Senior Cybersecurity Policy Analyst
Tria Federal (Tria)About the role
Remote
Full Time
Ability to obtain and maintain a Public Trust*
* US Citizenship and the ability to obtain and maintain the clearance level stated above are required for this specific opportunity. Tria Federal (Tria) is unable to sponsor at this time.
Who We Are:
Tria Federal (Tria) is the premier middle-market IT and Advisory services provider delivering digital transformation solutions to Civilian, Defense, and Intelligence agencies across the federal sector. With a future-forward vision and a mission rooted in service, we bridge capability gaps to help government agencies work faster, grow smarter, and stay nimble in the face of change. Wherever our customers are in their modernization journey, we are the trusted navigator in the path to possible.
Follow us on LinkedIn
#PoweringPossible
Who You Are:
You are a talented Senior Cybersecurity Policy Analyst with at least 3 years of experience and a passion for thinking big, taking action, and delivering exceptional results. You are outcome-driven, quality-obsessed, and relentlessly focused on innovation as a value-driver for world-class delivery, client satisfaction, and performance. You’re looking to grow as a professional in a team-oriented environment where you can put your fingerprint on mission-critical projects impacting the citizens we serve.
Military Veterans and individuals with disabilities are encouraged to apply!
About This Role:
Favor TechConsulting, LLC (FTC) a wholly-owned subsidiary of Tria Federal (Tria) is seeking a talented Senior Cybersecurity Policy Analyst. Lead the analysis, design, implementation, and support of cyber security policy by collaborating with business customers, end-users, and project managers to capture and document business and technical requirements. Support the full lifecycle of requirements management and implementation by participating in requirements elaboration and design, and then ensuring developed written policies match requirements.
Responsibilities:
- Capture business rules and business requirements in a well-documented and repeatable manner, vetting business initiatives and epics to completion
- Collaborate with stakeholders to elicit, gather, analyze, and implement business requirements for cyber security policies. Participate in requirements gathering, elaboration, and refinement sessions with VA stakeholders
- Propose and/or coordinate reviews, development, and/or updates of security policies, processes, workflows, controls, metrics and procedures
- Design and support the development and implementation of security policies aligned with FISMA and applicable VA documents
- Intake, upload, track, and manage business requirements, task management with project management planner and tracking tools designated by customer
- Perform problem analysis and analyze, validate, specify, and verify requirements defined by project leads, customers, and end users
- Analyze existing business processes, business requirements, and workflows to document “as is” processes and proposed “to be” solutions to guide requirements development efforts
- Conduct thorough research to ensure that requirements are met and that the developed application is per the requirements
- Facilitate executive-level virtual meetings; prepare meeting agenda, capture meeting minutes, and track outcomes and action items
- Work proactively and independently to carry out assignments to completion within parameters of instructions given, prescribed routines, and standard accepted practices
- Plan, monitor, and control relevant tasks outlined in the contract and statement of work
- Function as part of an integrated team sharing products, best practices, and information across the portfolio
- Develop the cybersecurity working group governance construct
- Develop and update cybersecurity policies, standards, and procedures based on best practices and regulatory requirements
- Ensure policies are aligned with organizational goals and objectives
- Coordinate the implementation of cybersecurity policies across various departments and teams
- Ensure compliance with relevant laws, regulations, and standards such as HIPAA, NIST, and ISO 27001
- Conduct regular audits and assessments to verify adherence to policies and regulations
- Liaise with regulatory bodies and ensure timely reporting and documentation as required
- Communicate policy changes, security incidents, and updates to stakeholders effectively
- Act as a liaison between technical and non-technical teams to ensure clear understanding and implementation of security measures
- Ensure that third-party services and products comply with organizational security polic
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s