Cyber Security Analyst - Cyber Policy

Savannah River National LaboratoryAiken, SC
3d

About The Position

Savannah River National Laboratory (SRNL) is seeking an experienced cyber security policy professional to join the Cyber Assurance, Governance, Risk Management and Compliance team! The selected individual will serve as lead policy writer and subject-matter expert for the DOE-SRNL cybersecurity program.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Management/Assurance, or related field
  • 6 to 9 years of experience in Cybersecurity and Policy in a federal-contractor position
  • Excellent and proven writing skills in the cybersecurity field that show the ability to be clear and concise for complex topics. Samples provided may be redacted if needed.
  • For ability to obtain and maintain a security clearance, US Citizenship is Legally Required.

Nice To Haves

  • Expert knowledge of DOE 205.1x and Cyber Security Program Plans
  • Current or recent experience supporting DOE policies related to cybersecurity
  • Good interpersonal skills and demonstrated ability to work collaboratively in a team environment
  • Certifications in Cyber such as CISSP, CISM, CGRC (formerly ISC2 CAP), or CRISC.
  • Policy-focused certifications (GIAC-GLEG, GSLC or similar)
  • Strong attention to detail
  • Ability to learn new technologies, concepts, and processes quickly
  • Active DOE L clearance

Responsibilities

  • Serve as principal author for all new and revised SRNL specific cybersecurity policies and procedures
  • Develop and maintain responses to contracts for DOE Orders and Cyber Security Program Plan
  • Review and advise as to impact to cybersecurity approved policies for other SRNL procedures with cybersecurity references
  • Assist ISSOs with creating and maintaining supplemental program documents, policies and procedures for multiple accreditation boundaries based on approved security controls
  • Perform gap analysis for draft, new, or updated federal mandates (EO 14028, BODS, OMB Memos) and write comprehensive summaries that support efficient decision making where needed
  • Support audits and assessments with policy evidence artifact/packages
  • Review cybersecurity training and develop newly identified training, keeping aligned with approved policies
  • Review and advise ISSOs additional documents such as Risk Assessments, Security Impact Analysis or others as requested.
  • Work effectively in a team environment and contribute to continuous process improvement efforts.
  • Participate/assist with compliance assessments/audits and data calls.
  • Interact with customers and peers in a professional and responsive manner.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service