D

ITSPEC (INFOSEC) (Title 5)

Department of the Air Force

Posted today

Job Requirements

Fort Smith, AR
Secret Polygraph Unspecified
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries

Job Description

Duties

GS-11 DUTIES
1. Manages the COMSEC account for the Wing/Base and subordinate units. Ensures that the COMSEC Responsible Officer's, Secure Telephone Unit Voice Responsible Officer's, and FORTEZZA Responsible Officers, comply with Air Force, National Guard, state, Federal laws and applicable regulations. Act as the sole point of contact to the wing commander concerning the Wing COMSEC posture. Provide guidance to unit commanders, CRO's, SRO's SVRO's, FRO's, and COMSEC users. Establish training programs for CRO's, SRO's, and SVRO's, FRO's and alternates. Report deviations from established COMSEC and Security guidelines to higher headquarters. Assure semi-annual functional reviews of all COMSEC users' accounts are performed. Manages the AFEKMS program for the Wing/Base. Initializes the system, performs system backups, determines operator access and control functions (privilege management), reloads and configures the operating system's parameters. Installs hardware and software and trains alternate(s) in the AFEKMS operations. Provides Data Transfer Device Modern Key transfer device training to assigned CROs. Prepares Emergency Action Plans Operating instruction to ensure that the EAPs can be implemented immediately. Itemizes procedures on task cards that are necessary while simultaneously preventing compromise of COMSEC material. Conducts and documents semi-annual dry runs involving all personnel associated with the COMSEC account.

2. Serves as the Base Computer Security Manager. Establishes and publishes base-wide policy, as required, to effectively manage the Wing/Base COMPUSEC programs. Serves as Wing/Base Information Systems Security Manager. Assists all Wing/Base organizations in the development of their individual COMPUSEC program. Manages, provides guidance and assists in the preparations of all certification and accreditation packages in accordance with prescribing directives. Makes recommendations to the Designated Approval Authority. Uses state of the art information security software and hardware tools to gather information and manage security on assigned telecommunication networks and in the Wing/Base "firewall" or "Barrier Reef" software and hardware. Analyzes the information gathered to determine vulnerabilities, threats, and detect any compromises. Utilizes approved software to ensure Ensures user password configuration and use meets current standards. May be required to assist investigating agency on cases of sensitive matters. Manage the Information Protection Assurance Assessment & Assistance Program for the wing, tenants, and GSUs. Work with the Network Control Center, and the Regional Operations Security Control center, to implement procedures to protect information on all networks managed by the NCC. Performs IPAAP IAAP assessments, per prescribing directives, of all wing units and assigned GSUs.

3. Manages, develops, and conducts the base computer Security Awareness Training and Education Information Assurance Awareness Program. Maintain master records of SATE Information Assurance Awareness training for the Wing and supported GSU's, providing statistical data to command authorities as required. Serves as the Telecommunications Monitoring and Assessment Program Manager. Evaluates, advises, and trains agencies organizations and users throughout the entire Wing on TMAP requirements. Manages the Base Emissions Security (EMSEC) program. Assists computer systems users on all matters concerning Emissions Security. Performs EMSEC inspections and certifies areas/systems as appropriate. Complies with EMSEC directives and submits reports to appropriate MAJCOM. Conducts EMSEC customer education. Establishes, maintains, and exercises Information Condition adjustment plans and procedures, to ensure mission critical systems capabilities are maintained, and sustained. Responds to downward directed and local INFOCON change requirements. Advises local Command authorities of the necessities for local INFOCON changes, based on situation.

4. Serves as the central focal point for all Time Compliance Network Orders (TCNO) system vulnerability alerts. Ensures Network Control Center, local functional system administrators (FSA's), Client Support Administrators (CSA's) and users, install all security patches comply with security procedures, and identified vulnerabilities are corrected. Reports compliance status to higher headquarters within mandated time frames. Assists users in determining equipment requirements to prescreen and determine if proposed system meets current COMPUSEC needs of the user requirements, to include future expansion, and comply with the AF computer security standards. Reviews Communications Systems Requirements Documents (CSRD's), for new Automated Information Systems (AIS) or modifications to existing AIS's, addressing COMPUSEC requirements.

GS-11 AND GS-12 DUTIES CONTINUED UNDER THE EDUCATION SECTION.

Requirements

Conditions of employment


Conditions of Employment

If you are a male applicant who was born after 12/31/1959 and are required to register under the Military Selective Service Act, the Defense Authorization Act of 1986 requires that you be registered or you are not eligible for appointment in this agency ( ).
  • Federal employment suitability as determined by a background investigation.
  • May be required to successfully complete a probationary period.
  • Participation in direct deposit is mandatory.
  • Information Assurance Certification is a condition of employment. Per DoD 8570.01-M, the incumbent must achieve the appropriate IA certification within six months of assignment of these duties.
  • Must be able to obtain/maintain appropriate security clearance; may have to qualify for a top secret clearance.
  • Must be able to achieve Certificate 8570 IAM Level II or 8140 equivalent within twelve months of assignment of these duties.
Qualifications

GENERAL EXPERIENCE:
Work in this series includes managing, supervising, leading, administering, developing, delivering, and supporting information technology (IT) systems and services. This series covers only those positions for which the paramount requirement is knowledge of IT principles, concepts, and methods, e.g., data storage, software applications, networking.

