Jobs and Careers
MI
Policy Analyst
MindPoint GroupWashington, United Statesfull_timeVerifiedPosted 6 Feb 2025
About the role
We are looking for a dynamic Policy Analyst.
Responsibilities:
- Serve as a trusted advisor to the CISO and Deputy CISO as an expert in the field of information assurance and cybersecurity.
- Represent the Department in working groups and cybersecurity committees that are tackling the government’s current and emerging challenges such as maturing the CDM program, automating the ATO process, and developing and implementing enterprise security services.
- Lead the development of the Department’s program for identifying, protecting, and monitoring its High-Value Assets (HVAs).
- Oversee and manage the day-to-day operation of information systems, including advanced technical assistance.
- Perform control reviews, security audits, evaluations, and risk assessments of sensitive and complex operational systems and facilities and provides recommendations for remediating detected vulnerabilities.
- Conduct application, system, and network security assessments, analyses, authorizations, and evaluations in classified and sensitive environments.
- Develop requirements and specifications for reviewing and approving procurement requests, major systems development activities, telecommunications hardware and software, and hardware and software encryption techniques on the basis of security concerns.
- Broadly assess technology to ensure security vulnerabilities are identified and remediated.
- Analyze and optimize system operation and resource utilization and perform system capacity planning/analysis while maintaining the security posture.
- Provide Automated Indicator Sharing (AIS) and client network guidance, training, research and recommendations.
- Support specific technical reviews to support non-standard operational requirements and systems, including design, development, and maintenance of unique security assessment security tools and conducting assessments.
Requirements:
- Bachelor’s Degree or an equivalent combination of formal education and experience. Bachelor's Degree may be substituted for 8 additional years of relevant experience.
- Minimum 8 years of general experience and 6 years of relevant experience in functional responsibility.
- Well-versed in risk management and must have experience working with SDLC and performing security tasks throughout.
- Experience with and working understanding of FISMA compliance, experience conducting all phases of Certification and Accreditation, and creating documentation in accordance with NIST guidance.
- Well-versed with NIST publications, including NIST 800 series, OMB circulars such as OMB A-123 circular and OMB A-130 circular and memoranda, and CNSS publications and their requirements and impact on system security such as CNSS 1253 and risk management methodologies.
- Strong analytical and organizational skills.
- Concise writing skills.
Desired:
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s