Odyssey Systems Consulting Group, Ltd.

Senior Cybersecurity Program Analyst

Odyssey Systems Consulting Group, Ltd. Palmdale, California, United States · $192K–$200K/yr

Defense and Space Manufacturing · 1,001-5,000 employees

4 h ago
security Principal (10+ yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Senior Cybersecurity Program Analyst will manage cybersecurity compliance, reporting, and risk mitigation for assigned DoD systems. They are responsible for conducting vulnerability assessments, auditing system configurations, and ensuring all security requirements are integrated into program development.

What they look for

Cybersecurity Risk Management Framework DoD Acquisition Information Assurance Vulnerability Assessment System Architecture Compliance Auditing Policy Development Network Security Public Key Infrastructure Source Code Analysis Disaster Recovery Contingency Planning Information Security System Configuration

Requirements

Candidates must hold a Top Secret clearance and possess a bachelor's degree with at least 12 years of relevant experience, including DoD acquisition. A professional certification in IT Program Auditing is required to perform these duties effectively.

Benefits

Medical Dental Vision Life insurance Tricare supplement Short-term disability Long-term disability 401(k) match Flexible spending accounts Health savings accounts Employee assistance program Learning and development benefit Paid time off Holidays

Full description

Position Summary

Odyssey Systems has an exciting opportunity for a Senior Cybersecurity Program Analyst providing support to the AFLCMC/C3I C2ISR Division. C3I C2ISR Division provides support for all the weapon systems, platforms, cells, and capabilities managed by the C2ISR Division in support of AFLCMC/HB, and other classified programs designated under C3I or extensions of HB under C2ISR.

This is a full-time position located in Palmdale, CA

Responsibilities

Duties include, but not limited to:

  • Collect and maintain data needed to meet system cybersecurity reporting requirements IAW cybersecurity law, regulation, and policy
  • Identify gaps in cybersecurity compliance for the assigned system, create plans of action to resolve cybersecurity gaps, communicate plans to organizational leadership, execute plans to ensure cybersecurity compliance is met
  • Ensure security improvement action are identified, validated, and implemented as required for the assigned system; tracks cybersecurity program requirements to ensure successful implementation
  • Ensure that cybersecurity requirements are integrated into the continuity planning for the assigned system and organization; makes recommendations to update cybersecurity policy for organizational efficiency
  • Plan, monitor, and track cybersecurity tasks to ensure successful completion
  • Identify alternative information security (INFOSEC) strategies to address cybersecurity tasks or requirements that are a risk to the system’s continued operation and mission success
  • Monitor the assigned system to ensure cybersecurity data and data sources meet cybersecurity policy requirements, and communicate status to organizational leaders
  • Audit cybersecurity information, data, system configuration, and other cybersecurity characteristics to ensure requirements are met; report gaps or issues to division cybersecurity leadership
  • Conduct import/export reviews for acquiring systems and SW
  • Review source code scanning reports to identify vulnerabilities and identify risks
  • Develop methods to monitor and measure risk, compliance, and assurance efforts; develop contingency plans, disaster recovery procedures, and other methods to mitigate and/or resolve cybersecurity risks
  • Identify and document the requirements necessary to ensure SW acquisition programs, contract requirements, or other product development efforts meet applicable cybersecurity law, regulation, and policy
  • Develop methods to ensure programs or projects meet the requirements of DoDI 8520.02, Public Key Infrastructure (PKI) and Public Key (PK) Enabling
  • Support the Risk Management Framework (RMF) tasks related to system/application efforts to include Assessment and Authorization efforts, system audits, and other quality checks; ensure cybersecurity RMF artifacts (documents, data, etc.) meet the requirements of cybersecurity policy
  • Recommend policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data
  • Conduct risk and vulnerability assessments of planned and installed information systems to identify vulnerabilities, risks, and protection needs
  • Participate in network and systems design to ensure implementation of appropriate systems security policies
  • Ensure the rigorous application of INFOSEC/cybersecurity policies, principles, and practices in the delivery of all IT services
  • Perform the Information System Security Engineer duties in an Information Assurance (IA) Workforce System Architecture and Engineering position as outlined in AFI 33-200, AFI 33-210 and AFMAN 33-285 for assigned systems

Qualifications

Citizenship: Must be a US citizen

Minimum Required Qualifications

Clearance: Top Secret

Education: Bachelor’s degree in a related field and 12 years of experience in the respective technical/professional discipline being performed, five of which must be in DoD acquisition.

Years of Experience: 15 years of directly related experience with proper certifications, eight of which must be in DoD acquisition.

Certifications: 805-IT Program Auditor Intermediate or Advanced.

Technical Skills

  • Experience with Defense Acquisition System processes including UCA, MTA, MCA, SW Acquisition and Acquisition of Services.
  • Familiarity with DoD Security Requirements Guides (SRGs) and Security Technical Implementation Guides (STIGs) is required.
  • In depth knowledge of DISA policy and guidance is required.

Additional Information

Location: Palmdale, CA

Travel: None

On-site

#LI-DD1

Company Overview

Odyssey is a world-class technical, engineering, and integration company serving the warfighting ecosystem with airborne integration, ISR, C2, and warfighter readiness capabilities. Odyssey meets the military’s operational needs by integrating layered defense systems from equipment, technology, and services to data, information, and business operations. We streamline defense acquisition and sustainment, engineering the technical battlefield with domain-specific proficiency to ensure lethality. Odyssey is dedicated to excellent contract execution, peak organizational performance, and fostering a workplace built on employee care.

Odyssey is proud to live out our core values of commitment, ambition, and respect in our work and communities through OdysseyCares, a philanthropic group focused on giving back through direct donations, an employer match program, and volunteering events.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

Please Note:

Final compensation for this position will be determined by various factors such as the Federal Government contract labor categories and contract wage rates, relevant work experience, specific skills and competencies, geographic location, education, and certifications.

This position is filled through continuous recruitment and will remain open until a sufficient pool of applications has been received.Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, Tricare supplement, short-term disability, long-term disability, 401(k) match, flexible spending accounts, health savings accounts, employee assistance program, learning and development benefit, paid time off, and holidays.Odyssey Benefits

Similar roles