- Salary
- $120k – $150k
- Location
- Washington DC Metro Area · Herndon, Virginia, United States
- Workplace
- Hybrid
- Department
- Mission Enablement
- Education
- Bachelor
- Source
- Greenhouse
Description
Dark Wolf is seeking Data Privacy Subject Matter Expert (SME) to join a collaborative team to develop, manage, and maintain the privacy and data compliance posture of information systems. The successful candidate will focus on Privacy Impact Assessments (PIAs), PII governance, and policy development aligned with customer needs. You will support your team and customer through compliance planning, agreement execution, and privacy risk management, ensuring high standards of data protection and regulatory compliance. This position will be based out of the Washington DC/Northern VA metro area with hybrid schedule opportunity. Responsibilities include but are not limited to:
- Leading the development, management, and maintenance of comprehensive privacy and data compliance postures for federal information systems, with a primary focus on DoD environments.
- Conducting Privacy Impact Assessments (PIAs) for federal systems, navigating distinct government PIA templates, adjudication processes, and System of Records Notices (SORN) coordination.
- Serving customer facing capacity, collaborating with program managers, Information System Security Managers/Officers (ISSMs/ISSOs), and system engineers to characterize data flows, identify PII types, and define system boundaries.
- Navigating and managing DoD/DoW privacy office review and approval workflows, including direct coordination with Component's Senior Component Official for Privacy (SCOP) and, where applicable, the DoW Chief Information Officer's Privacy and Civil Liberties Directorate.
- Provide expert guidance on PII governance and policy development, ensuring alignment with customer needs and evolving regulatory landscapes.
- Apply expertise to contractor-touching systems, ensuring full compliance with extended DoD/DoW guidance.
Required Qualifications
- Bachelor’s Degree in Information Technology, Data Governance, Legal Studies, Finance, Computer Science, or a related field
- 7+ years of relevant data privacy, financial compliance, or information assurance experience
- One or more relevant professional privacy or security certifications (e.g., IAPP CIPP/G, CIPP/US, CIPM, CIPT, or standard security baselines like Security+ CE, CAP/ISC2 CGRC)
- Proven experience handling Privacy Impact Assessments (PIAs), managing PII inventories, or acting as a Privacy Analyst / Compliance Officer within a federal or DoD environment
- Hands-on tool experience associated with data discovery, compliance management, or workflow tracking
- Familiarity with federal privacy regulations, NIST privacy frameworks, and risk management policies/procedures
- Ability to use prior experience and knowledge to address new data compliance situations, especially during direct interactions with clients
- Ability to communicate on complex privacy and technical subjects using clear, concise, non-technical language. This includes strong written communications, the ability to provide rigorous feedback on documentation, and the ability to prepare executive briefings
- Comprehensive Regulatory and Policy Knowledge including:
- Privacy Act of 1974 (5 U.S.C. § 552a), including Systems of Records Notices (SORNs), routine uses, and records management.
- E-Government Act of 2002, Section 208 (statutory basis for PIAs).
- OMB Circular A-130 and OMB M-series memoranda on privacy/PII.
- DoD/DoN/DoA/DoAF 5400-series issuances, particularly DoDI 5400.16 (DoD Privacy Impact Assessment Guidance) and DoD 5400.11-R (Privacy Program).
- DoD Component-specific privacy guidance (e.g., Army, Navy, Air Force/Space Force privacy office supplements).
- NIST SP 800-53 (Privacy Control Family / Appendix J or the integrated privacy controls in Rev. 5) and NIST SP 800-122 (Guide to Protecting PII).
- Familiarity with the Risk Management Framework (RMF) and how PIAs interface with ATO/Assessment & Authorization packages.
- FISMA requirements as they intersect with privacy reporting.
- Strong practical skills in translating technical system architecture into plain-language privacy risk narratives for approving officials.
- Exceptional stakeholder-facing skills, with proven ability to elicit accurate information from diverse technical and non-technical audiences.
- Bachelor's degree, preferably in a relevant field (Information Systems, Cybersecurity, Public Policy, etc.)
- US Citizenship and an active Secret security clearance
The salary range for this position is estimated to be between $120,000.00 - $150,000.00, commensurate on experience and technical skillset.
We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.
In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.