{"id":1160300,"url":"https://alion.io/job/aerovironment-vice-president-of-cybersecurity-chief-information-security-officer-ciso","title":"Vice President of Cybersecurity & Chief Information Security Officer (CISO)","company":{"id":176366,"name":"AeroVironment","domain":"avinc.com","url":"https://alion.io/company/aerovironment","size_band":"1001-5000","is_staffing_agency":false,"is_intermediary":false,"ats_vendor":"Workday","truth_index":{"grade":"B","score":80,"open_postings":11,"ghost_share":0,"stale_share":0.818,"repost_share":0,"time_to_fill_p50_days":27,"computed_at":"2026-09-24T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"head","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"hiring_geo_confidence":"structured","locations":["Simi Valley, United States","United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":245500,"max":393000,"currency":"USD","period":"year","gross":null,"usd_annual":393000},"salary_estimate":null,"experience_years_min":15,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"DLP","optional":false},{"name":"FedRAMP","optional":false},{"name":"GDPR","optional":false},{"name":"IAM","optional":false},{"name":"NIST 800-171","optional":false},{"name":"NIST 800-53","optional":false},{"name":"SIEM","optional":false},{"name":"Zero Trust","optional":false}],"status":"live","first_seen_at":"2026-09-23T23:29:16Z","employer_posted_date":"2026-09-23","last_verified_at":"2026-09-24T09:23:04Z","board_verified":true,"closed_at":null,"days_open":0,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":0},"description":"Worker Type\nRegularJob Description\nSummary\nThe “Vice President of Cybersecurity & Chief Information Security Officer (CISO)” is a senior executive responsible for establishing, implementing, and maintaining AV’s enterprise vision, strategy, and cybersecurity program to ensure the confidentiality, integrity, and availability of the organization’s information assets and technology resources.\nThe CISO provides strategic leadership for the organization’s cybersecurity function in support of both classified and unclassified defense programs. This role is responsible for ensuring compliance with Department of Defense (DoD) cybersecurity requirements, advancing the organization’s Cybersecurity Maturity Model Certification (CMMC) posture, implementing and maintaining alignment with National Institute of Standards and Technology (NIST) frameworks, and ensuring adherence to applicable federal laws, regulations, and contractual obligations. Additionally, the CISO will develop and execute cybersecurity strategies that support AV’s accelerated growth, acquisition, and integration initiatives.\nReporting to the Chief Information Officer (CIO), the CISO serves as the principal advisor to executive leadership and the Board of Directors on all matters related to cybersecurity, information security governance, cyber risk management, and the protection of Controlled Unclassified Information (CUI), classified national security information, and other sensitive organizational assets.\nPosition Responsibilities\nStrategic Leadership & Governance\nDevelop and implement comprehensive cybersecurity strategy aligned with business objectives and national security requirements\nEstablish and maintain information security governance framework, policies, standards, and procedures\nServe as primary liaison with government customers, Defense Contract Management Agency (DCMA), Defense Counterintelligence and Security Agency (DCSA), and other regulatory bodies\nProvide regular briefings to the Board of Directors, CEO, and executive leadership on security posture, risks, and initiatives\nLead enterprise risk management activities related to cybersecurity and information protection\nOversee cybersecurity budget planning, resource allocation, and investment prioritization\nCompliance & Regulatory Management\nEnsure organizational compliance with NIST SP 800-171, CMMC 2.0, DFARS, ITAR, and other applicable regulations\nLead and maintain Cybersecurity Maturity Model Certification (CMMC) readiness and certification efforts\nManage System Security Plan (SSP) development, Plan of Action & Milestones (POA&M), and continuous monitoring programs\nOversee NIST 800-53 control implementation for classified systems and Risk Management Framework (RMF) authorization processes\nCoordinate with Defense Industrial Base (DIB) Cybersecurity Program requirements\nDevelop and execute insider threat detection and prevention programs\nLead international cybersecurity compliance strategy, ensuring adherence to UK MoD DEFCON 658 / Def Stan 05-138, Cyber Essentials Plus, UK/EU GDPR, and applicable international data privacy and sovereignty regulations.\nEstablish cross-border data transfer controls and security architectures supporting NATO, AUKUS, and Five Eyes allied defense initiatives.