Skip to main content
U.S. flag
Back to results

Associate Director Threat Hunting

Department of Homeland Security
DHS Headquarters
This job announcement has closed

Summary

DHS is recruiting for the Associate Director for Threat Hunting in the Cybersecurity and Infrastructure Security Agency (CISA), Cybersecurity Division (CSD).

This is a DHS Cybersecurity Service position in the Executive Track at the Senior Cybersecurity Executive career level.

Department of Homeland Security (DHS) Cybersecurity Service employees are a diverse, dynamic team working across DHS Components and organizations to protect the Nation's information technology infrastructure.

Overview

Help
Reviewing applications
Open & closing dates
01/14/2022 to 02/03/2022
Salary
$187,000 to - $246,400 per year

Range includes a 10% local cybersecurity talent market supplement, which is only available in certain geographic areas (metro Washington, D.C.)

Pay scale & grade
DL 00
Location
1 vacancy in the following location:
Arlington, VA
Telework eligible
No
Travel Required
Occasional travel - You may be expected to travel for this position about 1-5 days a month
Relocation expenses reimbursed
Yes—In limited circumstances, DHS may assist with relocation expenses.
Appointment type
Multiple - Permanent; Term (Renewable)
Work schedule
Full-time
Service
Excepted
Promotion potential
None
Supervisory status
Yes
Security clearance
Sensitive Compartmented Information
Drug test
Yes
Position sensitivity and risk
Special-Sensitive (SS)/High Risk
Trust determination process
Announcement number
22-11348540-CBWQ
Control number
631225400

Duties

Help

As the Associate Director for Threat Hunting, you will develop and implement a cohesive strategy to identify, analyze, detect, and respond to significant cyber threats affecting the federal civilian executive branch; state, local, tribal, and territorial government; and U.S. critical infrastructure.

You will lead a large team of technical personnel who are focused on identifying and tracking significant cyber threats, proactively hunting for malicious cyber activity, performing technical and forensic analysis, developing and scaling detection tools, and leading incident response activities. In response to significant cyber incidents, you will lead asset response efforts under Presidential Policy Directive-41. You will work closely with senior leaders across the U.S. government, international partners, and the private sector to jointly enable broad visibility into emerging cybersecurity threats.

You will be part of the strategic leadership team in CISA's Cybersecurity Division (CSD), and be responsible for building and leading a technical team in accordance with CISA's Core Values and Core Principles. Overall, CSD leads the effort to address the Nation's most significant cyber threats and vulnerabilities through collective cyber defense and resilience-building to increase the security of our nation's critical infrastructure and federal civilian government.

Requirements

Help

Conditions of employment

  • You must be a U.S. Citizen or national.
  • You must be 18 years of age.
  • Must be registered for the Selective Service (if you are a male).
  • Must be able to obtain and maintain a Top Secret/SCI security clearance
  • Must be able to submit to a drug test and receive a negative result.
  • Must be able to comply with ethics and standards of conduct requirements, including completing any applicable financial disclosure.

Qualifications

This position is in the Executive Track at the Senior Cybersecurity Executive career level. DHS Cybersecurity Service employees start at career levels and salaries matching their experience and expertise. To learn more about DHS Cybersecurity Service career tracks and levels, visit our application portal.

Senior Cybersecurity Executives generally:

  • Have 15+ years of cybersecurity work experience.
  • Have 5+ years of leadership experience.
  • Are seasoned cybersecurity executives capable of serving as DHS-wide cybersecurity leaders and overseeing expansive, national cybersecurity programs and multiple multi-level organizations as direct reports to presidential appointees.
Applicants for this position should:
  • Possess a comprehensive understanding of the cyber threat landscape, emerging cyber issues and technical solutions, supply chain risks, and challenges faced by governmental and private industry partners.
  • Have experience as a thought leader in evolving cyber defense capabilities to rapidly address changes in the threat and technology landscape.
  • Have demonstrated ability to effectively represent the organization in complex deliberations with senior officials from all branches and levels of government and with private sector executives, including owners and operators of critical infrastructure.

Education

Degrees are not required for jobs in the DHS Cybersecurity Service, but DHS is interested in your level of education and the topics you studied. As you submit initial application information, you will be asked questions about your education.

Additional information

Benefits: DHS Cybersecurity Service employees receive a range of federal employment benefits designed to support their professional and personal lives. To learn more about benefits, visit our application portal.

More information about the specific benefits available to you will be provided as you progress through the application process.

Background Investigation: To ensure the accomplishment of its mission, the Department of Homeland Security (DHS) requires each and every employee to be reliable and trustworthy. To meet those standards, all selected applicants must undergo and successfully complete a background investigation for a security clearance as a condition of placement in this position. This review includes financial issues such as delinquency in the payment of debts, child support and/or tax obligations, as well as certain criminal offenses and illegal use or possession of drugs.

Pursuant to Executive Order 12564 and DHS policy, DHS is committed to maintaining a drug-free workplace and, therefore, conducts random and other drug testing of its employees in order to ensure a safe and healthy work environment. Headquarters personnel in safety- or security-sensitive positions are subject to random drug testing and all applicants tentatively selected for employment at DHS Headquarters are subject to drug testing resulting in a negative test result.

How you will be evaluated

You will be evaluated for this job based on how well you meet the qualifications above.

All DHS Cybersecurity Service applicants participate in a multi-phase assessment process, which varies by career track. For the Executive Career Track, applicants participate in a two-phase assessment process:

  • You must successfully complete Phase I to be invited to advance to Phase II.
  • The total time commitment for both phases is approximately 4 hours (many applicants require less time!).
  • Before each phase, DHS will e-mail you instructions and information to help you prepare.
  • Monitor your e-mail to ensure you have plenty of time to complete assessments prior to any deadlines or request an extension, if necessary.
PHASE I: ONLINE ASSESSMENTS
  • Unproctored - you choose the time and location
  • Includes two assessments: (1) an executive work simulation that you will have up to2.5 hours to complete; and (2) an executive situational judgement test that you will have up to 1 hour to complete.
  • The two assessments take about 3 hours (on average) to complete.
  • No knowledge of DHS is required for these assessments.
  • Requires a computer with audio (speakers or headphones) and a reliable internet connection.
PHASE II: STRUCTURED INTERVIEW
  • Online video or in-person interview - you coordinate with DHS to schedule
  • 1 hour to complete
  • Discuss your cybersecurity career journey, including the cybersecurity specializations (called technical capabilities in the DHS Cybersecurity Service; visit here to learn more about the technical capabilities) in which you have the most expertise and experience.
  • Provide your responses to interview questions, including work-related scenarios to assess your capability to lead technical cybersecurity talent and cybersecurity-focused organizations.
To learn about the assessment process for this Executive Track position, visit our application portal and read the "Assessment Process" guide.

Your session is about to expire!

Your USAJOBS session will expire due to inactivity in 8 minutes. Any unsaved data will be lost if you allow the session to expire. Click the button below to continue your session.