Job opening: IT Cybersecurity Specialist (INFOSEC)
Salary: $94 199 - 145 617 per year
Published at: Nov 27 2023
Employment Type: Full-time
This announcement is issued under the Direct Hire Authority (DHA) to recruit for positions for which there is a critical hiring need. Selectee(s) will receive a career or career-conditional appointment in the competitive service and may be required to serve a one-year probationary period.
Who May Be Considered:
U.S. Citizens
View common definitions of terms found in this announcement.
Duties
The National Risk Management Center (NRMC) serves as the Nation's center for critical infrastructure risk analysis. NRMC provides critical analytical support to CISA's mission to understand, manage, and reduce risk to the cyber and physical infrastructure Americans rely on every day. NRMC is looking for candidates who are interested in analyzing critical infrastructure risk; promoting a shared understanding, prioritization and mitigation of those risks; and collaborating with partners on risk assessments.
In the position, you will serve as an IT Cybersecurity Specialist (INFOSEC). At full performance level, typical work assignments include:
Leading the development of risks assessments of systems and networks within the critical infrastructure and National Critical Functions environment or enclave and identifying risks to those systems/networks based on understanding of threats and vulnerabilities to cyber and physical systems.
Leading, coordinating, communicating, integrating, and supporting the overall success of analytical programs, ensuring alignment with CISA and DHS enterprise priorities.
Developing cyber indicators to maintain awareness of the status of the highly dynamic operating environment. Collecting, processing, analyzing, and disseminating cyber threat/warning risk assessments.
Analyzing, prioritizing, and communicating risk to cyber and physical sector areas.
Contributing risk and information security subject-matter expertise and support to planning/developmental forums and working groups as appropriate.
Qualifications
To be considered minimally qualified for this position, you must demonstrate that you have the required experience for the respective grade level in which you are applying:
EXPERIENCE: Experience must be Information Technology (IT)-related; the experience may be demonstrated by paid or unpaid experience and/or completion of specific, intensive training (for example, IT certification), as appropriate.
You must have IT-related experience demonstrating each of the four competencies listed below:
Attention to Detail - Is thorough when performing work and conscientious about attending to detail.
Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services.
Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately.
Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations.
AND
SPECIALIZED EXPERIENCE: In addition to meeting the qualification requirement listed above, you must have at least one year of specialized experience at the next lower GS-grade level (or equivalent). Specialized experience is experience that has equipped you with the particular competencies/knowledge, skills, and abilities to successfully perform the duties of the position and is typically in or related to the work of the position to be filled. Such experience is typically gained in the IT field or through the performance of work where the primary concern is IT.
GS-12
You qualify for the GS-12 grade level if you have at least one (1) year of specialized experience at the GS-11 grade level (or equivalent) performing the following duties:
Utilizing IT security principles, analytical methods, and project management principles and methods.
Developing project management plans and schedules, estimating resources requirements, defining milestones and deliverables, and reporting on accomplishments for projects.
Applying IT principles and practices to carry out difficult and complex assignments.
Performing risk assessments, developing insights, and sharing insights to improve an organization's risk management posture.
Using oral and written communication techniques to communicate complex technical requirements to non-technical audiences.
GS-13
You qualify for the GS-13 grade level if you have at least one (1) year of specialized experience at the GS-12 grade level (or equivalent) performing the following duties:
Applying advanced IT principles to provide expert technical advice, guidance and recommendations on critical IT issues.
Applying interrelationships and interdependencies of multiple IT specialties, sector areas, new and emerging IT technologies, and agency/organization architecture to develop long-range plans for IT security.
Applying program management principles to lead, coordinate, integrate, and be accountable for program success and align with agency and enterprise priorities.
Developing plans and schedules, estimating resource requirements, defining milestones and deliverables, monitoring activities and evaluating and reporting on accomplishments.
Developing analytic products which identify and evaluate cyber and physical infrastructure risks to National Critical Functions and critical infrastructure sectors.
Performing risk assessments, developing insights, and sharing insights to improve an organization's risk management posture.
National Service Experience (i.e., volunteer experience): Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic; religious; spiritual; community, student, social). Volunteer work helps build critical competencies, knowledge, and skills and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience.
All qualification requirements must be met by the closing date of this announcement.
Education
Some federal jobs allow you to substitute your education for the required experience in order to qualify. For this job, you must meet the qualification requirement using experience alone--no substitution of education for experience is permitted.
Contacts
- Address Cybersecurity and Infrastructure Security Agency
1616 N. Fort Myer Dr.
CISA-FMD Stop 0380
Arlington, VA 20598-0380
US
- Name: Amber Whitlock
- Phone: 202-679-6196
- Email: [email protected]
Map