A complete application in a minute — tailored resume and cover letter, ready to send.
S2I2, Inc is seeking an experienced Cybersecurity Policy Analyst to support the DoD CSSP program. The role emphasizes DoD policy development, incident response readiness, and artifact management across the DLA enterprise.
The candidate will lead evaluations, coordinate metrics, disseminate directives promptly, and contribute to RMF packages and training; a TS clearance and SCI eligibility are required, with on-site work schedule.
S2I2 is currently seeking an experienced Cybersecurity Policy Analyst in support of Cyber Security Service Provider (CSSP).
Clearance: Active Top Secret (TS) with SCI eligibility Work Schedule: On-site, 5 days/week. Occasional after-hours support for incidents, exercises, and inspection preparation
Required Qualifications: Minimum of seven (7) years of proven experience in cybersecurity policy development and implementation.
Active DoD Top Secret security clearance with current SCI eligibility and IT-I (Tier 5) access required at time of application.
DoD 8570.01-M / 8140 baseline certification at IAT Level II or higher (for example, Security+ CE, CySA+, CCNA Security, GICSP, GSEC, or SSCP).
DoD 8570.01-M / 8140 CSSP certification as CSSP Auditor (CSSP-AU) or CSSP Incident Responder (CSSP-IR) (for example, CISA, CEH, GCIH, GCFA, CySA+, or CFR).
Strong working knowledge of DoD cybersecurity policy and the CSSP program, including CJCSM 6510.01B, DoDI 8530.01, Evaluator Scoring Metrics, and JFHQ-DODIN reporting requirements.
Demonstrated ability to develop clear, defensible policy and procedure documents and effectively brief senior leadership.
Experience preparing an organization for a CSSP evaluation or inspection, ideally with a role in metrics and artifact compilation.
Prior experience with DLA, DISA, DoD CSSP, or CERT.
Experience with the RMF process and direct support of system owners throughout authorization package development.
Experience planning and facilitating cybersecurity tabletop exercises.
Familiarity with SOC operations and incident handling sufficient to develop actionable procedures for analysts.
CISSP, CISM, or CISA certification preferred
Salary: $80000 - $98000 per year