Skip to main content
U.S. flag
Back to results

Public Notice for Information Technology Cybersecurity Specialist

Department of Transportation
Federal Aviation Administration
FAA Organizations Nationwide
This job announcement has closed

Summary

Direct hiring authority for 2210 series is being used to fill this position.

Overview

Help
Reviewing applications
Open & closing dates
09/23/2024 to 01/21/2025
Salary
$47,813 to - $155,403 per year

The salary listed does not include locality. Locality will be determined on the duty location of the selectee.

Pay scale & grade
FV G - K
Location
Many vacancies in the following location:
May be filled in various FAA duty locations
Many vacancies
Telework eligible
Yes—as determined by the agency policy.
Travel Required
Occasional travel - The job may require travel from time-to-time, but not on a regular basis. The travel may be for training or other work-related duties.
Relocation expenses reimbursed
No
Appointment type
Permanent
Work schedule
Full-time
Service
Excepted
Promotion potential
NA
Supervisory status
No
Security clearance
Other
Drug test
No
Financial disclosure
Yes - The person selected for this position may be required to file a financial disclosure statement within 30 days of entry on duty. FAA policy limits certain outside employment and financial investments in aviation-related companies. See https://www.faa.gov/jobs/workinghere/financial-disclosure-requirements.
Announcement number
AAC-FAA-23-PUB NOT-80693
Control number
689241200

Duties

Help

This series covers positions for which the paramount requirement is knowledge of IT information security principles, concepts, and methods that involve ensuring the confidentiality, integrity, vulnerability and availability of systems, networks, and data. Duties/responsibilities may include planning, analysis, development, implementation, maintenance, and enhancement of information systems security programs, policies, procedures, and tools. Incumbent may develop and maintain system security documentation throughout all phases of FAA Information System Security Documentation lifecycle. This includes security categorizations, system security plans, system policy and procedures, privacy threshold assessments, contingency plans, and any other documents necessary to support systems’ authorization and continuous monitoring. Ensures system security measures comply with applicable government policies and meet FAA security orders. Leads or participates in vulnerability, risk and threat assessments, and other activities for ensuring security of information systems/equipment.

Requirements

Help

Conditions of employment

  • US Citizenship is required.
  • Selective Service Registration is required for males born after 12/31/1959.
  • Successful completion of security investigation may be required.
  • A one-year probationary period may be required.
  • Please Review Required Documents & Additional Information.
  • Positions may be filled at any pay band level.
  • Duty location may be negotiable upon request.

Qualifications

Qualifications Reference: EMP-1.7 & OPM General Schedule Qualification Standards. U.S. Office of Personnel Management Information Technology (IT) Management Series, 2210 (Alternative A): https://www.opm.gov/policy-data-oversight/classification-qualifications/general-schedule-qualification-standards/2200/information-technology-it-management-series-2210-alternative-a/

FV-G through K (or equivalent): For all positions individuals must have IT-related experience demonstrating each of the four competencies listed below. The employing agency is responsible for identifying the specific level of proficiency required for each competency at each grade level based on the requirements of the position being filled.

1. Attention to Detail - Is thorough when performing work and conscientious about attending to detail.

2. Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services.

3. Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately.

4. Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendation.

FV-G. Applicants must demonstrate in your application that you have IT-related experience demonstrating each of the four competencies listed below. The experience may be demonstrated by paid or unpaid experience and/or completion of specific, intensive training (for example, IT certification), as appropriate. OR Education: Successful completion of a Bachelor Degree from an accredited college or university in computer science, engineering, information science, information systems management, mathematics, operations research, statistics, or technology management or a degree that provided a minimum of 24 semester hours in one or more of the fields identified above and required the development or adaptation of applications, systems or networks.

FV-H. To qualify for this position you must demonstrate in your application that you possess at least one year (52 weeks) of specialized experience equivalent to FV-G, FG/GS-5-9. Specialized experience is experience that has equipped you with the particular knowledge, skills, and abilities to perform successfully the duties of the position. Specialized experience may include but not limited to: experience developing/maintaining IT security documentation in accordance with National Institute of Standards and Technology; participating in the implementation/dissemination of IT security tools and procedures sufficient to develop, implement, and coordinate activities designed to ensure, protect, and restore IT systems and services; OR Education; Ph.D. or equivalent doctoral degree or 3 full years of progressively higher level graduate education leading to a Ph.D. or equivalent doctoral degree.

FV-I. To qualify for this position, you must demonstrate in your application that you possess at least one year (52 weeks) of specialized experience equivalent to FV-H (FG/GS10-12). Specialized experience is experience that has equipped you with the particular knowledge, skills, and abilities to perform successfully the duties of the position. Specialized experience may include but is not limited to: Experience with aviation ecosystem cybersecurity to include identifying, assessing, and analyzing cyber threats and vulnerabilities, and recommending corrective action for reducing cyber risks and improving risk mitigation strategies for NAS systems; providing technical support processes and procedures for the management/protection of personally identifiable information (e.g., transmission, storage and management) in information systems; providing support for development of cybersecurity policies and procedures and acquisition tasks, evaluate security authorization packages to make recommendations for authorization.

