Link copied to clipboard

NICE Workforce Framework for Cybersecurity (NICE Framework) Components v2.2.0

draft Competency Framework · v2.2.0

NICE Workforce Framework for Cybersecurity (NICE Framework) Components version 2.2.0 (28 April 2026). Nested as 5 work role categories, 42 work roles (including OG-WRL-017 Cybersecurity Supply Chain Risk Management), 11 competency areas, and the full Task / Knowledge / Skill catalog (962 / 693 / 556). TKS statements are a shared pool linked from work roles (and from competency areas where NIST provides alignments). Official IDs are used as codedNotation. This file is a derived CEASN/IEEE encoding of public NIST CPRT JSON for TLA Toolbox import (2026-08-27). Version 2.2.0. Attribution: NIST SP 800-181r1 and NICE Framework Components v2.2.0; U.S. government work, 17 U.S.C. § 105. Source JSON: https://csrc.nist.gov/csrc/media/Projects/cprt/documents/nice/v2-2-0_nf_components.json.

Competencies2274
View CTDL-ASN JSON-LD View IEEE SCD JSON-LD Download Markdown Docs Log in to browse full details

Competencies (2274)

TKS StatementsFramework Branch
TasksTKS Type
KnowledgeTKS Type
SkillsTKS Type
Advocate organization's official position in legal and legislative proceedingsTask
Develop content for cyber defense toolsTask
Develop architectures or system components consistent with technical specificationsTask
Develop data standards, policies, and proceduresTask
Develop secure code and error handlingTask
Develop test plans to address specifications and requirementsTask
Diagnose network connectivity problemsTask
Employ secure configuration management processesTask
Evaluate the effectiveness and comprehensiveness of existing training programsTask
Identify organizational policy stakeholdersTask
Implement security designs for new or existing systemsTask
Incorporate cybersecurity vulnerability solutions into system designs (e.g., Cybersecurity Vulnerability Alerts)Task
Install or replace network hubs, routers, and switchesTask
Integrate new systems into existing network architectureTask
Maintain database management systems softwareTask
Maintain information systems assurance and accreditation materialsTask
Monitor network capacity and performanceTask
Perform cyber defense trend analysis and reportingTask
Perform file signature analysisTask
Perform data comparison against established databaseTask
Perform real-time forensic analysis (e.g., using Helix in conjunction with LiveView)Task
Perform timeline analysisTask
Perform static media analysisTask
Perform tier 1, 2, and 3 malware analysisTask
Process crime scenesTask
Resolve conflicts in laws, regulations, policies, standards, or proceduresTask
Serve on agency and interagency policy boardsTask
Translate functional requirements into technical solutionsTask
Troubleshoot system hardware and softwareTask
Employ approved defense-in-depth principles and practices (e.g., defense-in-multiple places, layered defenses, security robustness)Task
Develop cybersecurity designs to meet specific operational needs and environmental factors (e.g., access controls, automated applications, networked operatio...Task
Create auditable evidence of security measuresTask
Recommend computing environment vulnerability correctionsTask
Identify network mapping and operating system (OS) fingerprinting activitiesTask
Assess the effectiveness of security controlsTask
Consult with customers about software system design and maintenanceTask
Maintain assured message delivery systemsTask
Collect metrics and trending dataTask
Program custom algorithmsTask
Perform Windows registry analysisTask
Conduct import/export reviews for acquiring systems and softwareTask
Implement data management standards, requirements, and specificationsTask
Check system hardware availability, functionality, integrity, and efficiencyTask
Correlate training and learning to business or mission requirementsTask
Implement data mining and data warehousing applicationsTask
Develop and implement data mining and data warehousing programsTask
Manage Accreditation Packages (e.g., ISO/IEC 15026-2)Task
Coordinate incident response functionsTask
Perform interoperability testing on systems exchanging electronic information with other systemsTask
Perform operational testingTask
Troubleshoot hardware/software interface and interoperability problemsTask
Translate proposed capabilities into technical requirementsTask
Answer requests for informationTask
Evaluate threat decision-making processesTask
Identify threat vulnerabilitiesTask
Facilitate continuously updated intelligence, surveillance, and visualization input to common operational picture managersTask
Generate requests for informationTask
Identify intelligence gaps and shortfallsTask
Issue requests for informationTask
Monitor open source websites for hostile content directed towards organizational or partner interestsTask
Produce network reconstructionsTask
Serve as a liaison with external partnersTask
Identify cyber threat tactics and methodologiesTask
Establish an internal privacy audit programTask
Identify stakeholder assets that require protectionTask
Determine the placement of a system within the enterprise architectureTask
Identify the types of information to be processed, stored, or transmitted by a systemTask
Monitor changes to a system and its environment of operationTask
Prepare and deliver education and awareness briefingsTask
Create a cybersecurity awareness programTask
Communicate enterprise information technology architectureTask
Apply standards to identify safety risk and protect cyber-physical functionsTask
Expand network accessTask
Conduct technical exploitation of a targetTask
Determine if security incidents require legal actionTask
Identify roles and responsibilities for appointed Communications Security (COMSEC) personnelTask
Identify Communications Security (COMSEC) incidentsTask
Report Communications Security (COMSEC) incidentsTask
Identify in-process accounting requirements for Communications Security (COMSEC)Task
Determine special needs of cyber-physical systemsTask
Determine the operational and safety impacts of cybersecurity lapsesTask
Review cyber defense service provider reporting structureTask
Review enterprise information technology (IT) goals and objectivesTask
Identify critical technology procurement requirementsTask
Implement organizational security policies and proceduresTask
Implement organizational training and education policies and proceduresTask
Determine procurement requirementsTask
Integrate organizational goals and objectives into security architectureTask
Research new vulnerabilities in emerging technologiesTask
Implement organizational evaluation and validation criteriaTask
Estimate the impact of collateral damageTask
Implement intelligence collection requirementsTask
Determine how threat activity groups employ encryption to support their operationsTask
Integrate leadership prioritiesTask
Integrate organization objectives in intelligence collectionTask
Identify network artifactsTask
Determine impact of software configurationsTask
Determine staffing needsTask
Assess operation performanceTask
Assess operation impactTask
Determine appropriate level of test rigor for a given systemTask
Improve network security practicesTask
Set up a forensic workstationTask
Integrate black-box security testing tools into quality assurance processesTask
Identify and characterize intrusion activities against a victim or targetTask
Scope analysis reports to various audiences that accounts for data sharing classification restrictionsTask
Determine if priority information requirements are satisfiedTask
Acquire resources to support cybersecurity program goals and objectivesTask
Conduct an effective enterprise continuity of operations programTask
Advise senior management on risk levels and security postureTask
Perform cost/benefit analyses of cybersecurity programs, policies, processes, systems, and elementsTask
Advise senior management on organizational cybersecurity effortsTask
Advise senior leadership and authorizing official of changes affecting the organization's cybersecurity postureTask
Contribute insider threat expertise to organizational cybersecurity awareness programTask
Determine data requirementsTask
Determine data specificationsTask
Determine data capacity requirementsTask
Plan for anticipated changes in data capacity requirementsTask
Recommend development of new applications or modification of existing applicationsTask
Create development plans for new applications or modification of existing applicationsTask
Evaluate organizational cybersecurity policy regulatory complianceTask
Evaluate organizational cybersecurity policy alignment with organizational directivesTask
Evaluate software design plan timelines and cost estimatesTask
Determine life cycle support requirementsTask
Perform code reviewsTask
Prepare secure code documentationTask
Implement application cybersecurity policiesTask
Implement system cybersecurity policiesTask
Assess the organization's cybersecurity architectureTask
Determine effectiveness of system cybersecurity measuresTask
Develop cybersecurity risk profilesTask
Create product prototypes using working and theoretical modelsTask
Integrate software cybersecurity objectives into project plans and schedulesTask
Determine project security controlsTask
Identify anomalous network activityTask
Identify potential threats to network resourcesTask
Collect and maintain system cybersecurity report dataTask
Create system cybersecurity reportsTask
Communicate the value of cybersecurity to organizational stakeholdersTask
Create program documentation during initial development and subsequent revision phasesTask
Determine best methods for identifying the perpetrator(s) of a network intrusionTask
Perform authorized penetration testing on enterprise network assetsTask
Conduct functional and connectivity testingTask
Conduct interactive training exercisesTask
Conduct victim and witness interviewsTask
Conduct suspect interrogationsTask
Perform privacy impact assessments (PIAs)Task
Determine functional requirements and specificationsTask
Determine system performance requirementsTask
Design application interfacesTask
Configure network hubs, routers, and switchesTask
Optimize network hubs, routers, and switchesTask
Identify intrusionsTask
Analyze intrusionsTask
Document what is known about intrusionsTask
Construct access paths to suites of informationTask
Develop threat modelsTask
Evaluate functional requirementsTask
Evaluate interfaces between hardware and softwareTask
Resolve cyber defense incidentsTask
Coordinate technical support to enterprise-wide cybersecurity defense techniciansTask
Administer rule and signature updates for specialized cyber defense applicationsTask
Validate network alertsTask
Develop the enterprise continuity of operations strategyTask
Establish the enterprise continuity of operations programTask
Oversee the development of design solutionsTask
Correct program errorsTask
Determine if desired program results are producedTask
Identify vulnerabilitiesTask
Recommend vulnerability remediation strategiesTask
Create forensically sound duplicates of evidenceTask
Decrypt seized dataTask
Determine essential system capabilities and business functionsTask
Prioritize essential system capabilities and business functionsTask
Restore essential system capabilities and business functions after catastrophic failure eventsTask
Define system availability levelsTask
Determine disaster recovery and continuity of operations system requirementsTask
Define project scope and objectivesTask
Design cybersecurity or cybersecurity-enabled productsTask
Develop cybersecurity or cybersecurity-enabled productsTask
Develop group policies and access control listsTask
Determine if hardware, operating systems, and software applications adequately address cybersecurity requirementsTask
Design system data backup capabilitiesTask
Develop technical and procedural processes for integrity of stored backup dataTask
Develop technical and procedural processes for backup data storageTask
Design and develop software systemsTask
Determine level of assurance of developed capabilitiesTask
Investigate suspicious activity and alleged digital crimesTask
Create system testing and validation procedures and documentationTask
Develop systems design procedures and processesTask
Develop systems administration standard operating proceduresTask
Document systems administration standard operating proceduresTask
Validate data mining and data warehousing programs, processes, and requirementsTask
Develop network backup and recovery proceduresTask
Implement network backup and recovery proceduresTask
Develop strategic plansTask
Maintain strategic plansTask
Develop systems security design documentationTask
Develop disaster recovery and continuity of operations plans for systems under developmentTask
Test disaster recovery and continuity of operations plans for systems prior to deploymentTask
Develop cybersecurity designs for systems and networks with multilevel security requirementsTask
Develop cybersecurity designs for systems and networks that require processing of multiple data classification levelsTask
Integrate cybersecurity designs for systems and networksTask
Develop risk, compliance, and assurance monitoring strategiesTask
Develop risk, compliance, and assurance measurement strategiesTask
Develop awareness and training materialsTask
Identify pertinent awareness and training materialsTask
Develop cybersecurity implementation policies and guidelinesTask
Create technical summary of findings reportsTask
Develop risk mitigation strategiesTask
Resolve system vulnerabilitiesTask
Recommend security changes to systems and system componentsTask
Develop cybersecurity countermeasures for systems and applicationsTask
Develop risk mitigation strategies for systems and applicationsTask
Develop risk, compliance, and assurance specificationsTask
Document security, resilience, and dependability requirementsTask
Define acquisition life cycle cybersecurity architecture requirementsTask
Define acquisition life cycle systems security engineering requirementsTask
Document preliminary or residual security risks for system operationTask
Determine if systems security operations and maintenance activities are property documented and updatedTask
Determine that the application of security patches for commercial products meets timeline requirementsTask
Document commercial product timeline requirements dictated by the management authority for intended operational environmentsTask
Determine if digital media chain or custody processes meet Federal Rules of Evidence requirementsTask
Determine if cybersecurity-enabled products reduce identified risk to acceptable levelsTask
Determine if security control technologies reduce identified risk to acceptable levelsTask
Determine if security improvement actions are evaluated, validated, and implemented as requiredTask
Determine if systems and architecture are consistent with cybersecurity architecture guidelinesTask
Determine if cybersecurity inspections, tests, and reviews are coordinated for the network environmentTask
Determine if cybersecurity requirements are integrated into continuity planningTask
Determine if security engineering is used when acquiring or developing protection and detection capabilitiesTask
Determine if protection and detection capabilities are consistent with organization-level cybersecurity architectureTask
Establish stakeholder communication channelsTask
Maintain stakeholder communication channelsTask
Establish enterprise information security architectureTask
Establish internal and external cross-team relationshipsTask
Determine if baseline security safeguards are appropriately installedTask
Determine if contracts comply with funding, legal, and program requirementsTask
Determine hardware configurationTask
Determine relevance of recovered dataTask
Conduct analysis of computer network attacksTask
Allocate security functions to components and elementsTask
Remediate technical problems encountered during system testing and implementationTask
Direct the remediation of technical problems encountered during system testing and implementationTask
Determine if security incidents are indicative of a violation of law that requires specific legal actionTask
Identify common coding flawsTask
