Cybersecurity Governance & Policy Specialist — Level II
Quantico, VA - USA
Job Summary
RiVidium Inc. is seeking an experienced Cybersecurity Governance & Policy Specialist - Level II to serve the team for all Cybersecurity and Intelligence Enterprise Information Technology Services (CIEITS) program activities.
The Cybersecurity Governance & Policy Specialist - Level II supports the development implementation and maintenance of cybersecurity governance policy and compliance activities for the Department of Homeland Security (DHS) Intelligence Enterprise (DHS IE). Working under the direction of the Senior Security Governance and Policy Analyst this position assists with researching emerging cybersecurity requirements analyzing Federal and Intelligence Community (IC) guidance and ensuring DHS IE cybersecurity policies remain aligned with current Federal laws Executive Orders DHS directives and IC cybersecurity standards.
The ideal candidate possesses strong analytical research technical writing and organizational skills with experience supporting cybersecurity governance initiatives within classified Federal or Intelligence Community environments. This role collaborates closely with Information System Security Managers (ISSMs) Information System Security Officers (ISSOs) cybersecurity leadership and Government stakeholders to promote policy compliance and effective cybersecurity governance across the enterprise.
Key Responsibilities
- Support the Senior Cybersecurity Governance and Policy Analyst in reviewing analyzing and implementing changes to Federal DHS and Intelligence Community cybersecurity policies directives standards and guidance.
- Research newly issued Executive Orders (EOs) National Security Memoranda (NSMs) Office of Management and Budget (OMB) guidance DHS directives and IC cybersecurity policies; prepare summaries and recommendations for leadership review.
- Draft stakeholder notifications regarding cybersecurity policy changes updates and rescissions for review and distribution by the Chief Information Security Officer (CISO).
- Assist in developing Policy Addenda implementation guidance and policy rescission documentation for Cybersecurity Division leadership.
- Maintain the cybersecurity governance compliance tracker and update policy implementation status on a weekly basis.
- Maintain SharePoint sites and centralized repositories containing cybersecurity policies governance documentation meeting records and reference materials.
- Support the preparation of executive briefings decision papers white papers presentation materials and governance reports for senior leadership.
- Assist with Intelligence Community Oversight Program (ICOP) briefings and governance working group presentations.
- Monitor DHS Component compliance with cybersecurity policy requirements and assist in compiling compliance status reports and metrics.
- Support Government data calls taskers audits inspections and special reporting requirements.
- Coordinate governance meetings working groups and stakeholder communications; document meeting minutes and track action items.
- Maintain centralized records of governance decisions policy changes waivers and compliance documentation.
- Assist with quality assurance reviews of governance documents to ensure consistency with Federal and Intelligence Community requirements.
- Collaborate with cybersecurity teams to promote policy awareness and governance best practices throughout the enterprise.
Minimum Qualifications
- Active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance.
- Minimum 5 years of experience supporting cybersecurity governance policy analysis information assurance or cybersecurity compliance within the Federal Government or Intelligence Community.
- Working knowledge of:
- NIST SP 800-53
- NIST Risk Management Framework (RMF)
- CNSSI 1253
- DHS Sensitive Systems Policy Directive 4300C
- Intelligence Community cybersecurity directives and governance requirements
- Experience researching cybersecurity regulations and translating technical guidance into policy recommendations and implementation documentation.
- Experience preparing executive correspondence policy memoranda briefing materials reports and technical documentation.
- Bachelors degree in Cybersecurity Information Systems Computer Science Political Science Public Administration Information Assurance or a related discipline.
- Excellent analytical organizational technical writing verbal communication and presentation skills.
- Proficiency with Microsoft Office 365 including Word Excel PowerPoint Outlook and Teams.
Preferred Qualifications
- Current Certified Information Systems Security Professional (CISSP) CompTIA Security or Certified Authorization Professional (CAP) certification.
- Experience supporting DHS Intelligence & Analysis (I&A) or other Intelligence Community cybersecurity organizations.
- Experience administering or maintaining SharePoint sites and collaboration platforms.
- Familiarity with Governance Risk and Compliance (GRC) platforms such as RSA Archer.
- Experience supporting cybersecurity audits inspections policy compliance assessments and governance reviews.
- Knowledge of Executive Orders National Security Memoranda (NSMs) OMB Circulars FISMA and other Federal cybersecurity mandates.
Required Certifications
One or more of the following certifications are preferred and may be required based on contract needs:
- CompTIA Security
- Certified Information Systems Security Professional (CISSP)
- Certified Authorization Professional (CAP)
Clearance Requirement
Active Top Secret/Sensitive Compartmented Information (TS/SCI) Clearance Required
Required Experience:
IC
About Company
Established in 2008, RiVidium, Inc. (dba TripleCyber) is a VA-Verified SDVOSB and an SBA-Certified 8(a) company. To prepare our clients for the future, RiVidium has balanced all parts of our organization to attract the finest employees in order to 'Strive to be the missing element def ... View more