\nTechnical Security Operations\nDirect enterprise security operations including Security Operations Center (SOC), incident response, and threat intelligence\nOversee implementation and management of security technologies including SIEM, EDR, DLP, IAM, and encryption solutions\nEnsure secure system development lifecycle practices and DevSecOps integration\nManage vulnerability management, penetration testing, and security assessment programs\nDirect cloud security architecture and controls for classified and unclassified environments\nOversee identity and access management programs including privileged access management\nOversee cybersecurity governance for Special Access Programs (SAP/SAR), SCIF network operations, COMSEC, and TEMPEST compliance in coordination with Government Security/OPSEC teams.\nIncident Response & Business Continuity\nLead cyber incident response planning, coordination, and execution\nEnsure timely reporting of cyber incidents to DoD, FBI, and other required agencies per DFARS 252.204-7012\nCoordinate with legal, CIO along with executive teams during security incidents\nOversee business continuity and disaster recovery planning for critical security systems\nManage relationships with external incident response partners and forensic specialists\nThird-Party & Supply Chain Security\nEstablish and enforce third-party risk management and vendor security assessment programs\nOversee supply chain security controls and acquisition security requirements\nEnsure subcontractor cybersecurity compliance flows down through contracts\nManage security requirements for cloud service providers and managed service providers\nOrganization Leadership\nBuild, lead, and mentor high-performing information security and cybersecurity teams\nEstablish organizational structure spanning cybersecurity operations, governance/risk/compliance, security architecture, and program security\nFoster culture of security awareness and accountability throughout the organization\nImplement and maintain security education, training, and awareness programs for all personnel\nDevelop succession planning and talent development strategies for security organization\nBasic Qualifications (Required Skills & Experience)\nEducation\nBachelor’s degree in computer science, Information Security, Cybersecurity, Engineering, or related technical field required\nMaster's degree in related fields is strongly preferred\nExperience\nMinimum 15 years of progressive experience in information security, with at least 10 years in senior leadership roles\nExtensive experience in defense contracting environment with classified programs\nProven track record implementing and maintaining DoD cybersecurity compliance programs (NIST 800-171, CMMC, RMF)\nDemonstrated experience managing enterprise-wide security programs in complex, multi-site organizations\nExperience leading organizations through CMMC certification and FedRAMP authorization processes\nStrong background in both physical and cyber security operations\nSecurity Clearance\nActive Top Secret/SCI security clearance required\nEligibility for Special Access Programs (SAP) preferred\nCertifications (Required)\nCISSP (Certified Information Systems Security Professional)\nOne or more of the following: CISM (Certified Information Security Manager), CISA (Certified Information Systems Auditor), CRISC (Certified in Risk and Information Systems Control)\nCertifications (Preferred)\nGSLC (GIAC Security Leadership Certification)\nCCSP (Certified Cloud Security Professional)\nCGEIT (Certified in the Governance of Enterprise IT)\nCAP (Certified Authorization Professional)\nCMMC-AB Certified Professional or Provisional Assessor\nTechnical Knowledge & Skills\nDeep understanding of NIST Cybersecurity Framework, NIST SP 800-53, NIST SP 800-171\nExpertise in CMMC 2.0 requirements and assessment processes\nKnowledge of DoD Cloud Computing Security Requirements Guide (SRG) and FedRAMP\nUnderstanding of DFARS, FAR, ITAR, EAR, and related defense contracting regulations\nProficiency with security technologies: SIEM, EDR/XDR, IAM, PAM, DLP, CASB, firewall/IDS/IPS\nUnderstanding of secure software development practices and DevSecOps methodologies\nKnowledge of zero trust architecture principles and implementation\nFamiliarity with classified network operations and cross-domain solutions\nLeadership Competencies\nStrategic thinking with ability to translate security requirements into business enablement\nExecutive presence with proven ability to communicate complex security concepts to technical and non-technical audiences\nStrong risk management and decision-making capabilities under pressure\nProven ability to influence and build consensus across organizational boundaries\nExperience managing and developing diverse, geographically distributed teams\nBudget management and financial acumen\nPhysical Demands\nAbility to work in an office environment (Constant)\nRequired to sit and stand for long periods; talk, hear, and use hands and fingers to operate a computer and telephone keyboard (Frequent)\n Working Conditions\nPosition may require up to 25% travel to company facilities, customer sites, and industry events\nOccasional after-hours availability for incident response and maintenance windows\nWork in both office environments and Sensitive Compartmented Information Facilities (SCIFs)\nMay require access to classified information and restricted areas\nSpecial Requirements \nU.S. Citizenship Required.