The IT security administrator evaluates, designs, implements and maintains the court's cybersecurity posture across network infrastructure, cloud and hybrid environments, applications, endpoints and telecommunications. This role serves as a technical specialist and advisor on information security, risk mitigation, incident response and compliance for judges, court executives, probation officers and staff.
Summary
The IT security administrator evaluates, designs, implements and maintains the court's cybersecurity posture across network infrastructure, cloud and hybrid environments, applications, endpoints and telecommunications. This role serves as a technical specialist and advisor on information security, risk mitigation, incident response and compliance for judges, court executives, probation officers and staff.
Security strategy and program oversight: Review, evaluate and make recommendations regarding the court's IT security program, covering network infrastructure, cloud resources (Microsoft 365, Azure and AWS), custom applications, commercial off-the-shelf software, VoIP, and mobile and remote access solutions.
Threat and vulnerability management: Conduct continuous security assessments, risk analyses and vulnerability scans across planned and installed systems. Identify weaknesses, coordinate patch management and deploy endpoint detection and response (EDR and XDR) tools to mitigate threats. Notify management promptly of critical vulnerabilities.
Policy and framework administration: Develop, implement and maintain local court security policies, guidance and operational procedures aligned with national judiciary frameworks. Create templates, guidelines, checklists and documentation to support compliance and Zero Trust security principles.
Advisory and training services: Provide technical advice on IT security architecture, data protection and risk management to judges, court unit executives and IT management. Develop and deliver cybersecurity awareness training and documentation for court personnel.
Security operations and tool management: Act as team lead in configuring, administering and monitoring automated security tools, including next-generation firewalls, intrusion detection and prevention systems, web security gateways, SIEM and SOAR platforms (such as Splunk and Microsoft Sentinel), and identity management systems. Monitor SPAM mailbox for Phishing attempts and scan suspicious attachments as needed.
Automation and scripting: Write and maintain scripts using PowerShell, Python and Bash to automate security checks, streamline administrative workflows, enforce system configurations and parse security logs.
Infrastructure and identity management: Perform advanced Active Directory and Microsoft Entra ID security architecture design, Group Policy Object management and access control enforcement. Support secure end-user workstation settings, virtual server infrastructure, multi-factor authentication, and Zero Trust network access solutions.
Incident response and collaboration: Coordinate and execute incident response procedures. Collaborate with key judiciary stakeholders, including the Administrative Office, the 9th Circuit IT security officer, federal court IT peers and commercial service providers.
Network and systems engineering support: Provide specialized technical support for local and wide area network infrastructure, virtualized server environments (VMware vSphere), storage area networks, IP routing and switching, enterprise wireless (802.11xx), and converged courtroom audio-video and VoIP technologies.
Special projects: Assist with technical architecture for new or renovated court spaces, participate in special IT projects and perform other technical support duties as assigned.
You must be a U.S. Citizen to qualify for this position.
Background investigation
Pre-employment drug test
Qualifications
Required Qualifications:
Minimum of three years of progressively responsible, specialized IT security experience, including at least two years equivalent to work at the CL 28 level.
Specialized experience: Progressively responsible experience that is in, or closely related to, the work of the position that has provided the particular knowledge, skills, and abilities to successfully perform the duties of the position. Experience must demonstrate in-depth technical knowledge of systems analysis, network administration, cybersecurity operations and incident response.
Physical and operational requirements: Ability to lift a minimum of 50 pounds and physical mobility to access equipment in tight or elevated spaces (such as under desks and server racks). Strong analytical troubleshooting and customer service skills are required. Candidates must be available for occasional after-hours and weekend work, as well as periodic overnight travel.
Preferred Qualifications:
Education: A bachelor's degree from an accredited college or university in cybersecurity, information technology, computer science, computer engineering or a closely related field is strongly preferred.
Industry certifications:
Holding one or more active, industry-recognized security certifications is highly preferred, such as:
Certified Information Systems Security Professional (CISSP)
Certified Information Security Manager (CISM)
CompTIA Security+ or Cybersecurity Analyst (CySA+)
Certified Ethical Hacker (CEH)
GIAC Security Essentials (GSEC) or GIAC Certified Incident Handler (GCIH)
Certified Cloud Security Professional (CCSP)
Technical expertise:
Scripting and automation: Strong practical proficiency in PowerShell, Python, Bash and SQL for automation, log analysis and system administration.
Cloud security and identity: Experience securing AWS, Azure, Microsoft 365, and Microsoft Entra ID environments, including least-privilege IAM/RBAC, privileged-access management, Conditional Access, cloud audit logging, and integration of CloudTrail, Azure Activity Logs, Entra ID sign-in and audit logs, and Microsoft 365 audit logs with SIEM platforms.
Operating Systems: Advanced knowledge in Windows client and Windows Server operating systems, Red Hat Enterprise Linux, MacOS, iOS
Security and network tools: Proven experience with EDR and XDR platforms (such as Microsoft Defender for Endpoint, Qualys and CrowdStrike), SIEM tools (such as Splunk), packet analyzers (such as Wireshark), next-generation firewalls (such as Palo Alto and Cisco), VPN, Zero Trust network access, and IPSec. Vulnerability management and remediation using scanning tools like Tenable Nessus or Qualys. Network discovery tools and port scanners (such as Nmap)
Virtualization and infrastructure: Knowledge of VMware vSphere, virtual desktop infrastructure frameworks, Cisco core and access switching, enterprise Wi-Fi networks, storage area network environments, and secure data backup and disaster recovery utilities.
