Director of Cybersecurity
JanickiAbout the role
Location: Sedro-Woolley,Washington,United States
Janicki Industries is an innovative, family-owned aerospace company located at the foot of the Cascades. We focus on engineering and manufacturing complex projects for companies in the aerospace, defense, and space industries. We are looking for a Director of Cybersecurity to join our growing team.
This position is located on-site in Sedro-Woolley, Washington State.
POSITION DESCRIPTION
The Director of Cybersecurity will be responsible for advancing and strengthening the organization’s cybersecurity program within a highly regulated aerospace manufacturing environment. This role will be responsible for establishing and maintaining compliance with NIST SP 800-171 and CMMC Level 2, managing enterprise security operations, and ensuring the protection of Controlled Unclassified Information (CUI), ITAR/EAR data, and other sensitive assets. The Director will balance governance, risk, and compliance (GRC) oversight with operational security leadership, driving alignment with regulatory requirements while strengthening the company’s overall cybersecurity posture.
The following essential job functions are performed as a Director of Cybersecurity:
- Develop, implement, and maintain cybersecurity policies, procedures, and standards aligned with NIST SP 800-171 R2, CMMC Level 2, and DFARS requirements
- Oversee compliance documentation (SSP, POAMs, evidence collection) and prepare the organization for C3PAO audits and assessments
- Lead and mentor the cybersecurity compliance and operations teams, managing performance, resource allocation, and professional development
- Direct SOC operations, including monitoring, threat detection, incident response, and vulnerability management
- Ensure contract-specific data handling requirements (e.g., CUI, ITAR, EAR flow-down clauses) are documented and enforced across programs
- Manage supplier compliance, including SPRS reviews, secure data transfer approvals, and maintaining an approved vendor list
- Develop and oversee scalable training programs for 2,000+ employees on CUI/ITAR handling, secure data transfer, and related policies
- Lead external and internal audits and assessments, coordinating corrective actions and continuous improvement initiatives
- Optimize security tools, processes, and budget, leveraging automation and external consultants where appropriate
- Conduct enterprise risk assessments, compliance audits, and vendor risk reviews to ensure ongoing alignment with regulatory requirements
- Collaborate with executive leadership, prime contractors, and regulatory bodies to represent the company in cybersecurity and compliance matters
- Provide executive leadership with strategic guidance on cybersecurity posture, maturity roadmaps, and resourcing needs
- Must be at work on time and maintain good attendance. This is a condition of employment and is an essential function of the job
- Must work well under pressure, meeting and completing multiple deadlines
- Performs other duties as assigned
QUALIFICATIONS
- Due to our ITAR and EAR regulations, applicants must be a US Citizen or of Legal Permanent Resident Status as defined by 8 U.S.C. 1324b (a) (3)
- This position requires the ability to obtain a U.S. Secret Security Clearance (U.S. Citizenship Required). Janicki will assist with gaining this access once employed. Special Access Program or other Government Access Requirements are mandatory for this position and requires candidate agreed to enter a Continuous Evaluation program.
EDUCATION/EXPERIENCE
- Bachelor’s degree in Information Security, Cybersecurity, Computer Science, or related field
- 10+ years of progressive cybersecurity experience, including 3+ years in a leadership role, preferably in aerospace, defense, or manufacturing
- Proven experience in cybersecurity compliance programs for DoD contractors, including CMMC Level 2, NIST SP 800-171 R2, DFARS, CUI, and ITAR/EAR requirements
- Hands-on experience managing audits, supplier risk assessments, compliance documentation (SSPs, POAMs, evidence collection), and multi-contract environments
- Strong knowledge of the Supplier Performance Risk System (SPRS), supplier compliance reviews, and secure data handling across subcontractor ecosystems
- Experience leading or serving as ISSO/ISSM in classified or highly regulated environments
- Demonstrated leadership of SOC functions, incident response programs, and vulnerability manageme
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s