| Description |
Pay Rate: The annual base salary range for this position is TBD. Please note that the salary information is a general guideline only. At Sawdey Solution Services, we recognize that attracting the best talent is key to our strategy and success as a company. We will consider several factors when extending an offer to an applicant. These factors include (but are not limited to) the position, associated responsibilities, work experience, education, related training, and related skills. Position Location: DCMA Facility, San Diego, CA (On-Site) OR Fort Lee, VA Telework/Work-from-Home Authorized: No About the Role:
The Cybersecurity Analyst serves as a technical subject matter expert supporting the cybersecurity evaluation of product submissions for the DCMA Blue List Program. The position provides technical expertise and advisory support to Government personnel regarding cybersecurity requirements, technical standards, risk management, assessment methodologies, vulnerabilities, and emerging threats affecting small unmanned systems and related technologies. The Cybersecurity Analyst will evaluate cybersecurity assessment results and technical evidence, identify vulnerabilities and residual risks, assess proposed remediation strategies, and develop recommendations that support Government technical acceptance and Blue List Program decisions. Additional Responsibilities Include, but are not Limited To:
- Serve as a cybersecurity technical subject matter expert supporting the evaluation of Blue List product submissions.
- Provide advisory support regarding cybersecurity requirements, technical standards, risk-management practices, and assessment methodologies.
- Apply cybersecurity principles to embedded systems, software, firmware, wireless communications, networking, encryption, authentication, and supply-chain security.
- Interpret cybersecurity assessment methodologies and technical assessment data.
- Review and analyze penetration-testing results, vulnerability assessments, software-assurance evaluations, firmware analyses, and related cybersecurity evidence.
- Evaluate cybersecurity assessment reports and supporting technical documentation for completeness, technical sufficiency, and adequacy.
- Identify cybersecurity vulnerabilities, threats, attack vectors, and residual risks that could affect DoD missions, warfighter safety, national security, operational resilience, or Government information and systems.
- Develop technical recommendations addressing cybersecurity findings, risk-mitigation strategies, assessment requirements, and technical acceptance considerations.
- Review and validate vendor remediation plans to determine whether proposed corrective actions sufficiently mitigate identified cybersecurity vulnerabilities.
- Maintain awareness of applicable Federal statutes, DoD policies, NDAA requirements, cybersecurity frameworks, industry best practices, and Government Blue List processes.
- Provide cybersecurity consultation and advisory support to Government personnel and stakeholders.
- Monitor emerging cybersecurity threats, vulnerabilities, technologies, and policy developments affecting small unmanned systems and associated technologies.
- Provide recommendations supporting the continued improvement and evolution of the Blue List Program.
- Perform other duties, as assigned.
Experience Requirements:
- Practical cybersecurity experience supporting technical systems, cybersecurity assessments, or related technical environments.
- Five (5) or more years of practical experience is preferred.
- Demonstrated knowledge of cybersecurity principles applicable to:
- Embedded systems
- Software and firmware
- Wireless communications and networking
- Encryption and authentication
- Supply-chain security
- Experience interpreting penetration-testing results, vulnerability assessments, software-assurance evaluations, firmware analyses, and other technical cybersecurity assessment data.
- Experience identifying vulnerabilities, threats, attack vectors, residual risk, and appropriate mitigation strategies.
- Ability to evaluate technical cybersecurity documentation and communicate findings and recommendations to Government decision-makers.
- Experience with small unmanned systems, UAS technologies, or related embedded technologies is highly desirable.
- Candidates must meet applicable DoDM 8140.03 Department Cyber Workforce Framework (DCWF) qualification requirements at the appropriate proficiency level for work such as:
- Cyber Defense Analysis - DCWF Work Role 511, and/or
- Security Control Assessment - DCWF Work Role 612.
Education Requirements:
Other Required Skills & Abilities: Strong technical analysis and critical-thinking skills. Ability to interpret highly technical cybersecurity information and translate findings into clear recommendations. Strong written and verbal communication skills. Ability to work collaboratively with Government personnel, technical experts, assessors, vendors, and other stakeholders. Ability to maintain awareness of rapidly evolving cybersecurity threats, technologies, standards, and policy. Proficiency with Microsoft Office applications. Security Clearance Requirements:
Secret US Citizenship Requirements: This position supports a U.S. Government Contract whose terms require Sawdey Solution Services to staff it only with U.S. Citizens. |