Environment: Experience operating within a federal court environment or working with specialized federal judiciary applications.
Education
This job does not have an education qualification requirement.
Additional information
This job is being filled by an alternative hiring process and is not in the competitive civil service.
The initial appointment to this position is provisional pending the successful completion of the required background checks and/or investigations.
Only qualified applicants will be considered for this position. Employees of the U.S. District Court serve under "Excepted Appointments" and are considered "at will" employees (except for probation officers who may be removed for cause). Federal Civil Service classifications or regulations do not apply; however, court employees are entitled to substantially the same benefits as other Federal Government employees.
The U.S. District Court is a drug-free workplace and the applicant selected will be required to participate in a drug screening test prior to employment.
All information provided by applicants is subject to verification and background investigation. Applicants are advised that false statements or omission of information on any application materials or the inability to meet the following conditions may be grounds for non-selection, withdrawal of an offer of employment or dismissal after being employed.
Participation in the interview process will be at the applicant's own expense and relocation expenses will not be provided.
All promotions are subject to the approval of the Administrative Office of the U.S. Courts.
The position is subject to the mandatory electronic fund transfer (EFT) participation for payment of net pay (i.e. Direct Deposit).
Non-citizens may be interviewed and considered for employment, but employment offers will only be made to individuals who qualify under one of the exceptions in 8 U.S.C. §1324b(a)(3)(B). In most cases, this means that an offer of employment cannot be made unless the candidate is a lawful permanent resident who is seeking U.S. citizenship as explained below. Under 8 U.S.C. §1324b(a)(3)(B), a lawful permanent resident seeking citizenship may not apply for citizenship until he or she has been a permanent resident for at least five years (three years if seeking naturalization as a spouse of a citizen), at which point he or she must apply for citizenship within six months of becoming eligible, and must complete the process within two years of applying (unless there is a delay caused by the processors of the application). Non-citizens who have not been permanent residents for five years will be required to execute an affidavit that they intend to apply for citizenship when they become eligible to do so.
The U.S. District Court, District of Arizona is an Equal Opportunity Employer.
Candidates should be committed to improving the efficiency of the Federal government, passionate about the ideals of our American republic, and committed to upholding the rule of law and the United States Constitution.
Up to 13 days paid annual leave per year for the first 3 years of employment; 20 to 26 days per year thereafter (dependent upon the length of federal service).
11 paid holidays per year.
13 days of paid sick leave per year.
Up to 12 weeks paid maternity/paternity leave, if qualified.
Excellent retirement package (enhanced Federal law enforcement retirement benefits)
Mandatory participation in the Federal Retirement System (FERS) and Social Security programs.
Optional Thrift Savings Plan (TSP), a 401(k)-styled program with a matching component of up to 5%, with diversification control.
Full extension of health benefits.
Optional participation in the federal health insurance program of your choice (no waiting period).
Optional vision and dental insurance programs of your choice (no waiting period).
Optional participation in a flexible spending program for health and/or dependent care.
Optional participation in group life insurance.
Transit Subsidy.
On-site fitness center (Phoenix only)
Flexible schedule options.
How you will be evaluated
You will be evaluated for this job based on how well you meet the qualifications above.
Complete applications will be reviewed based on Judiciary qualification standards. Applicants selected for interview will be evaluated based upon the question responses they provide during the structured interview. In responding to structured interview questions, the applicant should be sure to cite specific examples of experience, explain exactly what they did, and the outcome.
Up to 13 days paid annual leave per year for the first 3 years of employment; 20 to 26 days per year thereafter (dependent upon the length of federal service).
11 paid holidays per year.
13 days of paid sick leave per year.
Up to 12 weeks paid maternity/paternity leave, if qualified.
Excellent retirement package (enhanced Federal law enforcement retirement benefits)
Mandatory participation in the Federal Retirement System (FERS) and Social Security programs.
Optional Thrift Savings Plan (TSP), a 401(k)-styled program with a matching component of up to 5%, with diversification control.
Full extension of health benefits.
Optional participation in the federal health insurance program of your choice (no waiting period).
Optional vision and dental insurance programs of your choice (no waiting period).
Optional participation in a flexible spending program for health and/or dependent care.
Applications will be considered complete when the online application and all required attachments (in proper format) are received by the Human Resources Division. Applications and/or attachments received after the closing date may not be considered.
Priority consideration given to applicants received by October 14, 2026.
US District Court, District of Arizona
Sandra Day O'Connor U.S. Courthouse, Ste. 150
401 W. Washington St.
Phoenix, AZ 85003
US
Next steps
After we receive application packages (including all required documents) to the District of Arizona employment website, we will review applications to ensure qualification and eligibility requirements are met. After the review is complete, applications will be referred to the hiring manager who will determine who may be contacted for an interview.
The Federal hiring process is set up to be fair and transparent. Please read the following guidance.
Applications will be considered complete when the online application and all required attachments (in proper format) are received by the Human Resources Division. Applications and/or attachments received after the closing date may not be considered.
Priority consideration given to applicants received by October 14, 2026.
US District Court, District of Arizona
Sandra Day O'Connor U.S. Courthouse, Ste. 150
401 W. Washington St.
Phoenix, AZ 85003
US
Next steps
After we receive application packages (including all required documents) to the District of Arizona employment website, we will review applications to ensure qualification and eligibility requirements are met. After the review is complete, applications will be referred to the hiring manager who will determine who may be contacted for an interview.
Fair and transparent
The Federal hiring process is set up to be fair and transparent. Please read the following guidance.