This IT Specialist (Security) position is located in the Office and Information and Technology (OI&T), Office of Information Security (OIS), Information Security Office (ISO), Cyber Security Operations Center (CSOC). The Office of Information and Technology (OI&T) provides adaptable, secure, and cost- effective technology services across the Department of Veterans Affairs (VA).
Major Duties: Knowledge of information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption). Knowledge of defense-in-depth principles and network security architecture. Knowledge of cyber defense and information security policies, procedures, and regulations. Skill to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
Ability to interpret the information collected by network tools (e.g. Ns lookup, Ping, and Traceroute). Determine tactics, techniques, and procedures (TTPs) for intrusion sets. Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings). Knowledge of adversarial tactics, techniques, and procedures. Skill in collecting data from a variety of cyber defense resources. Skill in performing packet-level analysis.
Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources. Coordinate with enterprise-wide cyber defense staff to validate network alerts. Ensure that cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level. Knowledge of the common attack vectors on the network layer.
Ability to apply techniques for detecting host and network-based intrusions using intrusion detection technologies. Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack. Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.
Reconstruct a malicious attack or activity based off network traffic. Knowledge of incident response and handling methodologies. Skill in using incident handling methodologies. Perform security reviews and identify security gaps in security architecture resulting in recommendations for inclusion in the risk mitigation strategy. Knowledge of cyber defense and vulnerability assessment tools and their capabilities.
Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code). Skill in assessing security controls based on cybersecurity principles and tenets. (e.g., CIS CSC, NIST SP 800-53, Cybersecurity Framework, etc.).
Knowledge of Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools and applications. Work Schedule: Monday - Friday, 8:00am to 4:30pm Compressed/Flexible: Compressed/flexible schedule available at the manager's discretion Telework: This position may be authorized for telework. Virtual: This is not a virtual position.
Position Description/PD#: IT Specialist (Security)/PD17400A Relocation/Recruitment Incentives: Not Authorized Permanent Change of Station (PCS): Not Authorized PCS Appraised Value Offer (AVO): Not Authorized
There is no educational substitution at this grade level.
This position is with Deputy Assistant Secretary for Information and Technology, Department of Veterans Affairs.
The posted pay range is $106437 – $138370/yr.
This position is eligible for telework.
This position requires a Other security clearance.
Applications close on 2026-10-07.
This position is open under the 'Fed Transition' hiring path.
Source: USAJOBS.gov — U.S. Federal Government
Apply on official site →