About this role
Job SummaryThis serves as public notice for the use of OPM's Direct Hire Authority. Applicants who meet the qualification requirements will be forwarded to the selecting official for consideration. We may select from this announcement or any other source to fill one or more vacancies. This position is located in the Bureau of Diplomatic Technology, Office of Cyber Security Testing, Monitoring & Response (DT/CTMR) & monitors & conducts incident response for the Agency's classified/unclassified IT systems
QualificationsApplicants must meet all the qualification requirements described below by the closing date of this announcement. Applicants applying for the GS-13 grade level must meet the following requirements: Have IT-related experience demonstrating EACH of the four competencies AND specialized experience listed below: Attention to Detail - Monitors and analyzes network activity, documents and correlates incidents, and ensures controls and processes accurately address identified risks. Customer Service - Provides timely alerts, reports, and recommendations to Department leadership and other stakeholders, and follows up to ensure corrective actions are completed. Oral Communication - Delivers clear, authoritative briefings and incident updates to leadership and contractor teams, explaining threats, impacts, and recommended actions. Problem Solving - Manages the full incident lifecycle, evaluates and improves cybersecurity capabilities and processes, leads CIRT projects, and directs contractor efforts to resolve complex cyber threats. AND Have at least 1 full year of specialized experience equivalent to the GS-12 level in the Federal service which provided you with the particular knowledge, skills and abilities to perform the duties of the position. Qualifying specialized experience must demonstrate the following: Experience as a senior cyber incident responder managing cybersecurity events from detection and monitoring through analysis and mitigation of threats. Experience documenting and escalating cyber incidents, analyzing incident and trend data to assess attack effectiveness, and applying and improving incident response processes. Experience briefing senior leadership and contractor teams on cybersecurity risks and solutions through oral and written reports. NOTE: In order to qualify for this position, your experience MUST be IT related; the experience may be demonstrated by paid or unpaid experience and/or completion of specific, intensive training (for example, IT certification), as appropriate. There is no substitute of education for specialized experience for the GS-13 position.
Major DutiesUtilizes cyber defense tools to continuously monitor and analyze enterprise systems to detect malicious activity.Analyzes malicious activity to determine weaknesses, exploitation, and effects on systems and information.Documents and escalate incidents that can potentially cause ongoing and immediate impact to the environment.Adheres to incident response processes and recommends process and or policy improvements.Provides cybersecurity recommendations to Senior Leadership and advise on deficiencies and corrective actions.Produces contextual reports for senior leaders on network exploitation against agency-specific systems.