At a Glance
- Tasks: Lead regulatory strategy for public sector cybersecurity, ensuring compliance and influencing market strategies.
- Company: Join SecurityScorecard, a top cybersecurity ratings leader, recognised for its innovative workplace culture.
- Benefits: Enjoy competitive salary, stock options, unlimited PTO, health benefits, and tuition reimbursements.
- Why this job: Be part of a mission-driven team shaping cybersecurity standards while working in a dynamic environment.
- Qualifications: 10+ years in regulatory affairs with strong knowledge of public sector compliance frameworks required.
- Other info: Diversity and inclusion are core values; we welcome applicants from all backgrounds.
The predicted salary is between 162000 - 216000 £ per year.
About SecurityScorecard: SecurityScorecard is the global leader in cybersecurity ratings, with over 12 million companies continuously rated, operating in 64 countries. Founded in 2013 by security and risk experts Dr. Alex Yampolskiy and Sam Kassoumeh, SecurityScorecard’s patented rating technology is used by over 25,000 organizations for self-monitoring, third-party risk management, board reporting, and cyber insurance underwriting; making all organizations more resilient by allowing them to easily find and fix cybersecurity risks across their digital footprint.
About the Role: We are seeking an experienced and strategic Senior Director of Regulatory Affairs to lead our regulatory and compliance strategy for public sector cybersecurity engagements. This role will serve as a key advisor to executive leadership, supporting complex federal, state, and local government opportunities by navigating the evolving regulatory landscape and ensuring full compliance with applicable cybersecurity, privacy, and procurement standards. You’ll work cross-functionally with Sales, Legal, Product, Security, and Government Affairs teams to influence go-to-market strategy, reduce regulatory friction in public sector deals, and ensure our services and policies align with government requirements.
Key Responsibilities:
- Serve as the subject matter expert on regulatory and compliance requirements related to U.S. federal, state, and local government cybersecurity procurements.
- Partner with the Public Sector sales and legal teams to support RFP responses, contract negotiations, and compliance assessments.
- Monitor and interpret evolving laws, executive orders, frameworks, and standards impacting cybersecurity sales to the public sector (e.g., FedRAMP, CMMC, FISMA, NIST, CJIS, StateRAMP).
- Collaborate with Product and Security teams to align internal controls and product features with government compliance needs.
- Engage with government stakeholders, trade associations, and regulators to shape public policy and advocate for clear and effective cybersecurity procurement standards.
- Develop internal policies, playbooks, and training materials to guide deal execution, risk management, and internal alignment across business units.
- Lead regulatory due diligence efforts in support of strategic partnerships, certifications, and government-focused audits.
Required Qualifications:
- 10+ years of experience in regulatory affairs, public sector compliance, or legal roles supporting cybersecurity or technology companies.
- Deep knowledge of public sector procurement and cybersecurity compliance frameworks (e.g., FedRAMP, StateRAMP, CMMC, ITAR, FISMA).
- Demonstrated success enabling federal and/or state sales teams in highly regulated environments.
- Strong understanding of cloud services, SaaS platforms, and information security standards.
- Excellent communication, collaboration, and executive influence skills.
- Bachelor's Degree. JD or advanced degree preferred but not required.
Preferred Qualifications:
- Experience engaging with regulatory bodies such as GSA, DHS, DoD, or state-level IT/security offices.
- Background in risk management, policy advocacy, or public affairs.
- Familiarity with contracting vehicles and public sector procurement lifecycle (e.g., BPAs, GWACs, NASPO).
SecurityScorecard is committed to Equal Employment Opportunity and embraces diversity. We believe that our team is strengthened through hiring and retaining employees with diverse backgrounds, skill sets, ideas, and perspectives. We make hiring decisions based on merit and do not discriminate based on race, color, religion, national origin, sex or gender (including pregnancy), gender identity or expression (including transgender status), sexual orientation, age, marital, veteran, disability status or any other protected category in accordance with applicable law.
Head of Government Affairs employer: SecurityScorecard
Contact Detail:
SecurityScorecard Recruiting Team
talentacquisitionoperations@securityscorecard.io
StudySmarter Expert Advice 🤫
We think this is how you could land Head of Government Affairs
✨Tip Number 1
Familiarise yourself with the key regulatory frameworks mentioned in the job description, such as FedRAMP and CMMC. Understanding these will not only help you in interviews but also demonstrate your commitment to the role.
✨Tip Number 2
Network with professionals in the cybersecurity and regulatory affairs sectors. Engaging with industry experts can provide insights into current trends and challenges, which you can discuss during your interview.
✨Tip Number 3
Prepare to discuss specific examples of how you've navigated complex regulatory environments in past roles. Highlighting your experience will showcase your expertise and ability to handle the responsibilities of this position.
✨Tip Number 4
Stay updated on recent developments in public sector cybersecurity policies. Being knowledgeable about current events will allow you to engage in meaningful conversations with the interviewers and show your proactive approach.
We think you need these skills to ace Head of Government Affairs
Some tips for your application 🫡
Understand the Role: Before applying, make sure you fully understand the responsibilities and qualifications for the Senior Director of Regulatory Affairs position. Tailor your application to highlight relevant experience in regulatory affairs and public sector compliance.
Highlight Relevant Experience: In your CV and cover letter, emphasise your 10+ years of experience in regulatory affairs, particularly in cybersecurity or technology sectors. Mention specific frameworks like FedRAMP or CMMC that you are familiar with.
Craft a Compelling Cover Letter: Your cover letter should not only express your interest in the role but also demonstrate your understanding of the regulatory landscape. Use examples from your past experiences to show how you can contribute to SecurityScorecard's goals.
Proofread Your Application: Before submitting, carefully proofread your CV and cover letter for any errors or typos. A polished application reflects your attention to detail, which is crucial for a role in regulatory affairs.
How to prepare for a job interview at SecurityScorecard
✨Know Your Regulatory Frameworks
Familiarise yourself with key compliance frameworks like FedRAMP, CMMC, and FISMA. Be prepared to discuss how these regulations impact cybersecurity procurement and how you can navigate them effectively.
✨Demonstrate Cross-Functional Collaboration
Highlight your experience working with various teams such as Sales, Legal, and Product. Share specific examples of how you've influenced go-to-market strategies or reduced regulatory friction in past roles.
✨Engage with Government Stakeholders
Showcase your ability to engage with government bodies and trade associations. Discuss any previous experiences where you advocated for clear cybersecurity standards or shaped public policy.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills in regulatory affairs. Think about past challenges you've faced and how you successfully navigated them, particularly in high-stakes environments.