About this role
Overview
Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose.
We’ve been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges.
Position Summary
Credence has an upcoming need for a Senior Cybersecurity Program Analyst in Palmdale, CA.
The Cybersecurity Analyst shall ensure that all system and application deliverables meet the requirements of all DoD and AF Cybersecurity policies. This position’s primary role is to that the assigned system’s cybersecurity documents, data, requirements, and strategic planning are adequate to ensure system mission needs are met and that the system complies with all relevant Cybersecurity law, regulation, and policy.
Collect and maintain data needed to meet system cybersecurity reporting requirements IAW cybersecurity law, regulation, and policyIdentify gaps in cybersecurity compliance for the assigned system, create plans of action to resolve cybersecurity gaps, communicate plans to organizational leadership, execute plans to ensure cybersecurity compliance is met Ensure security improvement action are identified, validated, and implemented as required for the assigned system; tracks cybersecurity program requirements to ensure successful implementationEnsure that cybersecurity requirements are integrated into the continuity planning for the assigned system and organization; makes recommendations to update cybersecurity policy for organizational efficiencyPlan, monitor, and track cybersecurity tasks to ensure successful completionIdentify alternative information security (INFOSEC) strategies to address cybersecurity tasks or requirements that are a risk to the system’s continued operation and mission successMonitor the assigned system to ensure cybersecurity data and data sources meet cybersecurity policy requirements, and communicate status to organizational leadersAudit cybersecurity information, data, system configuration, and other cybersecurity characteristics to ensure requirements are met; report gaps or issues to division cybersecurity leadershipConduct import/export reviews for acquiring systems and SWReview source code scanning reports to identify vulnerabilities and identify risksDevelop methods to monitor and measure risk, compliance, and assurance efforts; develop contingency plans, disaster recovery procedures, and other methods to mitigate and/or resolve cybersecurity risks Identify and document the requirements necessary to ensure SW acquisition programs, contract requirements, or other product development efforts meet applicable cybersecurity law, regulation, and policy Develop methods to ensure programs or projects meet the requirements of DoDI 8520.02, Public Key Infrastructure (PKI) and Public Key (PK) EnablingSupport the Risk Management Framework (RMF) tasks related to system/application efforts to include Assessment and Authorization efforts, system audits, and other quality checks; ensure cybersecurity RMF artifacts (documents, data, etc.) meet the requirements of cybersecurity policy Recommend policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and dataConduct risk and vulnerability assessments of planned and installed information systems to identify vulnerabilities, risks, and protection needsParticipate in network and systems design to ensure implementation of appropriate systems security policiesEnsure the rigorous application of INFOSEC/cybersecurity policies, principles, and practices in the delivery of all IT servicesPerform the Information System Security Engineer duties in an Information Assurance (IA) Workforce System Architecture and Engineering position as outlined in AFI 33-200, AFI 33-210 and AFMAN 33-285 for assigned systemsRequirements
Active TS/SCI security clearance Bachelors Degree in IT, Computer Science, or Information systems and ten (10) years of experience in the respective technical/professional disciplines being performed.Or Masters Degree in IT, Computer Science, or Information systems and seven (7) years of experience in the respective technical/professional disciplines being performed.Experience with Defense Acquisition System processes including UCA, MTA, MCA, SW Acquisition and Acquisition of Services.Familiarity with DoD Security Requirements Guides (SRGs) and Security Technical Implementation Guides (STIGs) is required. In depth knowledge of DISA policy and guidance is required.Experience with AF computer networking concepts and protocols, network security methodologies, cybersecurity principles used to manage risk, and experience identifying and mitigating system vulnerabilities is required.Professional Qualifications:
Cybersecurity Qualification is required for Work Role ID 805 IT Program Auditor.CompTIA Security + or Security X certification. Benefits
Health Care Plan (Medical, Dental & Vision)Retirement Plan (401k, IRA)Life Insurance (Basic, Voluntary & AD&D)Paid Time Off (Vacation, Sick & Public Holidays)Family Leave (Maternity, Paternity)Short Term & Long Term DisabilityTraining & DevelopmentPlease join us, as together we build a better world one mission at a time powered by technology and its people!