OG-WRL-006
Cybersecurity Legal Advice OPM Code: 731

Provides leadership, management, direction, and advocacy so the organization may effectively manage cybersecurity-related risks to the enterprise and conduct cybersecurity work.

Responsible for providing cybersecurity legal advice and recommendations, including monitoring related legislation and regulations.

Code Description Work Roles
T0006 Advocate organization's official position in legal and legislative proceedings 2
T0220 Resolve conflicts in laws, regulations, policies, standards, or procedures 5
T1020 Determine the operational and safety impacts of cybersecurity lapses 37
T1023 Identify critical technology procurement requirements 11
T1069 Evaluate organizational cybersecurity policy regulatory compliance 3
T1070 Evaluate organizational cybersecurity policy alignment with organizational directives 3
T1189 Determine if contracts comply with funding, legal, and program requirements 2
T1511 Identify alleged violations of law, regulations, policy, or guidance 1
T1535 Develop implementation guidelines 1
T1546 Provide inspectors general, privacy officers, and oversight and compliance with legal analysis and decisions 1
T1549 Evaluate the impact of legal, regulatory, policy, standard, or procedural changes 2
T1599 Prepare legal documents 1
Code Description Work Roles
K0674 Knowledge of computer networking protocols 40
K0675 Knowledge of risk management processes 41
K0676 Knowledge of cybersecurity laws and regulations 41
K0677 Knowledge of cybersecurity policies and procedures 41
K0678 Knowledge of privacy laws and regulations 41
K0679 Knowledge of privacy policies and procedures 41
K0680 Knowledge of cybersecurity principles and practices 40
K0681 Knowledge of privacy principles and practices 40
K0682 Knowledge of cybersecurity threats 40
K0683 Knowledge of cybersecurity vulnerabilities 40
K0684 Knowledge of cybersecurity threat characteristics 40
K0685 Knowledge of access control principles and practices 21
K0686 Knowledge of authentication and authorization tools and techniques 21
K0696 Knowledge of digital forensic data principles and practices 4
K0736 Knowledge of information technology (IT) security principles and practices 18
K0743 Knowledge of new and emerging technologies 15
K0746 Knowledge of policy-based access controls 15
K0747 Knowledge of Risk Adaptive (Adaptable) Access Controls (RAdAC) 15
K0751 Knowledge of system threats 40
K0752 Knowledge of system vulnerabilities 40
K0784 Knowledge of insider threat laws and regulations 7
K0785 Knowledge of insider threat tools and techniques 7
K0800 Knowledge of evidence admissibility laws and regulations 7
K0819 Knowledge of import and export control laws and regulations 8
K0820 Knowledge of supply chain risks 18
K0821 Knowledge of federal agency roles and responsibilities 9
K0829 Knowledge of account creation policies and procedures 6
K0830 Knowledge of password policies and procedures 6
K0834 Knowledge of technology procurement principles and practices 11
K0892 Knowledge of cyber defense laws and regulations 13
K0918 Knowledge of Payment Card Industry (PCI) data security standards and best practices 16
K0919 Knowledge of Personal Health Information (PHI) data security standards and best practices 16
K0944 Knowledge of intelligence data gathering principles and practices 1
K0945 Knowledge of intelligence data gathering policies and procedures 1
K0954 Knowledge of foreign disclosure policies and procedures 1
K0983 Knowledge of computer networking principles and practices 39
K0990 Knowledge of cyber operations principles and practices 8
K1014 Knowledge of network security principles and practices 40
K1050 Knowledge of critical information requirements 8
K1070 Knowledge of privacy disclosure statement laws and regulations 2
K1138 Knowledge of cybersecurity standards and best practices 3
K1182 Knowledge of organizational cybersecurity policies and configurations 3
Code Description Work Roles
S0414 Skill in evaluating laws 4
S0415 Skill in evaluating regulations 4
S0416 Skill in evaluating policies 4
S0610 Skill in communicating effectively 7
S0686 Skill in performing risk assessments 12