...Cyber Threat Intelligence Lead Cydecor is a premier Federal Government solutions provider...  ...platforms. We leverage leading-edge secure systems and software development, backed...  ...delivering 24/7 Security Operations Center (SOC) services. This role provides leadership,... 
    Temporary work
    Monday to Friday

    Cydecor

    Arlington, VA
    4 days ago
  • $108.48k - $184.41k

     ...Description We are seeking a Cyber Security Lead to support enterprise IT initiatives in a regulated environment where security, privacy...  ...and helps ensure that modernization, access, and shared services efforts are carried out with appropriate security discipline... 
    Full time
    Contract work
    Work experience placement
    Work at office

    ICF

    Washington DC
    5 days ago
  • cFocus Software Incorporated is seeking a Cyber Defense Analyst - Lead to provide advanced expertise in cybersecurity operations and...  ...response, threat hunting, and extensive experience with various security tools. In this position, you will mentor junior analysts and... 

    cFocus Software Incorporated

    Washington DC
    5 days ago
  •  ...better‑informed decisions using trusted data at scale. Leidos Digital Modernization sector is seeking an experienced SME Zero Trust Cyber Security Analyst to support the delivery, enhancement, and adoption of enterprise data and analytics products used across multiple DoD... 

    Leidos

    Alexandria, VA
    2 days ago
  • A government services provider is seeking a Technical Program Manager to support their operations in Washington, DC. The ideal candidate...  ...time off, ensuring a comprehensive benefits package for potential employees. #J-18808-Ljbffr Koniag Information Security Services, LLC

    Koniag Information Security Services, LLC

    Washington DC
    3 days ago
  • $75.2k - $158.1k

     ...Job Title: Intermediate Information System Security Officer Job Category: Information Technology Time Type: Full time Minimum...  ...Security Practitioner (CASP+) Or other applicable IAT or IAM cyber security professional certifications Knowledge of information... 
    Full time
    Contract work
    Work experience placement
    Work at office
    Local area
    Monday to Friday
    Flexible hours

    CACI International

    Washington DC
    4 days ago
  • $114.6k - $192.5k

     ...SMX is seeking a highly skilled Information Systems Security Officer (ISSO) - Sr (Cloud) to support a mission-critical federal program in Huntsville, AL. This individual will serve as a senior cybersecurity and cloud security resource responsible for supporting the security... 
    Contract work
    Work experience placement
    H1b

    SMX Corporation

    Washington DC
    1 day ago
  •  ...and a registered Government contractor that provides services and solutions in: National Security Programs Professional, Administrative, and...  ...management) relative to assigned duties. Execute the cyber security portion of the self-inspection, to include... 
    Full time
    For contractors
    Work at office
    Local area
    Flexible hours

    gTANGIBLE

    Washington DC
    1 day ago
  • $62k - $141k

     ...Information System Security Officer, Mid The Opportunity: Perform analysis of policies and procedures to ensure information system security controls are implemented and continuously monitored throughout the system development life cycle. Conduct hands-on validation... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    1 day ago
  • $110k - $170k

     ...Senior Information Systems Security Officer (ISSO) Innovative Defense Technologies (IDT), a leading defense technology company, is seeking a Senior Information System Security Officer (ISSO) to be part of our Security team and based out of our Arlington, VA location... 
    Full time
    Work at office
    Immediate start

    Innovative Defense Technologies

    Arlington, VA
    3 days ago
  • $100k - $130k

     ...Information Systems Security Officer Total Systems Technologies Corporation (TSTC) is an award-winning provider of full lifecycle program, investment, and security management consulting services that enable United States civilian, defense, intelligence, and law enforcement... 
    Full time
    Contract work
    Temporary work
    Local area
    Remote work
    Flexible hours

    Total System Technologies

    Washington DC
    1 day ago
  • $156k - $200k

     ...As an Information Systems Security Officer (ISSO), you will lead and support government clients through the full lifecycle of obtaining...  ...practices. We know that you can't have great technology services without amazing people. At MetroStar, we are obsessed withour... 
    Full time
    Work experience placement
    Local area
    Flexible hours

    MetroStar Corporation

    Washington DC
    4 days ago
  •  ...Cloud Information Systems Security Officer (Cloud ISSO) – Senior Level CGI Federal is seeking a Senior Cloud Information Systems Security...  ...Technical Familiarity: • AWS/Azure security services (IAM, KMS, Network Security Groups, logging). • CSPM tools (Security... 
    Contract work

    CGI

    Washington DC
    4 days ago
  •  ...GAMA-1 Technologies is seeking a Senior ISSO to support the security posture, compliance activities, and authorization efforts of federal...  ...standards, establishment of standardized processes, and IT Services expertise. At GAMA-1, we believe employees should grow, achieve... 
    Local area

    GAMA-1 Technologies

    Washington DC
    4 hours ago
  • $135k - $216k

     ...Information Systems Security Officer – Sr Cloud Peraton is seeking an Information Systems Security Officer – Sr Cloud to support our Federal Strategic Cyber programs. Location: National Capital Region (NCR) You will: Serve as Task Lead. Be well-versed... 
    Contract work
    Work experience placement
    Shift work

    Peraton

    Washington DC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Cyber Security Services. Be the first to apply!