IT SPECIALIST (INFOSEC)
GG 11Duty Location
FORT BUCHANAN, BAYAMON, PUERTO RICO
Major Duties
- Provides advice and guidance in the development, maintenance, and coordination of security-related documentation/ database pertaining to the accreditation of automated information systems.
- Provides support to the Chief, Cyber Security Division/Installation Information Systems Security Manager (ISSM).
- Responsible for ongoing security control assessments in accordance with the organizational continuous monitoring strategy.
- Maintain ongoing awareness of information security, vulnerabilities, and threats to support organizational risk management decisions.
- Maintain an accurate inventory of hardware (physical and virtual) and software used within the environment/accreditation boundary.
- Responsible for supporting Cyber Security project management by preparing/coordinating project authorization documents, operational benefit statement, cost comparisons, status reports, requirements documentation, and risk analyses.
- Serves as an INFOSEC administrator required to conduct IAVM network security scanning using the Assured Compliance Assessment Solution (ACAS) scanning application.
- Responsible for scanning of all unclassified/classified servers, devices, and workstations on the networks to validate compliance in accordance with the IAVM program.
- Performs impact analysis on all proposed security and technical changes to the network.
- Administrator for programs such as Endpoint Security Solutions (ESS) Trellix, Tychon and Flying Squirrel software to monitor/identify network and system vulnerabilities.
Qualifications/ Specialized Experience
Who May Apply: Only applicants who meet one of the employment authority categories below are eligible to apply for this job. You will be asked to identify which category or categories you meet, and to provide documents which prove you meet the category or categories you selected. See Proof of Eligibility for an extensive list of document requirements for all employment authorities. Current Army Cyber Excepted Service (CES) Employee Current Army Defense Civilian Intelligence Personnel System (DCIPS) Employee Current Civilian Employees of the Organization Applying to Cyber Excepted Service (CES) Positions Current Department of Army Civilian Employees Current DoD Cyber Excepted Service (CES) Employee (non-Army) Current Permanent DoD Civilian Employee (non-Army) Applying to Cyber Excepted Service Positions Non-Department of Defense (DoD) Transfer Applying to Cyber Excepted Service Positions Army CES positions apply Veteran's Preference to preference eligible candidates, as defined by Section 2108 of Title 5 U.S.C., in accordance with the procedures provided in DoD Instruction 1400.25, Volume 3005, "CES Employment and Placement". If you are a veteran claiming veterans' preference, as defined by Section 2108 of Title 5 U.S.C., you must submit documents verifying your eligibility with your application package. In order to qualify, you must meet the education and/or experience requirements described below. Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic; religious; spiritual; community; student; social). You will receive credit for all qualifying experience, including volunteer experience. Your resume must clearly describe your relevant experience; if qualifying based on education, your transcripts will be required as part of your application. Additional information about transcripts is in this document. To qualify based on your experience, your resume must describe one year of specialized experience that demonstrates the possession of knowledge, skills, abilities, and competencies necessary for immediate success in the position. Such experience is typically in or directly related to the work of the position to be filled. To qualify based on your experience, your resume must clearly describe the following quality experience: Utilizing software tools or anti-virus programs to protect information systems. Providing guidance on information technology security related documentation for automated information systems in support of an organization. Performing troubleshooting on various items such as network systems, computers, servers, and data communication equipment and software to fix issues for customers. The specialized experience must include, or be supplemented by, information technology related experience (paid or unpaid experience and/or completion of specific, intensive training, as appropriate) which demonstrates each of the four competencies, as defined: (1) Attention to Detail - Is thorough when performing work and conscientious about attending to detail. Examples of IT-related experience demonstrating this competency include: completing work independently that rarely requires editing or review by others. (2) Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services. Examples of IT-related experience demonstrating this competency include: resolving simple and routine problems, questions, or complaints and providing support and guidance to customers on non-routine issues; serving as a primary resource for customers, requesting assistance with complex issues when necessary; and participating in meetings and providing advice to customers in own area of expertise. (3) Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately. Examples of IT-related experience demonstrating this competency include: expressing facts and ideas in a clear, concise, convincing, and organized manner; clearly conveying moderately complex ideas, concepts, and information to customers; exhibiting active listening by demonstrating understanding of audience comments and/or questions. (4) Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations. Examples of IT-related experience demonstrating this competency include: identifying and solving problems by gathering and applying information from a variety of materials or sources that provide several alternatives; recognizing and taking action to address non-routine problems; soliciting feedback from multiple stakeholders to understand an issue or problem and accurately assess its root causes and potential solutions; seeking supervisory review where appropriate. OR Education: Ph.D. or equivalent doctoral degree or 3 full years of progressively higher level graduate education leading to such a degree from an accredited or pre-accredited institution in computer science, engineering, information science, information systems management, mathematics, operations research, statistics, or technology management; or, three full years of graduate education from an accredited or pre-accredited institution that provided a minimum of 24 semester hours in one or more of the fields identified above and required the development or adaptation of applications, systems, or networks.