How to apply for Director, Center for Advancing Cybersecurity

Institute for Security and Technology (IST)

About Institute for Security and Technology (IST)

The Institute for Security and Technology (IST) is a nonprofit think tank that develops actionable policy solutions for emerging technology risks, with a focus on AI governance, biosecurity, and cybersecurity. Unlike traditional policy shops, IST emphasizes convening diverse stakeholders—from law enforcement to industry—to build scalable, real-world interventions. Working here means shaping high-impact strategies to disrupt malicious cyber actors while influencing global policy.

About the role

As Director of the Center for Advancing Cybersecurity, you will lead IST's efforts to disrupt cyber threat operations by coordinating law enforcement, researchers, and industry partners. You'll track strategic intelligence on threat groups, develop metrics to measure disruption success, and craft policy proposals that address ecosystem incentives. This role is pivotal in translating research into scalable processes that meaningfully reduce cyber threats.

A typical day

A typical day might involve convening a call with law enforcement and industry partners to coordinate a disruption operation, analyzing intelligence reports on emerging threat groups, and drafting a policy brief on incentive structures. You might also meet with researchers to refine metrics for measuring disruption success and represent IST at an interagency working group. The pace is dynamic, balancing strategic thinking with hands-on coordination.

Who Institute for Security and Technology (IST) is looking for

  • 5+ years of cybersecurity experience spanning policy, operations, or threat intelligence, with a strong track record of working directly with law enforcement agencies.
  • Demonstrated ability to convene and coordinate multi-stakeholder initiatives, including government, private sector, and academic partners.
  • Experience developing and tracking metrics for operational success, ideally in disruption or threat mitigation contexts.
  • Advanced degree (Bachelor's with extensive experience, Master's with 2+ years, or PhD) in cybersecurity, public policy, international relations, or a related field.

Tips for this application

  • Highlight specific instances where you facilitated collaboration between law enforcement and industry to counter cyber threats, quantifying outcomes where possible.
  • Emphasize any experience you have in developing policy proposals or frameworks that address incentive structures in the cyber ecosystem.
  • Show familiarity with IST's existing work, such as their reports on ransomware or AI governance, and explain how you would build on it.
  • Use the cover letter to outline a 90-day plan for the Center, demonstrating your strategic vision and understanding of IST's convening role.
  • If you have experience with metrics for disruption operations, provide concrete examples of how you designed and implemented them.

What to cover in your cover letter

['Your ability to bridge law enforcement, industry, and research communities to execute disruption strategies.', 'A specific example of how you developed and used metrics to evaluate the success of a cyber disruption operation.', 'Your experience in crafting policy proposals that address systemic incentives for malicious cyber activity.', "Your alignment with IST's mission and a clear vision for advancing the Center's impact in the first year."]

Draft a cover letter

Research before applying

  • Read IST's recent publications, especially those related to cybersecurity, ransomware, and AI governance, to understand their policy stance and methodology.
  • Investigate IST's key partners and funders to grasp the organization's network and potential collaborators for the Center.
  • Research the backgrounds of IST's leadership and staff to understand their expertise and how you might complement it.
  • Look into current trends in cyber threat disruption, such as public-private partnerships and international law enforcement operations, to speak fluently about them.
Institute for Security and Technology (IST) website

Likely interview topics

Based on the job description, expect questions about:

  • How would you approach building scalable disruption processes that involve law enforcement, researchers, and industry?
  • Describe a time you developed metrics to measure the effectiveness of a cyber operation. What were the challenges and outcomes?
  • What policy changes do you believe are necessary to improve ecosystem incentives for cyber threat disruption?
  • How would you prioritize strategic intelligence tracking across multiple threat groups with limited resources?
  • Given IST's focus on emerging tech risks, how would you integrate AI governance and biosecurity into the Center's cybersecurity work?
Practise interview questions

Common mistakes to avoid

  • Focusing only on technical cybersecurity skills without demonstrating policy or convening experience, as this role is heavily strategic and collaborative.
  • Neglecting to mention specific examples of law enforcement liaison work, which is a key requirement.
  • Submitting a generic cover letter that doesn't reference IST's unique mission or the Center's focus on disruption metrics and policy.

Deadline

No deadline is listed. Roles without a deadline usually close once the employer has enough candidates, so apply soon if you are interested.