\nClearance Level\nTS/SCIThe salary range for this role is:\n$245,500 - $393,000AeroVironment considers several factors when extending an offer, including but not limited to, the location, the role and associated responsibilities, a candidate’s work experience, education/training, and key skills.\nITAR Requirement:\nThis position requires access to information that is subject to compliance with the International Traffic Arms Regulations (“ITAR”) and/or the Export Administration Regulations (“EAR”). In order to comply with the requirements of the ITAR and/or the EAR, applicants must qualify as a U.S. person under the ITAR and the EAR, or a person to be approved for an export license by the governing agency whose technology comes under its jurisdiction. Please understand that any job offer that requires approval of an export license will be conditional on AeroVironment’s determination that it will be able to obtain an export license in a time frame consistent with AeroVironment’s business requirements. A “U.S. person” according to the ITAR definition is a U.S. citizen, U.S. lawful permanent resident (green card holder), or protected individual such as a refugee or asylee. See 22 CFR § 120.15. Some positions will require current U.S. Citizenship due to contract requirements.\nBenefits: AV offers an excellent benefits package including medical, dental vision, 401K with company matching, a 9/80 work schedule and a paid holiday shutdown. For more information about our company benefit offerings please visit: http://www.avinc.com/myavbenefits.\nWe also encourage you to review our company website at http://www.avinc.com to learn more about us.\nPrincipals only need apply. NO agencies please.\nAbout AV:\nAV isn’t for everyone. We hire the curious, the relentless, the mission-obsessed. The best of the best.\nWe don’t just build defense technology-we redefine what’s possible. As the premier autonomous systems company in the U.S., AV delivers breakthrough capabilities across air, land, sea, space, and cyber. From AI-powered drones and loitering munitions to integrated autonomy and space resilience, our technologies shape the future of warfare and protect those who serve.\nFounded by legendary innovator Dr. Paul MacCready, AV has spent over 50 years pushing the boundaries of what unmanned systems can do. Our heritage includes seven platforms in the Smithsonian-but we’re not building history, we’re building what’s next.\nIf you're ready to build technology that matters-with speed, scale, and purpose-there’s no better place to do it than AV.\nWe are proud to be an EEO/AA Equal Opportunity Employer, including disability/veterans. AeroVironment, Inc. is an Equal Employment Opportunity (EEO) employer and welcomes all qualified applicants. Qualified applicants will receive fair and impartial consideration without regard to race, sex, color, religion, national origin, age, disability, protected veteran status, genetic data, sexual orientation, gender identity or other legally protected status.\nITAR\nU.S. Citizenship required","description_format":"text","description_chars":11729,"description_truncated":false,"requirements":{"experience_years_min":15,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":true,"languages":[]},"benefits":["401k plan"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Cybersecurity","Information Security","Military","Drones & UAVs"],"lifecycle":[{"event":"open","at":"2026-09-23T23:29:16Z"}],"liveness":{"score":63,"band":"ok","label":"Likely open","p_open":1,"p_active":0.632,"p_room":1,"age_days":0,"expected_fill_days":27,"reasons":["conf:2","stale_co","velocity","win:early","comp:brand"],"computed_at":"2026-09-24T05:45:00Z"},"pay":{"stated_usd_annual":393000,"is_top_pay":true},"html_url":"https://alion.io/job/aerovironment-vice-president-of-cybersecurity-chief-information-security-officer-ciso","json_url":"https://alion.io/job/aerovironment-vice-president-of-cybersecurity-chief-information-security-officer-ciso.json","meta":{"generated_at":"2026-09-24T11:06:53Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}