Campus Pride Jobs

Mobile Campus Pride Logo

Job Information

National Institute of Standards and Technology IT Specialist (Security) in Gaithersburg, Maryland

Summary The Department of Commerce ranked top 5 in the 2023 Best Places to Work in the Federal Government amongst large agencies for the 12th year in a row! The ranking showcases the Department's continued commitment to increasing our employee engagement, employee satisfaction, and positive perceptions towards diversity, equity, accessibility, and inclusion. This notice is issued under direct-hire authority to recruit new talent to occupations for which NIST has a severe shortage of candidates. Responsibilities The Engineering Laboratory (EL) promotes U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology for engineered systems, which enhances economic security and improves quality of life. The EL's Data, Security, and Technology Group is looking for an Information Technology Specialist (Security) to join our team! If selected, your responsibilities will include: Continuous Monitoring and Security SupportProcess: Implement ongoing continuous monitoring for EL Information Technologist Security Officers (ITSO's). Review daily reports, prioritize findings, and plan mitigation based on impact and criticality. Write procedures for researchers and staff to follow to self-mitigate specific vulnerabilities. Collaborate with researchers and staff to apply necessary patches or updates, ensuring compliance with DOC mandates. Collaborate with other support groups to recommend security improvements. Provide technical support to researchers trying to follow mitigation procedures. Identify false positives and potential accepted risks and report to ITSOs for formal reporting. Provide progress updates to ITSOs for reporting to the CISO. Implementation of Vulnerability and Configuration Management: Address vulnerabilities across Windows, Mac, Linux, and research devices by working with researchers to determine appropriate mitigation actions. Provide security upport for laboratory video endpoints, video conferencing systems, printers, and other networked devices. Support configuration management based on NIST requirements for all hardware and software types. Develop and execute remediation strategies with the technical team. Patch and update software and operating systems. Provide scanning support to update reports and remove findings. Address vulnerabilities on both on-premises and AWS server systems. Remediate vulnerabilities in client, server, and specialized research hardware, including legacy systems and localized networking. Requirements Conditions of Employment Qualifications Basic Requirements: This standard allows eligibility through meeting either the requirements specified in the section titled Undergraduate or Graduate Education or the requirements specified in the section titled Experience. All academic degrees and coursework must be from accredited or pre-accredited institutions A. Undergraduate or Graduate Education: Degree in computer science, engineering, information science, information systems management, mathematics, operations research, statistics, or technology management OR a degree that provided a minimum of 24 semester hours in one or more of the fields identified above and required the development or adaptation of applications, systems or networks. B. Experience: Experience must be IT related; the experience may be demonstrated by paid or unpaid experience and/or completion of specific, intensive training (for example, IT certification), as appropriate. For all positions individuals must have IT-related experience demonstrating each of the four competencies listed below. The employing agency is responsible for identifying the specific level of proficiency required for each competency at each grade level based on the requirements of the position being filled. 1. Attention to Detail - Is thorough when performing work and conscientious about attending to detail. 2. Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services. 3. Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately. 4. Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations. In addition to the basic requirements listed above, applicants must have one year (52 weeks) of specialized experience equivalent to at least the GS-09 level (ZP-II at NIST). Specialized experience is defined as experience with: - Administering and troubleshooting Windows, Mac, and/or Linux client systems. - Managing Linux and Windows server systems. - Supporting research devices like sensors, network equipment, and Raspbian devices. - Performing patching, vulnerability remediation, and/or secure configuration. - Writing procedures and providing technical support to technical and non-technical end-users - Diagnosing and troubleshooting patching and OS update issues. OR 3 full years of progressively higher level graduate education leading to a Ph.D. or equivalent doctoral degree. OR Ph.D. or equivalent doctoral degree. Experience refers to paid and unpaid experience, including volunteer work done. We will credit all qualifying volunteer experience in your application. The qualification requirements in this vacancy announcement are based on the U.S. Office of Personnel Management (OPM) Qualification Standards Handbook. Applicant Reconsideration Education This position allows applicants to qualify with education. Transcripts must be submitted to validate that the education requirement has been met. Unofficial transcripts will be accepted in the application package. However, an official copy will be required prior to a final offer of employment. Education completed outside of the U.S. must be evaluated by an accredited organization to ensure that it is comparable to education received in accredited institutions in the U.S. Click here to view a listing of accredited organizations from the Department of Education's website. A copy of the foreign education evaluation (containing the results with a course by course listing) is required with your application. Additional Information This position is covered under NIST's Alternative Personnel Management System (APMS). The APMS is a pay-for-performance system with excellent HR flexibilities to help NIST recruit and retain top talent. Find out more about the APMS here! Your application package may be shared with other selecting officials at NIST for similar opportunities and additional selections may be made from this vacancy. Click all links in this vacancy announcement to view additional information or instructions. All documents submitted for this announcement must be legible in order to make qualification or eligibility determinations. A probationary period may be required. We may share your application package with other selecting officials at NIST with opportunities like this one. Additional selections may be made through this vacancy. NIST strives to build a flexible and encouraging work environment to bring out the best in our employees. To help our employees balance responsibilities at home and at work, NIST offers a variety of work-life flexibilities such as: Telework Flexible work schedules Paid parental leave Paid vacation Sick leave Family-friendly leave Childcare subsidy program for qualifying families Child and elder-care resources On-site childcare center Lactation spaces Wellness programs Fitness center Employee assistance programs

DirectEmployers