Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GPS - Cyber Security Policy Analyst - Supervising Associate

$91.1k - $170.4k

EY

At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help build a better working world. The opportunity The Cyber Security Policy Analyst is a core member of the EY Government and Public Sector (GPS) Information Security Team, contributing to the strategic direction and execution of the GPS information security program. The role focuses on strengthening the overall security posture of GPS by helping to protect organizational data, systems, and operations while supporting mission and business objectives in a highly regulated environment. The role supports enterprise risk management and compliance by aligning GPS information security practices with EY internal standards and frameworks, and by applying the NIST Risk Management Framework (SP 800‑37) along with security controls and maturity models from NIST SP 800‑53, NIST SP 800‑171, and the Department of Defense (DoD) Cybersecurity Maturity Model Certification (CMMC). Responsibilities include security governance activities such as policy and standards documentation, compliance oversight, and security awareness across GPS personnel, systems, and programs. Your Key Responsibilities Work with executive leadership to develop, maintain, and govern information security PSGs supporting the GPS Information Security Program Translate recommendations from domain professionals, vendor and industry standards, guidelines and leading practices into high-quality, coherent information security PSGs Harmonize GPS information security documentation with EY enterprise policies and standards, NIST security requirements, the DoD Cloud Computing Security Requirements Guide, and applicable regulatory obligations Collaborate with Information Security, Information Technology, Data Protection, Legal, and other internal stakeholders to support consistent implementation of information security requirements. Identify and monitor appropriate information security training for all GPS personnel. While some training may be obtained, custom training will need to be developed. Stay up to date with the latest best practices, industry trends, and government security regulations to proactively maintain compliance Collaborate with external assessors and auditors and government officials during security audits and assessments Analytical And Decision-making Responsibilities Organize, structure, and prioritize information from multiple technical, regulatory, and business sources Balance information security requirements with business objectives, technical risk, and operational impact Apply sound judgment and creative thinking while considering multiple perspectives and constraints Adapt to shifting priorities, ambiguity, and evolving regulatory or security requirements Work independently with minimal direct supervision while maintaining accountability for outcomes Focus on conveying complex information clearly, concisely, and effectively Skills And Attributes For Success Experience working in information security and understanding of information security concepts Knowledge of information security policies/principles of handling and protecting information In-depth understanding of NIST security documentation and CMMC framework such as FIPS and NIST-171 and 800 Series publications and their application. In-depth understanding of DFARS related security requirements and their application. General technical knowledge of operating systems, databases, networks, mobile technologies and cloud services Strong English language skills are required – written and verbal Good writing, presentation, interpersonal, and collaborative skills Ability to collaborate with others to facilitate and enhance compliance with policies Maintain awareness of the current security threat landscape Experience with coordinating tasks, allocating resources, and following tasks and projects through completion Experience with Microsoft Office (Word, Excel, PowerPoint, Visio, and Copilot) To qualify for the role, you must have Bachelor’s degree in information security/assurance, computer science, or a similar technical field. A minimum of 3+ years of experience in information security, with a preferred focus on US government security requirements and compliance Experience developing and implementing security policies, standards, and procedures in alignment with government security requirements Excellent communication skills, with the ability to effectively articulate complex security concepts to both technical and non-technical stakeholders Ideally, you will also have Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA) or Certified CMMC Assessor (CCA) are highly desirable Ability to obtain and maintain a Top-Secret Security Clearance What We Offer You We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $91,100 to $170,400. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $109,300 to $193,600. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year. Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being. EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law. EY is committed to providing reasonable accommodation to qualified individuals with disabilities, including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at View email address on click.appcast.io. #J-18808-Ljbffr EY

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the GPS - Cyber Security Policy Analyst - Supervising Associate in Washington DC vacancy
  • $89.6k - $167.6k

     ...Government & Public Sector (GPS) practice of Ernst & Young LLP...  ...designs that meet functional, security, and operational requirements...  ...support CI/CD pipelines and associated tooling to enable reliable, repeatable...  ...and configuration Azure Policy and multi-tenant / multi-... 
    Suggested
    Summer holiday
    Local area
    Remote work
    Flexible hours
    Shift work

    EY

    Washington DC
    2 days ago
  • $89.6k - $167.6k

     ...platform designs that meet functional, security, and operational requirements, while providing...  ...build, and support CI/CD pipelines and associated tooling to enable reliable, repeatable...  ...automation and configuration Azure Policy and multi‑tenant / multi‑subscription design... 
    Suggested
    Summer holiday
    Remote work
    Flexible hours
    Shift work

    Ernst & Young Oman

    Washington DC
    4 days ago
  • Ernst & Young Oman is seeking a Cyber Security Policy Analyst in Washington, DC. The candidate will be responsible for enhancing the security posture of the GPS Information Security Program. Key responsibilities include developing security policies, collaborating with... 
    Suggested

