IT Specialist (Security)

Deputy Assistant Secretary for Information and Technology logo
Deputy Assistant Secretary for Information and Technology
ScreenedFull time
Hines, Illinois
$106,437 - $138,370 per year
Posted 1 week ago
Apply Now

About the role

This IT Specialist (Security) position is located in the Office and Information and Technology (OI&T), Office of Information Security (OIS), Information Security Office (ISO), Cyber Security Operations Center (CSOC). The Office of Information and Technology (OI&T) provides adaptable, secure, and cost- effective technology services across the Department of Veterans Affairs (VA).

Major Duties: Knowledge of information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption). Knowledge of defense-in-depth principles and network security architecture. Knowledge of cyber defense and information security policies, procedures, and regulations. Skill to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation). Ability to interpret the information collected by network tools (e.g. Ns lookup, Ping, and Traceroute). Determine tactics, techniques, and procedures (TTPs) for intrusion sets. Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings). Knowledge of adversarial tactics, techniques, and procedures. Skill in collecting data from a variety of cyber defense resources. Skill in performing packet-level analysis. Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources. Coordinate with enterprise-wide cyber defense staff to validate network alerts. Ensure that cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level. Knowledge of the common attack vectors on the network layer. Ability to apply techniques for detecting host and network-based intrusions using intrusion detection technologies. Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack. Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information. Reconstruct a malicious attack or activity based off network traffic. Knowledge of incident response and handling methodologies. Skill in using incident handling methodologies. Perform security reviews and identify security gaps in security architecture resulting in recommendations for inclusion in the risk mitigation strategy. Knowledge of cyber defense and vulnerability assessment tools and their capabilities. Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code). Skill in assessing security controls based on cybersecurity principles and tenets. (e.g., CIS CSC, NIST SP 800-53, Cybersecurity Framework, etc.). Knowledge of Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools and applications. Work Schedule: Monday - Friday, 8:00am to 4:30pm Compressed/Flexible: Compressed/flexible schedule available at the manager's discretion Telework: This position may be authorized for telework. Virtual: This is not a virtual position. Position Description/PD#: IT Specialist (Security)/PD17400A Relocation/Recruitment Incentives: Not Authorized Permanent Change of Station (PCS): Not Authorized PCS Appraised Value Offer (AVO): Not Authorized

You must be a U.S. Citizen to apply for this job To be considered for this position, you must complete all required steps in the process. In addition to the application and questionnaire, this position requires an online assessment. The online assessment measures critical general competencies required to perform the job. Physical Requirements: The work required does not inherently include any physical requirements essential for successful job performance that could not otherwise be performed with accommodation or workplace adjustment. A pre-placement physical examination is not required. You may be required to serve a probationary period Subject to background/security investigation Selected applicants will be required to complete an online onboarding process. Acceptable form(s) of identification will be required to complete pre-employment requirements (https://www.uscis.gov/i-9-central/form-i-9-acceptable-documents). Effective May 7, 2025, driver's licenses or state-issued dentification cards that are not REAL ID compliant cannot be utilized as an acceptable form of identification for employment. As a condition of employment for accepting this position, you will be required to serve a 1-year probationary period during which we will evaluate your fitness and whether your continued employment advances the public interest. In determining if your employment advances the public interest, we may consider: your performance and conduct; the needs and interests of the agency; whether your continued employment would advance organizational goals of the agency or the Government; and whether your continued employment would advance the efficiency of the Federal service. Upon completion of your probationary period, your employment will be terminated unless you receive certification, in writing, that your continued employment advances the public interest.

There is no educational substitution at this grade level.

About this listing

Screened by Joboru

This role passed our automated spam and quality filters and was active in our feed when last checked. Joboru is an aggregator — here is how we screen listings. If anything looks off, tell us.