Cybersecurity Policy Analyst
$90,000–$90,000 year
On-site · Columbus, Ohio, United States
Job Summary
Cybersecurity Policy Analyst to lead development, consolidation, and governance of government-aligned cybersecurity policies. Responsibilities include maintaining CSSP processes, updating SOPs/TPPs, ensuring compliance with government directives, coordinating communications and reporting, supporting CSSP evaluations and audits, analyzing artifacts and metrics, coordinating cybersecurity exercises, producing after-action reports, and providing executive briefings. Requires DoD Top Secret clearance with SCI eligibility/IT-I access, DoD 8570 IAT Level II or CSSP certifications, 7+ years in cybersecurity policy, and experience with RMF/CSSP frameworks. Salary around $90K+ annually; location in Columbus, OH with on-site requirements. Benefits include paid leave, bonuses, 401(k) match, health/dental/vision, parental leave, military differential pay, professional growth, and employee profit-sharing commitments.
Required Qualifications
- Minimum of seven (7) years of relevant cybersecurity policy experience
- DoD Top Secret clearance with SCI eligibility and IT-I access
- DoD 8570 IAT Level II Certification or higher (examples include: CompTIA Security+ CE, CySA+, SSCP, GSEC, CCNA, GIAC certifications)
- Computing Environment Certification - DoD 8570 CSSP (examples include: CEH, CySA+, GCIH, CISA, GSNA, SCYBER, GCFA, CFR)
- Experience developing, refining, and integrating cybersecurity policies and governance frameworks
- Experience maintaining CSSP processes, policies, and procedures; incident response support for government environments
- Experience reviewing and updating SOPs and TTPs to align with evolving requirements and standards
- Experience coordinating compliance activities with government directives and regulatory requirements
- Experience preparing for CSSP evaluations, audits, and performance assessments
- Strong executive briefing skills and ability to provide senior leadership updates
- Knowledge of RMF packages and cybersecurity authorization and compliance requirements
- Experience delivering cybersecurity training materials and conducting training sessions in classroom and virtual environments
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.