Director, National Security-Cybersecurity Governance
$130k - $175kAlvarez & Marsal
Description
About Alvarez & Marsal Alvarez & Marsal is a premier independent global professional services firm specializing in providing turnaround management, restructuring, performance improvement and corporate advisory services. Our talent drives our success, resulting in our growing Disputes and Investigations practice becoming one of the most respected in the industry. From the boardroom to the courtroom, the firm delivers a wide array of solutions to contentious situations by drawing on the deep skills, diverse disciplines and experiences of its professionals. We are recognized by Global Arbitration Review as one of the leading firms of independent experts for arbitration and considered a top three firm by Who's Who Legal based on the number of experts across the globe. Our clients include major banks, leading law firms, private equity firms and well-known corporations and upper-mid-sized companies. The Team At A&M you will have the opportunity to work with a diverse team of supportive and motivated professionals that love to share their knowledge and depth of industry experience with others. A&M's Disputes and Investigations practice comprises professionals from a wide range of backgrounds, who bring and share their deep expertise in conducting investigations and delivering expert witness reports. We have an inclusive developmental environment where everyone has the opportunity to learn and grow. Our culture is characterized by openness and entrepreneurial thinking, with a foundation of mutual respect and high-quality standards for our work. We strive to remove bureaucracy in favor of recognizing effort and results through advancement opportunities and a motivating performance-based reward structure. How you will contribute With the rapidly changing geopolitical environment, competition for sensitive technologies, and risks associated with potential exploitation of sensitive personal and business data, demand for national security-focused risk analysis and mitigation is growing significantly. Our team supports organizations, investors and counsel in identifying, assessing, and reducing national security-related risk through modern security architectures and enterprise-grade solutions. We focus on implementing Zero Trust security frameworks, establishing robust Identity and Access Management (IAM) controls, and embedding regulatory requirements into business systems and processes. Our approach facilitates transparency between companies and regulators by leveraging data analytics, automated compliance monitoring, and advanced security tooling. The team serves as fiduciary to U.S. government agencies as either third-party monitor or third-party auditor, ensuring adherence to federal security standards and frameworks. Responsibilities: • Lead cross-functional project teams in executing advisory, oversight, and audit projects related to Foreign Direct Investment (FDI) national security reviews, export and technology controls, and Cybersecurity Maturity Model Certification (CMMC). Develop comprehensive project plans, establish key milestones, and manage resource allocation using enterprise project management methodologies and tools. • Design and implement Zero Trust architecture frameworks and IAM solutions, including privileged access management (PAM), role-based access control (RBAC), and continuous authentication mechanisms. Collaborate with client security personnel to define and document security controls for distributed, big data systems with emphasis on least-privilege access principles. • Conduct enterprise-wide security assessments to verify the efficacy of administrative, technical, and physical safeguards, with particular focus on identity governance, access management, and Zero Trust implementation. Evaluate security control maturity against industry frameworks such as NIST 800-53, ISO 27001, and CMMC. • Direct comprehensive security assessments of applications and software, including: (i) reviewing architecture diagrams with emphasis on identity and access flows; (ii) interviewing personnel across DevSecOps teams; (iii) evaluating IAM integration points and Zero Trust implementation; (iv) overseeing static and dynamic code analysis; (v) managing network penetration testing; and (vi) preparing detailed technical reports for senior counsel, executives, and national security officials. • Analyze and interpret penetration test results, focusing on identity-related vulnerabilities, access control weaknesses, and deviations from Zero Trust principles. Develop remediation roadmaps aligned with enterprise architecture standards. • Implement and integrate security technologies including Security Information and Event Management (SIEM), Identity Governance and Administration (IGA), and Privileged Access Management (PAM) solutions to enable automated compliance monitoring and security oversight. • Create and maintain project management artifacts including work breakdown structures, risk registers, and resource allocation plans. Establish project governance frameworks and reporting mechanisms to ensure alignment with organizational objectives and regulatory requirements. • Availability for up to 20% travel required to client sites and security assessment locations. Qualifications: • 8+ years of experience with Technology Companies that deliver controlled technology nationally and internationally • Experience with NIST CSF, NIST SP 800-53, NIST SP 