Job RadarAll jobs
Active Hybrid Multiple Locations Posted · 01.10.2026 USAJOBS

INFORMATION TECHNOLOGY SPECIALIST (INFOSEC)

Defense Counterintelligence and Security Agency

DCSA's Industrial Security Office is looking for Information Systems Security Professionals (ISSP) with responsibility for oversight of complex information assurance utilizing Risk Management Framework & cybersecurity related activities at cleared contractor sites across the country. The ISSP employs technical knowledge and interpersonal skills to ensure information systems security managers understand and implement the technical controls and processes required to protect classified information. As an INFORMATION TECHNOLOGY SPECIALIST (INFOSEC) you will be responsible for the following duties: Serve as an Information Systems Security Professional (ISSP) within the assigned region. Perform Cybersecurity activities including security control assessments of information systems to include assess and authorize activity utilizing the Risk Management Framework (RMF). Exercise security oversight of cleared contractor information systems within the National Industrial Security Program (NISP). Analyze, assess, evaluate, verify and validate cleared contractor information system security plans and security controls; and, make authorization risk recommendations to the Authorizing Official. Document security assessments, advise/assist, etc. for Information Systems assigned Engage and interface with industry security professionals to assess implemented security controls. Evaluate security control requirements, recommend configurations for information systems and networks and identify strategies to manage risk through mitigation of vulnerabilities, considering the rapidly evolving Cybersecurity threat to information systems. Serve as spokesperson at meetings to convey NISP and RMF implementation guidance and Cybersecurity information relating to industrial security. The experience described in your resume will be evaluated and screened from the Office of Personnel Management's (OPMs) basic qualifications requirements. See: for professional positions or positions with a basic education requirement: https://www.opm.gov/policy-data-oversight/classification-qualifications/competency-based-policy/general-schedule/2200/2210-competency-based-policy/competency-based-qualification-standard/; for OPM qualification standards, competencies and specialized experience needed to perform the duties of the position as described in the MAJOR DUTIES and QUALIFICATIONS sections of this announcement by 10/12/2026 Applicant must have directly applicable experience that demonstrates the possession of the knowledge, skills, abilities and competencies necessary for immediate success in the position. Qualifying experience may have been acquired in any public or private sector job, but will clearly demonstrate past experience in the application of the particular competencies/knowledge, skills and abilities necessary to successfully perform the duties of the position. You must have specialized experience sufficient to demonstrate that you have acquired all the competencies necessary to perform at a level equivalent in difficulty, responsibility, and complexity to the next lower grade GS/GG-12 in the Federal service and are prepared to take on greater responsibility. Generally, this would include one year or more of such specialized experience. Specialized experience for this position includes: 1. Expertise of Cybersecurity, Risk Management Framework (RMF), advanced information technology principles, concepts, methods, standards, and practices. 2. Ability to utilize expert knowledge, concepts, principles, and practices (to include experience with enterprise level systems and non-standard systems) to evaluate and analyze difficult and complex work assignments. 3. Identifying, documenting and communicating risks and cybersecurity vulnerabilities to include identifying deficiencies and inability to safeguard classified data and information. 4. Utilizing risk management principles to perform risk analysis; Ability to make risk determinations/decisions/recommendations; Performing technical assessment, inspections and reviews of information systems. 5. Evaluating and applying cybersecurity regulations, policies, and procedures to analyze operating/developmental computer systems. Specifically you will be evaluated on the following competencies: 1.Cybersecurity • Support protection of the confidentiality, integrity, non-repudiation, and availability of systems, networks, and data through planning, analysis, development, penetration testing, access control, implementation, maintenance, and enhancement of information security systems, programs, policies, procedures, and tools 2.Risk Management • Knowledge of the principles, methods, and tools used for risk assessment and mitigation, including assessment of failures and their consequences. 3.Problem Solving • Identifies and analyzes problems; weighs relevance and accuracy of information; seeks/generates and evaluates alternative perspectives/solutions; makes timely/ effective recommendations, based on potential implications of findings or conclusions. Critically evaluates to identify the causes of problems, and chooses courses of action that balance the interests of the mission and stakeholders. 4.Communications • Communicate (i.e., written and oral) rights, responsibilities, management directives, policies, and/or regulations to employees, supervisors, and/or other pertinent individuals. Substitution of education may not be used in lieu of specialized experience for this grade level.
This job was verified from USAJOBS. Applications are completed on the original source.
Apply on the original listing ↗
Something wrong with this job?