Enclosure EE CyPrESS Labor Categories.xlsx
XLSX spreadsheet 34 KB Posted
- Attached to
- Cybersecurity and Privacy Enterprise Solutions and Services (CyPrESS) Federal contract opportunity
- Solicitation number
- 80TECH21R0007
About this file
This is a solicitation for a Cybersecurity and Privacy Enterprise Solutions and Services contract to support the National Aeronautics and Space Administration (NASA). The solicitation seeks proposals to provide cybersecurity and privacy enterprise solutions, services, and related support for all NASA Centers and Facilities. Key requirements include cybersecurity and privacy enterprise solutions, services for risk management, security operations, identity and access management, data/information protection and processing, systems and communications protection and resilience, supply chain risk management, and program management. Proposals are due by a specified date, with contract award anticipated shortly after. The contract will have a one-year base period and four one-year options, and will be an unrestricted procurement open to small and large businesses.
View the file
Other files for this federal contract opportunity
Show all 50
Cybersecurity and Privacy Enterprise Solutions and Services (CyPrESS) has more files on GovTribe.
On GovTribe
Work with this file on GovTribe
- Download the original file
- Contacts named in this file
- Similar government files
- Ask GovTribe AI about this file
Text version
Sheet1
| Labor Category | NICE Framework Code | Minimum Required LOC | Education | Experience (Years) | Desireable Certification | Work Role Description | OPM Code (Fed Use) | Source | BLS Labor Code |
| All-Source Analyst | All-Source Analyst | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 2 to 5 or more years | One or more of the DoD 8570.01-M Cyber Certifications | Analyzes data/information from one or multiple sources to conduct preparation of the environment, respond to requests for information, and submit intelligence collection and production requirements in support of planning and operations. | 111 | 15-1212 | |
| Analyst Specialist 2/Computer Systems Analyst II | Data Analyst | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 4 yrs. | One or more of the DoD 8570.01-M Cyber Certifications | The Computer Systems Analyst II reviews proposals which consist of objectives, scope, and user expectations; gathers facts, analyzes data, and prepares a project synopsis which compares alternatives in terms of cost, time, availability of equipment and personnel, and recommends a course of action; upon approval of synopsis, prepares specifications for development of computer programs. Duties also include the ability to determine and resolve data processing problems and coordinate the work with program, users, etc. This worker orients user personnel on new or changed procedures, may conduct special projects such as data element and code standardization throughout a broad system, working under specific objectives and bringing to the attention of the supervisor any unusual problems or controversies. | 15-1211 | ||
| Application Programmer 2 | Software Developer | OPM Tier 2 or higher | Bachelor's degree or specialized certification in computer programming, web development, computer science, or a related programming-centric field of study in related field or equivalent experience is required. | 2 to 5 years | One or more of the DoD 8570.01-M Cyber Certifications | Applications Programmer II evaluates and modifies moderately complex applications programs working from detailed specifications. Codes, tests, debugs, documents, and maintains applications. | 15-1251 | ||
| Business Analyst | N/A | OPM Tier 1 | Bachelor's degree in a related field or equivalent experience is required | 1 to 5 years | Gather and organize information about the problems to be solved or the procedures to be improved. Analyze financial and other data, including revenue, expenditure, and employment reports. Develop solutions or alternative practices. Recommend new systems, procedures, or organizational changes. Make recommendations to management through presentations or written reports | ||||
| 13-1111 | |||||||||
| Business Analyst 2 | N/A | OPM Tier 1 | Bachelor's degree in a related field or equivalent experience is required | 5+ years | BAs are responsible for creating new models that support business decisions by working closely with financial reporting and IT teams to establish initiatives and strategies to improve importing and to optimize costs. Strong understanding of regulatory and reporting requirements as well as plenty of experience in forecasting, budgeting and financial analysis combined with understanding of key performance indicators | 13-1111 | |||
| Business Systems Analyst | N/A | OPM Tier 1 | Bachelor's degree in a related field or equivalent experience is required | 1 to 5 years | Reviews, analyzes, and evaluates user needs to create systems solutions that support overall business strategies. Documents system requirements, defines scope and objectives, and creates system specifications that drive system development and implementation. Incumbents function as a liaison between IT and users and have both business and technical expertise. Typically requires a Bachelor's degree or its equivalent. Typically reports to a manager. Gains exposure to some of the complex tasks within the job function. Occasionally directed in several aspects of the work. | 13-1111 | |||
