This position is located in the U.S. Department of Education (ED) Office of Federal Student Aid (FSA). FSA is a Principal Office of the United States Department of Education responsible for awarding billions of dollars in federal student aid funds. Our vision is to be the most trusted and reliable source of student financial aid, information, and services in the nation.
Qualifications:
Minimum Qualification Requirements
You may meet the minimum qualifications for the GS-13, if you possess the specialize experience.
Specialized Experience for the GS-13
One year of experience in either federal or non-federal service that is equivalent to at least a GS-12 performing two (2) out of three (3) of the following duties or work assignments:
1. Experience conducting cybersecurity risk assessments and supporting Security Assessment and Authorization process efforts.
2. Experience in ensuring vulnerabilities and Plans of Actions and Milestones (POA&Ms) are processed in a timely manner and remediation plans are in place for identified vulnerabilities.
3. Experience supporting successful implementation and functionality of security requirements and information technology (IT) policies and procedures consistent with the organization's mission and goals.
Basic Experience Requirements
You must possess IT related experience (paid or unpaid experience and/or completion of specific, intensive training (e.g., IT certification), as appropriate) demonstrating each of the four competencies listed below.
1. Attention to Detail - Is thorough when performing work and conscientious about attending to detail.
2. Customer Service - Works with clients and customers (i.e., any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services.
3. Oral Communication - Expresses information (e.g., ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (e.g., technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately.
4. Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations.
Knowledge, Skills, and Abilities (KSAs)
The quality of your experience will be measured by the extent to which you possess the following knowledge, skills and abilities (KSAs). You do not need to provide separate narrative responses to these KSAs, as they will be measured by your responses to the occupational questionnaire (you may preview the occupational questionnaire by clicking the link at the end of the Evaluations section of this vacancy announcement).
1. Knowledge of cybersecurity risk management processes (e.g., methods for assessing and mitigating cybersecurity risks).
2. Knowledge of cybersecurity and privacy principles; vulnerabilities; impacts of cybersecurity lapses; and applicable business processes of operations of customer organization.
3. Knowledge of vulnerability information dissemination sources (e.g. alerts, advisories, errata and bulletins); and incident response and handling methodologies.
4. Ability to integrate cybersecurity requirements into the system modification process using applicable baseline security controls as one of the sources for security requirements and ensuring a robust software quality control process.
5. Skill in researching, choosing, interpreting, modifying, and applying available guidelines foradaptation to specific cybersecurity problem or issues.
Education:
Education cannot be substituted for experience for this position and grade level.
Employment Type: OTHER