Identify data or intelligence of evidentiary valueTask
Identify digital evidence for analysisTask
Identify elements of proof of cybersecurity crimesTask
Determine implications of new and upgraded technologies to the cybersecurity programTask
Determine software development security implications within centralized and decentralized environments across the enterpriseTask
Implement software development cybersecurity methodologies within centralized and decentralized environments across the enterpriseTask
Determine cybersecurity measures for steady state operation and management of softwareTask
Incorporate product end-of-life cybersecurity measuresTask
Recommend cybersecurity or cybersecurity-enabled products for use within a systemTask
Collect documentary or physical evidence of cyber intrusion incidents, investigations, and operationsTask
Implement new system design proceduresTask
Implement new system test proceduresTask
Implement new system quality standardsTask
Implement cybersecurity countermeasures for systems and applicationsTask
Install network infrastructure device operating system softwareTask
Maintain network infrastructure device operating system softwareTask
Determine if system analysis meets cybersecurity requirementsTask
Integrate automated capabilities for updating or patching system softwareTask
Develop processes and procedures for manual updating and patching of system softwareTask
Disseminate incident and other Computer Network Defense (CND) informationTask
Determine security requirements for new information technologiesTask
Determine security requirements for new operational technologiesTask
Determine impact of noncompliance on organizational risk levelsTask
Determine impact of noncompliance on effectiveness of the enterprise's cybersecurity programTask
Align cybersecurity priorities with organizational security strategyTask
Manage cybersecurity budget, staffing, and contractingTask
Maintain baseline system securityTask
Maintain deployable cyber defense audit toolkitsTask
Maintain directory replication servicesTask
Maintain information exchanges through publish, subscribe, and alert functionsTask
Approve accreditation packagesTask
Monitor cybersecurity data sourcesTask
Develop Computer Network Defense (CND) guidance for organizational stakeholdersTask
Manage threat and target analysisTask
Manage the production of threat informationTask
Determine if systems comply with security, resilience, and dependability requirementsTask
Determine the effectiveness of enterprise cybersecurity safeguardsTask
Monitor the usage of knowledge management assets and resourcesTask
Create knowledge management assets and resources usage reportsTask
Document cybersecurity incidentsTask
Escalate incidents that may cause ongoing and immediate impact to the environmentTask
Oversee configuration managementTask
Develop configuration management recommendationsTask
Oversee the cybersecurity training and awareness programTask
Establish Security Assessment and Authorization processesTask
Develop computer environment cybersecurity plans and requirementsTask
Patch network vulnerabilitiesTask
Perform backup and recovery of databasesTask
Perform cyber defense incident triageTask
Recommend incident remediation strategiesTask
Determine the scope, urgency, and impact of cyber defense incidentsTask
Perform dynamic analysis on drivesTask
Determine the effectiveness of an observed attackTask
Perform cybersecurity testing of developed applications and systemsTask
Perform forensically sound image collectionTask
Recommend mitigation and remediation strategies for enterprise systemsTask
Perform integrated quality assurance testingTask
Identify opportunities for new and improved business process solutionsTask
Perform real-time cyber defense incident handlingTask
Mitigate programming vulnerabilitiesTask
Identify programming code flawsTask
Perform security reviewsTask
Identify gaps in security architectureTask
Develop a cybersecurity risk management planTask
Recommend risk mitigation strategiesTask
Perform system administration on specialized cyber defense applications and systemsTask
Administer Virtual Private Network (VPN) devicesTask
Conduct risk analysis of applications and systems undergoing major changesTask
Plan security authorization reviews for system and network installationsTask
Conduct security authorization reviews for system and network installationsTask
Develop security assurance cases for system and network installationsTask
Plan knowledge management projectsTask
Deliver knowledge management projectsTask
Determine the effectiveness of data redundancy and system recovery proceduresTask
Develop data redundancy and system recovery proceduresTask
Execute data redundancy and system recovery proceduresTask
Recommend system modificationsTask
Prepare audit reportsTask
Develop workflow charts and diagramsTask
Convert workflow charts and diagrams into coded computer language instructionsTask
Prepare digital media for imagingTask
Develop cybersecurity use casesTask
Develop standard operating procedures for secure network system operationsTask
Distribute standard operating proceduresTask
Maintain standard operating proceduresTask
Document systems security activitiesTask
Prepare technical evaluations of software applications, systems, and networksTask
Document software application, system, and network security postures, capabilities, and vulnerabilitiesTask
Communicate daily network event and activity reportsTask
Advise stakeholders on the development of continuity of operations plansTask
Develop guidelines for implementing developed systems for customers and installation teamsTask
Advise on security requirements to be included in statements of workTask
Advise on Risk Management Framework process activities and documentationTask
Provide cybersecurity awareness and trainingTask
Recommend data structures for use in the production of reportsTask
Recommend new database technologies and architecturesTask
Communicate situational awareness information to leadershipTask
Determine causes of network alertsTask
Report cybersecurity incidentsTask
Report forensic artifacts indicative of a particular operating systemTask
Address security implications in the software acceptance phaseTask
Recommend new or revised security, resilience, and dependability measuresTask
Recommend organizational cybersecurity resource allocationsTask
Determine if authorization and assurance documents identify an acceptable level of risk for software applications, systems, and networksTask
Conduct technology program and project auditsTask
Develop cybersecurity policy recommendationsTask
Coordinate cybersecurity policy review and approval processesTask
Analyze system capabilities and requirementsTask
Implement protective or corrective measures when a cybersecurity incident or vulnerability is discoveredTask
Design and execute exercise scenariosTask
Conduct test and evaluation activitiesTask
Test network infrastructure, including software and hardware devicesTask
Maintain network infrastructure, including software and hardware devicesTask
Track cyber defense incidents from initial detection through final resolutionTask
Document cyber defense incidents from initial detection through final resolutionTask
Determine if appropriate threat mitigation actions have been takenTask
Integrate security requirements into application design elementsTask
Document software attack surface elementsTask
Conduct threat modelingTask
Manage computing environment system operationsTask
Capture network traffic associated with malicious activitiesTask
Analyze network traffic associated with malicious activitiesTask
Process digital evidenceTask
Document digital evidenceTask
Develop system performance predictions for various operating conditionsTask
Update security documentation to reflect current application and system security design featuresTask
Verify implementation of software, network, and system cybersecurity posturesTask
Document software, network, and system deviations from implemented security posturesTask
Recommend required actions to correct software, network, and system deviations from implemented security posturesTask
Verify currency of software application, network, and system accreditation and assurance documentationTask
Produce incident findings reportsTask
Communicate incident findings to appropriate constituenciesTask
Produce cybersecurity instructional materialsTask
Promote cybersecurity awareness to managementTask
Verify the inclusion of sound cybersecurity principles in the organization's vision and goalsTask
Identify system and network capabilitiesTask
Develop cybersecurity capability strategies for custom hardware and software developmentTask
Develop cybersecurity compliance processes for external servicesTask
Develop cybersecurity audit processes for external servicesTask
Perform required reviewsTask
Oversee policy standards and implementation strategy developmentTask
Provide cybersecurity guidance to organizational risk governance processesTask
Determine if procurement activities sufficiently address supply chain risksTask
Recommend improvements to procurement activities to address cybersecurity requirementsTask
Determine if system requirements are adequately demonstrated in data samplesTask
Detect cybersecurity attacks and intrusionsTask
Distinguish between benign and potentially malicious cybersecurity attacks and intrusionsTask
Communicate cybersecurity attacks and intrusions alertsTask
Perform continuous monitoring of system activityTask
Determine impact of malicious activity on systems and informationTask
Coordinate critical cyber defense infrastructure protection measuresTask
Prioritize critical cyber defense infrastructure resourcesTask
Identify system cybersecurity requirementsTask
Determine if vulnerability remediation plans are in placeTask
Develop vulnerability remediation plansTask
Determine if cybersecurity requirements have been successfully implementedTask
Determine the effectiveness of organizational cybersecurity policies and proceduresTask
Perform penetration testingTask
Design programming language exploitation countermeasures and mitigationsTask
Determine the impact of new system and interface implementations on organization's cybersecurity postureTask
Document impact of new system and interface implementations on organization's cybersecurity postureTask
Plan system security developmentTask
Conduct system security developmentTask
Document cybersecurity design and development activitiesTask
Identify supply chain risks for critical system elementsTask
Document supply chain risks for critical system elementsTask
Support cybersecurity compliance activitiesTask
Determine if acquisitions, procurement, and outsourcing efforts address cybersecurity requirementsTask
Collect intrusion artifactsTask
Mitigate potential cyber defense incidentsTask
Advise law enforcement personnel as technical expertTask
Determine organizational complianceTask
Forecast ongoing service demandsTask
Conduct periodic reviews of security assumptionsTask
Develop critical infrastructure protection policies and proceduresTask
Implement critical infrastructure protection policies and proceduresTask
Identify cybersecurity solutions tools and technologiesTask
Design cybersecurity tools and technologiesTask
Develop cybersecurity tools and technologiesTask
Scan digital media for virusesTask
Mount a drive imageTask
Utilize deployable forensics toolkitTask
Establish intrusion set proceduresTask
Analyze network traffic anomaliesTask
Validate intrusion detection system alertsTask
Isolate malwareTask
Remove malwareTask
Identify network device applications and operating systemsTask
Reconstruct malicious attacksTask
Develop user experience requirementsTask
Document user experience requirementsTask
Develop independent cybersecurity audit processes for application software, networks, and systemsTask
Implement independent cybersecurity audit processes for application software, networks, and systemsTask
Oversee independent cybersecurity auditsTask
Determine if research and design processes and procedures are in compliance with cybersecurity requirementsTask
Determine if research and design processes and procedures are accurately followed by cybersecurity staff when performing their day-to-day activitiesTask
Develop supply chain, system, network, and operational security contract languageTask
Design and develop secure applicationsTask
Integrate system development life cycle methodologies into development environmentTask
Manage databases and data management systemsTask
Allocate cybersecurity servicesTask
Select cybersecurity mechanismsTask
Identify emerging incident trendsTask
Construct cyber defense network tool signaturesTask
Correlate threat assessment dataTask
Develop quality standardsTask
Document quality standardsTask
Develop system security contextsTask
Develop technical training curriculum and resourcesTask
Deliver technical training to customersTask
Develop training modules and classesTask
Develop training assignmentsTask
Develop training evaluationsTask
Develop grading and proficiency standardsTask
Create learner development, training, and remediation plansTask
Develop learning objectives and goalsTask
Develop organizational training materialsTask
Develop organizational training programsTask
Develop proficiency assessmentsTask
Develop software documentationTask
Create system security concept of operations (ConOps) documentsTask
Evaluate network infrastructure vulnerabilitiesTask
Recommend network infrastructure enhancementsTask
Determine cybersecurity design and architecture effectivenessTask
Maintain incident tracking and solution databasesTask
Notify designated managers, cyber incident responders, and cybersecurity service provider team members of suspected cybersecurity incidentsTask
Prepare trend analysis reportsTask
Determine if system components can be alignedTask
Integrate system componentsTask
Build dedicated cyber defense hardwareTask
Install dedicated cyber defense hardwareTask
Create cybersecurity architecture functional specificationsTask
Determine if technology services are delivered successfullyTask
Acquire adequate funding for cybersecurity trainingTask
Determine effectiveness of configuration management processesTask
Determine effectiveness of instruction and trainingTask
Assess the behavior of individual victims, witnesses, or suspects during cybersecurity investigationsTask
Assess the validity of source dataTask
Determine the validity of findingsTask
Assess the impact of implementing and sustaining a dedicated cyber defense infrastructureTask
Recommend commercial, government off-the-shelf, or open source products for use within a systemTask
Determine if products comply with cybersecurity requirementsTask
Conduct hypothesis testingTask
Conduct learning needs assessmentsTask
Identify training requirementsTask
Manage customer servicesTask
Determine if qualification standards meet organizational functional requirements and comply with industry standardsTask
Allocate and distribute human capital assetsTask
Create interactive learning exercisesTask
Design system administration and management functionality for privileged access usersTask
Develop system administration and management functionality for privileged access usersTask
Design secure interfaces between information systems, physical systems, and embedded technologiesTask
Implement secure interfaces between information systems, physical systems, and embedded technologiesTask
Determine the impact of threats on cybersecurityTask
Implement threat countermeasuresTask
Develop data gathering processesTask
Develop standardized cybersecurity position descriptions using the NICE FrameworkTask
Develop recruiting, hiring, and retention processesTask
Determine cybersecurity position requirementsTask
Develop cybersecurity training policies and proceduresTask
Develop cybersecurity curriculum goals and objectivesTask
Determine if cybersecurity workforce management policies and procedures comply with legal and organizational requirementsTask
Define service-level agreements (SLAs)Task
Establish cybersecurity workforce readiness metricsTask
Establish waiver processes for cybersecurity career field entry and training qualification requirementsTask
Establish organizational cybersecurity career pathwaysTask