| Computer Security System Specialist 2 | Security Architect | OPM Tier 2 or higher | Bachelor's degree in computer information systems, computer science, information security or a related discipline or equivalent experience is required | 5 years | One or more DoD 8570.01-M Cyber Certifications | Supports Enterprise Security Management through cyber security, privacy, and information assurance activities. Collects, integrates, interprets, and reports using various tools to demonstrate risk, and advise stakeholders on a course of action. Supports program’s Software Assurance, Vulnerability Management, Security Operations, Prevention and Maintenance support. Performs Event Detection and Incident Response efforts through policy and process development and identification of weaknesses in the program. Supports the government customer’s business activities related risk identification and measurement systems within various technical and usage boundaries. Collaborates with user, infrastructure support teams and other Pivot contractors to define and measure security policy and standards across the larger government customer environment. Works with end users, stakeholders, and support teams to define and establish this secure environment | 15-1212 | ||
| Computer Systems Analyst I | Systems Security Analyst | OPM Tier 2 or higher | AA or AS degree in a related field or equivalent experience is required | 2 yrs. | One or more DoD 8570.01-M Cyber Certifications | The Computer Systems Analyst I carries out fact finding and analyses as assigned, (usually of a single activity or a routine problem); applies established procedures where the nature of the system, feasibility, computer equipment and programming language have already been decided; may assist a higher level systems analyst by preparing the detailed specifications required by computer programmers from information developed by the higher level analyst, and may research routine user problems and solve them by modifying the existing system when the solutions follow clear precedents. When cost and deadline estimates are required, results receive closer review. | 15-1211 | ||
| Configuration Management Specialist 3 | Security Architect | OPM Tier 2 or higher | Bachelor's degree in computer science or software engineering or related field or equivalent experience is required | 8 yrs. | One or more DoD 8570.01-M Cyber Certifications | Senior-level configuration management support. Applies comprehensive knowledge of concepts, processes, practices, and procedures on technical assignments. Provides configuration management planning. Describes provisions for configuration identification, change control, configuration status accounting, and configuration audits. Regulates the change process so that only approved and validated changes are incorporated into product documents and related software. | 11-3021 | ||
| Cyber Defense Analyst | Cyber Defense Analyst | OPM Tier 2 or higher | Bachelor's degree in computer science, computer or software engineering, information assurance or related field or equivalent experience is required. | 2 to 5 or more years | One or more DoD 8570.01-M Cyber Certifications | Provides entry-level support to the program office in development of budget, schedule and risks. Maintains a detailed knowledge of the required compliance documentation. Maintains and updates electronic files, record and data. Maintains databases current in support of project control and other applicable business activities. Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of mitigating threats. | 511 | 15-1212 | |
| Cyber Defense Forensics Analyst | Cyber Defense Forensics Analyst | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required. | 7 or more years | One or more DoD 8570.01-M Cyber Certifications | Analyzes digital evidence and investigates computer security incidents to derive useful information in support of system/network vulnerability mitigation. | 212 | 15-1212 | |
| Cyber Defense Incident Responder | Cyber Defense Incident Responder | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required. | 2 to 5 or more years | One or more DoD 8570.01-M Cyber Certifications | • Collect intrusion artifacts (e.g., source code, malware, trojans) and use discovered data to enable mitigation of potential cyber defense incidents within the enterprise. |
• Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents.
• Coordinate incident response functions.
• Monitor external data sources (e.g., cyber defense vendor sites, Computer Emergency Response Teams, Security Focus) to maintain currency of cyber defense threat conditions and determine which security issues may have an impact on the enterprise.
• Perform cyber defense trend analysis and reporting.
• Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems.
• Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts.
• Write and publish after-action reviews.
| • Write and publish cyber defense techniques, guidance, and reports on incident findings to appropriate constituencies. | 531 | 15-1212 | |||||||
| Cyber Defense Infrastructure Support Specialist | Cyber Defense Infrastructure Support Specialist | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 2 to 5 or more years | One or more DoD 8570.01-M Cyber Certifications | Tests, implements, deploys, maintains, and administers the infrastructure hardware and software. | 521 | 15-1212 | |
| Cyber Policy and Strategy Planner | Cyber Policy and Strategy Planner | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 7 or more years in cybersecurity technology | One or more DoD 8570.01-M Cyber Certifications | • Develop policy, programs, and guidelines for implementation. |
• Establish and maintain communication channels with stakeholders.
• Review existing and proposed policies with stakeholders.
• Serve on agency and interagency policy boards.
• Promote awareness of cyber policy and strategy as appropriate among management and ensure sound principles are reflected in the organization's mission, vision, and goals.
• Interpret and apply applicable laws, statutes, and regulatory documents and integrate into policy.
• Analyze organizational cyber policy.
• Assess policy needs and collaborate with stakeholders to develop policies to govern cyber activities.
• Define and integrate current and future mission environments
• Design/integrate a cyber strategy that outlines the vision, mission, and goals that align with the organization’s strategic plan.
• Draft, staff, and publish cyber policy.
• Monitor the rigorous application of cyber policies, principles, and practices in the delivery of planning and management services
• Seek consensus on proposed policy changes from stakeholders.
• Provide policy guidance to cyber management, staff, and users.
• Review, conduct, or participate in audits of cyber programs and projects.
| • Support the CIO in the formulation of cyber-related policies. | 752 | https://www.cisa.gov/cyber-policy-and-strategy-planner | 15-1212 | ||||
| Cyber Systems Security Engineer | Information Systems Security Developer | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 1 to 5 years | One or more DoD 8570.01-M Cyber Certifications | • Apply security policies to meet security objectives of the system. |
• Ensure all systems security operations and maintenance activities are properly documented and updated as necessary.
• Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.
• Implement security measures to resolve vulnerabilities, mitigate risks and recommend security changes to system or system components as needed.
• Implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
• Properly document all systems security implementation, operations and maintenance activities and update as necessary.
• Verify and update security documentation reflecting the application/system security design features.
| • Verify minimum security requirements are in place for all applications. | https://www.cisa.gov/systems-security-analyst | 15-1212 | |||||
| Cyber Systems Security Engineer 2 | Information Systems Security Developer | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 5 to 11 years | One or more DoD 8570.01-M Cyber Certifications | • Analyze and report organizational security posture trends. |
• Analyze and report system security posture trends.
• Apply security policies to meet security objectives of the system.
• Assess adequate access controls based on principles of least privilege and need-to-know.
• Assess all the configuration management (change configuration/release management) processes
• Assess the effectiveness of security controls
• Ensure all systems security operations and maintenance activities are properly documented and updated as necessary.
• Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.
• Implement security measures to resolve vulnerabilities, mitigate risks and recommend security changes to system or system components as needed.
• Implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
• Plan and recommend modifications or adjustments based on exercise results or system environment.
• Properly document all systems security implementation, operations and maintenance activities and update as necessary.
• Verify and update security documentation reflecting the application/system security design features.
| • Verify minimum security requirements are in place for all applications. | https://www.cisa.gov/systems-security-analyst | 15-1212 | |||||
| Cyber Systems Security Engineer 3 | Information Systems Security Developer | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 12+ years | One or more DoD 8570.01-M Cyber Certifications | • Analyze and report organizational security posture trends. |
• Analyze and report system security posture trends.
• Apply security policies to meet security objectives of the system.
• Assess adequate access controls based on principles of least privilege and need-to-know.
• Assess all the configuration management (change configuration/release management) processes
• Assess the effectiveness of security controls
• Develop procedures and test fail-over for system operations transfer to an alternate site based on system availability requirements.
• Ensure all systems security operations and maintenance activities are properly documented and updated as necessary.
• Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.
• Implement security measures to resolve vulnerabilities, mitigate risks and recommend security changes to system or system components as needed.
• Implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
• Mitigate/correct security deficiencies identified during security/certification testing and/or recommend risk acceptance for the appropriate senior leader or authorized representative.
• Plan and recommend modifications or adjustments based on exercise results or system environment.
• Properly document all systems security implementation, operations and maintenance activities and update as necessary.
• Provides cybersecurity recommendations to leadership based on significant threats and vulnerabilities.
• Verify and update security documentation reflecting the application/system security design features.
| • Verify minimum security requirements are in place for all applications. | https://www.cisa.gov/systems-security-analyst | 15-1212 | ||||||
| Cyber Workforce Developer and Manager | Cyber Workforce Developer and Manager | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 5 to 7 years | One or more DoD 8570.01-M Cyber Certifications | This role develops cyberspace workforce plans, strategies, and guidance to support cyberspace workforce manpower, personnel, training and education requirements and to address changes to cyberspace policy, doctrine, materiel, force structure, and education and training requirements. | 13-1151 | |
| Cybersecurity Analyst | System Security Analyst | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 2 to 5 years | One or more DoD 8570.01-M Cyber Certifications | • Analyze and report organizational security posture trends. |
• Analyze and report system security posture trends.
• Apply security policies to meet security objectives of the system.
• Assess adequate access controls based on principles of least privilege and need-to-know.
• Assess all the configuration management (change configuration/release management) processes
• Assess the effectiveness of security controls
• Develop procedures and test fail-over for system operations transfer to an alternate site based on system availability requirements.
• Ensure all systems security operations and maintenance activities are properly documented and updated as necessary.
• Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.
• Implement security measures to resolve vulnerabilities, mitigate risks and recommend security changes to system or system components as needed.
• Implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
• Mitigate/correct security deficiencies identified during security/certification testing and/or recommend risk acceptance for the appropriate senior leader or authorized representative.
• Plan and recommend modifications or adjustments based on exercise results or system environment.
• Properly document all systems security implementation, operations and maintenance activities and update as necessary.
• Provides cybersecurity recommendations to leadership based on significant threats and vulnerabilities.
• Verify and update security documentation reflecting the application/system security design features.
| • Verify minimum security requirements are in place for all applications. | https://www.cisa.gov/systems-security-analyst | 15-1212 | ||||||
| Cybersecurity Lead | Information Systems Security Manager | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 10 yrs. | One or more DoD 8570.01-M Cyber Certifications | Duties may include a combination of supporting activities in coordination with Government to include continuous security monitoring, vulnerability assessment support, Security Test and Evaluation (ST&E) support and Certification/Accreditation support for the on-going assessment, planning, integration, and recommending enhancement of systems. In addition, duties may include supporting the design, integration and operation of Cybersecurity systems for the protection of networks, systems, and infrastructure. Duties may include: operate, monitor, maintain, and optimize existing monitoring, intrusion detection, and vulnerability identification on systems. Support the program and provide continuous monitoring of systems. Support technical and forensic investigations and provide support to incident response process. Prepare architectural diagrams, technical reports, and/or white papers in support of evolving Architecture requirements. Appropriate industry IT Security certification required. | 15-1212 | |
| Cybersecurity Specialist 1 | Cyber Defense Analyst | OPM Tier 2 or higher | Bachelor's degree in computer science/programming/engineering, information security, IT, software engineering, systems engineering related field or equivalent experience is required | 2 to 5 years in cybersecurity related duties such as incident detection and response and forensics | One or more DoD 8570.01-M Cyber Certifications | Entry-level Cybersecurity support. Applies fundamental concepts, processes, practices and procedures on technical assignments. Supports enterprise Cybersecurity standards. Supports the development and implementation of Cybersecurity standards and procedures. Coordinates development and recommends security processes for the organization. Recommends Cybersecurity solutions to support customers’ requirements. Identifies and reports security violations. Recommends and satisfies Cybersecurity requirements based upon the analysis of CSPP, policy, regulatory, and resource demands. Supports customers at the highest levels in the development and implementation of processes and policies. Applies know-how to government and commercial common user systems, as well as to dedicated special purpose systems requiring specialized security features and procedures. Supports analysis, design, and development of security features for system architectures. Analyzes and recommends security requirements for computer systems which may include mainframes, workstations, and personal computers. Supports designing, development, engineering, and implementation of solutions that meet security requirements. Provides integration and implementation of the computer system security solution. Analyzes general cybersecurity-related technical problems and provides basic engineering and technical support in solving these problems. Supports vulnerability/risk analyses and makes recommendations of computer systems and applications during all phases of the system development life cycle. Performs all procedures necessary to ensure the safety of information systems data assets and to protect systems from intentional or inadvertent access or destruction. Ensures that all information systems are functional and secure. | 15-1212 | |
| Cybersecurity Specialist 2 | Cyber Defense Analyst | OPM Tier 2 or higher | Bachelor's degree in computer science/programming/engineering, information security, IT, software engineering, systems engineering related field or equivalent experience is required | 4 yrs. | One or more DoD 8570.01-M Cyber Certifications | Mid-level Cybersecurity support. Applies advanced knowledge of concepts, processes, practices, and procedures on technical assignments. Supports enterprise Cybersecurity standards. Supports the development and implementation of Cybersecurity standards and procedures. Coordinates, development, and makes recommendations of security programs for an organization. Coordinates, development, and makes recommendations of security programs for an organization. Recommends Cybersecurity solutions to support customers’ requirements. Identifies and reports security violations. Recommends and satisfies Cybersecurity requirements based upon the analysis of CSPP, policy, regulatory, and resource demands. Supports customers at the highest levels in the development and implementation of processes and policies. Applies know-how to government and commercial common user systems, as well as to dedicated special purpose systems requiring specialized security features and procedures. Supports analysis, design, and development of security features for system architectures. Analyzes and recommends security requirements for computer systems which may include mainframes, workstations, and personal computers. Support designing, development, engineering, and implementation of solutions that meet security requirements. Supports integration and implementation of the computer system security solution. Analyzes general Cybersecurity-related technical problems and provides basic engineering and technical support in solving these problems. Supports vulnerability/risk analyses and makes recommendations of computer systems and applications during all phases of the system development life cycle. Performs all procedures necessary to ensure the safety of information systems data assets and to protect systems from intentional or inadvertent access or destruction. Ensures that all information systems are functional and secure. | 15-1212 | |
| Cybersecurity Specialist 3 | Cyber Defense Analyst | OPM Tier 2 or higher | Bachelor's degree in computer science/programming/engineering, information security, IT, software engineering, systems engineering related field or equivalent experience is required | 8 yrs. | One or more DoD 8570.01-M Cyber Certifications | Senior-level Cybersecurity support. Applies comprehensive knowledge of concepts, processes, practices, and procedures on technical assignments. Supports enterprise Cybersecurity standards. In coordination with Government develops and implements Cybersecurity standards and procedures. Coordinates, development, and recommends security processes for an organization. Recommends Cybersecurity solutions to support customers’ requirements. Identifies and reports security violations. Recommends and satisfies Cybersecurity requirements based upon the analysis of CSPP, policy, regulatory, and resource demands. Supports customers at the highest levels in the development and implementation of processes and policies. Applies know-how to government and commercial common user systems, as well as to dedicated special purpose systems requiring specialized security features and procedures. Supports analysis, design, and development of security features for system architectures. Analyzes security requirements for computer systems which may include mainframes, workstations, and personal computers. Designs, develops, engineers, and implements solutions that meet CSPP requirements. Provides integration and implementation of the computer system security solution. Analyzes general Cybersecurity-related technical problems and provides basic engineering and technical support in solving these problems. Supports vulnerability/risk analyses and makes recommendations on computer systems and applications during all phases of the system development life cycle. Performs all procedures necessary to ensure the safety of information systems data assets and to protect systems from intentional or inadvertent access or destruction. Ensures that all information systems are functional and secure. | 15-1212 | |
| Data Reporting Analyst | Data Analyst | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 2 to 5 years | One or more DoD 8570.01-M Cyber Certifications | •Analyze and define data requirements and specifications. |
•Analyze data sources to provide actionable recommendations.
•Assess the validity of source data and subsequent findings.
•Collect metrics and trending data.
•Develop data standards, policies, and procedures.
| •Provide actionable recommendations to critical stakeholders based on data analysis and findings. | https://www.cisa.gov/data-analyst | 15-2031 | |||||||
| Database Administrator | Database Administrator | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 2 to 5 or more years | One or more DoD 8570.01-M Cyber Certifications | Administers databases and/or data management systems that allow for the secure storage, query, protection, and utilization of data. | 421 | 15-1245 | |
| Desktop Support Analyst | Customer Service and Technical Support | OPM Tier 2 or higher | Associates to Bachelor's degree | 1 to 5 Years | One or more DoD 8570.01-M Cyber Certifications | • Pay attention to customers’ descriptions of their computer problems |
• Ask customers questions to properly diagnose the problem
• Walk customers through the recommended problem-solving steps
• Set up or repair computer equipment and related devices
• Train users to work with new computer hardware or software, such as printers, word-processing software, and email
• Provide other team members and managers in the organization with information about what gives customers the most trouble and about other concerns customers have
| https://www.bls.gov/ooh/computer-and-information-technology/computer-support-specialists.htm | 15-1232 | |||||
| Functional Analyst | Product Support Manager | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 2 to 5 years | One or more DoD 8570.01-M Cyber Certifications | • Conduct risk analysis, feasibility study, and/or trade-off analysis to develop, document, and refine functional requirements and specifications. |
• Consult with customers to evaluate functional requirements.
• Translate functional requirements into technical solutions.
| https://www.cisa.gov/systems-requirements-planner | 13-1111 | |||||
| Functional Expert Consultant Level II | Product Support Manager | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 5 to 7 years | One or more DoD 8570.01-M Cyber Certifications | • Conduct risk analysis, feasibility study, and/or trade-off analysis to develop, document, and refine functional requirements and specifications. |
• Consult with customers to evaluate functional requirements.
• Define project scope and objectives based on customer requirements
• Translate functional requirements into technical solutions.
• Develop and document User Experience (UX) requirements including information architecture and user interface requirements.
| https://www.cisa.gov/systems-requirements-planner | 13-1111 | ||||||
| Incident Response | Incident Response | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 1 to 5 years | One or more DoD 8570.01-M Cyber Certifications | maintains system cybersecurity monitoring operations. Analyzes, reports, and responds to detected cyber incidents | 15-1212 |
| Information Assurance/Security Specialist 2 | Security Control Assessor | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 5 to 11 years | One or more DoD 8570.01-M Cyber Certifications | • Analyze and report organizational security posture trends. |
• Analyze and report system security posture trends.
• Apply security policies to meet security objectives of the system.
• Assess adequate access controls based on principles of least privilege and need-to-know.
• Assess all the configuration management (change configuration/release management) processes
• Assess the effectiveness of security controls
• Develop procedures and test fail-over for system operations transfer to an alternate site based on system availability requirements.
• Ensure all systems security operations and maintenance activities are properly documented and updated as necessary.
• Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.
• Implement security measures to resolve vulnerabilities, mitigate risks and recommend security changes to system or system components as needed.
• Implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
• Mitigate/correct security deficiencies identified during security/certification testing and/or recommend risk acceptance for the appropriate senior leader or authorized representative.
• Plan and recommend modifications or adjustments based on exercise results or system environment.
• Properly document all systems security implementation, operations and maintenance activities and update as necessary.
• Provides cybersecurity recommendations to leadership based on significant threats and vulnerabilities.
• Verify and update security documentation reflecting the application/system security design features.
| • Verify minimum security requirements are in place for all applications. | https://www.cisa.gov/systems-security-analyst | 15-1212 | |||||
| Information Assurance/Security Specialist 3 | Security Control Assessor | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 12 to 16 years | One or more DoD 8570.01-M Cyber Certifications | • Analyze and report organizational security posture trends. |
• Analyze and report system security posture trends.
• Apply security policies to meet security objectives of the system.
• Assess adequate access controls based on principles of least privilege and need-to-know.
• Assess all the configuration management (change configuration/release management) processes
• Assess the effectiveness of security controls
• Develop procedures and test fail-over for system operations transfer to an alternate site based on system availability requirements.
• Ensure all systems security operations and maintenance activities are properly documented and updated as necessary.
• Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.
• Implement security measures to resolve vulnerabilities, mitigate risks and recommend security changes to system or system components as needed.
• Implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
• Mitigate/correct security deficiencies identified during security/certification testing and/or recommend risk acceptance for the appropriate senior leader or authorized representative.
• Plan and recommend modifications or adjustments based on exercise results or system environment.
• Properly document all systems security implementation, operations and maintenance activities and update as necessary.
• Provides cybersecurity recommendations to leadership based on significant threats and vulnerabilities.
• Verify and update security documentation reflecting the application/system security design features.
| • Verify minimum security requirements are in place for all applications. | https://www.cisa.gov/systems-security-analyst | 15-1212 | |||||
| Information Assurance/Security Specialist 4 | Security Control Assessor | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 17 to 21 years | One or more DoD 8570.01-M Cyber Certifications | • Analyze and report organizational security posture trends. |
• Analyze and report system security posture trends.
• Apply security policies to meet security objectives of the system.
• Assess adequate access controls based on principles of least privilege and need-to-know.
• Assess all the configuration management (change configuration/release management) processes
• Assess the effectiveness of security controls
• Develop procedures and test fail-over for system operations transfer to an alternate site based on system availability requirements.
• Ensure all systems security operations and maintenance activities are properly documented and updated as necessary.
• Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.
• Implement security measures to resolve vulnerabilities, mitigate risks and recommend security changes to system or system components as needed.
• Implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
• Mitigate/correct security deficiencies identified during security/certification testing and/or recommend risk acceptance for the appropriate senior leader or authorized representative.
• Plan and recommend modifications or adjustments based on exercise results or system environment.
• Properly document all systems security implementation, operations and maintenance activities and update as necessary.
• Provides cybersecurity recommendations to leadership based on significant threats and vulnerabilities.
• Verify and update security documentation reflecting the application/system security design features.
| • Verify minimum security requirements are in place for all applications. | https://www.cisa.gov/systems-security-analyst | 15-1212 | |||||
| Information Assurance/Security Specialist Senior | Security Control Assessor | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 22+ years | One or more DoD 8570.01-M Cyber Certifications | • Analyze and report organizational security posture trends. |
• Analyze and report system security posture trends.
• Apply security policies to meet security objectives of the system.
• Assess adequate access controls based on principles of least privilege and need-to-know.
• Assess all the configuration management (change configuration/release management) processes
• Assess the effectiveness of security controls
• Develop procedures and test fail-over for system operations transfer to an alternate site based on system availability requirements.
• Ensure all systems security operations and maintenance activities are properly documented and updated as necessary.
• Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.
• Implement security measures to resolve vulnerabilities, mitigate risks and recommend security changes to system or system components as needed.
• Implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
• Mitigate/correct security deficiencies identified during security/certification testing and/or recommend risk acceptance for the appropriate senior leader or authorized representative.
• Plan and recommend modifications or adjustments based on exercise results or system environment.
• Properly document all systems security implementation, operations and maintenance activities and update as necessary.
• Provides cybersecurity recommendations to leadership based on significant threats and vulnerabilities.
• Verify and update security documentation reflecting the application/system security design features.
| • Verify minimum security requirements are in place for all applications. | https://www.cisa.gov/systems-security-analyst | 15-1212 | |||||
| Information Engineer | Security Architect | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 1 to 5 years | One or more DoD 8570.01-M Cyber Certifications | • Monitor their organization’s networks for security breaches and investigate a violation when one occurs |
• Prepare reports that document security breaches and the extent of the damage caused by the breaches
• Conduct penetration testing, which is when analysts simulate attacks to look for vulnerabilities in their systems before they can be exploited
• Help computer users when they need to install or learn about new security products and procedures
| https://www.bls.gov/ooh/computer-and-information-technology/information-security-analysts.htm | 15-1212 | |||||
| Information Engineer 2 | Security Architect | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 6 to 11 years | One or more DoD 8570.01-M Cyber Certifications | • Monitor their organization’s networks for security breaches and investigate a violation when one occurs |
• Install and use software, such as firewalls and data encryption programs, to protect sensitive information
• Prepare reports that document security breaches and the extent of the damage caused by the breaches
• Conduct penetration testing, which is when analysts simulate attacks to look for vulnerabilities in their systems before they can be exploited
• Research the latest information technology (IT) security trends
• Develop security standards and best practices for their organization
• Recommend security enhancements to management or senior IT staff
| • Help computer users when they need to install or learn about new security products and procedures | https://www.bls.gov/ooh/computer-and-information-technology/information-security-analysts.htm | 15-1212 | ||||||
| Information Security Analysts | System Security Analyst | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 2 to 7 years | One or more DoD 8570.01-M Cyber Certifications | Monitor their organization’s networks for security breaches and investigate a violation when one occurs. Install and use software, such as firewalls and data encryption programs, to protect sensitive information. Prepare reports that document security breaches and the extent of the damage caused by the breaches. Conduct penetration testing, which is when analysts simulate attacks to look for vulnerabilities in their systems before they can be exploited. Research the latest information technology (IT) security trends. Develop security standards and best practices for their organization. Recommend security enhancements to management or senior IT staff | 15-1212 | |
| Information System Training Specialist | Cyber Instructional Curriculum Developer | OPM Tier 1 | Bachelor's degree in a related field or equivalent experience is required | 2 to 5 years | One or more DoD 8570.01-M Cyber Certifications | • Assess training needs through surveys, interviews with employees, or consultations with managers or instructors |
• Design and create training manuals, online learning modules, and course materials
• Review training materials from a variety of sources and choose appropriate materials
• Deliver training to employees using a variety of instructional techniques
• Assist in the evaluation of training programs
| • Perform administrative tasks such as monitoring costs, scheduling classes, setting up systems and equipment, and coordinating enrollment | https://www.bls.gov/ooh/business-and-financial/training-and-development-specialists.htm#:~:text=Training%20and%20development%20specialists%20help%20create%2C%20administer%2C%20and%20deliver%20training,in%20classrooms%20or%20training%20facilities. | 13-1151 | |||||
| Information Technologist 3 | System Adminstrator | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 5 Yrs. | One or more DoD 8570.01-M Cyber Certifications | •Provide technical support to a business or an organization's employees |
•Train non-technical workers on the business's information systems •Design systems and assess the effectiveness of technology resources
| •Determine the practicality of changes and modification of systems. | 15-1212 | ||||||
| IT Data Analyst | Data Analyst | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 2 to 5 years | One or more DoD 8570.01-M Cyber Certifications | •Analyze and define data requirements and specifications. |
•Analyze data sources to provide actionable recommendations.
•Assess the validity of source data and subsequent findings.
•Collect metrics and trending data.