800-171, NIST SP 800-218, NIST SP 800-161, and/or ISO 27001 • Experience working in cybersecurity governance (i.e., experience working with NIST CSF; NIST 800-171 and -53; CIS-18 IG1 and ISO 27001) • Proficiency in at least one programming language (e.g., Python, Java, etc.) • Background in network and cloud-based platforms (e.g., GCP, AWS, Kubernetes, etc.) • Familiarity with containerization technologies and deployments • Experience with Big Data platforms (on premise and cloud) • Ability to obtain a USG security clearance • One or more relevant industry certification: CompTIA Security+, CompTIA CySA+, CompTIA CASP+, CISSP, CISM, CISA, ISO 27001, or comparable certifications Your journey at A&M We recognize that our people are the driving force behind our success, which is why we prioritize an employee experience that fosters each person's unique professional and personal development. Our robust performance development process promotes continuous learning, rewards your contributions, and fosters a culture of meritocracy. With top-notch training and on-the-job learning opportunities, you can acquire new skills and advance your career. We prioritize your well-being, providing benefits and resources to support you on your personal journey. Our people consistently highlight the growth opportunities, our unique, entrepreneurial culture, and the fun we have together as their favorite aspects of working at A&M. The possibilities are endless for high-performing and passionate professionals. Full-time Positions and Part-time Positions Over 30 hours Regular employees working 30 or more hours per week are also entitled to participate in Alvarez & Marsal Holdings' fringe benefits consisting of healthcare plans, flexible spending and savings accounts, life, AD&D, and disability coverages at rates determined from time to time as well as a 401(k) retirement plan. Provided the eligibility requirements are met, employees will also receive a discretionary contribution to their 401(k) from Alvarez & Marsal. Additionally, employees are eligible for paid time off including vacation, personal days, seventy-two (72) hours of sick time (prorated for part time employees), ten federal holidays, one floating holiday, and parental leave. The amount of vacation and personal days available varies based on tenure and role type. Click here for more information regarding A&M's benefits programs. The salary range is $130,000 - $175,000 annually, dependent on several variables including but not limited to education, experience, skills, and geography. In addition, A&M offers a discretionary bonus program which is based on a number of factors, including individual and firm performance. Please ask your recruiter for details. Alvarez & Marsal recruits on an ongoing basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) that they are qualified for and that are of interest to them. A&M does not require or administer lie detector tests as a condition of employment or continued employment. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
#LI-NM1
About Alvarez & Marsal Alvarez & Marsal is a premier independent global professional services firm specializing in providing turnaround management, restructuring, performance improvement and corporate advisory services. Our talent drives our success, resulting in our growing Disputes and Investigations practice becoming one of the most respected in the industry. From the boardroom to the courtroom, the firm delivers a wide array of solutions to contentious situations by drawing on the deep skills, diverse disciplines and experiences of its professionals. We are recognized by Global Arbitration Review as one of the leading firms of independent experts for arbitration and considered a top three firm by Who's Who Legal based on the number of experts across the globe. Our clients include major banks, leading law firms, private equity firms and well-known corporations and upper-mid-sized companies. The Team At A&M you will have the opportunity to work with a diverse team of supportive and motivated professionals that love to share their knowledge and depth of industry experience with others. A&M's Disputes and Investigations practice comprises professionals from a wide range of backgrounds, who bring and share their deep expertise in conducting investigations and delivering expert witness reports. We have an inclusive developmental environment where everyone has the opportunity to learn and grow. Our culture is characterized by openness and entrepreneurial thinking, with a foundation of mutual respect and high-quality standards for our work. We strive to remove bureaucracy in favor of recognizing effort and results through advancement opportunities and a motivating performance-based reward structure. How you will contribute With the rapidly changing geopolitical environment, competition for sensitive technologies, and risks associated with potential exploitation of sensitive personal and business data, demand for national security-focused risk analysis and mitigation is growing significantly. Our team supports organizations, investors and counsel in identifying, assessing, and reducing national security-related risk through modern security architectures and enterprise-grade solutions. We focus on implementing Zero Trust security frameworks, establishing robust Identity and Access Management (IAM) controls, and embedding regulatory requirements into business systems and processes. Our approach facilitates transparency between