Are you passionate about being on a team of highly skilled, motivated and dedicated professionals charged with protecting sensitive data while supporting the JHU/APL mission? Do you want to integrate cybersecurity and compliance within our enterprise, sector and department networks? Are you passionate about protecting our Nation’s sensitive information? If so, we're looking for someone like you to join our team at APL. We are seeking a dedicated Sr. Cybersecurity Compliance Analyst to help us protect APL's enterprise information technology infrastructure, as well as the Laboratory’s other research and development systems and components. As a member of our team, you'll contribute to Cybersecurity and Compliance Management and oversight of our unclassified information systems in support of Sponsor/Program needs. You'll join an impressive team of technical specialists motivated by the common goal of supporting APL’s operational security posture across a complex network infrastructure. You will independently identify and solve technical issues relating to cybersecurity, system hardening (ensuring system availability, integrity, authentication and confidentiality), and compliance. As a Sr. Cybersecurity Compliance Analyst, you will... Work in the Information Technology Service Department (ITSD) and serve as an unclassified compliance Subject Matter Expert (SME) for the Laboratory, its Mission Areas, Sectors and Departments. Your primary responsibilities are aligned to supporting compliance with the Cybersecurity Maturity Model Certification (CMMC) Program, NIST SP800-171 and SP800-172, as well as other compliance regulations applicable to unclassified information and systems. Assist the Compliance Program and InfoSec Compliance supervisor by contributing to the development, implementation and regularly updating applicable security policies, procedures, and controls to meet CMMC and NIST SP800-171 and SP800-172 requirements while balancing against Mission needs in a research and development environment. Conduct assessments of systems and components against regulatory requirements, as well as processes, policies and procedures to identify compliance gaps and risks. Support Sector/Department specific information system compliance activities such as applicable audit reviews, serving as a member of the change control board representing the compliance program, etc. Prepare and maintain System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), supporting artifacts, and other compliance-related documentation. Assist the Compliance Program and InfoSec Compliance supervisor in disseminating guidance and providing support to system owners and other stakeholders on compliance requirements, and contribute to employee security awareness training programs. Help manage and support both internal and external audits and assessments related to CMMC, NIST SP800-171, Privacy & Health Controls, and other cybersecurity and compliance-related activities.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level