    Ernst & Young Oman

    Washington DC
    4 days ago
  • $69.4k - $158k

     ...firm is seeking a Cryptographic Modernization Analyst in Alexandria, VA. In this role, you will analyze the Department of Defense's policies related to cybersecurity, facilitate assessments, and aid in developing a robust cyber roadmap. Ideal candidates will possess a... 
    Suggested

    Phase2 Technology

    Alexandria, VA
    1 day ago
  • $69 - $85 per hour

    A nonprofit organization is seeking an experienced Interim Policy Advisor dedicated to advancing U.S.-Ukraine policy. This role involves...  ...actions, and producing advocacy materials related to U.S. security assistance and sanctions. The ideal candidate will possess over... 
    Suggested
    Interim role

    Razom For Ukraine

    Washington DC
    1 day ago
  • $110k - $160k

     ...solutions to complex national security issues. With over 50 years of...  ..., operational, programmatic, policy and business analysis to...  ...capabilities to our undersea forces. Analysts and Engineers supporting Team...  ...Experience with IT, cyber, or security with the DoW or... 
    Flexible hours

    Systems Planning and Analysis, Inc.

    Washington DC
    18 hours ago
  • $55.2k - $126k

    A leading cybersecurity firm in Virginia is seeking a cybersecurity policy specialist to assess and develop strategic policy frameworks. This role involves guiding clients on risk management in cybersecurity, especially regarding mobility and telecommunications. Candidates... 
    Flexible hours

    Booz Allen Hamilton

    Alexandria, VA
    3 days ago
  • Core4ce is seeking a Cybersecurity Policy and Operations Analyst in Washington, DC. This role involves providing essential technical and analytical support concerning enterprise cybersecurity policy development and incident response. Responsibilities include supporting... 

    Core4ce

    Washington DC
    4 days ago
  • Sol-Mental-Health in Washington DC is seeking Associate Therapists dedicated to delivering exceptional mental health care. The role involves providing clinical care, collaborating with peers to support continuous learning, and utilizing support tools for documentation.... 

    Sol-Mental-Health

    Washington DC
    2 days ago
  • $55.2k - $126k

     ...candidate with us. When our country’s cyber security is on the line, simply reacting is not enough...  ...security, we need strategic policy development. That’s why we need you, a cybersecurity...  ...’t wait. Cybersecurity Mobility Policy Analyst The Opportunity: When our country’s... 
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Booz Allen Hamilton

    Alexandria, VA
    3 days ago
  •  ...Application Systems Analyst I (Contract Contingent) ProSidian is a Management and Operations...  ...the intersections of assets, processes, policies and people delivering value. ProSidian...  ...to work as a team member under the supervision of direction of senior personnel. Has experience... 
    Contract work
    Work at office

    ProSidian Consulting

    Arlington, VA
    3 days ago
  • $65.6k - $81.35k

    Consulting Associate, Environmental Scientist/Permitting Specialist...  ...regulatory research, environmental policy analysis, and technical...  ...knowledge of sub‑meter accuracy GPS technologies and map...  ...With appropriate guidance and supervision, deliver creative, fit‑for‑purpose... 
    Fixed term contract
    Casual work
    Work at office
    Local area
    Flexible hours

    Seeds Renewables

    Washington DC
    2 days ago
  • $91.1k - $170.4k

    EY is seeking a Cyber Security Policy Analyst in Washington, DC, to enhance the security posture of their Government and Public Sector. This role requires a bachelor's degree in a related field and at least 3 years of experience in information security, focusing on US government... 

    EY

    Washington DC
    4 days ago
  • Information Technology --> Cyber Washington, DC ID: 1234-383 Full-Time/Regular The Cybersecurity Policy and Operations Analyst provides technical, analytical, and coordination support...  ...policy development, information security continuous monitoring (ISCM), defensive... 
    Full time
    Immediate start
    Flexible hours
    Shift work
    3 days per week

    Core4ce

    Washington DC
    4 days ago
  • $140.5k - $210k

     ...depth solution with a central security information and event...  ...manage complex risks to mitigate cyber threats. With limited guidance...  ...and patched according to Board policies and procedures. Oversees the...  ...utilization with minimal supervision. Position Requirements FR-27... 
    Full time
    Work at office

    Federal Reserve Board

    Washington DC
    18 hours ago
  •  ...Associate - Investment Banking Associate Investment Banking Arlington, VA About B. Riley FBR, Inc. B. Riley FBR, Inc. is...  ...delivering high-value work to meet client's needs. Experience supervising other professionals is preferred. Strong financial analysis... 
    Flexible hours

    FBR & Co.

