hero

Find your next cybersecurity opportunity

240
companies
341
Jobs

Senior Cyber Risk Analyst - Enterprise Awareness

Leidos

Leidos

IT
Remote · United States
Posted on Wednesday, May 1, 2024

Leidos is a Fortune 500® technology, engineering, and science solutions leader working to solve the world's toughest challenges in the defense, intelligence, civil, and health markets. Our 46,000 employees support vital missions for government and commercial customers.

Leidos is seeking a mid to senior level cybersecurity awareness and training program specialist to join our Corporate Information Security Risk & Resilience Team. In this role, you will be leading a multi-faceted cybersecurity awareness and training program that effectively enhances the security posture of the organization through strategic application of a variety of industry-leading training methodologies and techniques. You will drive and mature these initiatives, research emerging cyber threats/technologies and best-practice training techniques, analyze and report to management on the impact and historic trends for the program, and provide recommendations and insight into strategic direction and planning for greater maturity. You will be accountable to increase the value and impact of our cyber awareness services and capabilities by making them more efficient, more effective, and improving the employee experience!

Key Responsibilities:

  • Development: Research and develop content for our cybersecurity awareness and training program tailored to impact different employee roles and levels. This may include but not limited to annual mandatory training, role-based training, and remedial phishing training.
  • Administration: Facilitate and administer the scheduling, delivery, and documentation of training programs, and preparing reports on program effectiveness for management. Ensure programs comply with industry regulations and standards, such as NIST, HIPAA, and GDPR.
  • Monitor and Evaluate Impact: Continuously assess the effectiveness of training initiatives through feedback, surveys, and metrics by using data-driven insights to refine and expand the training program for increased efficiency and effectiveness.
  • Improve the Cyber Culture: Create a culture of cybersecurity awareness across the organization by promoting a positive and engaging experience for employees through interactive training materials, including but not limited to videos, blogs, articles, e-learning modules, and in-person session.
  • Process Optimization: Implement emerging technologies and innovative methodologies to streamline process improvements for better alignment with our long-term operational strategy, enhancing the efficiency and effectiveness of the cybersecurity awareness and training program.
  • Collaboration: Collaborate with cross-functional teams to foster a culture of continuous learning and innovation within the Cyber Enterprise Awareness area.
  • Continuous Improvement: Stay informed on emerging cyber risks, threats, and technologies through attending workshops, reviewing, publications on cybersecurity frameworks such as NIST, CIS, CMMC, ISO, and other security technologies, as well as understanding social engineering tactics and how bad actors exploit human vulnerabilities in cybersecurity.

What Sets You Apart:

  • Education: Typically requires Bachelor of Science degree with Cybersecurity or Information Technology related major (or 10+ years as a cybersecurity professional plus CISSP Certification in lieu of a degree)
  • Experience: 5+ years of experience in a technical role within a Cybersecurity focused field with an additional 2+ years of experience developing and leading cybersecurity training or education courses, briefs, presentations, and initiatives for a wide enterprise audience
  • Experience leading and managing training programs
  • Experience administering e-learning platforms and tools
  • Exceptional analytical and problem-solving skills
  • Be eager to innovate and contribute to cybersecurity awareness and training solutions
  • Strong knowledge of cybersecurity principles, threats, and best practices in order to craft professional and technical cyber training as well as exercise judgment when policies are not well-defined
  • Excellent communication skills to expresses key ideas and obtain tangible feedback from cross-functional team members and stakeholders. Possess strong technical writing and presentation skills and convey technical details to a non-technical audience
  • A proactive and self-driven approach to research, learning, and upskilling

You Might Also Have:

  • Multiple Certifications (PMP, CAPM, Security+, SANS, CISSP, or similar)
  • Experience with phishing simulation tools

If you are passionate about cybersecurity and have a proven track record of developing and leading impactful training programs, we encourage you to apply for this exciting opportunity!

What You Will Get:

  • A chance to significantly impact and improve cybersecurity behaviors at Leidos.
  • Opportunities to contribute to a leading global defense and technology organization.
  • Resources for continuous learning and professional growth.
  • A collaborative, inclusive, and innovative work environment.
  • Competitive compensation and benefits package.

Original Posting Date:

2024-04-30

While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $101,400.00 - $183,300.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.