Develop cybersecurity workforce reporting requirementsTask
Establish cybersecurity workforce management programsTask
Assess cybersecurity workforce management programsTask
Gather customer satisfaction and service performance feedbackTask
Create risk-driven systems maintenance and updates processesTask
Define operating level agreements (OLAs)Task
Develop instructional strategiesTask
Promote awareness of cybersecurity policy and strategy among managementTask
Advise trial counsel as technical expertTask
Determine cybersecurity career field qualification requirementsTask
Determine organizational policies related to or influencing the cyber workforceTask
Examine service performance reports for issues and variancesTask
Initiate corrective actions to service performance issues and variancesTask
Conduct cybersecurity workforce assessmentsTask
Integrate cybersecurity workforce personnel into information systems life cycle development processesTask
Establish testing specifications and requirementsTask
Prepare after action reviews (AARs)Task
Process forensic imagesTask
Perform file and registry monitoring on running systemsTask
Enter digital media information into tracking databasesTask
Correlate incident dataTask
Prepare cyber defense toolkitsTask
Design data management systemsTask
Integrate laws and regulations into policyTask
Troubleshoot prototype design and process issuesTask
Recommend vulnerability exploitation functional and security-related featuresTask
Recommend vulnerability mitigation functional- and security-related featuresTask
Develop reverse engineering toolsTask
Determine supply chain cybersecurity requirementsTask
Determine if cybersecurity requirements included in contracts are deliveredTask
Integrate public key cryptography into applicationsTask
Install systems and serversTask
Update systems and serversTask
Troubleshoot systems and serversTask
Evaluate platforms managed by service providersTask
Manage organizational knowledge repositoriesTask
Analyze cybersecurity threats for counter intelligence or criminal activityTask
Analyze software and hardware testing resultsTask
Determine user requirementsTask
Plan cybersecurity architectureTask
Analyze feasibility of software design within time and cost constraintsTask
Preserve digital evidenceTask
Identify alleged violations of law, regulations, policy, or guidanceTask
Perform periodic system maintenanceTask
Conduct trial runs of programs and software applicationsTask
Determine accurate security levels in programs and software applicationsTask
Manage network access control lists on specialized cyber defense systemsTask
Detect concealed dataTask
Deliver training coursesTask
Develop organizational cybersecurity strategyTask
Design system security measuresTask
Update system security measuresTask
Develop enterprise architectureTask
Determine if systems meet minimum security requirementsTask
Design organizational knowledge management frameworksTask
Implement organizational knowledge management frameworksTask
Maintain organizational knowledge management frameworksTask
Identify responsible parties for intrusions and other crimesTask
Define baseline system security requirementsTask
Develop software system testing and validation proceduresTask
Create software system documentationTask
Develop local network usage policies and proceduresTask
Determine compliance with local network usage policies and proceduresTask
Develop procedures for system operations transfer to alternate sitesTask
Test failover for system operations transfer to alternative sitesTask
Develop cost estimates for new or modified systemsTask
Develop implementation guidelinesTask
Determine if cybersecurity training, education, and awareness meet established goalsTask
Resolve customer-reported system incidents and eventsTask
Analyze organizational cybersecurity posture trendsTask
Develop organizational cybersecurity posture trend reportsTask
Develop system security posture trend reportsTask
Document original condition of digital evidenceTask
Develop cybersecurity policies and proceduresTask
Create definition activity documentationTask
Create architecture activity documentationTask
Provide inspectors general, privacy officers, and oversight and compliance with legal analysis and decisionsTask
Determine compliance with cybersecurity policies and legal and regulatory requirementsTask
Determine adequacy of access controlsTask
Evaluate the impact of legal, regulatory, policy, standard, or procedural changesTask
Execute disaster recovery and continuity of operations processesTask
Prosecute cybercrimes and fraud committed against people and propertyTask
Identify cyber workforce planning and management issuesTask
Address cyber workforce planning and management issuesTask
Recommend enhancements to software and hardware solutionsTask
Implement cyber defense toolsTask
Identify system and network protection needsTask
Implement security measures for systems and system componentsTask
Resolve vulnerabilities in systems and system componentsTask
Mitigate risks in systems and system componentsTask
Implement dedicated cyber defense systemsTask
Document system requirementsTask
Implement system security measuresTask
Install database management systems and softwareTask
Configure database management systems and softwareTask
Install system hardware, software, and peripheral equipmentTask
Configure system hardware, software, and peripheral equipmentTask
Implement cross-domain solutionsTask
Administer system and network user accountsTask
Establish system and network rights processes and proceduresTask
Establish systems and equipment access protocolsTask
Inventory technology resourcesTask
Determine if developed solutions meet customer requirementsTask
Develop risk acceptance documentation for senior leaders and authorized representativesTask
Adapt software to new hardwareTask
Upgrade software interfacesTask
Improve software performanceTask
Monitor system and server configurationsTask
Maintain system and server configurationsTask
Monitor client-level computer system performanceTask
Create client-level computer system performance reportsTask
Maintain currency of cyber defense threat conditionsTask
Determine effectiveness of system implementation and testing processesTask
Establish minimum security requirements for applicationsTask
Determine if applications meet minimum security requirementsTask
Conduct cybersecurity risk assessmentsTask
Perform cybersecurity testing on systems in developmentTask
Diagnose faulty system and server hardwareTask
Repair faulty system and server hardwareTask
Identify programming flawsTask
Address security architecture gapsTask
Conduct cybersecurity reviewsTask
Identify cybersecurity gaps in enterprise architectureTask
Plan classroom learning sessionsTask
Coordinate training and educationTask
Plan delivery of non-classroom learningTask
Plan implementation strategiesTask
Assess the integration and alignment capabilities of enterprise componentsTask
Prepare legal documentsTask
Prepare investigative reportsTask
Advise stakeholders on enterprise cybersecurity risk managementTask
Advise stakeholders on supply chain risk managementTask
Recommend threat and vulnerability risk mitigation strategiesTask
Provide cybersecurity advice on implementation plans, standard operating procedures, maintenance documentation, and maintenance training materialsTask
Advise management, staff, and users on cybersecurity policyTask
Prepare impact reportsTask
Recover information from forensic data sourcesTask
Perform periodic reviews of learning materials and courses for accuracy and currencyTask
Recommend revisions to learning materials and curriculumTask
Determine if hardware and software complies with defined specifications and requirementsTask
Record test dataTask
Manage test dataTask
Determine if design components meet system requirementsTask
Determine scalability of system architectureTask
Advise stakeholders on vulnerability complianceTask
Resolve computer security incidentsTask
Prepare cyber defense reportsTask
Advise stakeholders on disaster recovery, contingency, and continuity of operations plansTask
Perform risk and vulnerability assessmentsTask
Recommend cost-effective security controlsTask
Prepare supply chain security reportsTask
Prepare risk management reportsTask
Develop cybersecurity supply chain risk management policyTask
Conduct vulnerability analysis of software patches and updatesTask
Prepare vulnerability analysis reportsTask
Determine impact of new systems and system interfaces on current and target environmentsTask
Conduct cybersecurity management assessmentsTask
Design cybersecurity management functionsTask
Assess target vulnerabilities and operational capabilitiesTask
Determine effectiveness of intelligence collection operationsTask
Recommend adjustments to intelligence collection strategiesTask
Develop common operational picturesTask
Develop cyber operations indicatorsTask
Coordinate all-source collection activitiesTask
Validate all-source collection requirements and plansTask
Develop priority information requirementsTask
Develop cybersecurity success metricsTask
Prepare threat and target briefingsTask
Prepare threat and target situational updatesTask
Determine customer requirementsTask
Exploit wireless computer and digital networksTask
Analyze system vulnerabilities within a networkTask
Conduct on-net activitiesTask
Exfiltrate data from deployed technologiesTask
Conduct off-net activitiesTask
Survey computer and digital networksTask
Develop organizational decision support toolsTask
Identify intelligence requirementsTask
Create comprehensive exploitation strategiesTask
Identify exploitable technical or operational vulnerabilitiesTask
Collect target informationTask
Develop crisis plansTask
Maintain crisis plansTask
Prepare operational assessment reportsTask
Recommend potential courses of actionTask
Develop feedback proceduresTask
Recommend changes to planning policies and proceduresTask
Implement changes to planning policies and proceduresTask
Develop cybersecurity cooperation agreements with external partnersTask
Determine effectiveness of network analysis strategiesTask
Exploit network devices and terminalsTask
Communicate tool requirements to developersTask
Develop intelligence collection strategiesTask
Designate priority information requirementsTask
Identify information collection gapsTask
Identify system vulnerabilities within a networkTask
Determine potential implications of new and emerging hardware and software technologiesTask
Modify collection requirementsTask
Determine effectiveness of collection requirementsTask
Monitor changes to designated cyber operations warning problem setsTask
Prepare change reports for designated cyber operations warning problem setsTask
Monitor threat activitiesTask
Prepare threat activity reportsTask
Report on adversarial activities that fulfill priority information requirementsTask
Identify indications and warnings of target communication changes or processing failuresTask
Prepare cyber operations intelligence reportsTask
Prepare indications and warnings intelligence reportsTask
Conduct policy reviewsTask
Coordinate strategic planning efforts with internal and external partnersTask
Develop external coordination policiesTask
Degrade or remove data from networks and computersTask
Process exfiltrated dataTask
Profile system administrators and their activitiesTask
Provide aim point recommendations for targetsTask
Provide reengagement recommendationsTask
Assess effectiveness of intelligence productionTask
Assess effectiveness of intelligence reportingTask
Provide intelligence analysis and supportTask
Notify appropriate personnel of imminent hostile intentions or activitiesTask
Determine validity and relevance of informationTask
Prepare network reportsTask
Prepare network intrusion reportsTask
Research communications trends in emerging technologiesTask
Evaluate locally developed toolsTask
Test internally developed softwareTask
Track status of information requestsTask
Determine if intelligence requirements and collection plans are accurate and up-to-dateTask
Document lessons learned during events and exercisesTask
Identify metadata patternsTask
Develop natural language processing toolsTask
Communicate critical or time-sensitive informationTask
Determine if new and existing services comply with privacy and data security obligationsTask
Develop and maintain privacy and confidentiality consent formsTask
Develop and maintain privacy and confidentiality authorization formsTask
Integrate civil rights and civil liberties in organizational programs, policies, and proceduresTask
Integrate privacy considerations in organizational programs, policies, and proceduresTask
Serve as liaison to regulatory and accrediting bodiesTask
Register databases with local privacy and data protection authoritiesTask
Promote privacy awareness to managementTask
Establish organizational Privacy Oversight CommitteeTask
Establish cybersecurity risk assessment processesTask
Develop information sharing strategic plansTask
Develop organizational information infrastructureTask
Implement organizational information infrastructureTask
Develop self-disclosure policies and proceduresTask
Oversee consumer information access rightsTask
Serve as information privacy liaison to technology system usersTask
Serve as liaison to information systems departmentTask
Create privacy training materialsTask
Prepare privacy awareness communicationsTask
Deliver privacy awareness orientationsTask
Deliver privacy awareness trainingsTask
Manage organizational participation in public privacy and cybersecurity eventsTask
Prepare privacy program status reportsTask
Respond to press and other public data security inquiriesTask
Develop organizational privacy programTask
Apply sanctions for failure to comply with privacy policiesTask
Develop sanctions for failure to comply with privacy policiesTask
Resolve allegations of noncompliance with privacy policies and notice of information practicesTask
Develop a risk management and compliance framework for privacyTask
Determine if projects comply with organizational privacy and data security policiesTask
Develop organizational privacy policies and proceduresTask
Establish complaint processesTask
Establish mechanisms to track access to protected health informationTask
Maintain the organizational policy programTask
Conduct privacy impact assessmentsTask
Conduct privacy compliance monitoringTask
Align cybersecurity and privacy practices in system information security plansTask
Determine if protected information releases comply with organizational policies and proceduresTask
Administer requests for release or disclosure of protected informationTask
Develop vendor review proceduresTask
Develop vendor auditing proceduresTask
Determine if partner and business agreements address privacy requirements and responsibilitiesTask
Provide legal advice for business partner contractsTask
Mitigate Personal Identifiable Information (PII) breachesTask
Administer action on organizational privacy complaintsTask
Determine if the organization's privacy program complies with federal and state privacy laws and regulationsTask
Identify organizational privacy compliance gapsTask
Correct organizational privacy compliance gapsTask
Manage privacy breachesTask
Implement and maintain organizational privacy policies and proceduresTask
Develop and maintain privacy and confidentiality information noticesTask
Determine business partner requirementsTask
Monitor advancements in information privacy technologiesTask
Establish a cybersecurity risk management programTask
Establish organizational risk management strategiesTask
Determine which business functions a system supportsTask
Determine system stakeholdersTask
Identify common controls available for inheritance by organizational systemsTask
Determine the security categorization for organizational systemsTask
Determine system boundariesTask
Identify system security requirementsTask
Register systems with organizational program management officesTask
Identify required system security controlsTask
Document planned system security control implementationsTask
Establish security control monitoring strategiesTask
Review and approve System Security Plans (SSPs)Task
Implement system security controlsTask
Establish system configuration baselinesTask