    Arlington, VA
    18 hours ago
  •  ...Sanitation Associate - Part Time The Sanitation Associate will maintain sanitation in...  ...the service area as needed with minimum supervision with trays and other items as requested...  ...position. Adhere to all departmental policies and procedures. Organizational Accountabilities... 
    Full time
    Part time
    Work experience placement
    Immediate start
    Monday to Friday
    Shift work
    Weekend work
    Afternoon shift

    Children's National Health System

    Washington DC
    2 days ago
  • $48k - $52k

     ...SUMMARY  USCET seeks a proactive and detail-oriented Program Associate to support the planning and implementation of its programs, as...  ...of team; Coordinate intern recruitment, onboarding, and supervision; Manage intern work plans and mentorship. Communications... 
    Permanent employment
    Full time
    Work experience placement
    Internship
    Work at office
    3 days per week

    US-China Education Trust

    Washington DC
    18 hours ago
  •  ...Modernization sector is seeking an experienced SME Zero Trust Cyber Security Analyst to support the delivery, enhancement, and adoption of...  ...activities. Monitor and evaluate system compliance with Zero Trust policies, controls, and security standards. Analyze cybersecurity... 

    Leidos

    Alexandria, VA
    1 day ago
  •  ...HIRING ASSET PROTECTION ASSOCIATES FOR OUR STORES IN AND...  ...contact for any safety and security issues for stores in area of...  ...follow up areas assigned by supervision. • Review shrink reports...  ...and communications of company policies and procedures related to safety... 
    Local area
    Immediate start

    Giant Food

    Alexandria, VA
    18 hours ago
  •  ...Washington, DC and we believe that true security is achieved only when people enjoy the...  ...world’s democracies. The Program Associate role is a nine-month entry-level position...  ...-solve and prioritize with minimal supervision; Proficiency in learning new software... 
    Work at office

    hfx

    Washington DC
    2 days ago
  • $55k - $75k

     ...Government Relations Associate Merchant McIntyre & Associates is a midsize federal grants...  ...funding opportunities Research & Policy Analysis Conduct research on federal...  ...and legislative summaries, under supervision to Participate in client meetings and... 
    Full time
    Local area
    Flexible hours

    Merchant Mcintyre & Associates, Llc

    Washington DC
    1 day ago
  • $53.18k - $71.39k

     ...SEIU Local 500: Member Benefits Associate SEIU Local 500 is a...  ...deadlines. Actively ensures the security of confidential information...  ...500. Scope and Nature of Supervision Must be able to act and...  ..., and a generous paid leave policy. Apply: Please email your... 
    Work experience placement
    Work at office
    Local area
    Shift work

    Current SEIU

    Washington DC
    4 days ago
  • $130k - $152.5k

     ...Senior Associate/Digital Forensics, Incident...  ...economic impact of policies and regulations. Our...  ...: Executing security and privacy...  ...secret investigations, cyber breach detection,...  ...; Managing and supervising teams as appropriate...  ...network forensic analyst or malware analyst... 
    Work at office
    Local area
    Work from home
    3 days per week

    Charles River Associates

    Washington DC
    3 days ago
  •  ...Financial Intelligence Unit (GFIU) data analysts and various technology groups to build out...  ...other Anti-Money Laundering regulatory policies ~ Ability to review and fuse geography...  ..., capable of working under minimum supervision. Results oriented team player ~ Exceptional... 
    Work at office

    Chase

    Washington DC
    1 day ago
  •  ...scales: FPCS Compensation Responsibilities Under general supervision, to assist in the preparation and/or serving of a variety of...  ...dependability, cleanliness and patience. FPCS's policy is to provide equal employment opportunity to all qualified applicants... 
    Local area

    Friendship Public Charter School

    Washington DC
    5 days ago
  • $77k - $202k

     ...protecting organisations from cyber threats through advanced...  ...identify vulnerabilities, develop secure systems, and provide...  ...cyber resilience. As a Senior Associate, you will analyze complex problems...  ...and enforcing cybersecurity policies and standards Assessing and... 
    Full time
    H1b

    PwC

    Washington DC
    9 days ago
  •  ...operating effectively at scale. The Associate System Analyst is a key member of that team. This...  ...and changes Monitor and respond to security threats using Microsoft 365 and KnowBe...  ...of IT systems, processes, and policies Asset Management, Projects & Coordination... 
    Work at office
    Remote work

    Rare

    Arlington, VA
    2 days ago
  • $103.8k - $218.1k

    ## Data Systems & Policy AnalystUS VA AlexandriaJob Title...  ...Systems and Policy Analyst** to support theDepartment...  ...outputs with minimal supervision.*Desired:** Active Top Secret (SCI) security clearance preferred.*...  ...Certified: Data Analyst Associate (Power BI), Azure Data... 
    Contract work
    Work experience placement
    Work at office
    Local area
    Flexible hours

    CACI International Inc.

    Alexandria, VA
    18 hours ago
  • $53k - $58k

     ...ABOUT FAIR LABOR ASSOCIATION The Fair Labor Association (FLA) promotes human rights at work. We are an international network of...  ...and reliability; ability to work independently with minimal supervision, as well as within a team. Team-player with willingness to... 
    Work experience placement
    Local area
    Remote work

    Fair Labor Association

    Washington DC
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GPS - Cyber Security Policy Analyst - Supervising Associate. Be the first to apply!