The MITRE Corporation Senior Policy & Compliance in Bedford, Massachusetts
Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day—working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive benefits, exceptional professional development opportunities, and a culture of innovation that embraces diversity, inclusion, flexibility, collaboration, and career growth. If this sounds like the choice you want to make, then choose MITRE—and make a difference with us.
The MITRE InfoSec Policy & Compliance (P&C) team seeks a passionate, conscientious, and customer-focused person to help drive the implementation and operations of our standards-based compliance program. You will help communicate compliance requirements to MITRE users and review their IT environments and security controls. You will also perform risk assessments of policy compliance gaps (i.e., waivers) and review contracts to identify security and compliance issues. The P&C team is comprised of dedicated individuals committed to continuously improving MITRE’s security posture and supporting our internal customers in successfully executing MITRE’s multiple sponsor missions.
Participate in MITRE’s standards-based compliance program
Review lab environments and systems for compliance against MITRE information security policies
Conduct in contract reviews to identify security and compliance concerns
Identify and document risks for proposed policy non-compliance
Help interpret policy for business use cases
- Applicants selected for this position will be subject to a government security investigation and must meet eligibility requirements for access to classified information or applicants who are eligible for security clearances.
Demonstrated experience collaborating successfully with teams
Demonstrated examples of building and leveraging relationships that had a positive impact on the work
Track record of impactful work – how you have made a difference
Strong analytical and problem-solving skills and proactive, critical thinking skills
Good prioritization and time management skills to deliver on multiple tasks
Excellent written/verbal communications skills
General knowledge of industry security frameworks
Some technical knowledge of networks, operating systems, and/or applications
Ability to obtain and maintain a Secret level security clearance
Knowledge of security standards (e.g., NIST SP 800-171, CMMC)
Risk Management experience
Experience conducting policy compliance audits
Experience interpreting government requirements and translating them into corporate policy
Familiarity with advanced cyber adversary tactics, techniques, and procedures
Existing DoD Secret Clearance
This requisition requires the candidate to have a minimum of the following clearance(s):
This requisition requires the hired candidate to have or obtain, within one year from the date of hire, the following clearance(s):
MITRE requires all employees to be fully vaccinated against COVID-19. Newly hired employees must be fully vaccinated prior to their employment start date. MITRE will provide reasonable accommodation to those with a medical condition, disability or a sincerely held religious belief that prevents them from receiving a vaccine so long as it does not create an undue hardship for MITRE and/or does not pose a direct threat to the health or safety of the employee or others in the workplace.
MITRE is proud to be an equal opportunity employer. MITRE recruits, employs, trains, compensates, and promotes regardless of age; ancestry; color; family medical or genetic information; gender identity and expression; marital, military, or veteran status; national and ethnic origin; physical or mental disability; political affiliation; pregnancy; race; religion; sex; sexual orientation; and any other protected characteristics. For further information please visit the Equal Employment Opportunity Commission website EEO is the Law Poster (https://www.eeoc.gov/sites/default/files/migrated_files/employers/poster_screen_reader_optimized.pdf) , EEO is the Law Poster-Supplement (https://www.eeoc.gov/sites/default/files/migrated_files/employers/eeoc_gina_supplement.pdf) and Pay Transparency (https://www.dol.gov/sites/dolgov/files/OFCCP/pdf/pay-transp_%20English_formattedESQA508c.pdf) .
MITRE intends to maintain a website that is fully accessible to all individuals. If you are unable to search or apply for jobs and would like to request a reasonable accommodation for any part of MITRE’s employment process, please contact MITRE’s Recruiting Help Line at 703-983-8226 or email at firstname.lastname@example.org.
Copyright © 1997-2021, The MITRE Corporation. All rights reserved. MITRE is a registered trademark of The MITRE Corporation. Material on this site may be copied and distributed with permission only.
Benefits information may be found here (https://careers.mitre.org/us/en/benefits)
The MITRE Corporation
- The MITRE Corporation Jobs