Document changes to planned system control implementationsTask
Develop system security control assessment plansTask
Approve system security control assessment plansTask
Determine effectiveness of security controlsTask
Prepare security control assessment reportsTask
Conduct security control remediationsTask
Develop cybersecurity action plans and milestonesTask
Prepare authorization packagesTask
Submit authorization packages to authorizing officials for adjudicationTask
Determine risks of operating or using a systemTask
Determine risks of using common controlsTask
Implement cybersecurity action plansTask
Determine if system security risks are acceptableTask
Determine if common control risks are acceptableTask
Update cybersecurity action plansTask
Report system security status to authorizing officialsTask
Determine if system security meets acceptable risk levelsTask
Establish system disposal processesTask
Implement system disposal processesTask
Form continuous monitoring working groupsTask
Establish continuous monitoring scoring and grading metricsTask
Integrate a continuous monitoring program into organizational security governance structures and policiesTask
Make cybersecurity investment decisions to address persistent issuesTask
Provide training and resources to continuous monitoring staffTask
Prepare continuous monitoring reportsTask
Determine if risk metrics support continuous monitoringTask
Determine if continuous monitoring data provides situational awareness of risk levelsTask
Define unacceptable risk threshold triggers for continuous monitoring dataTask
Establish system-level reporting categoriesTask
Manage the continuous monitoring programTask
Establish continuous monitoring communication processesTask
Identify reporting requirements that are fulfilled by the continuous monitoring programTask
Establish continuous monitoring reporting requirementsTask
Perform continuous monitoringTask
Establish automated control assessment reporting requirementsTask
Conduct continuous monitoring data assessmentsTask
Integrate continuous monitoring results in ongoing authorizationsTask
Establish access control processes for continuous monitoring tools and technologiesTask
Implement access control processes for continuous monitoring tools and technologiesTask
Establish technical help processes for continuous monitoring mitigatorsTask
Communicate continuous monitoring reporting requirementsTask
Define responsibilities for implementing continuous monitoring tools or technologiesTask
Establish liaison to scoring and metrics working groupTask
Establish risk management processesTask
Establish performance measurement requirements for continuous monitoring tools and technologiesTask
Assess continuous monitoring performanceTask
Coordinate responses to issues flagged during continuous monitoringTask
Implement risk mitigation strategiesTask
Document system alertsTask
Escalate system alerts that may indicate risksTask
Disseminate anomalous activity reports to the insider threat hubTask
Identify anomalous activityTask
Conduct independent comprehensive assessments of target-specific informationTask
Conduct insider threat risk assessmentsTask
Prepare insider threat briefingsTask
Recommend risk mitigation courses of action (CoA)Task
Coordinate with internal and external incident management partners across jurisdictionsTask
Recommend improvements to insider threat detection processesTask
Collect digital evidence that meets priority intelligence requirementsTask
Develop digital evidence reports for internal and external partnersTask
Develop elicitation indicatorsTask
Identify high value assetsTask
Identify potential insider threatsTask
Notify appropriate personnel of imminent of imminent hostile intentions or activitiesTask
Identify imminent or hostile intentions or activitiesTask
Develop a continuously updated overview of an incident throughout the incident's life cycleTask
Develop insider threat cyber operations indicatorsTask
Integrate information from cyber resources, internal partners, and external partnersTask
Advise insider threat hub inquiriesTask
Conduct cybersecurity insider threat inquiriesTask
Deliver all-source cyber operations and intelligence indications and warningsTask
Interpret network activity for intelligence valueTask
Monitor network activity for vulnerabilitiesTask
Identify potential insider risks to networksTask
Document potential insider risks to networksTask
Report network vulnerabilitiesTask
Develop insider threat investigation plansTask
Investigate alleged insider threat cybersecurity policy violationsTask
Refer cases on active insider threat activities to law enforcement investigatorsTask
Perform cybersecurity reviewsTask
Establish an insider threat risk management assessment programTask
Recommend courses of action or countermeasures to mitigate risksTask
Evaluate organizational insider risk response capabilitiesTask
Document insider threat information sourcesTask
Conduct insider threat studiesTask
Identify potential targets for exploitationTask
Analyze potential targets for exploitationTask
Vet insider threat targeting with law enforcement and intelligence partnersTask
Develop insider threat targetsTask
Maintain User Activity Monitoring (UAM) toolsTask
Monitor the output from User Activity Monitoring (UAM) toolsTask
Check network connectionsTask
Look for indicators of intrusionsTask
Identify devices and networks on sceneTask
Collect devices containing digital evidenceTask
Identify areas of compromiseTask
Acquire digital evidenceTask
Create a digital footprint of raw or physical dataTask
Process data into readable formatTask
Prepare data for ingestion into application systemsTask
Recover deleted or overwritten data filesTask
Create derivative evidence from findings reportTask
Serve as subject expert in training fact witnesses for testifyingTask
Present factual causality to support attribution of criminal activityTask
Prepare technical materials for legal proceedingsTask
Serve as liaison to prosecutorsTask
Manage forensic laboratory accreditation processesTask
Develop OT inventory model for cybersecurityTask
Serve as OT engineering subject matter expert during development of change management policies and proceduresTask
Determine if implementation of security measures and controls meets regulatory standards and is in compliance with legal or policy requirementsTask
Identify gaps in OT network architectureTask
Assign security level targets to network zones for control systemsTask
Create a change management planTask
Design cybersecurity tools for OT systemsTask
Perform a process hazard analysis (PHA)Task
Review policies, standards, and regulations for conflicts that may create control system vulnerabilitiesTask
Create cybersecurity inspection and test policies and procedures for OT systemsTask
Develop system procurement specificationsTask
Determine the impact of cybersecurity requirements on costs and budgetingTask
Conduct cybersecurity reviews of OT system engineering plans and documentationTask
Participate in safety system design processes to counteract potential cybersecurity sabotageTask
Generate cyberattack scenarios of serious physical consequenceTask
Oversee implementation of system controlsTask
Develop system upgrade specificationsTask
Assign networked engineering assets to security zonesTask
Communicate implication of new and upgraded technologies to cybersecurity program stakeholdersTask
Inventory OT assetsTask
Recommend cybersecurity requirements for integration in continuity planningTask
Serve as OT engineering subject matter expert for cybersecurity standards, policies, and procedures developmentTask
Serve as OT engineering subject matter expert for development of organizational cybersecurity risk management planTask
Train cybersecurity defense technicians on OT system processes and proceduresTask
Disseminate investigative report findingsTask
Deconflict investigative activity with other law enforcement agenciesTask
Determine appropriate jurisdiction for legal actionTask
Collect physical evidence of cyber intrusion incidents, investigations, and operationsTask
Conduct supplier risk assessmentsTask
Develop organizational C-SCRM plansTask
Monitor supply chain risk exposureTask
Develop cybersecurity supply chain risk management policies and proceduresTask
Communicate cybersecurity requirements to suppliersTask
Integrate C-SCRM activities throughout the software development life cycle (SDLC)Task
Determine effectiveness of risk mitigation strategiesTask
Develop an acquisition strategy that reduces organizational risk exposureTask
Integrate C-SCRM into organizational workforce trainingTask
Establish enterprise-wide C-SCRM policiesTask
Establish internal checks and balances to ensure compliance with C-SCRM security and quality requirementsTask
Integrate C-SCRM into incident response functionsTask
Protect C-SCRM plans and policies from unauthorized disclosure and modificationTask
Validate that procured systems and system components are genuine and unalteredTask
Document supply chain security, resilience, and dependability requirementsTask
Recommend cost-effective supply chain security controls or control enhancementsTask
Evaluate offers to ensure conformance with C-SCRM requirementsTask
Knowledge of encryption algorithmsKnowledge
Knowledge of microprocessorsKnowledge
Knowledge of performance tuning tools and techniquesKnowledge
Knowledge of programming language structures and logicKnowledge
Knowledge of technology integration processesKnowledge
Knowledge of Voice over IP (VoIP)Knowledge
Knowledge of Extensible Markup Language (XML) schemasKnowledge
Knowledge of wireless applications vulnerabilitiesKnowledge
Knowledge of Internet and routing protocolsKnowledge
Knowledge of language processing tools and techniquesKnowledge
Knowledge of malwareKnowledge
Knowledge of operational planning processesKnowledge
Knowledge of decryptionKnowledge
Knowledge of decryption tools and techniquesKnowledge
Knowledge of data repositoriesKnowledge
Knowledge of security awareness programsKnowledge
Knowledge of code tailoring tools and techniquesKnowledge
Knowledge of the organizational cybersecurity workforceKnowledge
Knowledge of market research tools and techniquesKnowledge
Knowledge of pricing structuresKnowledge
Knowledge of virtual learning environmentsKnowledge
Knowledge of cybersecurity operation policies and proceduresKnowledge
Knowledge of standard operating procedures (SOPs)Knowledge
Knowledge of system optimization techniquesKnowledge
Knowledge of data visualization tools and techniquesKnowledge
Knowledge of career pathsKnowledge
Knowledge of organizational career progressionsKnowledge
Knowledge of supplier assessment criteriaKnowledge
Knowledge of trustworthiness principlesKnowledge
Knowledge of workforce trendsKnowledge
Knowledge of cybersecurity practices in the acquisition processKnowledge
Knowledge of target audience requirementsKnowledge
Knowledge of intelligence fusionKnowledge
Knowledge of network collection tools and techniquesKnowledge
Knowledge of network collection policies and proceduresKnowledge
Knowledge of cognitive biasesKnowledge
Knowledge of information privacy technologiesKnowledge
Knowledge of appropriate use policies and proceduresKnowledge
Knowledge of reauthorization processesKnowledge
Knowledge of systems security engineeringKnowledge
Knowledge of stakeholder managementKnowledge
Knowledge of system security plansKnowledge
Knowledge of contractsKnowledge
Knowledge of contract managementKnowledge
Knowledge of contractor managementKnowledge
Knowledge of life cycle development milestonesKnowledge
Knowledge of Communications Security (COMSEC) policies and proceduresKnowledge
Knowledge of the Communications Security (COMSEC) Material Control System (CMCS)Knowledge
Knowledge of types of Communications Security (COMSEC) incidentsKnowledge
Knowledge of computer networking protocolsKnowledge
Knowledge of risk management processesKnowledge
Knowledge of cybersecurity laws and regulationsKnowledge
Knowledge of cybersecurity policies and proceduresKnowledge
Knowledge of privacy laws and regulationsKnowledge
Knowledge of privacy policies and proceduresKnowledge
Knowledge of cybersecurity principles and practicesKnowledge
Knowledge of privacy principles and practicesKnowledge
Knowledge of cybersecurity threatsKnowledge
Knowledge of cybersecurity vulnerabilitiesKnowledge
Knowledge of cybersecurity threat characteristicsKnowledge
Knowledge of access control principles and practicesKnowledge
Knowledge of authentication and authorization tools and techniquesKnowledge
Knowledge of business operations standards and best practicesKnowledge
Knowledge of common application vulnerabilitiesKnowledge
Knowledge of network infrastructure principles and practicesKnowledge
Knowledge of requirements analysis principles and practicesKnowledge
Knowledge of cyber defense tools and techniquesKnowledge
Knowledge of vulnerability assessment tools and techniquesKnowledge
Knowledge of complex data structure capabilities and applicationsKnowledge
Knowledge of computer algorithm capabilities and applicationsKnowledge
Knowledge of programming principles and practicesKnowledge
Knowledge of digital forensic data principles and practicesKnowledge
Knowledge of encryption algorithm capabilities and applicationsKnowledge
Knowledge of cryptographic key management principles and practicesKnowledge
Knowledge of data administration policies and proceduresKnowledge
Knowledge of data standardization policies and proceduresKnowledge
Knowledge of data backup and recovery policies and proceduresKnowledge
Knowledge of data warehousing principles and practicesKnowledge
Knowledge of data mining principles and practicesKnowledge
Knowledge of database management system (DBMS) principles and practicesKnowledge
Knowledge of database query language capabilities and applicationsKnowledge
Knowledge of database schema capabilities and applicationsKnowledge
Knowledge of database systems and softwareKnowledge
Knowledge of digital rights management (DRM) tools and techniquesKnowledge
Knowledge of business continuity and disaster recovery (BCDR) policies and proceduresKnowledge
Knowledge of enterprise cybersecurity architecture principles and practicesKnowledge
Knowledge of evaluation and validation principles and practicesKnowledge
Knowledge of Local Area Networks (LAN)Knowledge
Knowledge of Wide Area Networks (WAN)Knowledge
Knowledge of electrical engineering principles and practicesKnowledge
Knowledge of resiliency and redundancy principles and practicesKnowledge
Knowledge of host access control (HAC) systems and softwareKnowledge
Knowledge of network access control (NAC) systems and softwareKnowledge
Knowledge of network communications principles and practicesKnowledge
Knowledge of human-computer interaction (HCI) principles and practicesKnowledge
Knowledge of Security Assessment and Authorization (SA&A) processesKnowledge
Knowledge of risk management principles and practicesKnowledge
Knowledge of software development principles and practicesKnowledge
Knowledge of vulnerability data sourcesKnowledge
Knowledge of incident response principles and practicesKnowledge
Knowledge of incident response tools and techniquesKnowledge
Knowledge of incident handling tools and techniquesKnowledge
Knowledge of analysis standards and best practicesKnowledge
Knowledge of Confidentiality, Integrity and Availability (CIA) principles and practicesKnowledge
Knowledge of non-repudiation principles and practicesKnowledge
Knowledge of cyber safety principles and practicesKnowledge
Knowledge of systems security engineering (SSE) principles and practicesKnowledge
Knowledge of intrusion detection tools and techniquesKnowledge
Knowledge of information technology (IT) architecture models and frameworksKnowledge
Knowledge of Risk Management Framework (RMF) requirementsKnowledge
Knowledge of risk management models and frameworksKnowledge
Knowledge of information technology (IT) security principles and practicesKnowledge
Knowledge of bandwidth management tools and techniquesKnowledge
Knowledge of low-level programming languagesKnowledge
Knowledge of mathematics principles and practicesKnowledge
Knowledge of system performance indicatorsKnowledge
Knowledge of system availability measuresKnowledge