companies and regulators by leveraging data analytics, automated compliance monitoring, and advanced security tooling. The team serves as fiduciary to U.S. government agencies as either third-party monitor or third-party auditor, ensuring adherence to federal security standards and frameworks. Responsibilities: • Lead cross-functional project teams in executing advisory, oversight, and audit projects related to Foreign Direct Investment (FDI) national security reviews, export and technology controls, and Cybersecurity Maturity Model Certification (CMMC). Develop comprehensive project plans, establish key milestones, and manage resource allocation using enterprise project management methodologies and tools. • Design and implement Zero Trust architecture frameworks and IAM solutions, including privileged access management (PAM), role-based access control (RBAC), and continuous authentication mechanisms. Collaborate with client security personnel to define and document security controls for distributed, big data systems with emphasis on least-privilege access principles. • Conduct enterprise-wide security assessments to verify the efficacy of administrative, technical, and physical safeguards, with particular focus on identity governance, access management, and Zero Trust implementation. Evaluate security control maturity against industry frameworks such as NIST 800-53, ISO 27001, and CMMC. • Direct comprehensive security assessments of applications and software, including: (i) reviewing architecture diagrams with emphasis on identity and access flows; (ii) interviewing personnel across DevSecOps teams; (iii) evaluating IAM integration points and Zero Trust implementation; (iv) overseeing static and dynamic code analysis; (v) managing network penetration testing; and (vi) preparing detailed technical reports for senior counsel, executives, and national security officials. • Analyze and interpret penetration test results, focusing on identity-related vulnerabilities, access control weaknesses, and deviations from Zero Trust principles. Develop remediation roadmaps aligned with enterprise architecture standards. • Implement and integrate security technologies including Security Information and Event Management (SIEM), Identity Governance and Administration (IGA), and Privileged Access Management (PAM) solutions to enable automated compliance monitoring and security oversight. • Create and maintain project management artifacts including work breakdown structures, risk registers, and resource allocation plans. Establish project governance frameworks and reporting mechanisms to ensure alignment with organizational objectives and regulatory requirements. • Availability for up to 20% travel required to client sites and security assessment locations. Qualifications: • 8+ years of experience with Technology Companies that deliver controlled technology nationally and internationally • Experience with NIST CSF, NIST SP 800-53, NIST SP 800-171, NIST SP 800-218, NIST SP 800-161, and/or ISO 27001 • Experience working in cybersecurity governance (i.e., experience working with NIST CSF; NIST 800-171 and -53; CIS-18 IG1 and ISO 27001) • Proficiency in at least one programming language (e.g., Python, Java, etc.) • Background in network and cloud-based platforms (e.g., GCP, AWS, Kubernetes, etc.) • Familiarity with containerization technologies and deployments • Experience with Big Data platforms (on premise and cloud) • Ability to obtain a USG security clearance • One or more relevant industry certification: CompTIA Security+, CompTIA CySA+, CompTIA CASP+, CISSP, CISM, CISA, ISO 27001, or comparable certifications Your journey at A&M We recognize that our people are the driving force behind our success, which is why we prioritize an employee experience that fosters each person's unique professional and personal development. Our robust performance development process promotes continuous learning, rewards your contributions, and fosters a culture of meritocracy. With top-notch training and on-the-job learning opportunities, you can acquire new skills and advance your career. We prioritize your well-being, providing benefits and resources to support you on your personal journey. Our people consistently highlight the growth opportunities, our unique, entrepreneurial culture, and the fun we have together as their favorite aspects of working at A&M. The possibilities are endless for high-performing and passionate professionals. Full-time Positions and Part-time Positions Over 30 hours Regular employees working 30 or more hours per week are also entitled to participate in Alvarez & Marsal Holdings' fringe benefits consisting of healthcare plans, flexible spending and savings accounts, life, AD&D, and disability coverages at rates determined from time to time as well as a 401(k) retirement plan. Provided the eligibility requirements are met, employees will also receive a discretionary contribution to their 401(k) from Alvarez & Marsal. Additionally, employees are eligible for paid time off including vacation, personal days, seventy-two (72) hours of sick time (prorated for part time employees), ten federal holidays, one floating holiday, and parental leave. The amount of vacation and personal days available varies based on tenure and role type. Click here for more information regarding A&M's benefits programs. The salary range is $130,000 - $175,000 annually, dependent on several variables including but not limited to education, experience, skills, and geography. In addition, A&M offers a discretionary bonus program which is based on a number of factors, including individual and firm performance. Please ask your recruiter for details. Alvarez & Marsal recruits on an ongoing basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) that they are qualified for and that are of interest to them. A&M does not require or administer lie detector tests as a condition of employment or continued employment. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
