DLA Cyber Emergency Response Team (CERT) Cyber Security Service Provider (CSSP) Cybersecurity Policy Analyst

S2i2 Inc
Columbus, OH, United States
7 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$80,000.0 - $98,000.0
Working hours
Regular working hours

Tech stack

Cyber Security Information Systems Cyber Warfare

Requirements

S2I2 is currently seeking an experienced Cybersecurity Policy Analyst in support of Cyber Security Service Provider (CSSP).Clearance: Active Top Secret (TS) with SCI eligibilityWork Schedule: On-site, 5 days/week. Occasional after-hours support for incidents, exercises, and inspection preparationPosition Overview:Develop, review, and streamline DLA CERT cybersecurity policies, SOPs, and TTPs to ensure compliance with DoD and DLA standards, emphasizing incident response across the DLA enterprise.Lead and coordinate CSSP evaluation and inspection preparations, including the collection and compilation of relevant metrics and artifacts. Track progress against Evaluator Scoring Metrics and brief DLA CERT and Cybersecurity leadership on organizational readiness.Receive, acknowledge, and rapidly disseminate Cyber Defense directives (orders, taskings, and alerts) within 30 minutes of receipt. Track and validate DLA’s compliance with ongoing and recurring requirements. Support the planning and execution of cybersecurity exercises, including tabletop scenarios for DLA programs and applications. Generate detailed exercise reports and capture lessons learned for continuous improvement.* Assist DLA program teams in developing RMF packages and associated compliance documentation to facilitate successful authorizations.* Create and deliver comprehensive incident response and cybersecurity training to ISSMs, system administrators, and incident responseteams, both in-person and remotely.* Support After Action Reports and Joint Lessons Learned Information System (JLLIS) entries so that process gaps identified during incidents flow back into SOP and TTP updates.* Prepare monthly CSSP inspection metrics evaluations, annual SOP and TTP updates, and compile annual CSSP artifact deliverables.* Brief senior government leadership on cybersecurity policy changes, updates, and overall program progress.Qualifications:Required Qualifications:Minimum of seven (7) years of proven experience in cybersecurity policy development and implementation.Active DoD Top Secret security clearance with current SCI eligibility and IT-I (Tier 5) access required at time of application.DoD 8570.01-M / 8140 baseline certification at IAT Level II or higher (for example, Security+ CE, CySA+, CCNA Security, GICSP, GSEC, or SSCP).DoD 8570.01-M / 8140 CSSP certification as CSSP Auditor (CSSP-AU) or CSSP Incident Responder (CSSP-IR) (for example, CISA, CEH, GCIH, GCFA, CySA+, or CFR).Strong working knowledge of DoD cybersecurity policy and the CSSP program, including CJCSM 6510.01B, DoDI 8530.01, Evaluator Scoring Metrics, and JFHQ-DODIN reporting requirements.Demonstrated ability to develop clear, defensible policy and procedure documents and effectively brief senior leadership.Desired Qualifications:Experience preparing an organization for a CSSP evaluation or inspection, ideally with a role in metrics and artifact compilation.Prior experience with DLA, DISA, DoD CSSP, or CERT.Experience with the RMF process and direct support of system owners throughout authorization package development.Experience planning and facilitating cybersecurity tabletop exercises.Familiarity with SOC operations and incident handling sufficient to develop actionable procedures for analysts.CISSP, CISM, or CISA certification preferred

Benefits & conditions

Career Listings

  • Columbus, OH
  • $90,000-130,000 per year Benefits: 401(k) 401(k) matching Dental insurance Health insurance Paid time off Profit sharing Training & development Tuition assistance Vision insurance SarelaTech i…

  • 1 month ago + *, + $80,000-100,000 per year Careerscape is recruiting on behalf of our client, a growing healthcare data provider based in Columbus, OH, for an Information Cyber Security Analyst to join their remote team. Th…

  • 1 month ago +

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:57 min

Securing sensitive defense infrastructure with dual-vendor cloud strategies

Boris Hecker Boris Hecker +3 · World Congress 2025

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · World Congress 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all