Knowledge of identity and access management (IAM) principles and practicesKnowledge
Knowledge of new and emerging technologiesKnowledge
Knowledge of operating system (OS) systems and softwareKnowledge
Knowledge of parallel and distributed computing principles and practicesKnowledge
Knowledge of policy-based access controlsKnowledge
Knowledge of Risk Adaptive (Adaptable) Access Controls (RAdAC)Knowledge
Knowledge of Privacy Impact Assessment (PIA) principles and practicesKnowledge
Knowledge of process engineering principles and practicesKnowledge
Knowledge of query languagesKnowledge
Knowledge of system threatsKnowledge
Knowledge of system vulnerabilitiesKnowledge
Knowledge of remote access principles and practicesKnowledge
Knowledge of resource management principles and practicesKnowledge
Knowledge of configuration management (CM) tools and techniquesKnowledge
Knowledge of security management principles and practicesKnowledge
Knowledge of system design tools and techniquesKnowledge
Knowledge of server administration principles and practicesKnowledge
Knowledge of client and server architectureKnowledge
Knowledge of server diagnostic tools and techniquesKnowledge
Knowledge of Fault Detection and Diagnostics (FDD) tools and techniquesKnowledge
Knowledge of software debugging principles and practicesKnowledge
Knowledge of software design tools and techniquesKnowledge
Knowledge of software development models and frameworksKnowledge
Knowledge of software engineering principles and practicesKnowledge
Knowledge of data asset management principles and practicesKnowledge
Knowledge of structured analysis principles and practicesKnowledge
Knowledge of automated systems analysis tools and techniquesKnowledge
Knowledge of system design standards and best practicesKnowledge
Knowledge of system administration principles and practicesKnowledge
Knowledge of system life cycle management principles and practicesKnowledge
Knowledge of systems testing and evaluation tools and techniquesKnowledge
Knowledge of telecommunications principles and practicesKnowledge
Knowledge of content creation tools and techniquesKnowledge
Knowledge of information management tools and techniquesKnowledge
Knowledge of collaboration tools and techniquesKnowledge
Knowledge of data storage media characteristicsKnowledge
Knowledge of enterprise information technology (IT) architecture principles and practicesKnowledge
Knowledge of systems engineering processesKnowledge
Knowledge of hardware maintenance policies and proceduresKnowledge
Knowledge of virtual private network (VPN) systems and softwareKnowledge
Knowledge of web service protocolsKnowledge
Knowledge of network attack characteristicsKnowledge
Knowledge of insider threat laws and regulationsKnowledge
Knowledge of insider threat tools and techniquesKnowledge
Knowledge of physical computer componentsKnowledge
Knowledge of computer peripheralsKnowledge
Knowledge of adversarial tactics principles and practicesKnowledge
Knowledge of adversarial tactics tools and techniquesKnowledge
Knowledge of adversarial tactics policies and proceduresKnowledge
Knowledge of defense-in-depth principles and practicesKnowledge
Knowledge of network configurationsKnowledge
Knowledge of file extensionsKnowledge
Knowledge of file system implementation principles and practicesKnowledge
Knowledge of digital evidence seizure policies and proceduresKnowledge
Knowledge of digital evidence preservation policies and proceduresKnowledge
Knowledge of ethical hacking tools and techniquesKnowledge
Knowledge of program management principles and practicesKnowledge
Knowledge of project management principles and practicesKnowledge
Knowledge of evidence admissibility laws and regulationsKnowledge
Knowledge of cognitive domain models and frameworksKnowledge
Knowledge of chain of custody policies and proceduresKnowledge
Knowledge of supply chain risk management principles and practicesKnowledge
Knowledge of persistent data principles and practicesKnowledge
Knowledge of command-line tools and techniquesKnowledge
Knowledge of machine virtualization tools and techniquesKnowledge
Knowledge of web mail tools and techniquesKnowledge
Knowledge of system file characteristicsKnowledge
Knowledge of digital forensics data characteristicsKnowledge
Knowledge of deployable forensics principles and practicesKnowledge
Knowledge of web filtering systems and softwareKnowledge
Knowledge of digital communication systems and softwareKnowledge
Knowledge of interpreted and compiled programming language characteristicsKnowledge
Knowledge of secure coding tools and techniquesKnowledge
Knowledge of intelligence collection management processesKnowledge
Knowledge of front-end intelligence collection systems and softwareKnowledge
Knowledge of event correlation tools and techniquesKnowledge
Knowledge of new and emerging cybersecurity risksKnowledge
Knowledge of import and export control laws and regulationsKnowledge
Knowledge of supply chain risksKnowledge
Knowledge of federal agency roles and responsibilitiesKnowledge
Knowledge of risk tolerance principles and practicesKnowledge
Knowledge of incident response policies and proceduresKnowledge
Knowledge of incident response roles and responsibilitiesKnowledge
Knowledge of threat vector characteristicsKnowledge
Knowledge of software security principles and practicesKnowledge
Knowledge of software quality assurance (SQA) principles and practicesKnowledge
Knowledge of account creation policies and proceduresKnowledge
Knowledge of password policies and proceduresKnowledge
Knowledge of network attack vectorsKnowledge
Knowledge of cyberattack characteristicsKnowledge
Knowledge of cyberattack actor characteristicsKnowledge
Knowledge of technology procurement principles and practicesKnowledge
Knowledge of risk assessment principles and practicesKnowledge
Knowledge of threat assessment principles and practicesKnowledge
Knowledge of hardening tools and techniquesKnowledge
Knowledge of supply chain risk management policies and proceduresKnowledge
Knowledge of critical infrastructure systems and softwareKnowledge
Knowledge of hardware reverse engineering tools and techniquesKnowledge
Knowledge of middleware software capabilities and applicationsKnowledge
Knowledge of software reverse engineering tools and techniquesKnowledge
Knowledge of cyber attack stagesKnowledge
Knowledge of cyber intrusion activity phasesKnowledge
Knowledge of secure software deployment principles and practicesKnowledge
Knowledge of secure software deployment tools and techniquesKnowledge
Knowledge of network systems management principles and practicesKnowledge
Knowledge of network systems management tools and techniquesKnowledge
Knowledge of data carving tools and techniquesKnowledge
Knowledge of reverse engineering principles and practicesKnowledge
Knowledge of anti-forensics tools and techniquesKnowledge
Knowledge of forensics lab design principles and practicesKnowledge
Knowledge of forensics lab design systems and softwareKnowledge
Knowledge of debugging tools and techniquesKnowledge
Knowledge of filename extension abuseKnowledge
Knowledge of malware analysis tools and techniquesKnowledge
Knowledge of virtual machine detection tools and techniquesKnowledge
Knowledge of encryption tools and techniquesKnowledge
Knowledge of malware signature principles and practicesKnowledge
Knowledge of network port capabilities and applicationsKnowledge
Knowledge of data remediation tools and techniquesKnowledge
Knowledge of cloud computing principles and practicesKnowledge
Knowledge of knowledge management principles and practicesKnowledge
Knowledge of data classification standards and best practicesKnowledge
Knowledge of data classification tools and techniquesKnowledge
Knowledge of database application programming interfaces (APIs)Knowledge
Knowledge of process improvement principles and practicesKnowledge
Knowledge of process maturity models and frameworksKnowledge
Knowledge of enterprise architecture (EA) reference models and frameworksKnowledge
Knowledge of enterprise architecture (EA) principles and practicesKnowledge
Knowledge of service management principles and practicesKnowledge
Knowledge of service management standards and best practicesKnowledge
Knowledge of key management service (KMS) principles and practicesKnowledge
Knowledge of symmetric encryption principles and practicesKnowledge
Knowledge of key management service (KMS) key rotation policies and proceduresKnowledge
Knowledge of application firewall principles and practicesKnowledge
Knowledge of network firewall principles and practicesKnowledge
Knowledge of industry cybersecurity models and frameworksKnowledge
Knowledge of access control models and frameworksKnowledge
Knowledge of learning assessment tools and techniquesKnowledge
Knowledge of ethical hacking principles and practicesKnowledge
Knowledge of circuit analysis tools and techniquesKnowledge
Knowledge of covert communication tools and techniquesKnowledge
Knowledge of instructional design principles and practicesKnowledge
Knowledge of instructional design models and frameworksKnowledge
Knowledge of training policies and proceduresKnowledge
Knowledge of Bloom's Taxonomy learning levelsKnowledge
Knowledge of learning management system (LMS) systems and softwareKnowledge
Knowledge of learning modesKnowledge
Knowledge of the Open Systems Interconnect (OSI) reference modelKnowledge
Knowledge of cyber defense laws and regulationsKnowledge
Knowledge of training systems and softwareKnowledge
Knowledge of computer architecture principles and practicesKnowledge
Knowledge of taxonomy models and frameworksKnowledge
Knowledge of semantic ontology models and frameworksKnowledge
Knowledge of logging tools and technologiesKnowledge
Knowledge of cloud service models and frameworksKnowledge
Knowledge of crisis management protocolsKnowledge
Knowledge of crisis management processesKnowledge
Knowledge of crisis management tools and techniquesKnowledge
Knowledge of the NIST Workforce Framework for Cybersecurity (NICE Framework)Knowledge
Knowledge of service desk principles and practicesKnowledge
Knowledge of machine learning principles and practicesKnowledge
Knowledge of media production tool and techniquesKnowledge
Knowledge of multi-level security (MLS) systems and softwareKnowledge
Knowledge of cross-domain solutionsKnowledge
Knowledge of abnormal physical and physiological behaviorsKnowledge
Knowledge of needs assessment principles and practicesKnowledge
Knowledge of remote access tools and techniquesKnowledge
Knowledge of sustainment principles and practicesKnowledge
Knowledge of sustainment processesKnowledge
Knowledge of binary analysis tools and techniquesKnowledge
Knowledge of network architecture principles and practicesKnowledge
Knowledge of malware analysis principles and practicesKnowledge
Knowledge of Personally Identifiable Information (PII) data security standards and best practicesKnowledge
Knowledge of Payment Card Industry (PCI) data security standards and best practicesKnowledge
Knowledge of Personal Health Information (PHI) data security standards and best practicesKnowledge
Knowledge of risk management policies and proceduresKnowledge
Knowledge of program protection plan (PPP) principles and practicesKnowledge
Knowledge of the acquisition life cycle models and frameworksKnowledge
Knowledge of operating system structures and internalsKnowledge
Knowledge of network analysis tools and techniquesKnowledge
Knowledge of wireless communication tools and techniquesKnowledge
Knowledge of signal jamming tools and techniquesKnowledge
Knowledge of systems engineering principles and practicesKnowledge
Knowledge of content synchronization tools and techniquesKnowledge
Knowledge of credential management systems and softwareKnowledge
Knowledge of data-at-rest encryption (DARE) standards and best practicesKnowledge
Knowledge of cryptographic key storage systems and softwareKnowledge
Knowledge of N-tier architecture principles and practicesKnowledge
Knowledge of data classification policies and proceduresKnowledge
Knowledge of incident, event, and problem management policies and proceduresKnowledge
Knowledge of network hardware threats and vulnerabilitiesKnowledge
Knowledge of countermeasure design principles and practicesKnowledge
Knowledge of network mapping principles and practicesKnowledge
Knowledge of packet-level analysis tools and techniquesKnowledge
Knowledge of subnet tools and techniquesKnowledge
Knowledge of data concealment tools and techniquesKnowledge
Knowledge of cryptology principles and practicesKnowledge
Knowledge of industry indicatorsKnowledge
Knowledge of intelligence data gathering principles and practicesKnowledge
Knowledge of intelligence data gathering policies and proceduresKnowledge
Knowledge of incident reporting policies and proceduresKnowledge
Knowledge of computer engineering principles and practicesKnowledge
Knowledge of embedded systems and softwareKnowledge
Knowledge of fault tolerance tools and techniquesKnowledge
Knowledge of Intrusion Detection System (IDS) tools and techniquesKnowledge
Knowledge of Intrusion Prevention System (IPS) tools and techniquesKnowledge
Knowledge of information theory principles and practicesKnowledge
Knowledge of data mining tools and techniquesKnowledge
Knowledge of foreign disclosure policies and proceduresKnowledge
Knowledge of penetration testing principles and practicesKnowledge
Knowledge of penetration testing tools and techniquesKnowledge
Knowledge of root cause analysis tools and techniquesKnowledge
Knowledge of system integration principles and practicesKnowledge
Knowledge of operational design principles and practicesKnowledge
Knowledge of content management system (CMS) capabilities and applicationsKnowledge
Knowledge of planning systems and softwareKnowledge
Knowledge of targeting laws and regulationsKnowledge
Knowledge of exploitation laws and regulationsKnowledge
Knowledge of language analysis tools and techniquesKnowledge
Knowledge of voice analysis tools and techniquesKnowledge
Knowledge of graphic materials analysis tools and techniquesKnowledge
Knowledge of analytic standards and frameworksKnowledge
Knowledge of cyber-attack tools and techniquesKnowledge
Knowledge of auditing policies and proceduresKnowledge
Knowledge of logging policies and proceduresKnowledge
Knowledge of system persistence tools and techniquesKnowledge
Knowledge of intelligence collection management tools and techniquesKnowledge
Knowledge of information searching tools and techniquesKnowledge
Knowledge of intelligence collection sourcesKnowledge
Knowledge of computer networking principles and practicesKnowledge
Knowledge of web security principles and practicesKnowledge
Knowledge of target selection criticality factorsKnowledge
Knowledge of target selection vulnerability factorsKnowledge
Knowledge of active defense tools and techniquesKnowledge
Knowledge of intelligence information repositoriesKnowledge
Knowledge of cyber operations principles and practicesKnowledge
Knowledge of database administration principles and practicesKnowledge
Knowledge of database maintenance principles and practicesKnowledge
Knowledge of deconfliction processesKnowledge
Knowledge of denial and deception tools and techniquesKnowledge
Knowledge of Wireless Local Area Network (WLAN) tools and techniquesKnowledge
Knowledge of information management principles and practicesKnowledge
Knowledge of evasion principles and practicesKnowledge
Knowledge of evasion tools and techniquesKnowledge
Knowledge of supervisory control and data acquisition (SCADA) systems and softwareKnowledge
Knowledge of reporting policies and proceduresKnowledge
Knowledge of intelligence collection capabilities and applicationsKnowledge
Knowledge of intelligence requirements tasking systems and softwareKnowledge
Knowledge of intelligence support activitiesKnowledge
Knowledge of threat intelligence principles and practicesKnowledge
Knowledge of intelligence policies and proceduresKnowledge
Knowledge of network addressing principles and practicesKnowledge
Knowledge of malware characteristicsKnowledge
Knowledge of network security principles and practicesKnowledge
Knowledge of network topology principles and practicesKnowledge
Knowledge of code obfuscation tools and techniquesKnowledge
Knowledge of operational effectiveness assessment principles and practicesKnowledge
Knowledge of operations security (OPSEC) principles and practicesKnowledge
Knowledge of organization decision support tools and techniquesKnowledge
Knowledge of resource and asset readiness reporting policies and proceduresKnowledge
Knowledge of network exploitation tools and techniquesKnowledge
Knowledge of partnership policies and proceduresKnowledge
Knowledge of decision-making policies and proceduresKnowledge
Knowledge of requirements submission processesKnowledge
Knowledge of post implementation review (PIR) processesKnowledge
Knowledge of target development principles and practicesKnowledge
Knowledge of operational planning tools and techniquesKnowledge
Knowledge of risk mitigation tools and techniquesKnowledge
Knowledge of satellite-based communication systems and softwareKnowledge
Knowledge of scripting principles and practicesKnowledge
Knowledge of target languageKnowledge
Knowledge of target research tools and techniquesKnowledge
Knowledge of tasking processesKnowledge
Knowledge of routing protocolsKnowledge
Knowledge of critical information requirementsKnowledge
Knowledge of collection data flow from origin into repositories and toolsKnowledge
Knowledge of red team functions and capabilitiesKnowledge
Knowledge of digital forensics principles and practicesKnowledge
Knowledge of language analysis principles and practicesKnowledge
Knowledge of request for information processesKnowledge
Knowledge of operation assessment processesKnowledge
Knowledge of Request For Information (RFI) processesKnowledge
Knowledge of network operations principles and practicesKnowledge
Knowledge of threat behaviorsKnowledge
Knowledge of target behaviorsKnowledge
Knowledge of threat systems and softwareKnowledge
Knowledge of virtual machine tools and technologiesKnowledge
Knowledge of privacy disclosure statement laws and regulationsKnowledge
Knowledge of continuous monitoring processesKnowledge
Knowledge of automated security control testing tools and techniquesKnowledge
Knowledge of hardware asset management principles and practicesKnowledge
Knowledge of software asset management principles and practicesKnowledge
Knowledge of risk scoring principles and practicesKnowledge
Knowledge of data security controlsKnowledge
Knowledge of risk assessment tools and techniquesKnowledge
Knowledge of web application security risksKnowledge
Knowledge of secure software update principles and practicesKnowledge
Knowledge of secure firmware update principles and practicesKnowledge
Knowledge of ingress filtering tools and techniquesKnowledge
Knowledge of cybersecurity competitionsKnowledge
Knowledge of data privacy controlsKnowledge
Knowledge of exploitation tools and techniquesKnowledge
Knowledge of design modelingKnowledge
Knowledge of social engineering tools and techniquesKnowledge
Knowledge of knowledge management tools and techniquesKnowledge
Knowledge of protocol analyzer tools and techniquesKnowledge
Knowledge of software, hardware, and peripheral equipment repair tools and techniquesKnowledge
Knowledge of media forensicsKnowledge
Knowledge of digital forensics tools and techniquesKnowledge
Knowledge of black-box software testingKnowledge
Knowledge of hexadecimal dataKnowledge
Knowledge of design methodsKnowledge
Knowledge of data analysis tools and techniquesKnowledge
Knowledge of data mapping tools and techniquesKnowledge
Knowledge of personnel systems and softwareKnowledge
Knowledge of code analysis tools and techniquesKnowledge
Knowledge of analytical tools and techniquesKnowledge
Knowledge of analyticsKnowledge
Knowledge of remote command line tools and techniquesKnowledge
Knowledge of Graphic User Interface (GUI) tools and techniquesKnowledge
Knowledge of geospatial data analysis tools and techniquesKnowledge
Knowledge of non-attributable networksKnowledge
Knowledge of traceroute tools and techniquesKnowledge
Knowledge of virtual collaborative workspace tools and techniquesKnowledge
Knowledge of acquisition cybersecurity requirementsKnowledge
Knowledge of application security design principles and practicesKnowledge
Knowledge of asset management policies and proceduresKnowledge
Knowledge of blue force trackingKnowledge
Knowledge of capacity managementKnowledge
Knowledge of Chain of Custody (CoC) processes and proceduresKnowledge
Knowledge of classification guidelinesKnowledge
Knowledge of coding and testing standardsKnowledge
Knowledge of completion criteriaKnowledge
Knowledge of component and interface specificationsKnowledge
Knowledge of Confidentiality, Integrity, Availability, Authenticity, and Non-repudiation (CIAAN) principles and practicesKnowledge
Knowledge of configuration managementKnowledge
Knowledge of configuration management principles and practicesKnowledge
Knowledge of continuous monitoring principles and practicesKnowledge
Knowledge of continuous monitoring scoring and grading metricsKnowledge
Knowledge of continuous monitoring tools and techniquesKnowledge
Knowledge of cost constraintsKnowledge
Knowledge of customer experience principles and practicesKnowledge
Knowledge of customer requirementsKnowledge
Knowledge of cyber defense auditing laws and regulationsKnowledge
Knowledge of cyber defense auditing policies and practicesKnowledge
Knowledge of cyber defense monitoring toolsKnowledge
Knowledge of cyber defense system analysis toolsKnowledge
Knowledge of cybersecurity engineeringKnowledge
Knowledge of cybersecurity objectivesKnowledge
Knowledge of cybersecurity requirementsKnowledge
Knowledge of cybersecurity standards and best practicesKnowledge
Knowledge of cybersecurity workforce policies and proceduresKnowledge
Knowledge of data classification levelsKnowledge
Knowledge of data correlation tools and techniquesKnowledge
Knowledge of data encryption practices and principlesKnowledge
Knowledge of data gathering tools and techniquesKnowledge
Knowledge of data integrity principles and practicesKnowledge
Knowledge of data manipulation principles and practicesKnowledge
Knowledge of data retrieval principles and practicesKnowledge
Knowledge of data storage principles and practicesKnowledge
Knowledge of digital evidence cataloging tools and techniquesKnowledge
Knowledge of digital evidence extraction tools and techniquesKnowledge
Knowledge of digital evidence handling principles and practicesKnowledge
Knowledge of digital evidence packaging tools and techniquesKnowledge
Knowledge of digital evidence preservation tools and techniquesKnowledge
Knowledge of enterprise cybersecurity architectureKnowledge
Knowledge of enterprise-wide version control systemsKnowledge
Knowledge of evaluation and validation requirementsKnowledge
Knowledge of fail-over or alternate site requirementsKnowledge
Knowledge of federal and state accreditation standardsKnowledge
Knowledge of financial managementKnowledge
Knowledge of forensic image processing tools and techniquesKnowledge
Knowledge of hardware design principles and practicesKnowledge
Knowledge of independent testing methodsKnowledge
Knowledge of information architecture principles and practicesKnowledge
Knowledge of data sanitization methodsKnowledge
Knowledge of intrusion set tools and techniquesKnowledge
Knowledge of material supportability requirementsKnowledge
Knowledge of mathematical modelsKnowledge
Knowledge of mission assurance practices and principlesKnowledge
Knowledge of mission requirementsKnowledge
Knowledge of multilevel security requirementsKnowledge
Knowledge of network componentsKnowledge
Knowledge of network monitoring tools and techniquesKnowledge
Knowledge of network topologiesKnowledge
Knowledge of operational environment risksKnowledge
Knowledge of organization's security strategyKnowledge
Knowledge of organizational cybersecurity goals and objectivesKnowledge
Knowledge of organizational cybersecurity incident response plansKnowledge
Knowledge of organizational cybersecurity policies and configurationsKnowledge
Knowledge of organizational cybersecurity policies and proceduresKnowledge
Knowledge of organizational cybersecurity workforce requirementsKnowledge
Knowledge of organizational evaluation and validation requirementsKnowledge
Knowledge of organizational human resource (HR) policies and proceduresKnowledge
Knowledge of organizational objectivesKnowledge
Knowledge of organizational policies and proceduresKnowledge
Knowledge of organizational policy and proceduresKnowledge
Knowledge of organizational risk levelsKnowledge
Knowledge of organizational security postureKnowledge
Knowledge of organizational privacy policies and proceduresKnowledge
Knowledge of packet analysis tools and techniquesKnowledge
Knowledge of Personally Identifiable Information (PII) attributesKnowledge
Knowledge of priority information requirementsKnowledge
Knowledge of priority intelligence requirementsKnowledge
Knowledge of privacy and data security regulatorsKnowledge
Knowledge of privacy technologiesKnowledge
Knowledge of programming languagesKnowledge
Knowledge of project plans and schedulesKnowledge
Knowledge of Public Key Infrastructure (PKI) librariesKnowledge
Knowledge of required reporting formatsKnowledge
Knowledge of research and design processes and proceduresKnowledge
Knowledge of reverse engineering tools and techniquesKnowledge
Knowledge of risk acceptance and documentationKnowledge
Knowledge of risk mitigation principles and practicesKnowledge
Knowledge of secure programming tools and techniquesKnowledge
Knowledge of security assessment authorization requirementsKnowledge
Knowledge of security controlsKnowledge
Knowledge of security requirementsKnowledge
Knowledge of security restrictionsKnowledge
Knowledge of security testing tools and techniquesKnowledge
Knowledge of service-oriented security architecture practices and principlesKnowledge
Knowledge of software and systems engineering life cycle standardsKnowledge
Knowledge of software application, system, and network requirementsKnowledge
Knowledge of statistical processesKnowledge
Knowledge of steganography practices and principlesKnowledge
Knowledge of system availability requirementsKnowledge
Knowledge of system backup requirementsKnowledge
Knowledge of system characteristicsKnowledge
Knowledge of system life cyclesKnowledge
Knowledge of systems administration standard operating policies and proceduresKnowledge
Knowledge of systems architectureKnowledge
Knowledge of systems developmentKnowledge
Knowledge of UNIX scriptsKnowledge
Knowledge of user interfacesKnowledge
Knowledge of user needs and requirementsKnowledge
Knowledge of user requirementsKnowledge
Knowledge of Windows scriptsKnowledge
Knowledge of certificate management principles and practicesKnowledge
Knowledge of cultural, political, and organizational assetsKnowledge
Knowledge of cybersecurity review processes and proceduresKnowledge
Knowledge of cybersecurity threat remediation principles and practicesKnowledge
Knowledge of cybersecurity tools and techniquesKnowledge
Knowledge of data exfiltration tools and techniquesKnowledge
Knowledge of data handling tools and techniquesKnowledge
Knowledge of data monitoring tools and techniquesKnowledge
Knowledge of digital and physical security vulnerabilitiesKnowledge
Knowledge of digital and physical security vulnerability remediation principles and practicesKnowledge
Knowledge of external organization roles and responsibilitiesKnowledge
Knowledge of external referrals policies and proceduresKnowledge
Knowledge of high value asset characteristicsKnowledge
Knowledge of information collection tools and techniquesKnowledge
Knowledge of insider threat hub policies and proceduresKnowledge
Knowledge of insider threat hub operationsKnowledge
Knowledge of insider threat operational indicatorsKnowledge
Knowledge of insider threat policies and proceduresKnowledge
Knowledge of insider threat tacticsKnowledge
Knowledge of insider threat targetsKnowledge
Knowledge of intelligence laws and regulationsKnowledge
Knowledge of known insider attacksKnowledge
Knowledge of network endpointsKnowledge
Knowledge of notification policies and proceduresKnowledge
Knowledge of organizational objectives, resources, and capabilitiesKnowledge
Knowledge of previously referred potential insider threatsKnowledge
Knowledge of risk reduction metricsKnowledge
Knowledge of security information and event management (SIEM) tools and techniquesKnowledge
Knowledge of suspicious activity response processesKnowledge
Knowledge of system alert policies and proceduresKnowledge
Knowledge of system componentsKnowledge
Knowledge of threat investigation policies and proceduresKnowledge
Knowledge of threat modeling tools and techniquesKnowledge
Knowledge of User Activity Monitoring (UAM) tools and techniquesKnowledge
Knowledge of advanced persistent threats (APTs)Knowledge
Knowledge of cyber resiliency goals and objectivesKnowledge
Knowledge of data vaulting principles and practicesKnowledge
Knowledge of threat-informed defenseKnowledge
Knowledge of approved data processing tools and techniquesKnowledge
Knowledge of data types and characteristicsKnowledge
Knowledge of predication requirementsKnowledge
Knowledge of court exhibit processesKnowledge
Knowledge of testing and calibration in laboratory environmentKnowledge
Knowledge of assessment remediation requirementsKnowledge
Knowledge of Business Impact Analysis (BIA)Knowledge
Knowledge of change management processesKnowledge
Knowledge of OT cybersecurity compliance requirements and best practicesKnowledge
Knowledge of control system environment risks, threats, and vulnerabilitiesKnowledge
Knowledge of the Active Cyber Defense Cycle (ACDC)Knowledge
Knowledge of active defense principles and practicesKnowledge
Knowledge of OT cybersecurity risk tolerance levelsKnowledge
Knowledge of Purdue Model levelsKnowledge
Knowledge of change management policies and proceduresKnowledge
Knowledge of OT cybersecurity inspection and testing policies and proceduresKnowledge
Knowledge of control system policies and proceduresKnowledge
Knowledge of OT safety systemsKnowledge
Knowledge of anomaly detection tools and techniquesKnowledge
Knowledge of control system network architecturesKnowledge
Knowledge of cyber incidents impacting OTKnowledge
Knowledge of industry hazardsKnowledge
Knowledge of life cycle management principles and practicesKnowledge
Knowledge of operational prioritiesKnowledge
Knowledge of OT asset management tools and techniquesKnowledge
Knowledge of OT assetsKnowledge
Knowledge of OT inventory principles and practicesKnowledge
Knowledge of OT network detection tools and techniquesKnowledge
Knowledge of OT protocolsKnowledge
Knowledge of process hazard analysis (PHA) assessmentsKnowledge
Knowledge of system assets and boundariesKnowledge
Knowledge of human source taskingKnowledge
Knowledge of disruption, dismantlement, and deterrence strategiesKnowledge
Knowledge of obfuscation tools and techniquesKnowledge
Knowledge of system safety and reliability metricsKnowledge
Knowledge of system validation processesKnowledge
Knowledge of AI bias typesKnowledge
Knowledge of AI model development processesKnowledge
Knowledge of code review processesKnowledge
Knowledge of common AI security risksKnowledge
Knowledge of common business and cybersecurity applications of AI systemsKnowledge
Knowledge of data aggregation tools and techniquesKnowledge
Knowledge of data de-identification tools and techniquesKnowledge
Knowledge of data poisoning cyberattacksKnowledge
Knowledge of energy implications of resource-heavy computing systemsKnowledge
Knowledge of environmental implications of resource-heavy computing systemsKnowledge
Knowledge of ethical responsibilities of AI system users and providersKnowledge
Knowledge of human-AI interaction principles and practicesKnowledge
Knowledge of impact of data sparsityKnowledge
Knowledge of individual and societal impacts related to risksKnowledge
Knowledge of intellectual property laws and regulationsKnowledge
Knowledge of legal responsibilities of AI system usersKnowledge
Knowledge of misinformation and disinformation vulnerabilities in AI systemsKnowledge
Knowledge of NIST AI Risk Management FrameworkKnowledge
Knowledge of recall and precision metrics for classification tasksKnowledge
Knowledge of residual risk principles and practicesKnowledge
Knowledge of responsible use principles and practicesKnowledge
