Cybersecurity Compliance Advisory Analyst I
Sierra Nevada CorporationAbout the role
Responsibilities:
Contract and Supply Chain Compliance Support:
- Assist in conducting cybersecurity due diligence by reviewing basic contracts to identify cybersecurity requirements for suppliers, subcontractors, and vendors.
- Monitor supplier and vendor cybersecurity performance to identify compliance with contractual obligations and regulatory standards.
- Support the documentation and tracking of supplier and vendor compliance issues, and assist in managing routine communication with suppliers and vendors regarding cybersecurity incidents.
- Help ensure procurement and subcontract processes align with cybersecurity regulations, including DFARS 252.204-7012, CMMC, organizational requirements, and industry best practices.
- Research and stay informed of evolving regulations, best practices, and standards affecting supplier and vendor compliance with DFARS and CMMC.
Cybersecurity Compliance Advisory Support:
- Support the GRC team in developing and implementing a unified CMMC and DFARS compliance program.
- Assist in interpreting and translating cybersecurity regulations (NIST SP 800-171, CMMC, and DFARS 252.204-7012) into actionable guidance and contribute to process improvement.
- Support participation in gap analyses to help identify deficiencies and risks.
- Assist in collecting data for continuous monitoring programs and key performance indicators (KPIs) to track compliance and risks related to suppliers, subcontractors, and vendors handling CUI or FCI.
- Help system owners gather documentation to prepare for internal and external assessments (mock assessments, readiness reviews).
Qualifications You Must Have:
- Bachelor's degree in a related discipline or 0 - 2 years of relevant experience
- A higher level degree may substitute for experience
- Related experience may be considered in lieu of required education
- Foundational understanding or strong desire to learn about NIST SP 800-171, DFARS 252.204-7012, and the Cybersecurity Maturity Model Certification (CMMC) 2.0.
- Strong analytical and organizational skills, with attention to detail.
- Good written and verbal communication skills.
- Ability to learn quickly and work effectively as part of a team.
- The ability to obtain and maintain a Secret U.S. Security Clearance is required
Qualifications We Prefer:
- Proven track record of maintaining the confidentiality of high-sensitivity projects and data.
- Ability to perform critical-incident response.
- Ability to read and interpret security and technical documentation.
- Internship or project experience related to cybersecurity, IT audit, or compliance.
- Familiarity with contract language or supply chain concepts.
- Familiarity with ISO 9001 concepts.
- Relevant entry-level industry certifications (e.g., CompTIA A+, Network+, Security+) are a plus, but not required.
Estimated Starting Salary Range: $64,853.15 - $89,173.08. Compensation varies depending on a wide array of factors, such as candidates' key skills, relevant work experience, and education/training/certifications. The disclosed range estimate may be adjusted for any applicable geographic differential associated with the location at which the position may be filled.
This posting will be open for application for a minimum of 5 days and may be extended based on business needs.
SNC offers a generous benefit package, including medical, dental, and vision pl
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s