Supervisory IT Specialist (Infosec)
What you'd do
This position serves as a Supervisor of Cybersecurity Execution Management Services (CEMS) and is in the Office of Information Security, VA Cybersecurity Operations Center (CSOC). The incumbent will participate fully with the CSOC Deputy Directors and Director in providing oversight, direction and guidance to CSOC staff that are responsible for monitoring and protecting VAs cybersecurity posture, ensuring the confidentiality, integrity, and availability of Veteran data.
Major duties
Major duties include but not limited to: Apply security policies to applications that interface with one another, such as Business-to-Business (B2B) applications. Apply security policies to meet security objectives of the system. Ensure all systems security operations and maintenance activities are properly documented and updated as necessary. Ensure that the application of security patches for commercial products integrated into system design meet the timelines dictated by the management authority for the intended operational environment. Implement specific cybersecurity countermeasures for systems and/or applications. Properly document all systems security implementation, operations, and maintenance activities and update as necessary. Provide input to the Risk Management Framework process activities and related documentation (e.g., system life-cycle support plans, concept of operations, operational procedures, and maintenance training materials). Create, edit, and manage network access control lists on specialized cyber defense systems (e.g., firewalls and intrusion prevention systems). Assess adequate access controls based on principles of least privilege and need-to-know. Implement security measures to resolve vulnerabilities, mitigate risks, and recommend security changes to system or system components as needed. Implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation. Work with stakeholders to resolve computer security incidents and vulnerability compliance. Performs other duties as assigned. This is a Non-Bargaining Unit Position. This position is primarily aligned to the following NICE Cybersecurity Workforce Framework work roles: Cybersecurity Code 461 - Responsible for the analysis and development of the integration, testing, operations, and maintenance of systems security, 511 and 541 Work Schedule: Monday through Friday, 8:00am to 4:30pm Compressed/Flexible: Compressed/flexible schedule available at the manager's discretion Telework: This position may be authorized for telework. Virtual: This is not a virtual position. Position Description/PD#: Supervisory IT Specialist (Infosec)/PD16763A Physical Requirements: The work is sedentary. Some work may require walking and standing in conjunction with travel and to attendance at meetings and conferences away from the work site. Some employees may carry light items, such as papers, books, or small parts, or drive a motor vehicle. The work does not require any special physical effort. Working Conditions: The work area is adequately lighted, heated, and ventilated. The work environment involves everyday risks or discomforts that require normal safety precautions. Some employees may occasionally be exposed to uncomfortable conditions in such places as research and production facilities.
What you need to qualify
To qualify for this position, applicants must meet all requirements by the closing date of this announcement, 07/28/2026. Applicants must have IT-related experience demonstrating each of the four competencies listed below at a proficiency level equivalent to the next lower grade level in federal service You must meet both the Basic Requirement and the Specialized Experience to qualify for this series as described below. Attention to Detail - Is thorough when performing work and conscientious about attending to detail. Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services. Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately. Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations. AND Specialized Experience: You must have one year of specialized experience equivalent to at least the next lower grade GS-13 in the normal line of progression for the occupation in the organization. Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy. [K0003] Knowledge of cybersecurity and privacy principles. [K0004] Knowledge of cybersecurity threats and vulnerabilities. [K0005] Ability to manage multiple critical tasks of varying sizes simultaneously Direct experience creating and managing budgetary multi-year planning (MYP) and justifying the spend plan to Executives Experience creating and orating briefings on various topics to Executives. AND - Selective Placement Factor: Must have direct experience leading the creation and implementation of cross-organization vulnerability management program at the enterprise level. Must have direct experience synthesizing, socializing and applying critical vulnerability federal dictates such as Binding Operational Directive (BOD) 26-04 at the enterprise level. For more information on these qualification standards, please visit the United States Office of Personnel Management's website at https://www.opm.gov/policy-data-oversight/classification-qualifications/general-schedule-qualification-standards/.
Before you apply
Federal applications are different: your resume should be 3–5 pages and mirror the language of this announcement. Read our federal resume guide first — it's the #1 reason qualified people get screened out.
Don't miss the next one.
Get an email the moment a similar federal job opens — postings can close in as little as 5 days.