Cybersecurity & Compliance Analyst (CMMC)

Rancho Santa Margarita, CA
Full Time
IT
Mid Level
 
Job Title:Cybersecurity & Compliance Analyst Job Level: Mid-Level
Summary

The Cybersecurity & Compliance Analyst will play a key role in driving the strategy, planning, implementing, monitoring, and managing security measures and compliance for the protection of controlled unclassified information (CUI), federal contract information (FCI), computer networks, and IT infrastructure and system information. The role will also spearhead the development of policies, procedures, and preparation for the DoD's Cybersecurity Maturity Model Certification (CMMC) Framework.
 
Essential Duties and Responsibilities
  • Participate and drive the development of policies, procedures, and documentation relating to CMMC compliance.
  • Perform gap analysis, document cyber incidents, implement security measures, and assess standards related to achieving and maintaining compliance for ITAR, NIST SP 800-171, and CMMC 2.0 Level 2 frameworks.
  • Partner with Managed Service Providers (MSP) and internal IT department staff to ensure all physical, supply chain, infrastructure, and cloud controlled unclassified information (CUI) is secure to DoD standards.
  • Audit security policies, procedures and controls for NIST SP 800-171.
  • Identify & mitigate cyber threats, document & establish protocols for security incidents, and assess and manage risks at the organization.
  • Maintain up-to-date knowledge of cyber security standards, technologies, and threats.
  • Support IT Administrators as needed with equipment configuration and deployment.
  • Identify areas of improvement and help develop solutions to implement.
Qualifications
  • Bachelor’s Degree in Computer Science, Information Systems or related field (preferred).
  • Three or more years' experience working in Information Security or Cybersecurity Analyst role with a strong focus on compliance and auditing DoD and Federal cybersecurity frameworks.
  • In-depth understand of NIST government frameworks and experience implementing and auditing NIST ST 800-171 controls.
  • Three or more years' experience with incident response, risk assessment, and security management.
  • Strong working knowledge of the requirements, protocols, security measures and trends for CMMC compliance.
  • Understanding of US Government and Federal compliance regulations such as ITAR and DFARS.
  • Experience implementing, monitoring, and managing security measures & compliance for CUI and FCI.
  • Ability to implement, manage, and maintain Microsoft Office 365 GCC High and strong understanding of Cloud CUI security.
  • Deep working knowledge and skills regarding hardware, software, networks, and data centers, including Microsoft solutions, including Windows OS, Windows Server and Active Directory.
  • Understanding of virtualization technologies, specifically Microsoft Hyper-V.
  • Ability to identify vulnerabilities and threats.
  • Familiarity with information/cybersecurity tools (i.e., CrowdStrike, Darktrace, Varonis).
  • Ability to work in a diverse environment, have a calm demeanor and communicate effectively with all customers, vendors, employees and management.
  • Willingness to continue training and development to self-enhance personal performance.
Physical Demands
While performing the duties of this job, the employee is frequently required to stand, walk, sit, use hands to finger, handle, or feel objects, tools or controls; reach with hands and arms; talk and hear and occasionally required to climb stairs; balance; stoop, kneel, crouch or crawl. The employee must frequently lift and/or move up to 10 pounds and occasionally lift and/or move up to 25 pounds..
 
Work Environment
This job operates in a professional office environment floor. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets and fax machines. While performing the duties of this job, the employee is frequently exposed to fumes or airborne particles, moving mechanical parts and vibration. The noise level in the work environment can be loud. 
 


Salary Range: $90,000 - $130,000

Nothing in this job description restricts management's right to assign or reassign duties and responsibilities to this job at any time. This job description does not constitute a written or implied contract of employment.

*Must be authorized to work in the U.S.
**This position requires either a US Person (as defined in applicable export regulations) or a non-US person who is eligible to obtain required export authorization**
 

*To comply with U.S. export laws and regulations, Palomar Products Inc. operations in the U.S. may only employ "U.S. Persons" as defined by the International Traffic in Arms Regulations (ITAR).

**​Equal Employment Opportunity (EEO) and Affirmative Action (AAP) Employer

Palomar Products is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of age, race, color, religion, sex, sexual orientation, gender identity or expression, medical condition, national origin, marital status, disability, pregnancy or parental status, childbirth, genetic information, or military and veteran status. Request an Accommodation. Read further information regarding Affirmative Action narrative availability.

Palomar Products participates in E-Verify: Details in English and Spanish. Right to Work Statement in English and Spanish. EEO is the law. Pay Transparency Nondiscrimination Provision.

Share

Apply for this position

Required*
Apply with Indeed
We've received your resume. Click here to update it.
Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or Paste resume

Paste your resume here or Attach resume file

To comply with government Equal Employment Opportunity and/or Affirmative Action reporting regulations, we are requesting (but NOT requiring) that you enter this personal data. This information will not be used in connection with any employment decisions, and will be used solely as permitted by state and federal law. Your voluntary cooperation would be appreciated. Learn more.

Invitation for Job Applicants to Self-Identify as a U.S. Veteran
  • A “disabled veteran” is one of the following:
    • a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or
    • a person who was discharged or released from active duty because of a service-connected disability.
  • A “recently separated veteran” means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.
  • An “active duty wartime or campaign badge veteran” means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.
  • An “Armed forces service medal veteran” means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.
Veteran status



Voluntary Self-Identification of Disability
Voluntary Self-Identification of Disability Form CC-305
OMB Control Number 1250-0005
Expires 04/30/2026
Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Please check one of the boxes below:

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.

You must enter your name and date
Human Check*