Job Title : Endpoint Security Policy Analyst
Location : Alexandria, VA (Hybrid - 3 days onsite per week)
Clearance Requirement : Active Top Secret / SCI clearance required
Type : Contract-to-Perm
About the Role
We are seeking a highly skilled Endpoint Security Policy Analyst to support a federal cybersecurity program centered on Zero Trust principles and the Department of Defense's Comply-to-Connect (C2C) framework. This role offers the opportunity to shape enterprise-level security policy and guidance in a dynamic, mission-critical environment.
Key Responsibilities :
- Develop and maintain endpoint security policies aligned with Zero Trust architecture.
- Draft, review, and publish policy documents, guidance, and strategic briefs.
- Collaborate with senior stakeholders and cross-functional teams to ensure policy alignment and implementation.
- Support tracking and reporting on security metrics, compliance, and trends.
- Map security tools (e.g., Forescout, Cisco ISE, Microsoft E5 / G5 suite) to policy objectives and C2C outcomes.
Must-Have Qualifications :
Active Top Secret / SCI clearance (TS / SCI)U.S. Citizenship required10+ years of experience in cybersecurity or IT (or 14+ years without a degree)Hands-on experience developing and implementing security policies in a Zero Trust environmentFamiliarity with tools such as Forescout, Cisco ISE, and Microsoft E5 / G5Strong knowledge of :Endpoint security and network access control (NAC)
DoD cybersecurity principles and directivesDevice authentication, authorization, and EDRExcellent written and verbal communication skillsAbility to manage multiple priorities and meet tight deadlinesNice-to-Have Skills :
Prior experience working with the DoD or military commandsKnowledge of C2C and related frameworksFamiliarity with CATMS, Intune, Entra ID, Purview, and related Microsoft security toolsExperience with requirements solicitation and stakeholder engagement