Job opening: Supervisory IT Specialist (INFOSEC)
Salary: $144 354 - 191 900 per year
Relocation: YES
Published at: Oct 18 2024
Employment Type: Full-time
DCSA's National Background Investigation Services (NBIS) is looking for a Supervisory IT Specialist with a strong engineering, cybersecurity and DevSecOps background. Serves as the lead DevSecOps engineer, ensuring the implementation and management of secure computing architectures, Zero Trust compliance, and the maturation of automated DevSecOps. Duties involve knowledge of multiple IT systems, subsystems, environments and methods. Visit www.dcsa.mil - America's Gatekeeper!
Duties
The Office Under Secretary of Defense for Intelligence and Security established a Targeted Local Market Supplement (TLMS) for certain Science, Technology, Engineering, Mathematics, and Cyber positions within the Defense Civilian Intelligence Personnel System. Eligibility for the TLMS is based on cyber work roles within certain occupational series and on the work performed. This vacancy is designated as a STEM and/or Cyber position and pay for the incumbent will be based on the STEM and Cyber Pay Table.
As a Supervisory IT Specialist (INFOSEC) you will be responsible for the following duties:
* Designs systems security throughout the development lifecycle; translates technology, policy and security requirements into security designs and processes.
* Manages and identifies program high-level technical specifications, which may include application design, cloud computing strategy and adoption, and integration of software applications into a functioning system to meet requirements.
* Applies advanced skills to ensure that cybersecurity requirements are integrated into system designs, architectures and data flows.
* Leads development of security architectures and designs to determine the adequacy of security design and architecture proposed or provided in response to requirements contained in acquisition documents.
* Applies advanced knowledge of cloud computing service models Software as Service (SaaS), Infrastructure as a Service (IaaS), and Platform as a Service (PaaS).
* Leads the team that designs, implements, and oversees automated development, security, and operations (DevSecOps) pipeline, architectures, tools, and concepts in a cloud native environment.
* Supervises and assigns work to cybersecurity, engineering, and DevSecOps professionals.
Requirements
- Must be a US citizen
- Selective Service Requirement: Males born after 12-31-59 must be registered for Selective Service. For more information http://www.sss.gov
- Resume and supporting documents received by 11:59PM EST will be considered
- This is a Drug Testing designated position
- Position is a (DCIPS) position in the Excepted Service under U.S.C. 1601
- Work Schedule: Full Time
- Overtime: Occasionally
- Tour of Duty: Flexible
- PCS (Permanent Change of Station): Authorized
- Fair Labor Standards Act (FLSA): Exempt
- Financial Disclosure: Not Required
- Telework Eligibility: This position is telework eligible, but is not a full time telework position. The incumbent will be required to report to the office on a routine basis.
- If selected, the incumbent must obtain and maintain appropriate security clearance as indicated in job announcement.
- Any Information Technology/Security certifications / education specified in the DCWF Annex as defined by DoD 8140-M within six months of appointment date.
- The incumbent must sign a Statement of Understanding regarding the certification requirements and maintaining the appropriate certification is a condition of employment.
Qualifications
The experience described in your resume will be evaluated and screened from the Office of Personnel Management's (OPMs) basic qualifications requirements. https://www.opm.gov/policy-data-oversight/classification-qualifications/general-schedule-qualification-standards/0300/gs-2210-information-technology-management-series/ for OPM qualification standards, competencies and specialized experience needed to perform the duties of the position as described in the MAJOR DUTIES and QUALIFICATIONS sections of this announcement by 10/29/2024
Applicant must have directly applicable experience that demonstrates the possession of the knowledge, skills, abilities and competencies necessary for immediate success in the position. Qualifying experience may have been acquired in any public or private sector job, but will clearly demonstrate past experience in the application of the particular competencies/knowledge, skills and abilities necessary to successfully perform the duties of the position.
You must have specialized experience sufficient to demonstrate that you have acquired all the competencies necessary to perform at a level equivalent in difficulty, responsibility, and complexity to the next lower grade GS/GG-13 in the Federal service and are prepared to take on greater responsibility.
Generally, this would include one year or more of such specialized experience. Specialized experience for this position includes: Expert experience using Agile to build secure information technology systems; experience leading teams to implement and manage tools to automate scans, code verification and other development security tasks; experience leading the automation of application security testing; experience with leading the design of engineering solutions compliant with security controls; advanced experience with determining the appropriate technological mitigations and countermeasures; ability to lead the design of a security architecture; advanced experienced with Continuous Integration / Continuous Delivery (CI/CD), cloud, and Zero Trust Architecture (ZTA); experienced with Risk Management Frameworks (RMF).
Specifically you will be evaluated on the following competencies:
1. IT Cybersecurity Architecture: Designs, develops, and implements information systems security architecture and processes to ensure confidentiality, integrity, and availability.
2. Software Engineering: Knowledge of software engineering design and development methodologies, paradigms, and tools; the software life cycle; software reusability; and software reliability metrics.
3. Cybersecurity: Protect and defend information and information systems in order to ensure confidentiality, integrity, and availability. (AKA Information Assurance)
4. Risk Management Framework (RMF): Unified Information security framework for the entire federal government.
5. Systems Engineering: Knowledge of the practice of integrating multiple disciplines into a team as part of a structured development process throughout a system's life cycle.
Education
Substitution of education may not be used in lieu of specialized experience for this grade level.
Contacts
- Address Defense Counterintelligence and Security Agency
27130 Telegraph Road
Quantico, VA 22134
US
- Name: DCSA Servicing Team
- Phone: 614-692-2886
- Email: [email protected]