Cybersecurity Program Analyst, Senior

Canvas Inc.

Kansas

On-site

USD 120,000 - 160,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Canvas Inc. is seeking a Cybersecurity Analyst to ensure system and application deliverables meet DoD and AF cybersecurity policies. The role focuses on aligning cybersecurity documents, data, requirements, and strategic planning with mission needs and policy compliance.

You will collect data for reporting, identify gaps, and drive plans of action to resolution. The position requires DoD expertise and the ability to communicate with organizational leadership.

Qualifications

  • Active TS/SCI clearance required.
  • Bachelor's degree in IT, Cybersecurity, CS, or Information Systems with 10 years of relevant experience.
  • Or Master's degree with 7 years of relevant experience.

Responsibilities

  • Ensure system deliverables meet DoD and AF cybersecurity policies.
  • Identify gaps in cybersecurity compliance and develop action plans.
  • Monitor RMF artifacts and ensure policy compliance.
  • Audit information systems for vulnerabilities and risks.
  • Support risk management and contingency planning.

Skills

TS/SCI clearance
Cybersecurity

Education

Bachelor's degree in IT/Cybersecurity/CS/Info Systems
Master's degree in IT/Cybersecurity/CS/Info Systems

Tools

SRG/STIG familiarity
DISA policy knowledge

Job description

The Cybersecurity Analyst shall ensure that all system and application deliverables meet the requirements of all DoD and AF Cybersecurity policies. This position’s primary role is to that the assigned system’s cybersecurity documents, data, requirements, and strategic planning are adequate to ensure system mission needs are met and that the system complies with all relevant Cybersecurity law, regulation, and policy.

  • Collect and maintain data needed to meet system cybersecurity reporting requirements IAW cybersecurity law, regulation, and policy
  • Identify gaps in cybersecurity compliance for the assigned system, create plans of action to resolve cybersecurity gaps, communicate plans to organizational leadership, execute plans to ensure cybersecurity compliance is met
  • Ensure security improvement action are identified, validated, and implemented as required for the assigned system; tracks cybersecurity program requirements to ensure successful implementation
  • Ensure that cybersecurity requirements are integrated into the continuity planning for the assigned system and organization; makes recommendations to update cybersecurity policy for organizational efficiency
  • Plan, monitor, and track cybersecurity tasks to ensure successful completion
  • Identify alternative information security (INFOSEC) strategies to address cybersecurity tasks or requirements that are a risk to the system’s continued operation and mission success
  • Monitor the assigned system to ensure cybersecurity data and data sources meet cybersecurity policy requirements, and communicate status to organizational leaders
  • Audit cybersecurity information, data, system configuration, and other cybersecurity characteristics to ensure requirements are met; report gaps or issues to division cybersecurity leadership
  • Conduct import/export reviews for acquiring systems and SW
  • Review source code scanning reports to identify vulnerabilities and identify risks
  • Develop methods to monitor and measure risk, compliance, and assurance efforts; develop contingency plans, disaster recovery procedures, and other methods to mitigate and/or resolve cybersecurity risks
  • Identify and document the requirements necessary to ensure SW acquisition programs, contract requirements, or other product development efforts meet applicable cybersecurity law, regulation, and policy
  • Develop methods to ensure programs or projects meet the requirements of DoDI 8520.02, Public Key Infrastructure (PKI) and Public Key (PK) Enabling
  • Support the Risk Management Framework (RMF) tasks related to system/application efforts to include Assessment and Authorization efforts, system audits, and other quality checks; ensure cybersecurity RMF artifacts (documents, data, etc.) meet the requirements of cybersecurity policy
  • Recommend policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data
  • Conduct risk and vulnerability assessments of planned and installed information systems to identify vulnerabilities, risks, and protection needs
  • Participate in network and systems design to ensure implementation of appropriate systems security policies
  • Ensure the rigorous application of INFOSEC/cybersecurity policies, principles, and practices in the delivery of all IT services
  • Perform the Information System Security Engineer duties in an Information Assurance (IA) Workforce System Architecture and Engineering position as outlined in AFI 33-200, AFI 33-210 and AFMAN 33-285 for assigned systems

Requirements

  • Active TS/SCI security clearance
  • Bachelors Degree in IT, Cybersecurity, Computer Science, or Information systems and ten (10) years of experience in the respective technical/professional disciplines being performed.
  • Or Masters Degree in IT, Cybersecurity, Computer Science, or Information systems and seven (7) years of experience in the respective technical/professional disciplines being performed.
  • Experience with Defense Acquisition System processes including UCA, MTA, MCA, SW Acquisition and Acquisition of Services.
  • Familiarity with DoD Security Requirements Guides (SRGs) and Security Technical Implementation Guides (STIGs) is required.
  • In depth knowledge of DISA policy and guidance is required.
  • Experience with AF computer networking concepts and protocols, network security methodologies, cybersecurity principles used to manage risk, and experience identifying and mitigating system vulnerabilities is required.

Professional Qualifications:

  • Cybersecurity Qualification is required for IT Program Auditor.
  • CompTIA Security + or Security X certification.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Info. Security Analyst Principal
Info. Security Analyst Principal

General Dynamics Information Technology • Virginia (MN)

On-site
USD 109,000 - 147,000
Cybersecurity Engineer
Cybersecurity Engineer

KIHOMAC • Lincoln (MA)

On-site
USD 125,000 - 148,000
Health Care Plan (Medical, Dental &amp
Retirement Plan (401k, IRA)
Life Insurance (Basic, Voluntary &
+4
Cyber Security Analyst
Cyber Security Analyst

Trace Systems Inc. • Goldsboro (NC)

On-site
USD 90,000 - 150,000
Senior Cybersecurity Analyst
Senior Cybersecurity Analyst

Technomics, Inc. • Arlington (VA)

On-site
USD 100,000 - 130,000
Security Manager, Journeyman
Security Manager, Journeyman

Diaconia • Northern (KY)

Hybrid
USD 90,000 - 135,000
Cybersecurity, Senior - TS
Cybersecurity, Senior - TS

DCS Corporation • Seattle (WA)

On-site
USD 120,000 - 170,000
Cybersecurity Analyst Expert
Cybersecurity Analyst Expert

Pueo Business Solutions LLC • Virginia (IL), Northern (KY)

Hybrid
USD 110,000 - 150,000
Security Manager, Journeyman
Security Manager, Journeyman

Diaconia LLC • Bath Township (OH)

On-site
USD 110,000 - 170,000
Information Assurance Analyst
Information Assurance Analyst

Jobtailor • North Charleston (SC)

On-site
USD 90,000 - 120,000
Cybersecurity Engineer
Cybersecurity Engineer

KIHOMAC, Inc • Massachusetts

On-site
USD 125,000 - 148,000
Health Care Plan (Medical, Dental & Vision)
Retirement Plan (401k, IRA)
Life Insurance (Basic, Voluntary & AD&D)
+4