| |
IA Workforce Technical (IAT) Level II
The 8570.01-M Manual defines the following for the IA Technical Workforce (IAT) Level II.
IAT Level II personnel provide network environment (NE) and advanced level Computing Environment (CE) support. They pay special attention to intrusion detection, finding and fixing unprotected vulnerabilities, and ensuring that remote access points are well secured. These positions focus on threats and vulnerabilities and improve the security of systems. IAT Level II personnel have mastery of the functional requirements functions of the IAT Level I position
IAT Level II Position Requirements
|
IAT Level II
|
|
Attribute
|
Level
|
|
Experience
|
Normally has at least 3 three to seven years in IA technology or a related area.
|
|
System Environment
|
NE and advanced CE.
|
|
Knowledge
|
Mastery of the functional requirements functions of the IAT Level I position.
Applies knowledge and experience with standard IA concepts, practices, and procedures within the NE.
|
|
Supervision
|
Works under general supervision and typically reports to network manager.
|
|
Other
|
Relies on experience and judgment to plan and accomplish goals within the NE.
|
|
IA Certification & Operating System Certification
|
Within 6 months of assignment to position.
|
IAT Level II Functions Functional Requirements
|
T-II.1. Demonstrate expertise in IAT Level I CE knowledge and skills.
|
|
T-II.2. Examine potential security violations to determine if the NE policy has been breached, assess the impact, and preserve evidence.
|
|
T-II.3. Support, monitor, test, and troubleshoot hardware and software IA problems pertaining to the NE.
|
|
T-II.4. Recommend and schedule IA related repairs in the NE.
|
|
T-II.5. Perform IA related customer support functions including installation, configuration, troubleshooting, customer assistance, and/or training, in response to customer requirements for the NE.
|
|
T-II.6. Provide end user support for all IA related applications for the NE.
|
| T-II.7. Analyze patterns of non-compliance and take appropriate administrative or programmatic actions to minimize security risks and insider threats. |
|
T-II.8. Manage accounts, network rights, and access to NE systems and equipment.
|
|
T-II.9. Analyze system performance for potential security problems.
|
|
T-II.10. Assess the performance of IA security controls within the NE.
|
|
T-II.11. Identify IA vulnerabilities resulting from a departure from the implementation plan or that were not apparent during testing.
|
|
T-II.12. Provide leadership and direction to IA operations personnel.
|
|
T-II.13. Configure, optimize, and test network servers, hubs, routers, and switches to ensure they comply with security policy, procedures, and technical requirements.
|
|
T-II.14. Install, test, maintain, and upgrade network operating systems software and hardware to comply with IA requirements.
|
|
T-II.15. Evaluate potential IA security risks and take appropriate corrective and recovery action.
|
|
T-II.16. Ensure that hardware, software, data, and facility resources are archived, sanitized, or disposed of in a manner consistent with system security plans and requirements.
|
|
T-II.17. Diagnose and resolve IA problems in response to reported incidents.
|
|
T-II.18. Research, evaluate, and provide feedback on problematic IA trends and patterns in customer support requirements.
|
|
T-II.19. Ensure IAT Level I personnel are properly trained and have met on-the-job training (OJT) program requirements.
|
|
T-II.20. Perform system audits to assess security related factors within the NE.
|
|
T-II.21. Develop and implement access control lists on routers, firewalls, and other network devices.
|
|
T-II.22. Install perimeter defense systems including intrusion detection systems, firewalls, grid sensors, etc., and enhance rule sets to block sources of malicious traffic.
|
|
T-II.23. Work with other privileged users to jointly solve IA problems.
|
|
T-II.24. Write and maintain scripts for the NE.
|
|
T-II.25. Demonstrate proficiency in applying security requirements to an operating system for the NE or CE used in their current position.
|
|
T-II.26. Implement applicable patches including IAVAs, IAVBs, and TAs for their NE.
|
|
T-II.27. Adhere to IS security laws and regulations to support functional operations for the NE.
|
|
T-II.28. Implement response actions in reaction to security incidents.
|
|
T-II.29. Support the design and execution of exercise scenarios.
|
|
T-II.30. Support Security Test and Evaluations (Part of Certification and Accreditation C&A Process).
|
|
T-II.31. Obtain and maintain IA certification appropriate to position.
|
IA Workforce Technical (IAT) Level II
The 8570.01-M Manual defines the following for the IA Technical Workforce (IAT) Level II.
