IT Policy and Risk Management Strategist
Listed on 2026-01-11
-
IT/Tech
Cybersecurity, Information Security
IT Policy and Risk Management Strategist
Requisition Number: 26582
Travel: 0 - 10%
Employment Type:
Full Time/Salaried/Exempt
Salary: $95,797.00 - $
Security Clearance:
Secret
Level of
Experience:
Senior
This opportunity resides with Warfare Systems (WS), a business group within HII’s Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5
ISR systems.
HII works within our nation’s intelligence and cyber operations communities to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse engineering, software and hardware development uniquely enable us to support sensitive missions for the U.S. military and federal agency partners.
HII-Mission Technologies is currently seeking a skilled IT Policy and Risk Management Strategist. This is an exciting opportunity to lead transformative initiatives within a Federal DoW agency, driving compliance, transparency, and efficiency across IT operations.
The Senior IT Policy & Risk Management Strategist is a key role within a Federal Department of War (DoW) agency responsible for providing strategic consulting, expertise, and guidance across all areas of IT policy, compliance, and risk management. This position plays a critical role in establishing and maturing enterprise-level risk management programs, ensuring alignment with organizational objectives, federal mandates, DoW regulatory requirements, and industry best practices.
The Strategist will lead efforts to develop and operationalize IT policies, conduct annual program assessments, and ensure compliance with federal mandates, including Records Management, Section 508 Accessibility, and the Paperwork Reduction Act (PRA).
- Ensure a comprehensive understanding of existing regulatory requirements and continuously monitors industry trends to anticipate the impact of new regulatory requirements.
- Inventory, document, and maintain standard operating procedures (SOPs), policies, and related governance artifacts across the IT domain.
- Research, analyze, and interpret complex laws, regulations, and regulatory guidance (e.g., FISMA, PRA, Section 508, NIST frameworks) to inform policy development and updates.
- Draft, revise, and review IT policy and procedure documents, ensuring accuracy, completeness, and effective communication of policy intent and nuances.
- Collaborate with the Senior IT Policy & Risk Management Strategist to translate strategic risk and compliance priorities into actionable policies, standards, and implementation guidance.
- Provide expert analysis and recommendations on policy implications, identifying gaps, ambiguities, or conflicts in existing documentation. Support policy issuance processes, including coordination with stakeholders, version control, and communication of changes to affected parties.
- Assist in compliance assessments by providing policy interpretation, evidence collection, and documentation support.
- Establish and operationalize IT policy communication and maintenance programs.
- Develop tools and resources, including policy socialization plans, issuance reference guides, checklists, and templates, to assist IM&T personnel in creating and maintaining IT policies and procedures.
- 5 years relevant experience with Bachelors in related field; 3 years relevant experience with Masters in related field; 0 years experience with PhD or Juris Doctorate in related field; or High School Diploma or equivalent and 9 years relevant experience.
- Requires deep knowledge of IT policy development lifecycle.
- Proven experience in policy drafting in federal or highly regulated environments, and a thorough understanding of relevant laws and regulations.
- Excellent attention to detail, organizational skills, and the ability to work collaboratively in a team-oriented environment are essential.
- Strong analytical and writing skills, and the ability to clearly communicate complex policy concepts to technical and non-technical audiences.
- Clearance:
Must have and maintain an active secret security clearance.
- Ability to maintain a network with key players influencing…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).