#LI-NM1
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Director, National Security-Cybersecurity Governance in Boston, MA vacancy
- ...technical leader to join our Global Cybersecurity organization. As the Sr. Director, Platform Security & Architecture, you will be at... ...and continuous monitoring. Governance & Operations: Establish a... ...in these positions across the national market and provides an...SuggestedLocal area
$160k - $215k
...28349 As a global leader in cybersecurity, CrowdStrike protects the people... ...and we’ve redefined modern security with the world’s most... ...experienced Regional Sales Director dedicated to making a difference... ...status, veteran status, age, national origin, ancestry, physical disability...SuggestedFull timeTemporary workWork at officeLocal areaRemote workFlexible hours- ...A leading cybersecurity firm is seeking a Professional Services Director to lead the strategy and execution of services across Americas East, focusing on Collaboration Security. This role involves managing a high-performing team and ensuring successful delivery of cybersecurity...SuggestedFlexible hours
- ...Head Of Security Engineering We are seeking an experienced Head... ...detection & response, IAM governance, and secure development lifecycle... ...degree in Computer Science, Cybersecurity, or a related field 10+... ..., ancestry, religion, sex, national origin, sexual orientation,...SuggestedWork at officeLocal area
$150k - $175k
...services nationwide. About ECG ECG is a national consulting firm that is redefining... ...Your Opportunity with ECG: Associate Director of Cybersecurity, Physical Security, and Artificial Intelligence (AI) Governance Reporting to the IT director, the associate...SuggestedPermanent employmentFull timeWork at officeRemote work$234k - $322k
...goals. This role demands transformation in process discipline, governance, strategic influence, and automation. You will architect the... ...expression, sexual orientation, marital status, race, color, national origin, ancestry, ethnicity, religion, age, veteran status, disability...Temporary workLocal areaShift work$119k - $195.5k
...Information Security Operations Manager Location Boston Apply... ...in alignment with the NIST Cybersecurity Framework. As a Player/... ...remediation tracking, exception governance). · Own Web Application... ...color, religion, gender, age, national origin, disability, veteran...Hourly payFull timeWork experience placementBank staffWork at office$170.6k - $390k
...working world. Join EY’s Cybersecurity consulting practice – the best... ...your career in information security! The opportunity The... ...designing, implementing, and governing secure network architectures... ..., genetic information, national origin, protected veteran status...Summer holidayRemote workFlexible hours$90k - $120k
...Difference The CTMS Operations Manager owns CTMS platform governance, technical support for other Care Access users, operational reporting... ...orientation, gender identity or expression, pregnancy, age, national origin, disability status, genetic information, protected...Full timeTemporary workWork at officeLocal areaRemote workWorldwideVisa sponsorshipWork visaFlexible hours$224k - $308k
...A leading cybersecurity firm is seeking a Solutions Consultant Manager to lead technical teams in helping clients secure their digital environments. The role requires strong communication skills, pre-sales experience, and a quota-driven mentality. You will guide your...Remote work- ...Job Title: Director - Public Sales Theater Operations... ...the future of cybersecurity. The company's comprehensive... ...50,000 business and government customers with responsibly architected security. More at . Role Overview... ..., religion, gender, national origin, age,...Temporary workFlexible hours
$161.9k - $218.6k
...Product Marketing Manager (PMM) who can shape the future of cloud cybersecurity. As the world's leading cloud and AI provider with 200+... ...across multiple domains - from threat detection and network security to identity and access management. We're looking for a...Local areaFlexible hours$134.4k - $201.6k
...Florida • Boston, Massachusetts The Security Engineering Manager serves a key member... ...capabilities. Establish and run security governance processes, including prioritization,... ...to all persons regardless of age, color, national origin, citizenship status, physical or...H1bWork at officeLocal areaFlexible hoursShift work$99k - $232k
...Specialty/Competency: Cybersecurity & Privacy Industry/Sector: Not Applicable Time Type... ...to identify vulnerabilities, develop secure systems, and provide proactive solutions... ...without regard to race; color; religion; national origin; sex (including pregnancy, sexual...Full timeH1b- ...Description • Manage accounting of revenue and costs and ensure governance in financial processes • Own, manage, and maintain project,... ...orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected...
