Skip to main content
U.S. flag
Back to results

IT Cybersecurity Specialist

Department of Commerce
National Institute of Standards and Technology
Information Technology Laboratory
This job announcement has closed

Summary

NIST works with industry and science to advance innovation and improve quality of life. We're looking for a IT Cybersecurity Specialist to join our team!

This notice is issued under direct-hire authority to recruit new talent to occupations for which NIST has a severe shortage of candidates.

Overview

Help
Hiring complete
Open & closing dates
08/19/2021 to 09/08/2021
Salary
$103,690 to - $159,286 per year
Pay scale & grade
ZP 4
Location
2 vacancies in the following location:
Gaithersburg, MD
Telework eligible
Yes—as determined by the agency policy.
Travel Required
25% or less - You may be expected to travel for this position.
Relocation expenses reimbursed
No
Appointment type
Permanent
Work schedule
Full-time
Service
Competitive
Promotion potential
4
Supervisory status
No
Security clearance
Not Required
Drug test
No
Position sensitivity and risk
Non-sensitive (NS)/Low Risk
Trust determination process
Announcement number
ITL-21-11205547
Control number
611343300

This job is open to

Help

Clarification from the agency

U.S. Citizens and Status Candidates (this includes Merit Promotion, Status Candidates, Former Overseas Employees, CTAP, ICTAP, VRA, VEOA, 30% or More Disabled, EVHO, Schedule A, Military Spouses, Americorps, Peace Corps, Vista, Interchange Agreement Eligibles, and National Guard).

Videos

Duties

Help

Working as an IT Cybersecurity Specialists (Software Developers) in the Information Technology Laboratory, Computer Security Division is thrilling and rewarding. You will serve as a member of a team of cybersecurity and engineering professionals responsible for designing, developing, implementing, and continually supporting novel security automation solutions for cloud-based and on premises systems.
These positions will involve the development of security automation solutions expanding on the NIST Open Security Controls Assessment Language (OSCAL) that sets the foundation for security assessment automation and supporting integration with the Security Content Automation Protocol (SCAP) and other assessment approaches.

This position will perform the following duties:
- Architect, develop, maintain OSCAL data models using the XML and JSON Schema formats. This includes documenting any requirements for developing content against these models using an HTML-like syntax based on web standards and technologies including HTML 5 and CSS 3.
- Architect and develop tools supporting OSCAL and SCAP by employing the full software development lifecycle, including working through requirements gathering, design, implementation, testing, and release to production.
- Create and edit data model and data model processing documentation for the models and/or tools developed.
- Ongoing development and maintenance of an existing test framework capable of running XML, JSON, and YAML content validations, content conversions, and unit tests leveraging data structures and features of XML, JSON, and YAML; and XML and JSON Schema formats.
- Develop tools for validating, processing, and converting OSCAL content in XML, JSON, and YAML formats.
- Write Bash scripts to automate software build and related workflows in a Linux-based environment for a continuous integration/continuous deployment (CI/CD) environment pipeline.
- Develop authoring tools for OSCAL content in XML, JSON, and YAML formats, and OSCAL content processing libraries in Python, Javascript/NodeJS, GoLang, or Ruby.
- Develop tutorials, documentation, guidance, reports, and special publications.
- Develop web pages using web standards and technologies including HTML 5 and CSS 3.

Requirements

Help

Conditions of employment

  • U.S. citizenship
  • Males born after 12-31-59 must be registered for Selective Service
  • Suitable for Federal employment

Qualifications

Basic Requirements:
Experience must be IT related; the experience may be demonstrated by paid or unpaid experience and/or completion of specific, intensive training (for example, IT certification), as appropriate GS-5 through GS-15 (or equivalent):

For all positions individuals must have IT-related experience demonstrating each of the four competencies listed below. The employing agency is responsible for identifying the specific level of proficiency required for each competency at each grade level based on the requirements of the position being filled.

  1. Attention to Detail- Is thorough when performing work and conscientious about attending to detail.
  2. Customer Service- Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services.
  3. Oral Communication- Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately.
  4. Problem Solving- Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations.
In addition to the above requirements: Applicants must have one year (52 weeks) of specialized experience equivalent to at least the GS-12 level (ZP-III at NIST). Specialized experience is defined as Previous experience as IT cybersecurity specialist (senior-level software developer). The applicant needs to demonstrate:
Git and GitHub/GitLab:
- Use of Git for version control of software and documentation produced.
- Use of GitHub or GitLab as a collaboration platform, identifying the use of issues to communicate and manage the work performed.
Agile Development: Familiarity with applying agile development techniques, including use of a backlog, collecting requirements, developing user stories, and communicating development progress.
Technical Writing:
- Ability to author clear, concise, and usable technical documentation that explains complex topics in an easy-to-understand form, considering the audience and expected level of knowledge of the reader.
- Prior work in writing functional specifications and end user documentation.

Experience refers to paid and unpaid experience, including volunteer work done. We will credit all qualifying volunteer experience in your application.

The qualification requirements in this vacancy announcement are based on the U.S. Office of Personnel Management (OPM) Qualification Standards Handbook.

Applicant Reconsideration

Additional information

The physical worksite for this position is located in Gaithersburg, Maryland. However, the Information Technology Laboratory is currently under a mandatory telework posture due to the COVID-19 pandemic; therefore, this position is currently under a 100 percent telework schedule. The position's telework schedule will likely change in the future when Information Technology Laboratory moves away from its mandatory telework posture. At that time, the incumbent will be expected to report to the physical work site in accordance with the updated status requirements of their supervisor. The nature and scope of future telework opportunities will be subject to the unit's telework policy, any applicable bargaining unit agreements, and supervisory approval. Payment of relocation expenses, as applicable, will be paid in accordance with this Job Opportunity Announcement. Non-compliance with the supervisor's telework-schedule requirement could result in adverse action, including separation.

This position is covered under NIST's Alternative Personnel Management System (APMS). The APMS is a pay-for-performance system with excellent HR flexibilities to help NIST recruit and retain top talent. Find out more about the APMS here!

A three year probationary period may be required.

We may share your application package with other selecting officials at NIST with opportunities like this one. Additional selections may be made through this vacancy.

How you will be evaluated

You will be evaluated for this job based on how well you meet the qualifications above.

We will review your resume, optional cover letter and supporting documents to assess your qualifications for this position.

All applicants that meet the minimum qualifications will be referred to the selecting official for consideration. Under Direct Hire Authority, applicants are not rated and ranked and veteran's preference does not apply.

CTAP and ICTAP Eligibility: To be eligible for CTAP or ICTAP consideration, you must submit the required documents to establish eligibility (see required documents) and meet the minimum qualification requirements. You may be contacted to provide a response to assessment questions related to the position. To be considered CTAP or ICTAP eligible, you must receive a well-qualified score of at least 85 of out 100 on your assessment responses. Additional information may be found at: CTAP/ICTAP.

Resume Guidance
Evaluation Process

Your session is about to expire!

Your USAJOBS session will expire due to inactivity in 8 minutes. Any unsaved data will be lost if you allow the session to expire. Click the button below to continue your session.