Jobs › Ohio › Wright-Patterson AFB › RISK MANAGEMENT & CYBERSECURITY SPECIALIST- ALTERNATE HIRING AUTHORITY
RISK MANAGEMENT & CYBERSECURITY SPECIALIST- ALTERNATE HIRING AUTHORITY
Air Force Materiel Command is hiring for the job of RISK MANAGEMENT & CYBERSECURITY SPECIALIST- ALTERNATE HIRING AUTHORITY, Wright-Patterson AFB, Ohio (On-site). This is a Cybersecurity job in the governance, risk, and compliance field, with a posted range of $132751 - $181428 Per Year. Review the full details below and apply directly with Air Force Materiel Command.
Click on "Learn more about this agency" button below for IMPORTANT additional information. The primary purpose of this position is to serve as a Cybersecurity Specialist, responsible for designing and assessing the security architecture of Air Force systems within the Air Force Intelligence Community (IC).This role involves performing in-depth security architecture reviews for AF IC Cross Domain Solutions (CDS)
Qualifications: In order to qualify, you must meet the General experience requirements described in the Office of Personnel Management (OPM) Qualification Standards for General Schedule Positions, Competency-Based Qualification Standard for the Information Technology Management Series BASIC REQUIREMENT OR INDIVIDUAL OCCUPATIONAL REQUIREMENT: For positions at the GG-12, GG-13, GG-14, or GG-15 grade levels, applicants may qualify by meeting or exceeding the minimum proficiency level established for each of the required competencies, in addition to meeting the specialized experience requirement as demonstrated through the assessment of skills identified through the agency job analysis. There may be instances where applicants do not fully meet the competency requirements outlined in this standard but are nonetheless demonstrably well qualified to perform the work. Agencies should exercise judgment in applying these standards, as they have flexibility to qualify an applicant with a deficit in one area if that deficit is offset by strengths in other areas identified through the job analysis. Any rationale for such deviations must be thoroughly documented. In addition to meeting the basic requirement above, to qualify for this position you must also meet the qualification requirements listed below: EXPERIENCE REQUIRED: Your resume must reflect the quality level of experience which demonstrates the possession of the knowledge, skills, abilities, and competencies necessary for successful job performance required for this position. Examples of creditable experience include: Attention to Detail , Customer Service, Oral Communication, and Problem Solving skills with the quality level experience which demonstrates the possession of the knowledge, skills, abilities and competencies necessary for successful job performance required for this position. Quality experience is experience that has equipped the applicant with the particular competencies/knowledge, skills, and abilities to successfully perform the duties of the position and is typically in or related to the work of the position to be filled. Examples of creditable experience include: knowledge of a wide range of cybersecurity concepts, principles, and practices; knowledge of risk management framework, and network security architecture design concepts such as defense-in-depth, zero trust, and multi-level security; and the ability to apply information security program management principles to the system architecture. Note: Creditable experience may include previous military experience, experience gained in the private sector, or experience gained in another government agency. KNOWLEDGE, SKILLS AND ABILITIES (KSAs): Your qualifications will be evaluated on the basis of your level of knowledge, skills, abilities and/or competencies in the following areas: Extensive and demonstrative knowledge of risk management processes and requirements in alignment with Risk Management Framework (RMF), and organizational risk management directly related to the display, discussion, processing, storage, and connectivity of classified data. Expert knowledge of network security architecture design concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth, Zero Trust, cross domain solutions/multi-level security, data-centric security) relative to the enterprise information technology (IT) goals and objectives. Demonstrated ability to apply information security program management principles to the system architecture lifecycle principles, policies, and guidelines. Expert knowledge of incident response and handling methodologies. Deep understanding of, and ability to communicate, system and software life cycle management security principles, including secure design and development. Ability to communicate effectively, both orally and in writing, to produce Senior-level technical reports and/or briefings for multiple forums and audiences and ability to make decisions independently in a self-directed manner in support of a team and/or organizational goals. Ability to work independently to plan, organize, and carry out complex assignments, manage competing priorities, and meet deadlines within a dynamic environment. Ideal Candidate: The ideal candidate for this role is a self-directed and highly motivated professional with a deep understanding of security architecture, design, and system authorization processes mandated by the DoD and Intelligence Community. This individual will possess the ability to work independently to plan, organize, and carry out complex assignments in a dynamic environment with competing priorities. The ideal candidate will have expert-level knowledge to analyze and resolve complex cybersecurity issues for National Security Systems and will be resourceful in interpreting and applying broad and often vague guidelines to unique and technologically advanced architectures. Exceptional oral and written communication skills are crucial, as is the ability to produce senior-level technical reports and brief multiple audiences. An advanced cybersecurityrelated or professional degree is highly desirable. PART-TIME OR UNPAID EXPERIENCE: Credit will be given for appropriate unpaid and or part-time work. You must clearly identify the duties and responsibilities in each position held and the total number of hours per week. VOLUNTEER WORK EXPERIENCE: Refers to paid and unpaid experience, including volunteer work done through National Service Programs (i.e., Peace Corps, AmeriCorps) and other organizations (e.
Location and market context
This job is based in Wright-Patterson AFB on-site. Local candidates benefit from being close to Air Force Materiel Command's teams and regional hiring market. Confirm the exact in-office expectation and any relocation support with the employer.
About cybersecurity governance jobs
Cybersecurity governance connects security control frameworks to business and regulatory risk, covering policy, risk assessment, and control assurance rather than hands-on operations. Jobs like this one are typically evaluated against frameworks such as NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices.
How to position yourself for this cybersecurity governance job
Strong candidates emphasize security control frameworks, risk assessment, policy and standards, and translating technical security posture into governance and board-level reporting. In your resume and outreach, tie your experience to how Air Force Materiel Command would apply NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices, and lead with concrete outcomes rather than duties.
Similar GRC jobs
- Systems Security Engineer · Modern Technology Solutions Inc · Wright-Patterson AFB, OH
- IT Cybersecurity Specialist (INFOSEC) · Defense Information Systems Agency · Ford Island, Hawaii
- FINANCIAL SYSTEMS ANALYST (CYBER) · Defense Finance and Accounting Service · Indianapolis, Indiana
- Executive Director for Information Assurance & Cyber Security Division · Transportation Security Administration · Springfield, Virginia
- Computer Scientist (Cyber) - CES Recent Graduate · Defense Information Systems Agency · Letterkenny Army Depot, Pennsylvania
- IT Cybersecurity Specialist · Western Area Power Administration · Multiple Locations
- Information Security Specialist · Treasury, Financial Crimes Enforcement Network · Vienna, Virginia
- IT CYBERSECURITY SPECIALIST (INFOSEC) · Defense Information Systems Agency · Letterkenny Army Depot, Pennsylvania
More jobs at Air Force Materiel Command
- Risk Assessor/Toxicologist Interdisciplinary (Environmental) - DIRECT HIRE AUTHORITY · Air Force Materiel Command · Multiple Locations
- Program Analyst (Cyber Operations) · Air Force Materiel Command · Multiple Locations
More GRC jobs in Wright-Patterson AFB
- INTERNAL CONTROL ANALYST · Air National Guard Units · Rickenbacker AFB, Ohio
- Quality Assurance Specialist · Defense Contract Management Agency · Ashville, Ohio
Want to be next in a job like this?
Jobs like RISK MANAGEMENT & CYBERSECURITY SPECIALIST- ALTERNATE HIRING AUTHORITY in Wright-Patterson AFB, Ohio open regularly. Be first to know, privately. No current employer ever sees you looking.
Employer, or see something wrong with this posting? Report this posting and we will review it promptly.