Knowledge of simulation testing tools and techniquesKnowledge
Knowledge of statistical principles and practicesKnowledge
Knowledge of system safety considerationsKnowledge
Knowledge of test, evaluation, verification, and validation (TEVV) processesKnowledge
Knowledge of training, validation, and test data setsKnowledge
Knowledge of uncertainty measurement principles and practicesKnowledge
Knowledge of data science principles and practicesKnowledge
Knowledge of agentic AI principles and practicesKnowledge
Knowledge of supply chain fundamentalsKnowledge
Knowledge of supplier data and documentationKnowledge
Knowledge of risk prioritizationsKnowledge
Knowledge of software bills of materials (SBOMs)Knowledge
Knowledge of sensitive data handling requirementsKnowledge
Knowledge of anti-tampering policies and proceduresKnowledge
Knowledge of anti-counterfeit policies and proceduresKnowledge
Knowledge of foreign laws that may introduce supply chain risksKnowledge
Knowledge of hardware bills of materials (HBOMs)Knowledge
Knowledge of firmware bills of materialsKnowledge
Knowledge of contract manufacturing principles and practicesKnowledge
Knowledge of quantum key distribution (QKD)Knowledge
Knowledge of authenticated encryption schemesKnowledge
Knowledge of key encapsulation mechanismsKnowledge
Knowledge of cryptographic agility principles and practicesKnowledge
Knowledge of cryptographic librariesKnowledge
Knowledge of cryptographic data leakage vulnerabilitiesKnowledge
Knowledge of the cryptographic key life cycleKnowledge
Knowledge of post-quantum cryptography (PQC) tools and techniquesKnowledge
Knowledge of hybrid cryptographic algorithm principles and practicesKnowledge
Knowledge of application programming interfaces (APIs)Knowledge
Knowledge of interoperability principles and practicesKnowledge
Knowledge of role-based access control principles and practicesKnowledge
Knowledge of cloud configuration management policies and proceduresKnowledge
Knowledge of continuous integration processes and proceduresKnowledge
Knowledge of continuous delivery processes and proceduresKnowledge
Knowledge of source code repositories principles and practicesKnowledge
Knowledge of containerization principles and practicesKnowledge
Knowledge of security best practices for open source softwareKnowledge
Knowledge of load balancing tools and techniquesKnowledge
Knowledge of software modularity principles and practicesKnowledge
Knowledge of traceability principles and practicesKnowledge
Knowledge of NIST post-quantum cryptography standardsKnowledge
Knowledge of quantum random number generators (QRNGs)Knowledge
Knowledge of randomness and random bit generators (RBGs)Knowledge
Knowledge of code review tools and techniquesKnowledge
Skill in conducting information searchesSkill
Skill in conducting test eventsSkill
Skill in developing data dictionariesSkill
Skill in developing data modelsSkill
Skill in establishing a routing schemaSkill
Skill in optimizing database performanceSkill
Skill in systems integration testingSkill
Skill in identifying gaps in technical capabilitiesSkill
Skill in securing network communicationsSkill
Skill in performing damage assessmentsSkill
Skill in applying security controlsSkill
Skill in identifying hidden patterns or relationshipsSkill
Skill in interfacing with customersSkill
Skill in performing sensitivity analysisSkill
Skill in developing machine understandable semantic ontologiesSkill
Skill in network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and toolsSkill
Skill in assessing security systems designsSkill
Skill in performing packet-level analysisSkill
Skill in applying secure coding techniquesSkill
Skill in performing root cause analysisSkill
Skill in performing network analysis on targetsSkill
Skill in applying crisis planning proceduresSkill
Skill in conducting non-attributable researchSkill
Skill in determining the physical location of network devicesSkill
Skill in extracting information from packet capturesSkill
Skill in performing target system analysisSkill
Skill in processing collected data for follow-on analysisSkill
Skill in developing information requirementsSkill
Skill in decrypting informationSkill
Skill in verifying participation in a security awareness programSkill
Skill in facilitating cybersecurity awareness briefingsSkill
Skill in developing training programsSkill
Skill in tailoring code analysisSkill
Skill in analyzing an organization's enterprise information technology architectureSkill
Skill in applying standardsSkill
Skill in communicating complex conceptsSkill
Skill in communicating verballySkill
Skill in communicating in writingSkill
Skill in facilitating small group discussionsSkill
Skill in facilitating group discussionsSkill
Skill in assessing learner comprehensionSkill
Skill in creating technical documentationSkill
Skill in providing training and education feedback to learnersSkill
Skill in developing assessmentsSkill
Skill in developing security assessmentsSkill
Skill in developing instructional materialsSkill
Skill in forecasting requirementsSkill
Skill in assessing requirementsSkill
Skill in analyzing organizational objectivesSkill
Skill in creating complex data structuresSkill
Skill in creating programming languagesSkill
Skill in collecting dataSkill
Skill in verifying dataSkill
Skill in validating dataSkill
Skill in conducting market researchSkill
Skill in pricing productsSkill
Skill in developing policy plansSkill
Skill in developing standard operating procedures (SOPs)Skill
Skill in maintaining standard operating procedures (SOPs)Skill
Skill in deriving evaluative conclusions from dataSkill
Skill in creating career path definitionsSkill
Skill in developing career pathsSkill
Skill in evaluating lawsSkill
Skill in evaluating regulationsSkill
Skill in evaluating policiesSkill
Skill in deploying software securelySkill
Skill in applying secure network architecturesSkill
Skill in designing systemsSkill
Skill in integrating multiple technologiesSkill
Skill in operating network equipmentSkill
Skill in evaluating workforce trendsSkill
Skill in analyzing processes to ensure conformance with procedural requirementsSkill
Skill in executing command line toolsSkill
Skill in operating network systemsSkill
Skill in building architecturesSkill
Skill in building frameworksSkill
Skill in designing architecturesSkill
Skill in designing frameworksSkill
Skill in collaborating with othersSkill
Skill in applying critical thinkingSkill
Skill in coordinating cybersecurity operations across an organizationSkill
Skill in creating analyticsSkill
Skill in extrapolating from incomplete data setsSkill
Skill in analyzing large data setsSkill
Skill in creating target intelligence productsSkill
Skill in identifying targets of interestSkill
Skill in functioning effectively in a dynamic, fast-paced environmentSkill
Skill in identifying external partnersSkill
Skill in identifying target vulnerabilitiesSkill
Skill in describing target vulnerabilitiesSkill
Skill in collecting network dataSkill
Skill in mitigating cognitive biasesSkill
Skill in mitigating deception in reporting and analysisSkill
Skill in mimicking threat actorsSkill
Skill in aligning privacy and cybersecurity objectivesSkill
Skill in creating automated security control systemsSkill
Skill in maintaining automated security control systemsSkill
Skill in authoring privacy disclosure statementsSkill
Skill in deploying continuous monitoring technologiesSkill
Skill in creating a risk management programSkill
Skill in creating a risk management strategySkill
Skill in creating an internal information sharing programSkill
Skill in integrating authorizations with requirementsSkill
Skill in integrating security plans and authorizationsSkill
Skill in determining system authorization statusSkill
Skill in coordinating efforts between stakeholdersSkill
Skill in creating security assessment reportsSkill
Skill in verifying contractor compliance with contractsSkill
Skill in integrating security requirements and contractsSkill
Skill in integrating information security requirements in the acquisitions processSkill
Skill in implementing software quality control processesSkill
Skill in applying stakeholder management within a system development life cycleSkill
Skill in identifying critical infrastructure systemsSkill
Skill in identifying systems designed without security considerationsSkill
Skill in conducting an education needs assessmentSkill
Skill in conducting a training needs assessmentSkill
Skill in navigating the dark webSkill
Skill in using the TOR networkSkill
Skill in examining digital mediaSkill
Skill in developing virtual machinesSkill
Skill in maintaining virtual machinesSkill
Skill in finding system filesSkill
Skill in recognizing digital forensics dataSkill
Skill in identifying filename extension abuseSkill
Skill in identifying anomalous activitySkill
Skill in providing customer supportSkill
Skill in evaluating supplier trustworthinessSkill
Skill in evaluating product trustworthinessSkill
Skill in identifying forensic digital footprintsSkill
Skill in performing forensic data analysisSkill
Skill in identifying software communications vulnerabilitiesSkill
Skill in developing user credential management systemsSkill
Skill in implementing user credential management systemsSkill
Skill in implementing enterprise key escrow systemsSkill
Skill in operating IT systemsSkill
Skill in maintaining IT systemsSkill
Skill in recreating network topologiesSkill
Skill in processing digital forensic dataSkill
Skill in performing threat environment analysisSkill
Skill in performing operational environment analysisSkill
Skill in determining asset availability, capabilities, and limitationsSkill
Skill in developing client organization profilesSkill
Skill in performing intelligence collection analysisSkill
Skill in developing crisis action plansSkill
Skill in selecting targetsSkill
Skill in identifying vulnerabilitiesSkill
Skill in performing intrusion data analysisSkill
Skill in identifying customer information needsSkill
Skill in collecting terminal or environment dataSkill
Skill in managing enterprise-wide informationSkill
Skill in evaluating security productsSkill
Skill in establishing prioritiesSkill
Skill in extracting metadataSkill
Skill in preparing operational environmentsSkill
Skill in identifying partner capabilitiesSkill
Skill in performing threat emulation tacticsSkill
Skill in anticipating threatsSkill
Skill in assessing threat actorsSkill
Skill in detecting exploitation activitiesSkill
Skill in summarizing informationSkill
Skill in constructing networksSkill
Skill in developing crisis action timelinesSkill
Skill in identifying priority informationSkill
Skill in conducting researchSkill
Skill in assessing security hardware and softwareSkill
Skill in analyzing software configurationsSkill
Skill in performing threat factor analysisSkill
Skill in designing wireless communications systemsSkill
Skill in identifying network threatsSkill
Skill in providing software updatesSkill
Skill in developing access control listsSkill
Skill in scanning for vulnerabilitiesSkill
Skill in recognizing vulnerabilitiesSkill
Skill in designing data storage solutionsSkill
Skill in implementing data storage solutionsSkill
Skill in identifying malwareSkill
Skill in capturing malwareSkill
Skill in containing malwareSkill
Skill in reporting malwareSkill
Skill in applying information technologies into proposed solutionsSkill
Skill in applying host access controlsSkill
Skill in applying network access controlsSkill
Skill in performing systems analysisSkill
Skill in performing capabilities analysisSkill
Skill in performing requirements analysisSkill
Skill in creating knowledge mapsSkill
Skill in developing algorithmsSkill
Skill in performing data structure analysisSkill
Skill in debugging softwareSkill
Skill in configuring softwareSkill
Skill in creating mathematical modelsSkill
Skill in creating statistical modelsSkill
Skill in creating system security policiesSkill
Skill in implementing input validationSkill
Skill in developing signaturesSkill
Skill in deploying signaturesSkill
Skill in designing data analysis structuresSkill
Skill in designing security controlsSkill
Skill in designing the integration of hardware solutionsSkill
Skill in designing the integration of software solutionsSkill
Skill in detecting host- and network-based intrusionsSkill
Skill in developing testing scenariosSkill
Skill in developing security system controlsSkill
Skill in developing network infrastructure contingency and recovery plansSkill
Skill in testing network infrastructure contingency and recovery plansSkill
Skill in troubleshooting computer networksSkill
Skill in evaluating security designsSkill
Skill in preparing reportsSkill
Skill in monitoring system performanceSkill
Skill in configuring systems for performance enhancementSkill
Skill in troubleshooting system performanceSkill
Skill in implementing established network security practicesSkill
Skill in configuring network devicesSkill
Skill in installing network devicesSkill
Skill in administering databasesSkill
Skill in maintaining directory servicesSkill
Skill in performing threat modelingSkill
Skill in preserving digital evidence integritySkill
Skill in building use casesSkill
Skill in performing social engineeringSkill
Skill in tuning network sensorsSkill
Skill in handling incidentsSkill
Skill in repairing hardwareSkill
Skill in repairing system peripheralsSkill
Skill in encrypting network communicationsSkill
Skill in writing code in a currently supported programming languageSkill
Skill in creating test plansSkill
Skill in performing memory dump analysisSkill
Skill in collecting relevant data from a variety of sourcesSkill
Skill in developing curriculaSkill
Skill in teaching training programsSkill
Skill in identifying forensics data in diverse mediaSkill
Skill in extracting forensics data in diverse mediaSkill
Skill in storing digital evidenceSkill
Skill in manipulating operating system componentsSkill
Skill in collecting digital evidenceSkill
Skill in processing digital evidenceSkill
Skill in transporting digital evidenceSkill
Skill in communicating effectivelySkill
Skill in disassembling Personal Computers (PCs)Skill
Skill in performing digital forensics analysisSkill
Skill in configuring software-based computer protection toolsSkill
Skill in categorizing types of vulnerabilitiesSkill
Skill in protecting a network against malwareSkill
Skill in applying black-box software testingSkill
Skill in interpreting signaturesSkill
Skill in configuring network protection componentsSkill
Skill in auditing technical systemsSkill
Skill in performing binary analysisSkill
Skill in implementing one-way hash functionsSkill
Skill in performing source code analysisSkill
Skill in performing volatile data analysisSkill
Skill in interpreting debugger resultsSkill
Skill in identifying common encoding techniquesSkill
Skill in reading signaturesSkill
Skill in developing learning activitiesSkill
Skill in applying technologies for instructional purposesSkill
Skill in conducting Test Readiness Reviews (TRR)Skill
Skill in performing data preprocessingSkill
Skill in designing Test and Evaluation Strategies (TES)Skill
Skill in developing position qualification requirementsSkill
Skill in identifying Test and Evaluation Strategies (TES) infrastructure requirementsSkill
Skill in managing test assetsSkill
Skill in performing format conversionsSkill
Skill in designing multi-level security solutionsSkill
Skill in designing cross-domain solutionsSkill
Skill in providing test and evaluation resource estimatesSkill
Skill in performing regression analysisSkill
Skill in reviewing logsSkill
Skill in identifying evidence of past intrusionsSkill
Skill in applying hardening techniquesSkill
Skill in performing transformation analyticsSkill
Skill in troubleshooting cyber defense infrastructure anomaliesSkill
Skill in applying descriptive statisticsSkill
Skill in managing a workforceSkill
Skill in detecting anomaliesSkill
Skill in removing outliersSkill
Skill in writing scriptsSkill
Skill in performing malware analysisSkill
Skill in performing bit-level analysisSkill
Skill in creating digital evidence copiesSkill
Skill in conducting system reviewsSkill
Skill in designing secure test plansSkill
Skill in assessing application vulnerabilitiesSkill
