IT Cybersecurity Specialist

US Western Area Power Administration

Phoenix (AZ)

On-site

USD 85,000 - 110,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

US Western Area Power Administration in Phoenix seeks an IT Cybersecurity Specialist (INFOSEC) to provide technical guidance to functional and project teams regarding cybersecurity issues, risk analyses, mitigation plans, and continuity of operations planning.

This on-site role requires deep expertise in IA/FISMA and NERC CIP aligned controls, incident response, vulnerability management, and the ability to facilitate RMF/ATO processes with stakeholders across the organization.

Qualifications

  • Proven experience in cybersecurity architecture or operations.
  • Experience with risk management and NIST SP 800-53/NERC CIP.
  • Ability to perform vulnerability management and remediation.

Responsibilities

  • Provide technical expertise to teams on cybersecurity issues.
  • Participate in risk analyses and mitigation planning.
  • Support continuity of operations planning and incident response.

Skills

Security testing
Risk analysis
Security architecture design
Vulnerability management
Incident response

Tools

Axonius
Carbon Black EDR
Corelight
Forescout
Splunk
Tenable

Job description

As an IT Cybersecurity Specialist (INFOSEC), you will provide technical expertise and guidance to WAPA functional and project teams regarding cybersecurity technical issues, risk analyses, mitigation plans and continuity of operations planning.

**This is NOT A REMOTE POSITION. The selectee will be required to be physically present at one of the duty location(s) identified.**

QUALIFICATION REQUIRMENTS: To qualify for this position, you must meet the minimum qualification requirements as well as the specialized experience requirements outlined below:

MINIMUM REQUIREMENTS FOR GRADE 12 and Above (GS or Equivalent): The competencies listed in the "How You Will Be Evaluated" section will be used to evaluate whether or not you meet the minimum proficiency level established for the 2210 series

SPECIALIZED EXPERIENCE for Cybersecurity Infrastructure and Architecture (IA): A qualified candidate's online application and resume must demonstrate at least one (1) year of specialized experience equivalent in difficulty and responsibility to the next lower grade level GS-12 in the Federal service (obtained in either the public or private sectors). Specialized experience for this position is defined as having at least two (2) of the following:

  • Test, analyze, and/or implement existing and future systems to complement existing cybersecurity architectures; often leading Authority to Operate (ATO) job functions such as control testing and validation, Plan of Actions & Milestones (POAM) tracking or Risk Acceptance (RA).
  • Analyze security events, including threat model development and resulting security risk analysis of systems.
  • Design and develop security architecture to execute a company's cybersecurity program to meet Federal Information Security Modernization Act (FISMA), North American Electric Reliability (NERC), Critical Information Protection (CIP), or NIST 800-53 Controls.
  • Perform vulnerability management to include scans, assessments, and remediation in conjunction with other IT business units to reduce company-wide risk.

-OR-

SPECIALIZED EXPERIENCE for Cybersecurity Operations (Ops): A qualified candidate's online application and resume must demonstrate at least one (1) year of specialized experience equivalent in difficulty and responsibility to the next lower grade level GS-12 in the Federal service (obtained in either the public or private sectors). Specialized experience for this position is defined as having at least two (2) of the following:

  • Configure and manage and/or manage the lifecycle of at least 1 (one) of the following cybersecurity systems: Axonius, Carbon Black App Control, Carbon Black Endpoint Detection and Response (EDR), Corelight, Forescout, Splunk, and Tenable.
  • Apply the Risk Management Framework (RMF) and assess cybersecurity systems against federal and industry compliance standards, such as NIST SP 800-53, FISMA, or NERC CIP.
  • Conduct incident response activities, vulnerability assessments, and/or digital forensics, including analyzing security events to understand and mitigate active potential cybersecurity threats.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT CYBERSECURITY SPECIALIST
IT CYBERSECURITY SPECIALIST

US Defense Information Systems Agency • Waipahu (HI)

On-site
USD 90,000 - 120,000
Cyber Security Specialist
Cyber Security Specialist

X-Bow Systems Inc. • Luling (TX)

On-site
USD 70,000 - 110,000
IT Specialist (INFOSEC)
IT Specialist (INFOSEC)

Naval Air Warfare Center Training Systems Division (NAWCTSD) • China Lake (CA)

On-site
USD 104,000 - 162,000
Cybersecurity Specialist
Cybersecurity Specialist

Saic • Pensacola (FL)

On-site
USD 90,000 - 130,000
IT Cyber Security Specialist (contingent 034)
IT Cyber Security Specialist (contingent 034)

SPS - Systems Products Solutions, Inc. • Maryland

On-site
USD 90,000 - 140,000
IT Specialist (INFOSEC)
IT Specialist (INFOSEC)

US-Defense-Media-Activity • Fort Meade (MD)

On-site
USD 90,000 - 130,000
IT Cybersecurity Specialist (INFOSEC)
IT Cybersecurity Specialist (INFOSEC)

Defense Information Systems Agency • Waipahu (HI)

On-site
USD 100,000 - 130,000
IT Cyber Security Specialist (contingent 034)
IT Cyber Security Specialist (contingent 034)

Mssi Inc • Huntsville (AL)

On-site
USD 90,000 - 120,000
Information Security Specialists (Intermediate/Senior)
Information Security Specialists (Intermediate/Senior)

Vets Hired • Orlando (FL)

On-site
USD 90,000 - 130,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Ampcus Inc • Washington

On-site
USD 90,000 - 120,000