$185.4k - $278.2k
...Project Management & Strategic Operations Director) is a leadership role that sits on the... ...options and trade-offs Partner with governance forums, site leaders, and project leads... ...identity or expression, age, religion, national origin, ancestry, ethnicity, disability,...Summer workRemote workFlexible hours2 days per week$112.5k - $202.5k
...Are you excited by the prospect of working with innovative security products? Are you passionate about being a technical evangelist... ...apply your problem-solving ability, empathy, creativity, and cybersecurity knowledge to help map APIs, assess exposure, showcase attacks...Work experience placementWork at office- ...Description: Job Summary We are seeking a visionary Senior Director of Cybersecurity Operations to lead and elevate enterprise cyber defense... ..., vulnerability management, disaster recovery, and security operations, shaping how the organization anticipates, detects...
$171.78k - $190.34k
...controls, and change management practices to maintain a stable and secure technology ecosystem during a critical growth phase as we... ...compromising data security or integrity. Proficiency with common cybersecurity frameworks and best practices. Compensation The...$160k - $215k
CrowdStrike, Inc. seeks a Regional Sales Director to enhance its cybersecurity solutions in Boston, MA. The role involves leading a sales team, targeting... ...accounts, and developing strategies for Cloud Security businesses. Ideal candidates should have 10+ years of relevant...- ...Health Equity Operations and Strategy Lead drives program oversight, cross-functional coordination, executive readiness, and ACF governance. The role translates strategy into execution across Alexion and AstraZeneca, advancing alignment, accountability, and measurable...Hourly payTemporary workWork at office
$220k - $250k
...Description Job Description Senior Director, Opinion Leader Programming – Solid Biosciences... ...blend of leadership, technical depth, cybersecurity expertise, and regulated industry... ...for the overall architecture, security, operation, and strategic direction of...Temporary workFlexible hours$133k - $190k
...Manager, Application Security Hybrid work arrangement required... ...requirements. As part of the cybersecurity organization, this role... ...risk reduction Establish governance, metrics, and reporting to measure... ...military or veteran status, national origin, pregnancy/childbirth...Full timeLocal areaRemote workFlexible hoursShift work$114.1k - $268.18k
...career in Advisory. KPMG is currently seeking a Manager, SAP Security for our Consulting practice. Responsibilities: Plan... ...color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran...H1bLocal area$190k - $215k
...schools, safer hospitals, safer businesses, and ultimately, safer nations. Connect with a career that matters, and help us build a safer... ...Solutions is a recognized global leader in Enterprise Security & Resilience software, offering a next-generation cloud platform...Remote workRelocationNight shift$108k - $148.5k
...re proud to be an equal opportunity employer. We do not discriminate based on race, color, ethnicity, ancestry, religion, sex, national origin, sexual orientation, age, citizenship status, marital status, disability, gender identity, gender expression, veteran status...Full timeWork at officeLocal areaRemote work$185k - $225k
...the course of lives.Job SummaryThe Director of Product Security is a key leadership role responsible... ...lead a dedicated team to manage the cybersecurity posture of our medical device portfolio... ...encryption.Regulatory Compliance & Governance: Ensure all required cybersecurity...Remote workWorldwideShift work- ...limited to, the following: Compliance & Governance Develop, implement and maintain a... ...~5 - 8 years of Health, Safety, Security & Environment (HSS&E) experience, ideally... ...OSHA, EPA, NERC, NFPA, or other relevant national frameworks), with the ability to interpret...For contractorsWork at officeLocal area
$164.2k - $240.8k
...Manager, Ecommerce Platforms & Operations We're a high-tech home security company that's passionate about protecting the life you've... ...for Ecommerce platforms, owning the technical strategy, governance, and day-to-day operations of the platform portfolio that powers...Work at office$156.03k - $211.1k
...Why Join Us? As the world's leading vendor of Cyber Security, facing the most sophisticated threats and attacks, we've assembled... ...product marketing or product management in enterprise SaaS, cybersecurity experience is a plus ~ BA/BS in business or engineering, MBA...Temporary work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director, National Security-Cybersecurity Governance. Be the first to apply!
Related searches
- senior director information security Boston, MA
- surveillance manager Boston, MA
- security engineering manager Boston, MA
- security systems manager Boston, MA
- director global security Boston, MA
- physical security manager Boston, MA
- security manager Boston, MA
- program manager with security clearance Boston, MA
- corporate security manager Boston, MA
- director information security Boston, MA



