United States Courts

Information Technology Specialist (Security)

United States Courts$95K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in cybersecurity roles
  • Experience in developing and maintaining detection logic for malicious activity
  • Proficiency in integrating and managing threat intelligence platforms
  • Capability to develop metrics and reports for senior leadership
  • Bachelor's degree in computer science, cybersecurity, or a related field preferred
  • Certifications such as CISSP, GCTI, or GREM are valuable

Responsibilities

  • Conduct independent research to identify emerging cyber threats
  • Manage the intelligence production cycle to provide actionable reports
  • Maintain a comprehensive view of the judiciary's threat environment
  • Oversee the lifecycle of compromise indicators across security tools
  • Respond to intelligence requests with accurate assessments
  • Analyze threat actors and document their tactics, techniques, and procedures
  • Detect and assess insider threats using behavioral analytics
  • Ensure high standards in intelligence analysis processes
  • Develop metrics for evaluating the effectiveness of the threat intelligence program
  • Prepare executive summaries for senior leadership

Benefits

  • Comprehensive federal benefits package for employees and their families
  • Flexible career options within government positions
  • Potential for long-term job stability and security
  • Opportunities for professional development and training
  • Access to a supportive work environment focused on security and organizational integrity
Full Job Description
Summary

The position is in the Department of the Chief Information Officer, Information Technology Security Office, Security Operations Division, Security Operations Branch. The Security Operation Division protects the judiciary from cyberthreats, strengthens the judiciary's security posture and threat awareness, eliminates threats before they can harm operations, and provides evaluation services to strengthen systems and programs.

Duties

Help

The Information Technology Specialist (Security) serves as a Cyber Threat Intelligence Analyst, a technical cybersecurity subject matter expert and performs multiple and varying assignments under the direction of the Chief, Security Operations Divisions. The incumbent will be responsible for providing threat intelligence support to security operations.

Duties Include:

  1. Conducting independent technical research and analysis to identify emerging and novel threat vectors, synthesizing intelligence from adversary tradecraft, vulnerability disclosures and operational telemetry to inform proactive threat identification.
  2. Managing all phases of the intelligence production cycle, ensuring timely and actionable reports for stakeholders across the judiciary.
  3. Maintaining and improving a common operational picture of the judiciary's threat environment, integrating internal telemetry, open-source intelligence, and cybersecurity threat feeds to provide leadership with a continuous, accurate understanding of the current threat landscape.
  4. Managing the indicators of compromise lifecycle, including ingestion, validation, enrichment, prioritization, and operationalization across security tooling and detection platforms.
  5. Responding to intelligence support requests from the Security Operations Center, providing timely, technically accurate assessments that enable effective triage, investigation, and incident response.
  6. Conducting threat actor attribution analysis and develops comprehensive threat actor profiles, documents adversary tactics, techniques, and procedures to support cyber threat hunting and detection engineering.
  7. Identifying insider threats to judiciary data and systems, applying behavioral analytics and intelligence tradecraft to detect, assess, and report on indicators of malicious or negligent insider activity.
  8. Maintaining intelligence analysis standards, methodologies, and quality assurance processes to support accuracy, consistency, and operational effectiveness.
  9. Developing metrics and reporting to measure effectiveness and operational maturity of the cyber threat intelligence program.
  10. Providing regular executive summaries to senior leadership and judiciary cybersecurity stakeholders for informed enterprise risk understanding, prioritization, and resource allocation decisions.
  11. Performing the tasks and meeting the skills, knowledge, and abilities as described in NIST Special Publication 800-181 National Initiative for Cybersecurity Education Cybersecurity Workforce for the role of Threat Analysis (PD-WRL-006).


Requirements

Help

Conditions of employment

CONDITIONS OF EMPLOYMENT

  1. All information is subject to verification. Applicants are advised that false answers or omissions of information on application materials or inability to meet the following conditions may be grounds for non-selection, withdrawal of an offer of employment, or dismissal after being employed.
  2. Selection for this position is contingent upon completion of OF-306, Declaration of Federal Employment during the pre-employment process and proof of U.S. citizenship for competitive status positions or conversion to a competitive status position with the AO. If non-citizens are considered for hire into a temporary or any other position with non-competitive status or when it is confirmed by the AO Human Resources Office there are no qualified U.S. citizens for a competitive status position (unless prohibited by a law or statue), non-citizens must provide proof of authorization to work in the U.S. and proof of entitlement to receive compensation. Additional information on the employment of non-citizens can be found at USAJOBS Help Center | Employment of non-citizens/. For a list of documents that may be used to provide proof of citizenship or authorization to work in the United States, please refer to Form I-9, Employment Eligibility Verification.
  3. All new AO employees will be required to complete an FBI fingerprint-based national criminal database and records check and pass a public trust suitability check.
  4. New employees to the AO will be required to successfully pass the E-Verify employment verification check. To learn more about E-Verify, including your rights/responsibilities, visit https://www.e-verify.gov/.
  5. All new AO employees are required to identify a financial institution for direct deposit of pay before appointment.
  6. You will be required to serve a trial period if selected for a first-time appointment to the Federal government, transferring from another Federal agency, or serving as a first-time supervisor. Failure to successfully complete the trial period may result in termination of employment.
  7. If appointed to a temporary position, management may have the discretion of converting the position to permanent depending upon funding and staffing allocation.


Qualifications

Applicants must have demonstrated experience as listed below. This requirement is according to the AO Classification, Compensation, and Recruitment Systems which include interpretive guidance and reference to the OPM Operating Manual for Qualification Standards for General Schedule Positions.

Specialized Experience: Applicants must have at least one full year (52 weeks) of specialized experience which is in or directly related to the line of work of this position. Specialized experience is demonstrated experience in ALL of the following:

  1. Developing, testing, and maintaining detection logic to identify malicious activity across enterprise systems.
  2. Developing metrics, reporting, and lessons learned to communicate risks, gaps, and readiness outcomes to senior leadership.
  3. Integrating and managing threat intelligence platforms.


Desired Education: Bachelor's degree in computer science, cybersecurity, or equivalent technical field is highly desired.

Desired Certifications:

  • Certified Information System Security Professional (CISSP)
  • GIAC Cyber Threat Intelligence (GCTI)
  • GIAC Reverse Engineering Malware (GREM)


Education

This position does not require education to qualify.

Benefits

Help

A career with the U.S. government provides employees with a comprehensive benefits package. As a federal employee, you and your family will have access to a range of benefits that are designed to make your federal career very rewarding. Opens in a new windowLearn more about federal benefits.

Review our benefits

Eligibility for benefits depends on the type of position you hold and whether your position is full-time, part-time or intermittent. Contact the hiring agency for more information on the specific benefits offered.

Similar Jobs

More Jobs at United States Courts

More Information Technology Jobs

Find similar Information Technology Specialist (Security) jobs: