> Markdown version of [/jobs/ext/2641930-it-program-auditor](https://www.wearedevelopers.com/jobs/ext/2641930-it-program-auditor). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Program Auditor - **Company:** Credence - **Location:** United States - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Public-Key Cryptography, Code Review, Cyber Security, Information Systems, Computer Literacy, System Configuration, Data Security, Disaster Recovery, Information Security Management, Information Technology Audit, Internet Security, Network Security, Networking Basics, Network Planning and Design, Network Protocols, Public Key Infrastructure, Systems Architecture, Computer Networking Systems, Reliability of Systems, Information Technology, DODAF, Vulnerability Analysis - **Published:** August 3, 2026 - **Apply:** https://www.careerbuilder.com/job-details/cybersecurity-program-analyst-ibs-c3ib-006-warner-robins-ga--d5637f90-9708-456f-aafc-440f37a5098f ## About the Role * Must have an active or current Top-Secret security clearance with Sensitive Compartmented Information (TS/SCI) eligibility, * Bachelor's or master's degree in a related field and at least three (3) years of experience in the respective technical/professional discipline being performed, three (3) of which must be in the DoW/DoD * OR, seven (7) years of directly related experience with proper certifications as described in the PWS labor category performance requirements, five (5) of which must be in the Dow/DoD Required Experience and Skills: * Experience with Defense Acquisition System processes including UCA, MTA, MCA, SW Acquisition and Acquisition of Services. * Familiarity with DoD Security Requirements Guides (SRGs) and Security Technical Implementation Guides (STIGs) is required. * In depth knowledge of DISA policy and guidance is required. * Experience with AF computer networking concepts and protocols, network security methodologies, cybersecurity principles used to manage risk, and experience identifying and mitigating system vulnerabilities is required., Analysis Skills, Artificial Intelligence (AI), Best Practices, Broadcasting, Code Reviews, Computer Security, Computer Skills, Contingency Plans, Contract Requirements, Customer Support/Service, Data Collection, Department of Defense Architecture Framework (DoDAF), Disaster Recovery, Documentation, Health Plan, Import/Export, Information Technology & Information Systems, Information Technology/Systems Audit, Information/Data Security (InfoSec), Internet Security, Leadership, Leading Edge Technology, Legal, MTA, Maintain Compliance, Mentoring, Network Design, Network Protocols, Network Security, Network Systems, Organizational Development/Management, Product Development, Public Key Infrastructure (PKI), Regulations, Risk, Risk Analysis, Risk Management, Risk Management Framework (RMF), Servant leadership, Service Delivery, Systems Administration/Management, Systems Reliability, Technical Support, United States Department of Defense (DoD) ## Description Credence has an immediate need for a Cybersecurity Program Analyst at the senior level to support our Integrated Broadcast Service (IBS) program at Robins AFB, GA. IBS is a multi-sensor, multisource system of systems for the dissemination of integrated threat warning and blue force tracking information. The IBS PMO mission is to sustain and modernize the current operational baseline by maintaining near constant operational availability and integrating new capabilities into the IBS-Enterprise. The Cybersecurity Program Analyst will ensure that all system and application deliverables meet the requirements of all DoD and AF Cybersecurity policies. This position's primary role is to ensure that the assigned system's cybersecurity documents, data, requirements, and strategic planning are adequate to ensure system mission needs are met and that the system complies with all relevant Cybersecurity law, regulation, and policy. Responsibilities include, but are not limited to the duties listed below * Collect and maintain data needed to meet system cybersecurity reporting requirements IAW cybersecurity law, regulation, and policy. * Identify gaps in cybersecurity compliance for the assigned system, create plans of action to resolve cybersecurity gaps, communicate plans to organizational leadership, execute plans to ensure cybersecurity compliance is met * Ensure security improvement action is identified, validated, and implemented as required for the assigned system; tracks cybersecurity program requirements to ensure successful implementation * Ensure that cybersecurity requirements are integrated into the continuity planning for the assigned system and organization; makes recommendations to update the cybersecurity policy for organizational efficiency * Plan, monitor, and track cybersecurity tasks to ensure successful completion * Identify alternative information security (INFOSEC) strategies to address cybersecurity tasks or requirements that are a risk to the system's continued operation and mission success * Monitor the assigned system to ensure cybersecurity data and data sources meet cybersecurity policy requirements, and communicate status to organizational leaders * Audit cybersecurity information, data, system configuration, and other cybersecurity characteristics to ensure requirements are met, report gaps or issues to division cybersecurity leadership * Conduct import/export reviews for acquiring systems and SW * Review source code scanning reports to identify vulnerabilities and identify risks * Develop methods to monitor and measure risk, compliance, and assurance efforts; develop contingency plans, disaster recovery procedures, and other methods to mitigate and/or resolve cybersecurity risks * Identify and document the requirements necessary to ensure SW acquisition programs, contract requirements, or other product development efforts meet applicable cybersecurity law, regulation, and policy * Develop methods to ensure programs or projects meet the requirements of DoDI 8520.02, Public Key Infrastructure (PKI) and Public Key (PK) Enabling * Support the Risk Management Framework (RMF) tasks related to system/application efforts to include Assessment and Authorization efforts, system audits, and other quality checks; ensure cybersecurity RMF artifacts (documents, data, etc.) meet the requirements of cybersecurity policy * Recommend policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data * Conduct risk and vulnerability assessments of planned and installed information systems to identify vulnerabilities, risks, and protection needs * Participate in network and systems design to ensure implementation of appropriate systems security policies * Ensure the rigorous application of INFOSEC/cybersecurity policies, principles, and practices in the delivery of all IT services * Perform the Information System Security Engineer duties in an Information Assurance (IA) Workforce System Architecture and Engineering position as outlined in AFI 33-200, AFI 33-210 and AFMAN 33-285 for assigned systems ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Are Code Reviews Worth It? Insights from 16 Years of Review Data](https://www.wearedevelopers.com/videos/1135-are-code-reviews-worth-it-insights-from-16-years-of-review-data) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Web-based Information Visualization](https://www.wearedevelopers.com/videos/84-web-based-information-visualization) - [Build a CI/CD pipeline to automate code reviews and ensure code quality](https://www.wearedevelopers.com/videos/349-build-a-ci-cd-pipeline-to-automate-code-reviews-and-ensure-code-quality) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems)