freehire launches on Product Hunt on 26 August.

Follow →

Senior Cybersecurity Program Analyst

Summary

Senior Cybersecurity Program Analyst ensures DoD and AF cybersecurity compliance for mission-critical systems, audits vulnerabilities, and implements risk-mitigation strategies for defense and health federal clients.

Overview

Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose.

We’ve been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges.

Position Summary

Credence has an upcoming need for a Senior Cybersecurity Program Analyst in Palmdale, CA.

The Cybersecurity Analyst shall ensure that all system and application deliverables meet the requirements of all DoD and AF Cybersecurity policies. This position’s primary role is to that the assigned system’s cybersecurity documents, data, requirements, and strategic planning are adequate to ensure system mission needs are met and that the system complies with all relevant Cybersecurity law, regulation, and policy.

  • Collect and maintain data needed to meet system cybersecurity reporting requirements IAW cybersecurity law, regulation, and policy
  • Identify gaps in cybersecurity compliance for the assigned system, create plans of action to resolve cybersecurity gaps, communicate plans to organizational leadership, execute plans to ensure cybersecurity compliance is met
  • Ensure security improvement action are identified, validated, and implemented as required for the assigned system; tracks cybersecurity program requirements to ensure successful implementation
  • Ensure that cybersecurity requirements are integrated into the continuity planning for the assigned system and organization; makes recommendations to update cybersecurity policy for organizational efficiency
  • Plan, monitor, and track cybersecurity tasks to ensure successful completion
  • Identify alternative information security (INFOSEC) strategies to address cybersecurity tasks or requirements that are a risk to the system’s continued operation and mission success
  • Monitor the assigned system to ensure cybersecurity data and data sources meet cybersecurity policy requirements, and communicate status to organizational leaders
  • Audit cybersecurity information, data, system configuration, and other cybersecurity characteristics to ensure requirements are met; report gaps or issues to division cybersecurity leadership
  • Conduct import/export reviews for acquiring systems and SW
  • Review source code scanning reports to identify vulnerabilities and identify risks
  • Develop methods to monitor and measure risk, compliance, and assurance efforts; develop contingency plans, disaster recovery procedures, and other methods to mitigate and/or resolve cybersecurity risks
  • Identify and document the requirements necessary to ensure SW acquisition programs, contract requirements, or other product development efforts meet applicable cybersecurity law, regulation, and policy
  • Develop methods to ensure programs or projects meet the requirements of DoDI 8520.02, Public Key Infrastructure (PKI) and Public Key (PK) Enabling
  • Support the Risk Management Framework (RMF) tasks related to system/application efforts to include Assessment and Authorization efforts, system audits, and other quality checks; ensure cybersecurity RMF artifacts (documents, data, etc.) meet the requirements of cybersecurity policy
  • Recommend policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data
  • Conduct risk and vulnerability assessments of planned and installed information systems to identify vulnerabilities, risks, and protection needs
  • Participate in network and systems design to ensure implementation of appropriate systems security policies
  • Ensure the rigorous application of INFOSEC/cybersecurity policies, principles, and practices in the delivery of all IT services
  • Perform the Information System Security Engineer duties in an Information Assurance (IA) Workforce System Architecture and Engineering position as outlined in AFI 33-200, AFI 33-210 and AFMAN 33-285 for assigned systems

Requirements

  • Active TS/SCI security clearance
  • Bachelors Degree in IT, Computer Science, or Information systems and ten (10) years of experience in the respective technical/professional disciplines being performed.
  • Or Masters Degree in IT, Computer Science, or Information systems and seven (7) years of experience in the respective technical/professional disciplines being performed.
  • Experience with Defense Acquisition System processes including UCA, MTA, MCA, SW Acquisition and Acquisition of Services.
  • Familiarity with DoD Security Requirements Guides (SRGs) and Security Technical Implementation Guides (STIGs) is required.
  • In depth knowledge of DISA policy and guidance is required.
  • Experience with AF computer networking concepts and protocols, network security methodologies, cybersecurity principles used to manage risk, and experience identifying and mitigating system vulnerabilities is required.

Professional Qualifications:

  • Cybersecurity Qualification is required for Work Role ID 805 IT Program Auditor.
  • CompTIA Security + or Security X certification.

Benefits

  • Health Care Plan (Medical, Dental & Vision)
  • Retirement Plan (401k, IRA)
  • Life Insurance (Basic, Voluntary & AD&D)
  • Paid Time Off (Vacation, Sick & Public Holidays)
  • Family Leave (Maternity, Paternity)
  • Short Term & Long Term Disability
  • Training & Development

Please join us, as together we build a better world one mission at a time powered by technology and its people!

What this application asks

workable

First name, Last name, Email, Headline, Please list your full legal first and last name (e.g., John L. Smith II), Please provide your preferred first name, Phone, By providing a phone number and submitting this form you consent to receive SMS text messages from Credence LLC in accordance with our SMS Privacy Policy (https://credence-llc.com/careers/sms-privacy/) Message and data rates may apply. Message frequency may vary. Reply No, to STOP and opt out., Address, Photo, Education, Experience, List any work related certifications or licenses you currently possess, Please comment on how your prior education and experiences qualify you for the type of employment you are seeking., Summary, Resume, Please indicate which active clearances you have, If you have a security clearance not listed, please fill in., Cover letter, Type of work desired, What is your annual salary expectation? (Ranges are welcomed- non-answers may delay your consideration), What date are you available to join Credence as a new hire?, Are you legally authorized to work in the U.S. as a U.S. citizen or Fully Naturalized U.S. Citizen?
, Do you currently or will you in the future, require an immigration sponsorship and/or a host for a work visa authorization (e.g., F1 or H-1B)?  (if hired, verification will be required consistent with federal law.)
, Are you at least 18 years old?  (if no, you may be required to provide authorization to work)
, How did you hear about us? Was it a job board or an employee? Do tell...., Have you ever worked for Credence before?
If yes, what year and in what role?, Credence honors our Service Members and wonder if you are a Veteran or have Veteran status?, Credence honors our Service Members and their spouses, have you ever been a Military Spouse?, Do you have any relatives employed by this organization?, I have disclosed all information that is relevant and should be considered applicable to my candidacy for employment. 

I understand, where permissible under applicable state and local law, I may be subject to a pre-employment drug test after receiving a conditional offer of employment, and must receive a negative result for illegal drug use before being permitted to commence work with Company. I understand, where permissible under applicable state and local law, I may be subject to a pre-employment medical examination after receiving a conditional offer of employment, and must meet the qualifications for the position, with or without reasonable accommodation, before being permitted to commence work with Company. I understand, where permissible under applicable state and local law, I may be subject to a pre-employment background check after receiving a conditional offer of employment to investigate my criminal background and other matters related to my suitability for employment. Initial to agree., I hereby certify that the information given by me is true in all respects. I authorize Company and its representatives to contact my prior employers and all others (with the exception of my current employer, only if I have marked "May we contact your present employer" on this application as "No") for the purpose of verification of the information I have supplied and release same from any liability resulting from the information released. I authorize employers, schools and other persons named on this application to provide any information or transcripts requested. Initials to agree, I understand employment with Company is also contingent on my providing sufficient documentation necessary to establish my identity and eligibility to work in the United States. 

If employed, I understand that as a condition of employment that I may be required to agree to and sign a non-solicitation, non-disclosure, and/or other similar agreements. I also agree to notify the organization during the pre-employment process of any non-solicitation, non-disclosure, and/or other similar agreements that I may have already signed with current and former employers. 

I expressly understand and agree that, if employed, my employment, having no specified term, is based upon mutual consent and may be terminated at-will, with or without cause, by either party (Company or me) without prior notice to the other, unless otherwise prohibited by law. 

I understand that no representation, whether oral or written, by any representative or agent of Company, at any time, can constitute an implied or express contract of employment. I further understand no representative or agent of Company has the authority to enter into an agreement for employment for any specified period of time or to make any change in any policy, procedure, benefit or other terms or condition of employment other than in a document signed by an authorized representative. 

I understand that the technical processing and transmission of the application, including my personal information, may involve (a) transmissions over various networks, including the transfer of this information to the United States and/or other countries for storage, processing and use by Company, its affiliates, and their agents; and (b) changes to conform and adapt to technical requirements of connecting networks and devices. Accordingly, I agree to permit such parties to make such transmissions and changes, and hereby provide the necessary consent for the same. Initial to agree., Do you currently meet the worksite location requirements for being On-site or Hybrid as defined in the job description?, If “No”, are you willing to relocate to meet this requirement? Please note that candidates who are unable to work onsite or relocate will not meet the position requirements.

  • Do you have an active or current Top Secret security clearance with Sensitive Compartmented Information (TS/SCI) eligibility, verifiable in the Defense Information System for Security (DISS)? yes / no

See also