IAT Level II personnel provide network environment (NE) and advanced level Computing Environment (CE) support. They pay special attention to intrusion detection, finding and fixing unprotected vulnerabilities, and ensuring that remote access points are well secured. These positions focus on threats and vulnerabilities and improve the security of systems. IAT Level II personnel have mastery of the functional requirements functions of the IAT Level I position
IAT Level II Position Requirements
|
IAT Level II
|
|
Attribute
|
Level
|
|
Experience
|
Normally has at least 3 three to seven years in IA technology or a related area.
|
|
System Environment
|
NE and advanced CE.
|
|
Knowledge
|
Mastery of the functional requirements functions of the IAT Level I position.
Applies knowledge and experience with standard IA concepts, practices, and procedures within the NE.
|
|
Supervision
|
Works under general supervision and typically reports to network manager.
|
|
Other
|
Relies on experience and judgment to plan and accomplish goals within the NE.
|
|
IA Certification & Operating System Certification
|
Within 6 months of assignment to position.
|
IAT Level II Functions Functional Requirements
|
T-II.1. Demonstrate expertise in IAT Level I CE knowledge and skills.
|
|
T-II.2. Examine potential security violations to determine if the NE policy has been breached, assess the impact, and preserve evidence.
|
|
T-II.3. Support, monitor, test, and troubleshoot hardware and software IA problems pertaining to the NE.
|
|
T-II.4. Recommend and schedule IA related repairs in the NE.
|
|
T-II.5. Perform IA related customer support functions including installation, configuration, troubleshooting, customer assistance, and/or training, in response to customer requirements for the NE.
|
|
T-II.6. Provide end user support for all IA related applications for the NE.
|
| T-II.7. Analyze patterns of non-compliance and take appropriate administrative or programmatic actions to minimize security risks and insider threats. |
|
T-II.8. Manage accounts, network rights, and access to NE systems and equipment.
|
|
T-II.9. Analyze system performance for potential security problems.
|
|
T-II.10. Assess the performance of IA security controls within the NE.
|
|
T-II.11. Identify IA vulnerabilities resulting from a departure from the implementation plan or that were not apparent during testing.
|
|
T-II.12. Provide leadership and direction to IA operations personnel.
|
|
T-II.13. Configure, optimize, and test network servers, hubs, routers, and switches to ensure they comply with security policy, procedures, and technical requirements.
|
|
T-II.14. Install, test, maintain, and upgrade network operating systems software and hardware to comply with IA requirements.
|
|
T-II.15. Evaluate potential IA security risks and take appropriate corrective and recovery action.
|
|
T-II.16. Ensure that hardware, software, data, and facility resources are archived, sanitized, or disposed of in a manner consistent with system security plans and requirements.
|
|
T-II.17. Diagnose and resolve IA problems in response to reported incidents.
|
|
T-II.18. Research, evaluate, and provide feedback on problematic IA trends and patterns in customer support requirements.
|
|
T-II.19. Ensure IAT Level I personnel are properly trained and have met on-the-job training (OJT) program requirements.
|
|
T-II.20. Perform system audits to assess security related factors within the NE.
|
|
T-II.21. Develop and implement access control lists on routers, firewalls, and other network devices.
|
|
T-II.22. Install perimeter defense systems including intrusion detection systems, firewalls, grid sensors, etc., and enhance rule sets to block sources of malicious traffic.
|
|
T-II.23. Work with other privileged users to jointly solve IA problems.
|
|
T-II.24. Write and maintain scripts for the NE.
|
|
T-II.25. Demonstrate proficiency in applying security requirements to an operating system for the NE or CE used in their current position.
|
|
T-II.26. Implement applicable patches including IAVAs, IAVBs, and TAs for their NE.
|
|
T-II.27. Adhere to IS security laws and regulations to support functional operations for the NE.
|
|
T-II.28. Implement response actions in reaction to security incidents.
|
|
T-II.29. Support the design and execution of exercise scenarios.
|
|
T-II.30. Support Security Test and Evaluations (Part of Certification and Accreditation C&A Process).
|
|
T-II.31. Obtain and maintain IA certification appropriate to position.
|
|
|