SPECIALIZED EXPERIENCE :
GS-11 - 1-year specialized experience equivalent to at least the next lower grade. In addition to the OPM IORs (Alternative A) specialized experience examples, specialized experience includes experience, education, or training that approaches techniques and requirements appropriate to an assigned computer applications area or computer specialty area in an organization. Experience planning the sequence of actions necessary to accomplish the assignment where this entailed coordination with others outside the organizational unit and development of project controls. Experience that required adaptations of guidelines or precedents to meet the needs of the assignment. Experience preparing documentation on cost/benefit studies where is involved summarizing the material and organizing it in a logical fashion.

GS-12- 1-year specialized experience equivalent to at least the next lower grade.

Education

GS-11 DUTIES CONTINUED.
4 (Continued). Provides technical oversight, guidance, and direction to lower graded personnel. Consults with and provides advice to planning and implementation (P&I) function on relevant issues. Prepares and maintains files and publications IAW current directives to include both paper and electronic media.

5. Coordinates with higher headquarters (HHQ) elements, Program Management Offices, Specific System/Hardware Support Elements, original equipment manufacturer (OEM) vendors and vendor contracted support facilities for issue resolution. Research includes using various means and media to obtain needed information to accomplish the task. May require the use of various stand alone (e.g., paper based, CD, DVD, etc.) or on-line (network or web based) methodologies to obtain needed information. Provides input to and coordinate on relevant support agreements that require section support to make sure they correctly identify products and services needed. Develops, implements, and maintains work center training programs. Plans and schedules tasks and training activities for drill status guard members. Oversees and conducts on-the-job training (OJT) for personnel. Creates and develops lesson plans. Ensures availability of facilities and training aids. Monitors the training status of personnel and ensures that supplemental and/or remedial training is accomplished. Responsible for documentation of accomplished training in a timely manner. May require the use of a directed automated training documentation system. Based on local workload, may coordinate and prepare item for contract or warranty repair or replacement as required. Receives, inspects, installs, and verifies the proper operation of equipment returned. Accomplishes required documentation.

6. Performs other duties as assigned.

GS-12 DUTIES
1. Serves as a technical expert and focal point for Information Technology (IT) security and information assurance policies, planning, programs, initiatives, certification and accreditation. Provides advice and assistance regarding security aspects of processing, storage, retrieval, transmission, and access of classified and unclassified information. Administers and monitors installation compliance with all applicable DoD, USAF, National Guard Bureau (NGB) and Air National Guard (ANG) Information Assurance regulations and policies. Administers and maintains the organization certification & accreditation process for assigned SCIF(s) using the Risk Management Framework (RMF), and coordinates, compiles and maintains all certification & accreditation documentation for appropriate accreditation authorities. Reviews and implements local policies regarding system access, network rights, and physical access to systems and equipment. Conducts risk and vulnerability assessments of DoD classified information systems to identify associated vulnerabilities, risks and protection needs. Leads or serves as a member of the configuration control board for applicable installation facilities/networks

2. Evaluates and assesses vulnerabilities of classified network and application server hardware, operating system software, and peripheral network equipment such as routers, bridges, switches, attached cabling system, network interface cards, modems, multiplexers, and concentrators. Updates hardware and software architecture databases to reflect installations, turn-ins, and changes in reportable software. Provides input to the ANG Continuity of Operation Plan (COOP) procedures for system disaster recovery. COOP recovery includes reestablishment of systems at multiple sites and locations. Conducts evaluations to ensure compliance with applicable standards. Ensures system backups are performed to ensure expedient restoration of respective network equipment.

3. Reviews national, DOD and other policies, program proposals, operational and strategic plans, and identifies issues requiring tier two actions or inputs. Based on these reviews, provides technical recommendations for changes to the security posture to the Wing Information System Security Manager (ISSM). Prepares and presents applicable briefings and reports to high-level managers. Advises the Wing ISSM and Group/Squadron Commander on the impact of tier two level Information Assurance (IA) and Computer Network Defense (CND) policy on squadron group/squadron activities. Implements audit measures to ensure activity compliance with regulatory requirements. Participates in inspections and surveys of computer system. Incumbent makes recommendations to the Wing ISSM on the approval of various computer operations based on security guidelines. When feasible, provides alternatives to the Wing ISSM and Group/Squadron Commander to meet security requirements based on the unique needs of the organization and mission requirements. Develops guidance papers on security issues affecting classified systems, enclaves, and applications.

4. Analyzes equipment and software reliability and suitability for vulnerability assessment utilization. Conducts analyses of classified network usage, hardware and software capabilities, ineffective practices or procedures, equipment shortcomings, and other relevant factors. Recommends methods and procedures and coordinates corrective action to optimize utilization of present equipment. Uses benchmarks, performance measurement, and evaluation data, in conjunction with vulnerability assessment techniques. Develops recommendations or proposals involving a variety of specialized systems to improve operational efficiency.

5. Performs other duties as assigned.

Additional information

Veteran Preference may apply if the first area of consideration are not met.

Veterans Information: Veterans' information must be validated by formal submissions including all necessary supporting documentation. You must provide acceptable documents for eligibility. Acceptable documentation may be:

1. A copy of your DD-214, "Certificate of Release or Discharge from Active Duty," which shows dates of service and discharge under honorable conditions.
2. A "certification" that is a written document from the armed forces that certifies the service member is expected to be discharged or released from active duty service in the armed forces under honorable conditions not later than 120 days after the date the certification is signed.
3. You may obtain a letter from the Department of Veterans Affairs reflecting your level of disability for preference eligibility by visiting a VA Regional Office, contacting a VA call center or online. If claiming over 30% disability a SF-15 is required to be submitted with your letter.
group id: DOAF