DLA Cyber Emergency Response Team (CERT) Cyber Security Service Provider (CSSP) Cybersecurity Policy Analyst

S2i2 Inc
  • Columbus, OH
  • Full-time
  • Instant Apply
8 days ago

Job Description

S2I2 is currently seeking an experienced Cybersecurity Policy Analyst in support of Cyber Security Service Provider (CSSP).Clearance: Active Top Secret (TS) with SCI eligibilityWork Schedule: On-site, 5 days/week. Occasional after-hours support for incidents, exercises, and inspection preparationPosition Overview:•Develop, review, and streamline DLA CERT cybersecurity policies, SOPs, and TTPs to ensure compliance with DoD and DLA standards, emphasizing incident response across the DLA enterprise.•Lead and coordinate CSSP evaluation and inspection preparations, including the collection and compilation of relevant metrics and artifacts. Track progress against Evaluator Scoring Metrics and brief DLA CERT and Cybersecurity leadership on organizational readiness.•Receive, acknowledge, and rapidly disseminate Cyber Defense directives (orders, taskings, and alerts) within 30 minutes of receipt. Track and validate DLA's compliance with ongoing and recurring requirements.• Support the planning and execution of cybersecurity exercises, including tabletop scenarios for DLA programs and applications. Generate detailed exercise reports and capture lessons learned for continuous improvement.• Assist DLA program teams in developing RMF packages and associated compliance documentation to facilitate successful authorizations.• Create and deliver comprehensive incident response and cybersecurity training to ISSMs, system administrators, and incident responseteams, both in-person and remotely.• Support After Action Reports and Joint Lessons Learned Information System (JLLIS) entries so that process gaps identified during incidents flow back into SOP and TTP updates.• Prepare monthly CSSP inspection metrics evaluations, annual SOP and TTP updates, and compile annual CSSP artifact deliverables.• Brief senior government leadership on cybersecurity policy changes, updates, and overall program progress.Qualifications:Required Qualifications:Minimum of seven (7) years of proven experience in cybersecurity policy development and implementation.Active DoD Top Secret security clearance with current SCI eligibility and IT-I (Tier 5) access required at time of application.DoD 8570.01-M / 8140 baseline certification at IAT Level II or higher (for example, Security+ CE, CySA+, CCNA Security, GICSP, GSEC, or SSCP).DoD 8570.01-M / 8140 CSSP certification as CSSP Auditor (CSSP-AU) or CSSP Incident Responder (CSSP-IR) (for example, CISA, CEH, GCIH, GCFA, CySA+, or CFR).Strong working knowledge of DoD cybersecurity policy and the CSSP program, including CJCSM 6510.01B, DoDI 8530.01, Evaluator Scoring Metrics, and JFHQ-DODIN reporting requirements.Demonstrated ability to develop clear, defensible policy and procedure documents and effectively brief senior leadership.Desired Qualifications:Experience preparing an organization for a CSSP evaluation or inspection, ideally with a role in metrics and artifact compilation.Prior experience with DLA, DISA, DoD CSSP, or CERT.Experience with the RMF process and direct support of system owners throughout authorization package development.Experience planning and facilitating cybersecurity tabletop exercises.Familiarity with SOC operations and incident handling sufficient to develop actionable procedures for analysts.CISSP, CISM, or CISA certification preferred

Numbers & Facts

LocationColumbus, OH
Job TypeFull-time

Skills

  • Auditingunmatched
  • CCNA - Cisco Certified Network Associateunmatched
  • CISA - Certified Information Systems Auditorunmatched
  • CISM - Certified Information Security Managerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Code of Federal Regulationsunmatched
  • CompTIA Security+unmatched
  • Continuous Improvementunmatched
  • Defense Information Systems Agency (DISA)unmatched
  • DoD Top Secret Clearanceunmatched
  • Documentationunmatched
  • Emergency Responseunmatched
  • GCFA - GIAC Certified Forensic Analystunmatched
  • GCIH - GIAC Certified Incident Handlerunmatched
  • GSEC - GIAC Security Essentials Certificationunmatched
  • Governmentunmatched
  • IAT - Information Assurance Technicalunmatched
  • IR (Infrared)unmatched
  • Incident Responseunmatched
  • Information Technology & Information Systemsunmatched
  • Internet Securityunmatched
  • Leadershipunmatched
  • Maintain Complianceunmatched
  • Metricsunmatched
  • Military/DoD Standardsunmatched
  • Policy Analysisunmatched
  • Policy Developmentunmatched
  • Policy Implementationunmatched
  • Procedure Developmentunmatched
  • Project Trackingunmatched
  • Protective Servicesunmatched
  • SSCP - Systems Security Certified Practitionerunmatched
  • Security Clearanceunmatched
  • Sensitive Compartmented Information (SCI)unmatched
  • Standard Operating Procedures (SOP)unmatched
  • Systems Administration/Managementunmatched
  • Top Secret Clearanceunmatched
  • United States Department of Defense (DoD)unmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder