1

Cisa Full Federal Jobs (NOW HIRING)

Analyze scan results and prioritize remediation activities using CVSS scores, CISA Known Exploited ... federal laws, rules, or regulations. Computer World Services is committed to the full inclusion of ...

Lead ISSO Manager

Washington, DC · Remote

$130K - $162K/yr

... with federal mandates including FISMA, Executive Order 14028, OMB M-22-09 (Zero Trust), CISA ... Full Dental Plans, Vision, ST/LT Disability, Life Insurance, and 401k matched. What We Can Offer ...

Showing results 21-40

Cisa Full Federal information

See salary details

$62K

$109.7K

$150K

How much do cisa full federal jobs pay per year?

As of Aug 22, 2026, the average yearly pay for cisa full federal in the United States is $109,713.00, according to ZipRecruiter salary data. Most workers in this role earn between $94,000.00 and $123,500.00 per year, depending on experience, location, and employer.

What is a CISA Full Federal?

A CISA Full Federal position refers to a federal employment role within the Cybersecurity and Infrastructure Security Agency (CISA), a division of the U.S. Department of Homeland Security. These positions are held by federal employees (as opposed to contractors) and may span a variety of job functions such as cybersecurity, infrastructure protection, risk analysis, and emergency communications. Individuals in these roles work to secure the nation’s critical infrastructure from cyber threats and other hazards, collaborating with public and private stakeholders. Full federal status typically offers benefits like job security, retirement plans, and health insurance.

What types of federal agencies or teams do CISA Full Federal professionals typically collaborate with, and how does this impact daily responsibilities?

CISA Full Federal professionals often work closely with a wide range of federal agencies such as the Department of Homeland Security, FBI, and other law enforcement and intelligence entities. This collaboration involves sharing threat intelligence, coordinating incident response efforts, and ensuring consistent cybersecurity practices across departments. Daily responsibilities may include participating in interagency meetings, developing joint risk assessments, and responding to cybersecurity incidents that have national security implications. These interactions foster a dynamic work environment where teamwork, clear communication, and adaptability are highly valued.

What are the key skills and qualifications needed to thrive as a CISA Full Federal, and why are they important?

To thrive as a CISA Full Federal, you need a strong background in information systems auditing, risk assessment, and compliance, typically validated by the Certified Information Systems Auditor (CISA) certification and relevant federal experience. Familiarity with federal cybersecurity frameworks (like NIST), auditing tools, and governance systems is crucial. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this field. These skills ensure rigorous protection of federal information assets, compliance with regulations, and effective collaboration across agencies.

What is the difference between Cisa Full Federal vs Cisa Part Federal?

AspectCisa Full FederalCisa Part Federal
CertificationsRequires CISA certification, federal clearance often preferredRequires CISA certification, may not need federal clearance
Work EnvironmentPrimarily federal government agencies, cybersecurity and audit rolesPart-time or contractual roles within federal agencies or contractors
Employer & IndustryFederal government, cybersecurity, complianceFederal agencies, contractors, consulting firms

The main difference between Cisa Full Federal and Cisa Part Federal lies in the scope and commitment. Cisa Full Federal typically involves full-time roles within federal agencies requiring federal clearance, while Cisa Part Federal often refers to part-time or contractual positions. Both roles require CISA certification and focus on cybersecurity and compliance within the federal sector.

More about Cisa Full Federal jobs

What cities are hiring for Cisa Full Federal jobs?

Cities with the most Cisa Full Federal job openings:

What states have the most Cisa Full Federal jobs?

States with the most job openings for Cisa Full Federal jobs include:

What job categories do people searching Cisa Full Federal jobs look for?

The top searched job categories for Cisa Full Federal jobs are:

Infographic showing various Cisa Full Federal job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 80% Full Time, 18% Part Time, and 1% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $109,713 per year, or $52.7 per hour.

IT Cybersecurity Specialist (INFOSEC) - Arlington, VA

MSCCN

Arlington, VA • On-site

Full-time

Posted 11 days ago


Job description


ATTENTION MILITARY AFFILIATED JOB SEEKERS - Our organization works with partner companies to source qualified talent for their open roles. The following position is available to Veterans, Transitioning Military, National Guard and Reserve Members, Military Spouses, Wounded Warriors, and their Caregivers. If you have the required skill set, education requirements, and experience, please click the submit button and follow the next steps. All positions are onsite, unless otherwise stated.
IT Cybersecurity Specialist (INFOSEC) (Cyber Exercise Planner)
Series/Grade: GS-2210-13
Cybersecurity and Infrastructure Security Agency Infrastructure Security Division
Location: Arlington, VA
Clearance: Must be able to attain/maintain a Top Secret / Sensitive Compartmented Information
Who May Apply:
  • Veterans with a 30% or more service-connected disability rating
  • Individuals eligible under Schedule A (5 CFR 213.3102(u))

Travel: Up to 25%
Summary:
This position is located in the Cybersecurity and Infrastructure Security Agency (CISA), Infrastructure Security Division (ISD). CISA is the Nation's risk advisor, working with partners across government and industry to defend against today's threats and build more secure and resilient infrastructure.
The incumbent serves as an IT Cybersecurity Specialist (INFOSEC) supporting national cybersecurity exercise programs. The position contributes to CISA's efforts to build national capacity and capabilities to enhance the security and resilience of critical infrastructure through the planning, design, development, conduct, and evaluation of cybersecurity exercises.
The position requires advanced cybersecurity knowledge, experience applying Homeland Security Exercise and Evaluation Program (HSEEP) principles, and the ability to work with federal, state, local, tribal, territorial, private sector, and international partners.
Major Duties:
As an IT Cybersecurity Specialist (INFOSEC), GS-2210-13, you will:
  • Design, develop, and conduct cybersecurity exercises in accordance with the Homeland Security Exercise and Evaluation Program (HSEEP).
  • Plan and execute discussion-based and operations-based exercises, including seminars, workshops, games, drills, tabletop exercises, functional exercises, and full-scale exercises.
  • Lead diverse, multidisciplinary intra-agency and interagency groups to design, develop, deliver, and evaluate cybersecurity exercises.
  • Provide subject-matter expertise to guide exercise design and delivery, including control, facilitation, and evaluation of exercises.
  • Develop and maintain exercise support products and services, including CISA Tabletop Exercise Packages and related cybersecurity exercise tools.
  • Develop cybersecurity scenarios based on current and emerging technology, adversary tactics, techniques, and procedures, and stakeholder exercise objectives.
  • Conduct interactive training and exercise events to create effective learning environments for technical and non-technical audiences.
  • Collaborate with critical infrastructure owners and operators, IT security experts, emergency management officials, and government partners to support cybersecurity objectives.
  • Raise awareness and improve coordination with federal, SLTT, private sector, and international partners on gaps in cyber management practices and recommended process improvements.
  • Promote collaborative efforts to reduce risk and threats to critical information, enterprise, communications, and control systems.
  • Build and support regional and local cybersecurity partnerships, coalitions, and information-sharing efforts.
  • Promote awareness of cyber policy, strategy, and CISA cybersecurity capabilities among government and private sector partners.
  • Assess stakeholder needs, conduct gap analyses, and assist in defining requirements for cybersecurity exercise programs and products.
  • Publish after-action reviews and present technical findings, observations, and recommendations to technical and non-technical audiences.
  • Communicate key exercise findings to senior leadership.
  • Prepare decision papers, reports, analyses, memos, speeches, talking points, briefings, and correspondence for senior federal, departmental, and agency leadership.
  • Respond to inquiries and requests for information from higher headquarters, other federal agencies, Congress, the media, state and local governments, and the private sector, coordinating responses as appropriate.
  • Serve as a technical advisor on program effectiveness, efficiency, policy, direction, and cybersecurity exercise implementation.
  • Resolve complex issues involving organizations and stakeholders with differing or competing interests.

How You Will Be Evaluated:
  • Applicants should ensure their resumes clearly address:
  • Cybersecurity exercise planning, design, conduct, facilitation, or evaluation.
  • HSEEP principles and exercise methodology.
  • Cybersecurity or critical infrastructure risk and resilience.
  • Stakeholder coordination across government and private sector partners.
  • Development of after-action reports, briefings, decision papers, or technical materials.
  • Ability to present technical cybersecurity information to non-technical audiences.
  • Experience leading or coordinating multidisciplinary teams or working groups.
  • Experience identifying gaps and recommending process, policy, or program improvements.

Additional Information
Resume MUST Include:
  • Hours worked per week for each role (i.e. 40hrs/week)
  • Month and year start/end date for every role.
  • Do NOT include photographs or social media links (e.g., LinkedIn)

Required Experience
Qualifications:
  • Applicants must meet the GS-2210 Information Technology Management qualification requirements and specialized experience requirements for the GS-13 grade level.
GS-2210 Competency Requirements:
Applicants must demonstrate proficiency in the following competencies at the level required for GS-13 positions:
  • Attention to Detail
  • Customer Service
  • Decision Making
  • Information Management
  • Interpersonal Skills
  • Oral Communication
  • Problem Solving
  • Teamwork
  • Technical Competence
Competencies:
Applicants may be evaluated on the following competencies:
  • **Technical Competence:** Applies cybersecurity, infrastructure security, and exercise-planning knowledge to design, deliver, and evaluate cybersecurity exercises.
  • **Information Management:** Gathers, organizes, analyzes, and presents cybersecurity exercise information, stakeholder input, after-action findings, and program data.
  • **Problem Solving:** Identifies cybersecurity capability gaps, exercise design challenges, stakeholder coordination issues, and process improvement opportunities.
  • **Oral Communication:** Presents cybersecurity exercise content, findings, and recommendations to technical and non-technical audiences, including senior leaders and external partners.
  • **Attention to Detail:** Prepares accurate exercise products, after-action reviews, reports, briefings, and technical materials.
  • **Interpersonal Skills:** Builds and maintains effective working relationships with federal, SLTT, private sector, international, and internal CISA stakeholders.
  • **Customer Service:** Works with partners and stakeholders to assess needs, provide guidance, resolve issues, and support cybersecurity exercise objectives.
  • **Decision Making:** Makes sound recommendations on exercise design, stakeholder engagement, resource needs, program priorities, and corrective actions.
  • **Teamwork:** Leads or contributes to multidisciplinary groups supporting cybersecurity exercise planning, delivery, and evaluation.

Preferred Experience
For GS-13 and above, Information Management, Problem Solving, and Technical Competence generally require advanced proficiency.
Specialized Experience:
To qualify for the GS-13 grade level, applicants must demonstrate at least one year of specialized experience equivalent to the GS-12 grade level in the federal service, or equivalent public or private sector experience, performing work directly related to cybersecurity exercise planning, cybersecurity training, critical infrastructure security, or cybersecurity program coordination.
Specialized experience must include experience performing duties such as:
  • Contributing to efforts to build national, regional, or organizational cybersecurity capacity and resilience through the planning and conduct of cybersecurity exercise programs in accordance with HSEEP principles.
  • Leading or coordinating diverse, multidisciplinary groups to design, develop, deliver, or evaluate cybersecurity exercises.
  • Providing subject-matter expertise to guide exercise design, control, facilitation, execution, or evaluation.
  • Raising awareness and improving coordination with federal, state, local, tribal, territorial, private sector, or international partners on cybersecurity risk, cyber management practices, exercise findings, or recommended process improvements.
  • Developing, conducting, or supporting discussion-based or operations-based cybersecurity exercises, such as seminars, workshops, games, drills, tabletop exercises, functional exercises, or full-scale exercises.
  • Preparing after-action reviews, technical reports, decision papers, briefings, talking points, or senior-leader communications related to cybersecurity exercises, cyber risk, or infrastructure resilience.
  • Collaborating with critical infrastructure owners and operators, cybersecurity professionals, emergency management officials, or government partners to support organizational cybersecurity objectives.
  • Identifying capability gaps and recommending improvements to cybersecurity plans, policies, procedures, exercise products, or stakeholder coordination processes.
Experience should demonstrate advanced knowledge of cybersecurity and infrastructure security concepts, principles, and operations; the ability to solve complex cybersecurity or infrastructure security challenges; and the ability to communicate technical information to technical and non-technical audiences.