Supervisory IT Cybersecurity Specialist (INFOSEC)
What you'd do
This position is located in the Vulnerability Management and Cyber Threat Emulation Branch (VMCEB), its main function is to prevent cyberattacks before they happen and determine how they happened when they do occur. This is performed through expertise in advanced intrusion detection, vulnerability management, and penetration testing. This position serves as the Vulnerability Management and Cyber Threat Emulation Branch Chief.
Major duties
The physical worksite for this position is located in Alexandria, Virginia. Presence at the Alexandria, VA campus is required for this role, as it includes on site functions that must be performed in person. Position may be eligible for situational telework in accordance with agency policy/business unit discretion. The agency currently allows for 52 hours of telework per calendar year. Our team is excited to welcome you and your expertise if ... You are passionate and dedicated serving as Branch Chief, providing executive leadership, strategic direction, and operational oversight for enterprise vulnerability management, cyber threat emulation, red team operations, threat hunting, attack surface management, and cybersecurity risk reduction activities. You are inspired and resilient directing the planning, execution, and continuous improvement of agency-wide vulnerability management programs designed to identify, assess, prioritize, remediate, and validate cybersecurity weaknesses across enterprise information systems, cloud services, applications, networks, and emerging technologies. You enjoy overseeing proactive threat hunting operations that leverage threat intelligence, behavioral analytics, forensic analysis, and cybersecurity telemetry to identify malicious activity, advanced threats, insider risks, and unauthorized activity before significant organizational impact occurs. You are excited developing policies, procedures, standards, and operational guidance supporting cyber defense, vulnerability management, threat hunting, adversary emulation, and continuous monitoring activities. You are a great leader, directing technical teams responsible for vulnerability assessments, penetration testing, cyber threat emulation, threat hunting, attack surface analysis, and cybersecurity engineering activities.
What you need to qualify
You must meet the United States Office of Personnel Management's (OPM) qualification requirements (including specialized experience and/or educational requirements) for the advertised position. You must meet all eligibility and qualifications requirements by the closing date of the job announcement. OPM Qualifications Standards are available at Competency-Based Qualification Standard for the Information Technology Management Series, 2210 Specialized Experience is experience that has equipped applicants with the particular knowledge, skills and abilities to successfully perform the duties of the position, and that is typically in or related to the position to be filled. To be creditable, specialized experience must have been equivalent to at least the next lower grade level in the federal service. For this position, the next lower grade level is a GS-14. Specialized experience for this position includes: 1. Experience in leading enterprise vulnerability management and cyber risk reduction initiatives, applying NIST, CISA, and federal cybersecurity guidance to prioritize remediation, validate fixes, and strengthen organizational security posture; AND 2. Experience managing proactive cyber defense capabilities, such as threat hunting, red team operations, penetration testing, adversary simulation, attack path analysis, and control validation to identify threats and improve resilience; AND 3. Experience providing supervisory leadership and executive advisory support, overseeing cybersecurity teams and developing policies, procedures, metrics, and governance frameworks while briefing leadership on threats, vulnerabilities, and investment priorities. Basic Requirement Competencies: The specialized experience must include, or be supplemented by, information technology related experience (paid or unpaid experience and/or completion of specific, intensive training, as appropriate) which demonstrates each of the competencies, as defined: Attention to Detail Customer Service Decision Making Information Management Interpersonal Skills Oral Communication Problem Solving Teamwork Technical Competency In addition to the GS-2210 competency-based qualification competencies, applicants must demonstrate the following supervisory competencies to be successful in this position: Accountability Customer Service Decisiveness Flexibility Integrity/Honesty Interpersonal Skills Oral Communication Problem Solving: Resilience Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic; religious; spiritual; community, student, social). Volunteer work helps build critical competencies, knowledge, and skills and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience.
Before you apply
Federal applications are different: your resume should be 3–5 pages and mirror the language of this announcement. Read our federal resume guide first — it's the #1 reason qualified people get screened out.
Don't miss the next one.
Get an email the moment a similar federal job opens — postings can close in as little as 5 days.