Jobs and Careers
UL

Cyber Security Strategist | Zero Trust Architecture

UltraViolet Cyber
Washington, United Statesfull_timeVerifiedPosted 11 Sept 2023

About the role

Make a difference here.
UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams.
By creating continuously optimized identification, detection, and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India. 
UltraViolet Cyber is seeking a Cyber Security Strategist, similar to a Policy Analyst, with a background in supporting large customers and / or Federal customers. The Policy Analyst will support the growth of a new program for a Zero Trust Architecture implementation. This is a unique opportunity to join a rapidly growing company and contribute to the development and maintenance of enterprise-wide cybersecurity governance framework. 
Responsibilities: Responsible for determining information system requirements by evaluating business strategies; researching information technology standards; conducting system analyses and risk assessments; studying architecture/platform; identifying integration issues; or preparing cost estimates.  Perform gap analysis of existing set of security policies and procedures against policy drivers and overarching compliance requirements including FISMA, OMB Memorandum, CISA guidance, NIST best practices, and federal laws. Will develop and update security policies and procedures as federal guidance changes and will maintain and publish guidance for various stakeholders throughout the organization.  Will support mechanisms to receive feedback and incorporate updates as needed.  Will develop white papers, executive briefings and memorandum to support and promote policy and guidance drivers and make recommendations on appropriate updates. Qualifications: Responsible for determining information system requirements by evaluating business strategies; researching information technology standards; conducting system analyses and risk assessments; studying architecture/platform; identifying integration issues; or preparing cost estimates. Perform gap analysis of existing set of security policies and procedures against policy drivers and overarching compliance requirements including FISMA, OMB Memorandum, CISA guidance, NIST best practices, and federal laws.  Will develop and update security policies and procedures as federal guidance changes and will maintain and publish guidance for various stakeholders throughout the organization.  Will support mechanisms to receive feedback and incorporate updates as needed.  Will develop white papers, executive briefings and memorandum to support and promote policy and guidance drivers and make recommendations on appropriate updates.
*US Citizenship is required, and candidates must be willing to be submitted for a US Government background investigation*Bachelor’s or Master’s degree preferred*2-5 years of experience developing policies for cyber security programs*Expertise in understanding NIST frameworks*Knowledge of Zero Trust Architecture & Concepts*2+ years experience working in the Governance, Risk, and Compliance field*Great written and verbal communication skills
Desired Skills:  *Experience with drafting, and maintaining enterprise-wide cybersecurity policies, any technical standards, secure baseline configurations, and implementation guidance for the design and implementation of ZTA related cybersecurity controls within the information systems
*Experience with items such as white papers, Chief Information Security Officer (CISO) memos and similar documents necessary to show program/systems/service status, conduct change/configuration management of the program/system/service and promote the success and challenges of the program
*Experience aligning cybersecurity policies, instructions, technical standards and implementation guidance with overarching Federal regulations, guidance and best practices including but not limited to: Federal Information Processing Standards (FIPS), National Institute of Standards and Technologies (NIST) Standards, Office of Management and Budget Memos, Security Technical Implementation Guides (STIGs), CIS Benchmarks, Vendor Hardening Guides, Executive Orders (EOs), Binding Operational Directives, Office of Inspector General (OIG) recommendations and Government Accountability Office (GAO) recommendations

Benefits Offered

  • 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% cont

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

UltraViolet Cyber

View company profile →