Supervisory IT Cybersecurity Specialist (INFOSEC)
Joint Activities · Fort Meade, Maryland
Skills in this posting
The posting
Serve as the J65 Cybersecurity Branch Chief and senior cybersecurity manager for CNMF's Risk Management Framework (RMF).
Manage authorization, validation, and decision processes for all information technology systems, networks, and cloud environments.
Developing risk-acceptance recommendations to the Authorizing Official (AO) based on National Institute of Standards and Technology (NIST) guidelines.
Oversee cybersecurity configuration for all CNMF-controlled environments (i.e. AWS Secret/Top Secret regions).
Direct the integration of security engineering principles into system lifecycles.
Coordinate with relevant stakeholders to design and implement zero-trust architectures, secure application program interfaces, and robust boundary controls.
Plan and set work priorities for subordinate personnel.
CYBER EXCEPTED SERVICE POSITIONS ARE NOT SUBJECT TO THE TWO-PAGE RESUME LIMIT. YOUR FULL RESUME WILL NEED TO BE UPLOADED TO YOUR USAJOBS PROFILE USING THE DOCUMENT TYPE "OTHER DOCUMENTS". This Position is in the Supervision/Management Work Category at the Senior Work Level within the CES Occupational Structure.
Who May Apply: Only applicants who meet one of the employment authority categories below are eligible to apply for this job. You will be asked to identify which category or categories you meet, and to provide documents which prove you meet the category or categories you selected.
See Proof of Eligibility for an extensive list of document requirements for all employment authorities. Army CES positions apply Veteran's Preference to preference eligible candidates, as defined by Section 2108 of Title 5 U.S.C., in accordance with the procedures provided in DoD Instruction 1400.25, Volume 3005, "CES Employment and Placement".
If you are a veteran claiming veterans' preference, as defined by Section 2108 of Title 5 U.S.C., you must submit documents verifying your eligibility with your application package. In order to qualify, you must meet the experience requirements described below.
Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic; religious; spiritual; community; student; social). You will receive credit for all qualifying experience, including volunteer experience.
Your resume must clearly describe your relevant experience; if qualifying based on education, your transcripts will be required as part of your application. Additional information about transcripts is in this document.
To qualify based on your experience, your resume must describe one year of specialized experience that demonstrates the possession of knowledge, skills, abilities, and competencies necessary for immediate success in the position. Such experience is typically in or directly related to the work of the position to be filled.
Specialized experience would be demonstrated by 1. managing the full lifecycle of Risk Management Framework (RMF) to formulate risk acceptance recommendations for tactical and cloud environments; 2. implementing secure system architectures within enterprise environments; 3. developing cybersecurity guidance such as policies, standard operating procedures, and/or incident response protocols that adhere to established directives; 4. managing subordinate personnel work plans and schedules to meet administrative and technical priorities.
The specialized experience must include, or be supplemented by, information technology related experience (paid or unpaid experience and/or completion of specific, intensive training, as appropriate) which demonstrates each of the four competencies, as defined: (1) Attention to Detail - Is thorough when performing work and conscientious about attending to detail.
Examples of IT-related experience demonstrating this competency include: completing thorough and accurate work independently, even in the most difficult or stressful situations; occasionally reviewing work completed by others.
(2) Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services.
Examples of IT-related experience demonstrating this competency include: resolving routine and non-routine problems, questions, or complaints; developing and maintaining strong, mutually supportive working relationships with customers; conducting evaluation of support to determine quality of services and customer satisfaction, and recommending procedural changes based on customer need or changes in policy and/or regulation.
(3) Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately.
Examples of IT-related experience demonstrating this competency include: convincingly conveying complex information to customers; presenting thoughts that are well-organized and demonstrating confidence in the facts and ideas; adjusting style when working with individuals with different levels of understanding; using various methods to explain and convey information.
(4) Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations.
Examples of IT-related experience demonstrating this competency include: solving complex or sensitive problems by developing and proposing strategic alternatives; identifying possible conflicts and shared benefits; helping team anticipate problems and identifying and evaluating potential sources of information; providing feedback and coaching to others to help solve problems; engaging appropriate stakeholders when developing solutions in order to understand and incorporate multiple perspectives and needs; evaluating the effectiveness of decisions and adjusting future decisions as appropriate.
The PivotHop read
- What a security engineer actually earnsmedian, seniority, by country
- Careers a security engineer can move intoevery measured route out
- Penetration Tester → Security Engineer51% readiness
- All open security engineer rolesthe full board
Where these skills also reach
- 76 open penetration tester roles78% readiness from security engineer
- 340 open network engineer roles61% readiness from security engineer
- 668 open systems administrator roles52% readiness from security engineer
- 1863 open systems engineer roles51% readiness from security engineer
More security engineer roles
Security Engineer, Incident Response at TwilioGermany1d agoApply
Cyber Security Engineer at Micro1Remote1d agoApply- Principal Appsec Engineer at Direct employerRomania1d agoUnlock
- SOC Analyst - L1 at Direct employerKuwait City1d agoUnlock
- Information Assurance Security Engineer at Direct employerUSA VA Springfield - 7770 Backlick Rd (VAS110)$145k–$196k2d agoUnlock
Backfilled listing, refreshed with the nightly scrape; the employer has not claimed it yet. Are you the employer? Claim this listing and it can be featured to the candidates whose skills already reach it, first month free.