Cyber Strategy Planner

Life Cycle Engineering

Springfield (VA)

On-site

USD 140,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Life Cycle Engineering supports the National Geospatial-Intelligence Agency (NGA) by providing Cyber Policy & Strategy Planning. The role develops and maintains cybersecurity plans, strategy, and policy to align with organizational initiatives and regulatory compliance.

The position requires active DoD Top Secret/SCI clearance and IAM Lvl 3–like CISSP/CISM/CCISO certification, with responsibilities spanning policy drafting, stakeholder coordination, audits, and funding advocacy.

Qualifications

  • Bachelor's degree in a technical discipline from an accredited college or university.
  • Knowledge of computer networking concepts, protocols, and network security methodologies.
  • Knowledge of risk management processes and methods for assessing and mitigating risk.
  • Knowledge of laws, regulations, policies and ethics related to cybersecurity and privacy.
  • Knowledge of cybersecurity and privacy principles.
  • Knowledge of cyber threats and vulnerabilities.
  • Knowledge of application security risks (OWASP Top 10).
  • Knowledge of organizational core business/mission processes.
  • Knowledge of laws and statutes applicable to cybersecurity in U.S. Code.
  • Knowledge of full spectrum cyber capabilities (defense, attack, exploitation).
  • Knowledge of emerging cyber technologies.

Responsibilities

  • Develop policy, programs, and guidelines for implementation.
  • Establish and maintain communication channels with stakeholders.
  • Review existing and proposed policies with stakeholders.
  • Serve on agency and interagency policy boards.
  • Advocate for funding for cyber training resources and materials.
  • Ensure cyber workforce management policies comply with equal opportunity laws.
  • Promote awareness of cyber policy and strategy among management.
  • Review cyber workforce effectiveness and adjust standards.
  • Interpret and apply applicable laws and regulatory documents into policy.
  • Draft, staff, and publish cyber policy.
  • Monitor application of cyber policies in planning and management services.
  • Seek consensus on policy changes from stakeholders.
  • Provide policy guidance to cyber management and staff.
  • Review or participate in audits of cyber programs and projects.
  • Support CIO in formulating cyber-related policies.

Skills

Cyber policy
Policy development
Stakeholder communication
Risk management
Regulatory compliance
Cybersecurity concepts
Audits & assessments
Strategic planning
Policy interpretation

Education

Bachelors in technical discipline

Job description

Position Summary:

The candidate will provide Cyber Policy & Strategy Planning support to National Geospatial-Intelligence Agency (NGA). The role will Develops and maintains cybersecurity plans, strategy and policy to support and align with organizational cybersecurity initiatives and regulatory compliance.

Contract Specifications:
  • Must have an active DoD Top Secret/SCI security clearance
  • Must be have IAM Lvl 3 compliant certification like CISSP, CISM, or CCISO
Essential Functions and Responsibilities:
  • Develop policy, programs, and guidelines for implementation.
  • Establish and maintain communication channels with stakeholders.
  • Review existing and proposed policies with stakeholders.
  • Serve on agency and interagency policy boards.
  • Advocate for adequate funding for cyber training resources, to include both internal and industry-provided courses, instructors, and related materials.
  • Ensure that cyber workforce management policies and processes comply with legal and organizational requirements regarding equal opportunity, diversity, and fair hiring/employment practices.
  • Promote awareness of cyber policy and strategy as appropriate among management and ensure sound principles are reflected in the organization's mission, vision, and goals.
  • Review/Assess cyber workforce effectiveness to adjust skill and/or qualification standards.
  • Interpret and apply applicable laws, statutes, and regulatory documents and integrate into policy.
  • Analyze organizational cyber policy.
  • Assess policy needs and collaborate with stakeholders to develop policies to govern cyber activities.
  • Draft, staff, and publish cyber policy.
  • Monitor the rigorous application of cyber policies, principles, and practices in the delivery of planning and management services.
  • Seek consensus on proposed policy changes from stakeholders.
  • Provide policy guidance to cyber management, staff, and users.
  • Review, conduct, or participate in audits of cyber programs and projects.
  • Support the CIO in the formulation of cyber-related policies.
Required Education, Skills, and Experience:
  • Bachelor's degree in Technical Discipline from an Accredited College or University
  • Knowledge of computer networking concepts and protocols, and network security methodologies.
  • Knowledge of risk management processes (e.g., methods for assessing and mitigating risk).
  • Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy.
  • Knowledge of cybersecurity and privacy principles.
  • Knowledge of cyber threats and vulnerabilities.
  • Knowledge of specific operational impacts of cybersecurity lapses.
  • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code).
  • Knowledge of the organization's core business/mission processes.
  • Knowledge of applicable laws, statutes (e.g., in Titles 10, 18, 32, 50 in U.S. Code), Presidential Directives, executive branch guidelines, and/or administrative/criminal legal guidelines and procedures.
  • Knowledge of full spectrum cyber capabilities (e.g., defense, attack, exploitation).
  • Knowledge of emerging technologies that have potential for exploitation.
  • Knowledge of industry indicators useful for identifying technology trends.
  • Knowledge of external organizations and academic institutions with cyber focus (e.g., cyber curriculum/training and Research & Development).
  • Knowledge of current and emerging cyber technologies.
  • Knowledge of Application Security Risks (e.g. Open Web Application Security Project Top 10 list)
  • Skill in administrative planning activities, to include preparation of functional and specific support plans, preparing and managing correspondence, and staffing procedures.
  • Skill in preparing plans and related correspondence
  • Ability to determine the validity of technology trend data.
  • Ability to develop policy, plans, and strategy in compliance with laws, regulations, policies, and standards in support of organizational cyber activities.
  • Ability to leverage best practices and lessons learned of external organizations and academic institutions dealing with cyber issues.
Physical Demands and Expectations:
  • Regular physical activity to include walking, climbing stairs, bending, stooping, reaching, lifting (up to 15 pounds), and standing; occasional prolonged sitting
  • Ability to speak, read, hear and write, with or without assistance
  • Ability to use phone and computer systems, copier, fax and other office equipment
Get your free, confidential resume review.

or drag and drop your file here.