FV-J. To qualify for this position, you must demonstrate in your application that you possess at least one year (52 weeks) of specialized experience equivalent to FV-I (FG/GS-13) level. Specialized experience is experience that has equipped you with the particular knowledge, skills, and abilities to perform successfully the duties of the position. Specialized Experience: may include but is not limited to: management of ISS projects that require extensive knowledge of IT hardware/software technology; experience preparing ISS systems documentation for certification/accreditation in accordance with FISMA, FedRAMP, and/or other Federal IS guidelines or regulations; providing technical guidance and interpretation of IT cybersecurity policies, processes and procedures and privacy guidance for the management of personally identifiable information received, transmitted, and stored in information systems; leading the development of system security plans, procedures, privacy threshold assessments, and contingency planning; experience monitoring and evaluating system compliance with IT security requirements; and conducting audits/assessments of NAS information systems.

FV-K. To qualify for this position you must demonstrate in your application that you possess at least one year (52 weeks) of specialized experience equivalent to FV-J (FG/GS-14) level. Specialized experience is experience that has equipped you with the particular knowledge, skills, and abilities to perform successfully the duties of the position. Specialized experience may include but is not limited to: providing leadership or guidance/consulting in the areas of Cybersecurity Integration, Outreach and Planning across various environments e.g., facilities or system operations; serving as the principle entity for an organization or line of business/staff office for security outreach activities; developing common messaging and guidance for awareness to stakeholders; briefs security authorization stakeholders and executives; overseeing projects concerned with the development of security plans, policy and procedures, privacy threshold assessments, and contingency planning to support system implementation, authorization and continuous monitoring; and experience in applying knowledge of security standards, best practices and NAS system architectures to ensure that cybersecurity is integrated into every aspect of the NAS lifecycle (e.g. research and development through acquisition through implementation and operations through decommissioning).

Selective Placement Factors: Some positions at FV-H and above may require one or more of industry-recognized cybersecurity certifications e.g., ISACA Certified Information Systems Auditor (CISA); (ISC)2 Certified Information Systems Security Professional (CISSP); (ISC)2 Certified Cloud Security Professional (CCSP); (ISC)2 Certified Authorization Professional (CAP); ISACA Certified Information Security Manager (CISM); ISACA Certified in Risk and Information Systems Control (CRISC); Global Information Assurance Certification Penetration Tester (GIAC-GPEN); Global Information Assurance Certification Exploit Researcher and Advanced Penetration Tester (GXPN); Global Information Assurance Certification Web Application Penetration Tester (GWAPT); and EC Council Certified Penetration Testing Professional (CPENT). Please indicate possession of certifications in your application.

Preview job questionnaire

Make sure your resume includes detailed information to support your qualifications and answers to the job questionnaire.

Additional information

We may use this vacancy to fill other similar vacant positions.
Position may be subject to a background investigation.
A one-year probationary period may be required.

The person selected for this position may be required to file a financial disclosure statement within 30 days of entry on duty. FAA policy limits certain outside employment and financial investments in aviation-related companies. www.faa.gov/jobs/workinghere/financial-disclosure-requirements

The U.S. Department of Transportation strives to ensure that equity, transparency, accountability, collaboration, and communication permeate all that we do for the betterment of the Department, the traveling public, and our nation. As such, DOT values a highly diverse workforce of persons who promote a culture of belonging by respecting the personal dignity and worth of each individual and fostering a positive environment where all feel safe and welcome. If these commitments coincide with your personal ideals and professional aspirations, please consider joining the DOT family.

Leave Enhancement: FAA organizations may offer enhanced annual leave accrual to newly appointed or reappointed employees. In order to receive consideration for such a benefit, applicants' prior non-Federal service or active duty uniformed service must directly relate to the duties of the position to which appointed. Granting enhanced annual leave is at the sole discretion of the hiring organization, and granting such benefit is not an entitlement nor guaranteed to any newly hired employee.

Applications will be accepted from any U.S. citizen. On-the-Spot will be used to fill this position. The 'Rule of Three', Veterans Preference and traditional rating and ranking of applicants does not apply to this vacancy.

NOTES:

1) Applicants must apply on-line to receive consideration for this vacancy announcement. Faxed, mailed or emailed applications cannot be accepted.

2) Some, none, or all candidates may be interviewed.

3) Please ensure you answer all questions and follow all instructions carefully. Errors or omissions may impact your rating or may result in you not being considered for the job.

4) Positions may be filled at any pay band level.

5) This Public Notice will serve as a resume repository – positions may or may not be filled from this announcement.

6) Duty Location may be negotiable upon request.

7) Bargaining and non-bargaining positions may be filled.

This is not a bargaining unit position.

Links to Important Information: Locality Pay, COLA

How you will be evaluated

You will be evaluated for this job based on how well you meet the qualifications above.



IMPORTANT: Applicants may be rated on the extent and quality of experience, education, and training relevant to the duties of the position(s). All answers provided in the on-line process must be substantiated. Ensure that your application package/resume supports your responses.

Your session is about to expire!

Your USAJOBS session will expire due to inactivity in 8 minutes. Any unsaved data will be lost if you allow the session to expire. Click the button below to continue your session.