Enter a job title or keyword

DLA Cyber Emergency Response Team (CERT) Cyber Security Service Provider (CSSP) Cybersecurity Policy Analyst

S2i2


Job Location:

Columbus, NE - USA

Yearly Salary: USD 80000 - 98000
Posted: 1 October 2026 (19 hours ago)
Application Deadline: 29 December 2026
Vacancies: 1 Vacancy

Job Summary

S2I2 is currently seeking an experienced Cybersecurity Policy Analyst in support of Cyber Security Service Provider (CSSP).

Clearance: Active Top Secret (TS) with SCI eligibility
Work Schedule: On-site 5 days/week. Occasional after-hours support for incidents exercises and inspection preparation



Position Overview:
Develop review and streamline DLA CERT cybersecurity policies SOPs and TTPs to ensure compliance with DoD and DLA standards emphasizing incident response across the DLA enterprise.

Lead and coordinate CSSP evaluation and inspection preparations including the collection and compilation of relevant metrics and artifacts. Track progress against Evaluator Scoring Metrics and brief DLA CERT and Cybersecurity leadership on organizational readiness.

Receive acknowledge and rapidly disseminate Cyber Defense directives (orders taskings and alerts) within 30 minutes of receipt. Track and validate DLAs compliance with ongoing and recurring requirements.

Support the planning and execution of cybersecurity exercises including tabletop scenarios for DLA programs and applications. Generate detailed exercise reports and capture lessons learned for continuous improvement.

Assist DLA program teams in developing RMF packages and associated compliance documentation to facilitate successful authorizations.

Create and deliver comprehensive incident response and cybersecurity training to ISSMs system administrators and incident response
teams both in-person and remotely.

Support After Action Reports and Joint Lessons Learned Information System (JLLIS) entries so that process gaps identified during incidents flow back into SOP and TTP updates.

Prepare monthly CSSP inspection metrics evaluations annual SOP and TTP updates and compile annual CSSP artifact deliverables.

Brief senior government leadership on cybersecurity policy changes updates and overall program progress.



Qualifications:

Required Qualifications:
Minimum of seven (7) years of proven experience in cybersecurity policy development and implementation.

Active DoD Top Secret security clearance with current SCI eligibility and IT-I (Tier 5) access required at time of application.

DoD 8570.01-M / 8140 baseline certification at IAT Level II or higher (for example Security CE CySA CCNA Security GICSP GSEC or SSCP).

DoD 8570.01-M / 8140 CSSP certification as CSSP Auditor (CSSP-AU) or CSSP Incident Responder (CSSP-IR) (for example CISA CEH GCIH GCFA CySA or CFR).

Strong working knowledge of DoD cybersecurity policy and the CSSP program including CJCSM 6510.01B DoDI 8530.01 Evaluator Scoring Metrics and JFHQ-DODIN reporting requirements.

Demonstrated ability to develop clear defensible policy and procedure documents and effectively brief senior leadership.

Desired Qualifications:
Experience preparing an organization for a CSSP evaluation or inspection ideally with a role in metrics and artifact compilation.

Prior experience with DLA DISA DoD CSSP or CERT.

Experience with the RMF process and direct support of system owners throughout authorization package development.

Experience planning and facilitating cybersecurity tabletop exercises.

Familiarity with SOC operations and incident handling sufficient to develop actionable procedures for analysts.

CISSP CISM or CISA certification preferred

Required Experience:

IC


About Company

Company Logo

Home

View Profile View Profile