•Develop data standards, policies, and procedures.
| •Provide actionable recommendations to critical stakeholders based on data analysis and findings. | https://www.cisa.gov/data-analyst | 15-2031 | |||||||
| IT Investment/Portfolio Manager | IT Investment/Portfolio Manager | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 5 to 7 years | Manages a portfolio of IT investments that align with the overall needs of mission and enterprise priorities. | 804 | 11-3021 | ||
| IT Auditor | IT Program Auditor | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 7 or more years | One or more DoD 8570.01-M Cyber Certifications | Conducts evaluations of an IT program or its individual components to determine compliance with published standards. | 805 | 15-1212 | |
| IT Security Engineer I | Information Systems Security Developer | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 2 to 5 years | One or more DoD 8570.01-M Cyber Certifications | Entry-Level, Possess basic technical knowledge of Cybersecurity principles. Under general supervision and in coordination with Government, supports integration of new and existing information systems to ensure that appropriate controls exist, that processing is efficient and accurate, and that systems procedures are in compliance with standards, guidelines, and regulations. | 15-1212 | ||
| IT Security Engineer II | Information Systems Security Developer | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 6 yrs. | One or more DoD 8570.01-M Cyber Certifications | Mid-Level, Possess working technical knowledge of IT Security\Cybersecurity principles. Under general supervision and in coordination with Government, develops Cybersecurity processes and control guidelines, assists in resolving technical problems, priorities, and methods. Possesses experience with vulnerability assessment and intrusion detection tools. Supports the design and deployment of security solutions with complex network architecture. | 15-1212 | ||
| IT Security Engineer III | Information Systems Security Developer | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 8 yrs. | One or more DoD 8570.01-M Cyber Certifications | Senior-Level, Possess in-depth technical knowledge of Cybersecurity principles. Under general direction of and in coordination with CSPP, responsible for all activities relating to Cybersecurity procedures and systems. In coordination with Government develops Cybersecurity programs and control guidelines. Confers with and advises subordinates on administrative policies and procedures and resolving technical problems, priorities, and methods. Consults with and advises other areas regarding internal controls and security procedures. Prepares activity and progress reports relating to the information systems audit function. Supports vulnerability assessment and design of intrusion detection tools for complex network architecture. | 15-1212 | ||
| IT Security Lead | Information Systems Security Manager | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 7 years | One or more DoD 8570.01-M Cyber Certifications | • Develop data protection strategies, architectures, and implementation plans. |
• Develop, document, and maintain security policies, processes, procedures, standards, and best practices.
• Ensure the protection of assets by the enforcement of security policies.
• Monitor information security events/alerts respond to, triage, and escalate as needed.
• Analyze event/alert patterns to properly interpret and prioritize threats.
• Identify trends and drive requirements aimed at fine-tuning existing policies.
• Provide technical advice and input for the support of integrated security systems and solutions.
• Maintain up-to-date information protection industry awareness and trends and be able to understand how emerging threats may potentially impact the organization.
• Create, modify, and review various reports and dashboards from our various reporting tools.
• Maintain policies and associated events.
• Make recommendations to strengthen the security posture of a computing environment as well as recommend process and technology improvements.
• Assist with incident investigations.
• Improve and challenge existing processes and procedures.
• Provide high quality, professional day-to-day execution.
| https://www.cisa.gov/systems-security-analyst | 15-1212 | |||||
| IT Security Specialist 2 | Information Systems Security Developer | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 5 to 11 years | One or more DoD 8570.01-M Cyber Certifications | • Analyze and report organizational security posture trends. |
• Analyze and report system security posture trends.
• Apply security policies to meet security objectives of the system.
• Assess adequate access controls based on principles of least privilege and need-to-know.
• Assess all the configuration management (change configuration/release management) processes
• Assess the effectiveness of security controls
• Develop procedures and test fail-over for system operations transfer to an alternate site based on system availability requirements.
• Ensure all systems security operations and maintenance activities are properly documented and updated as necessary.
• Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.
• Implement security measures to resolve vulnerabilities, mitigate risks and recommend security changes to system or system components as needed.
• Implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
• Mitigate/correct security deficiencies identified during security/certification testing and/or recommend risk acceptance for the appropriate senior leader or authorized representative.
• Plan and recommend modifications or adjustments based on exercise results or system environment.
• Properly document all systems security implementation, operations and maintenance activities and update as necessary.
• Provides cybersecurity recommendations to leadership based on significant threats and vulnerabilities.
• Verify and update security documentation reflecting the application/system security design features.
| • Verify minimum security requirements are in place for all applications. | https://www.cisa.gov/systems-security-analyst | 15-1212 | |||||
| IT Security Specialist 3 | Information Systems Security Developer | OPM Tier 2 or higher | Bachelor's degree in a related field or equivalent experience is required | 12 to 16 years | One or more DoD 8570.01-M Cyber Certifications | • Analyze and report organizational security posture trends. |
• Analyze and report system security posture trends.
• Apply security policies to meet security objectives of the system.
• Assess adequate access controls based on principles of least privilege and need-to-know.
• Assess all the configuration management (change configuration/release…
This is the start of the file's text. The full file is on GovTribe.
File details come from the government source that posted it. Updated .