Skill in implementing Public Key Infrastructure (PKI) encryptionSkill
Skill in implementing digital signaturesSkill
Skill in applying security modelsSkill
Skill in performing systems engineeringSkill
Skill in troubleshooting client-level problemsSkill
Skill in managing serversSkill
Skill in managing workstationsSkill
Skill in applying policies that meet system security objectivesSkill
Skill in creating policies that reflect legal, regulatory, and organizational requirementsSkill
Skill in defining performance objectivesSkill
Skill in assessing security controlsSkill
Skill in designing technology processes and solutionsSkill
Skill in integrating technology processes and solutionsSkill
Skill in implementing error handling in applicationsSkill
Skill in implementing network infrastructure contingency and recovery plansSkill
Skill in troubleshooting failed system componentsSkill
Skill in translating operational requirements into security controlsSkill
Skill in installing system and component upgradesSkill
Skill in optimizing system performanceSkill
Skill in recovering failed systemsSkill
Skill in administering operating systemsSkill
Skill in configuring network workstations and peripheralsSkill
Skill in validating network workstations and peripheralsSkill
Skill in performing design modelingSkill
Skill in applying subnet techniquesSkill
Skill in implementing network segregationSkill
Skill in configuring computer protection componentsSkill
Skill in performing risk assessmentsSkill
Skill in performing administrative planning activitiesSkill
Skill in performing network data analysisSkill
Skill in performing midpoint collection data analysisSkill
Skill in auditing network devicesSkill
Skill in performing Open Source Intelligence (OSINT) researchSkill
Skill in conducting deep web researchSkill
Skill in mining dataSkill
Skill in performing data mining analysisSkill
Skill in defining an operational environmentSkill
Skill in depicting data on a network mapSkill
Skill in performing target analysisSkill
Skill in installing patchesSkill
Skill in identifying patch signaturesSkill
Skill in developing comprehensive cyber operations assessment programsSkill
Skill in executing comprehensive cyber operations assessment programsSkill
Skill in developing analyticsSkill
Skill in interpreting metadataSkill
Skill in evaluating data source qualitySkill
Skill in evaluating information qualitySkill
Skill in generating operation plansSkill
Skill in identifying cybersecurity threatsSkill
Skill in identifying intelligence gapsSkill
Skill in identifying regional languages and dialectsSkill
Skill in prioritizing informationSkill
Skill in interpreting traceroute resultsSkill
Skill in interpreting vulnerability scanner resultsSkill
Skill in managing client relationshipsSkill
Skill in performing network visualizationSkill
Skill in performing data normalizationSkill
Skill in performing data fusionSkill
Skill in preparing briefingsSkill
Skill in preparing plansSkill
Skill in producing after-action reportsSkill
Skill in recognizing malicious network activity in trafficSkill
Skill in interpreting malicious network activity in trafficSkill
Skill in identifying technical informationSkill
Skill in programmingSkill
Skill in researching software vulnerabilitiesSkill
Skill in researching software exploitsSkill
Skill in performing reverse engineering of softwareSkill
Skill in analyzing intelligence productsSkill
Skill in administering serversSkill
Skill in identifying network anomaliesSkill
Skill in performing technical writingSkill
Skill in testing tools for implementationSkill
Skill in evaluating tools for implementationSkill
Skill in querying dataSkill
Skill in determining relevant informationSkill
Skill in conducting open-source searchesSkill
Skill in evading network detectionSkill
Skill in establishing persistenceSkill
Skill in reconstructing a networkSkill
Skill in incorporating feedbackSkill
Skill in verifying the integrity of filesSkill
Skill in performing wireless network analysisSkill
Skill in identifying requirementsSkill
Skill in navigating databasesSkill
Skill in performing strategic guidance analysisSkill
Skill in integrating organization objectivesSkill
Skill in comparing indicators with requirementsSkill
Skill in converting intelligence requirements into intelligence production tasksSkill
Skill in coordinating product developmentSkill
Skill in allocating resourcesSkill
Skill in defining progress indicatorsSkill
Skill in defining success indicatorsSkill
Skill in creating planning documentsSkill
Skill in maintaining planning documentsSkill
Skill in tracking servicesSkill
Skill in developing intelligence collection plansSkill
Skill in developing collection strategiesSkill
Skill in determining information requirementsSkill
Skill in fulfilling information requestsSkill
Skill in determining capability estimatesSkill
Skill in creating decision support materialsSkill
Skill in implementing established proceduresSkill
Skill in interpreting planning guidanceSkill
Skill in interpreting readiness reportingSkill
Skill in orchestrating planning teamsSkill
Skill in coordinating collection supportSkill
Skill in monitoring statusSkill
Skill in presenting to an audienceSkill
Skill in analyzing performance specificationsSkill
Skill in establishing timelinesSkill
Skill in creating privacy policiesSkill
Skill in negotiating vendor agreementsSkill
Skill in evaluating vendor privacy practicesSkill
Skill in anticipating new security threatsSkill
Skill in analyzing organizational patterns and relationshipsSkill
Skill in assessing partner operations capabilitiesSkill
Skill in assessing an organization's threat environmentSkill
Skill in designing incident responsesSkill
Skill in performing incident responsesSkill
Skill in solving problemsSkill
Skill in assessing an organization’s data assetsSkill
Skill in utilizing cyber defense service provider informationSkill
Skill in responding to threat reportsSkill
Skill in managing intelligence collection requirementsSkill
Skill in performing supply chain analysisSkill
Skill in identifying cybersecurity issues in external connectionsSkill
Skill in identifying privacy issues in partner interconnectionsSkill
Skill in troubleshooting network equipmentSkill
Skill in developing curriculum standardsSkill
Skill in building internal and external relationshipsSkill
Skill in building internal and external stakeholder relationshipsSkill
Skill in caching dataSkill
Skill in cataloging dataSkill
Skill in collaborating with internal and external stakeholdersSkill
Skill in collaborating with stakeholdersSkill
Skill in communicating with customersSkill
Skill in communicating with engineering staffSkill
Skill in communicating with external organizationsSkill
Skill in communicating with internal and external stakeholdersSkill
Skill in compiling dataSkill
Skill in conducting customer interviewsSkill
Skill in conducting feasibility studiesSkill
Skill in configuring hardwareSkill
Skill in cooperating with internal and external stakeholdersSkill
Skill in correlating incident dataSkill
Skill in distributing dataSkill
Skill in encrypting dataSkill
Skill in executing computer scripts to automate tasksSkill
Skill in identifying anomalous activitiesSkill
Skill in identifying exploited system weaknessesSkill
Skill in identifying misuse activitiesSkill
Skill in identifying possible security violationsSkill
Skill in interpreting test resultsSkill
Skill in maintaining dataSkill
Skill in managing account access rightsSkill
Skill in mapping networksSkill
Skill in monitoring system activitySkill
Skill in performing behavioral analysisSkill
Skill in performing cost/benefit analysisSkill
Skill in performing cyber defense trend analysisSkill
Skill in performing cybersecurity architecture analysisSkill
Skill in performing data analysisSkill
Skill in performing data requirement analysisSkill
Skill in performing digital evidence analysisSkill
Skill in performing dynamic analysisSkill
Skill in performing economic analysisSkill
Skill in performing event correlationSkill
Skill in performing file system forensic analysisSkill
Skill in performing gap analysisSkill
Skill in performing geospatial analysisSkill
Skill in performing incident analysisSkill
Skill in performing log file analysisSkill
Skill in performing malicious activity analysisSkill
Skill in performing market analysisSkill
Skill in performing metadata analysisSkill
Skill in performing needs analysisSkill
Skill in performing network analysisSkill
Skill in performing network data flow analysisSkill
Skill in performing network traffic analysisSkill
Skill in performing network traffic packet analysisSkill
Skill in performing nodal analysisSkill
Skill in performing quantitative analysisSkill
Skill in performing risk analysisSkill
Skill in performing scientific analysisSkill
Skill in performing security architecture analysisSkill
Skill in performing static analysisSkill
Skill in performing static code analysisSkill
Skill in performing static malware analysisSkill
Skill in performing system activity analysisSkill
Skill in performing system analysisSkill
Skill in performing test result analysisSkill
Skill in performing threat analysisSkill
Skill in performing trade-off analysisSkill
Skill in performing trend analysisSkill
Skill in performing user needs analysisSkill
Skill in recognizing behavioral patternsSkill
Skill in retrieving dataSkill
Skill in testing hardwareSkill
Skill in testing interfacesSkill
Skill in analyzing information from multiple sourcesSkill
Skill in building relationships remotely and in personSkill
Skill in correlating data from multiple toolsSkill
Skill in determining what information may helpful to a specific audienceSkill
Skill in identifying insider risk security gapsSkill
Skill in identifying insider threatsSkill
Skill in determining the importance of assetsSkill
Skill in integrating information from multiple sourcesSkill
Skill in performing cyberintelligence data analysisSkill
Skill in performing data queriesSkill
Skill in performing human behavioral analysisSkill
Skill in performing link analysisSkill
Skill in recognizing recurring threat incidentsSkill
Skill in forecasting likely impacts on mission or business functions resulting from adversitySkill
Skill in conducting ongoing monitoring of system properties and behaviorsSkill
Skill in evaluating threats, events, and courses of action in the context of mission or business functionsSkill
Skill in establishing segmentation of system assets based on criticality and trustworthinessSkill
Skill in performing telemetry analysisSkill
Skill in making decisions under conditions of uncertaintySkill
Skill in communicating at varying levels of technical detail with stakeholders of various backgroundsSkill
Skill in crisis managementSkill
Skill in developing and analyzing attack pathsSkill
Skill in designing and maintaining threat catalogsSkill
Skill in defining contingency plansSkill
Skill in defining loss scenariosSkill
Skill in designing air-gapped data vault solutionsSkill
Skill in defining impact tolerance statementsSkill
Skill in conducting technical business impact analysisSkill
Skill in protecting critical assetsSkill
Skill in designing enhanced controls for critical assetsSkill
Skill in performing Fault Tree Analysis (FTA)Skill
Skill in live acquisitionSkill
Skill in deadbox acquisitionSkill
Skill in inspecting data for ingestionSkill
Skill in interacting with live systems to identify active and historical networksSkill
Skill in performing event analysisSkill
Skill in performing risk-based gap analysisSkill
Skill in identifying gaps in control system network and connectivity architectureSkill
Skill in performing system recovery for control system environmentsSkill
Skill in connecting to OT assetsSkill
Skill in designing and specifying OT systemsSkill
Skill in evaluating OT vendor productsSkill
Skill in interpreting OT network drawingsSkill
Skill in interpreting risk assessmentsSkill
Skill in performing zone conduit requirement analysisSkill
Skill in recognizing and acknowledging unique contributions from varying skillsetsSkill
Skill in reviewing access control lists and firewall rulesSkill
Skill in securing control system communication protocols and mediaSkill
Skill in developing appropriate system use casesSkill
Skill in developing prompts for generative AI systemsSkill
Skill in dividing data into training, validation, and test data setsSkill
Skill in evaluating machine learning modelsSkill
Skill in evaluating the performance of algorithmsSkill
Skill in identifying possible mistakes or hallucinations in AI-generated outputsSkill
Skill in measuring non-explainable riskSkill
Skill in building multidisciplinary teamsSkill
Skill in designing governance structuresSkill
Skill in selecting supply chain controlsSkill
Skill in applying supply chain controlsSkill
Skill in identifying supply chain risks in common business practicesSkill
Skill in supply chain mappingSkill
Skill in performing geopolitical risk analysisSkill
Skill in reporting on adversarial capabilitiesSkill
Skill in selecting appropriate cryptographic solutionsSkill
Skill in developing cryptographic protocolsSkill
Skill in conducting security analysis of cryptographic protocolsSkill
Skill in conducting cryptographic transitionsSkill
Skill in identifying weak, obsolete, or deprecated cryptographic algorithmsSkill
Skill in performing code reviewsSkill
Skill in dependency mappingSkill
Skill in validating provenance of software componentsSkill
Skill in aligning common attack frameworks to software development lifecycle (SDLC) stagesSkill
Oversight and GovernanceWork Role Category
Communications Security (COMSEC) ManagementOversight and Governance
Cybersecurity Policy and PlanningOversight and Governance
Cybersecurity Workforce ManagementOversight and Governance
Cybersecurity Curriculum DevelopmentOversight and Governance
Cybersecurity InstructionOversight and Governance
Cybersecurity Legal AdviceOversight and Governance
Executive Cybersecurity LeadershipOversight and Governance
Privacy ComplianceOversight and Governance
Product Support ManagementOversight and Governance
Program ManagementOversight and Governance
Secure Project ManagementOversight and Governance
Security Control AssessmentOversight and Governance
Systems AuthorizationOversight and Governance
Systems Security ManagementOversight and Governance
Technology Portfolio ManagementOversight and Governance
Technology Program AuditingOversight and Governance
Cybersecurity Supply Chain Risk ManagementOversight and Governance
Design and DevelopmentWork Role Category
Cybersecurity ArchitectureDesign and Development
Enterprise ArchitectureDesign and Development
Secure Software DevelopmentDesign and Development
Secure Systems DevelopmentDesign and Development
Software Security AssessmentDesign and Development
Systems Requirements PlanningDesign and Development
Systems Testing and EvaluationDesign and Development
Technology Research and DevelopmentDesign and Development
Operational Technology (OT) Cybersecurity EngineeringDesign and Development
Implementation and OperationWork Role Category
Data AnalysisImplementation and Operation
Database AdministrationImplementation and Operation
Knowledge ManagementImplementation and Operation
Network OperationsImplementation and Operation
Systems AdministrationImplementation and Operation
Systems Security AnalysisImplementation and Operation
Technical SupportImplementation and Operation
Protection and DefenseWork Role Category
Defensive CybersecurityProtection and Defense
Digital ForensicsProtection and Defense
Incident ResponseProtection and Defense
Infrastructure SupportProtection and Defense
Insider Threat AnalysisProtection and Defense
Threat AnalysisProtection and Defense
Vulnerability AnalysisProtection and Defense
InvestigationWork Role Category
Cybercrime InvestigationInvestigation
Digital Evidence AnalysisInvestigation
Competency AreasFramework Branch
Access ControlsCompetency Area
Artificial Intelligence (AI) SecurityCompetency Area
Asset ManagementCompetency Area
Cloud SecurityCompetency Area
Communications SecurityCompetency Area
CryptographyCompetency Area
Cyber ResiliencyCompetency Area
DevSecOpsCompetency Area
Operating Systems (OS) SecurityCompetency Area
Operational Technology (OT) SecurityCompetency Area
Supply Chain SecurityCompetency Area