Supervisory Cyber Threat Analyst

Cybersecurity and Infrastructure Security AgencyArlington, Virginiausajobspublished 10/05/2026
Must-have:FinTechSecurityLead

This announcement is issued under the Direct Hire Authority (DHA) to recruit for positions for which there is a critical hiring need. Selectee(s) will receive a career or career-conditional appointment in the competitive service and may be required to serve a one year probationary period. The official title of this position is Supervisory IT Cybersecurity Specialist (INFOSEC), GS-2210-14.

Major duties

Typical work assignments at the full performance level include, but are not limited to: Make recommendations to achieve a sound information assurance and security environment that is fully integrated within CISA strategy. Monitor operational environment and report on adversarial activities which fulfill leadership's priority information requirements. Gather information and develop detailed Operational Plans and Orders supporting requirements. Develop detailed plans for the conduct or support of the applicable range of cyber operations through collaboration with other planners, operators and/or analysts. Lead new security technologies implementation activities. Plan the work to be accomplished by subordinate civilian and contractor.

Qualifications

Do NOT copy and paste the duties, specialized experience, or occupational assessment questionnaire from this announcement into your resume as that will not be considered a demonstration of your qualifications for this position. Your resume must describe your work and experience, in your own words. To be considered minimally qualified for this position, you must demonstrate that you have the required proficiency level of competencies and experience for the respective grade level in which you are applying. COMPETENCY REQUIREMENT: Experience must be Information Technology (IT)-related; the experience may be demonstrated by paid or unpaid experience and/or completion of specific, intensive training (for example, IT certification), as appropriate. You must have IT-related experience demonstrating each of the required competencies listed below and must meet or exceed the minimum proficiency level established for each by grade level. For more information, see Competency-Based Qualification Standard for the Information Technology Management Series, 2210. You qualify at the GS-14, if you have the following competencies:

  • Attention to Detail - Is thorough when performing work and conscientious about attending to detail. (Minimum Proficiency Level: 4)
  • Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services. (Minimum Proficiency Level: 4)
  • Decision Making - Makes sound, well-informed, and objective decisions; perceives the impact and implications of decisions; commits to action, even in uncertain situations, to accomplish organizational goals; causes change. (Minimum Proficiency Level: 3)
  • Information Management - Identifies a need for and knows where or how to gather information; organizes and maintains information or information management systems. (Minimum Proficiency Level: 4)
  • Interpersonal Skills - Shows understanding, friendliness, courtesy, tact, empathy, concern, and politeness to others; develops and maintains effective relationships with others; may include effectively dealing with individuals who are difficult, hostile, or distressed; relates well to people from varied backgrounds and different situations. (Minimum Proficiency Level: 4)
  • Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately. (Minimum Proficiency Level: 3)
  • Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations. (Minimum Proficiency Level: 4)
  • Teamwork - Encourages and facilitates cooperation, pride, trust, and group identity; fosters commitment and team spirit; works with others to achieve goals. (Minimum Proficiency Level: 4)
  • Technical Competence - Uses knowledge that is acquired through formal training or on-the-job experience to perform one's job; works with, understands, and evaluates technical information related to the job; advises others on technical issues. (Minimum Proficiency Level: 4)

AND SPECIALIZED EXPERIENCE: In addition to meeting the competency requirement listed above, you must have at least one year of specialized experience at the next lower GS-grade level (or equivalent). Specialized experience is experience that has equipped you with the particular competencies/knowledge, skills, and abilities to successfully perform the duties of the position and is typically in or related to the work of the position to be filled. Such experience is typically gained in the IT field or through the performance of work where the primary concern is IT. You qualify at the GS-14 grade level, if you have:

  • At least one (1) year of specialized experience at the GS-13 grade level (or equivalent) performing all the following duties: Leading or supervising a cybersecurity, cyber operations, OR cyber threat analysis team; including planning work, assigning tasks, evaluating performance or work products, and managing workloads or operational priorities; Applying cyber threat, vulnerability, incident, network defense, or security operations information to support cyber defense activities, such as incident response, threat hunting, security operations, vulnerability response, detection development, or risk mitigation; OR Developing, implementing, or improving cybersecurity plans, procedures, playbooks, workflows, analytic products, or operational processes for cyber defense, cyber operations, or cyber threat analysis missions or capabilities.

Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic; religious; spiritual; community, student, social). Volunteer work helps build critical competencies, knowledge, and skills and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience. All qualification requirements must be met by the closing date of this announcement.

Education

Education may not be substituted for experience. You must meet the qualification requirements specified in the "Qualifications" section of this announcement.

Requirements

You must be a U.S. citizen. Complete the initial online assessment and USA Hire Assessment, if required. Selective Service - Males born after 12/31/59 must be registered or exempt from Selective Service, see http://www.sss.gov/ All Federal employees are required to participate in Direct Deposit/Electronic Funds Transfer for salary payments. DHS uses E-Verify, an Internet-based system, to confirm the eligibility of all newly hired employees to work in the United States. Learn more about E-Verify, including your rights and responsibilities. You must be able to obtain and maintain a security clearance suitable for Federal employment as determined by a background investigation. This may include a credit check, a review of financial issues, as well as certain criminal offenses and illegal use or possession of drugs. This position may be designated as essential personnel. Essential personnel must be able to serve during continuity of operation events without regard to declarations of liberal leave or government closures due to weather, protests, and acts of terrorism or lack of funding. Failure to report for or remain in this position may result in disciplinary or adverse action in accordance with applicable laws, rules, and regulations (5 U.S.C. 7501-7533 and 5 CFR Part 752, as applicable). This position has been identified as a drug testing designated position (TDP) for purposes of the CISA's Drug-Free Workplace Program. All applicants tentatively selected for this position will be required to submit to a drug test to screen for illicit/illegal drug use prior to receiving a final offer of employment. A final offer of employment is contingent upon a negative drug test result. After appointment, you may be subject to periodic random drug testing. You are required to file a Confidential Financial Disclosure Report (OGE-450) upon entering the position, as well as annually.