Skip to main content
U.S. flag
Back to results

Deputy Assistant Secretary, Chief Information Security Officer

Department of Veterans Affairs
Immediate Office of the Assistant Secretary for Information and Technology
Information Security
This job announcement has closed

Summary

This is a pay band 1 position and the salary range is $183,200 to $189,600. This position is eligible for Critical Pay, extending up to $207,800.

The CISO serves as the primary advisor to the Assistant Secretary and Chief Information Officer, Office of Information and Technology on matters related to information protection including privacy (including Health Insurance Portability and Accountability Act (HIPAA)) security, risk, and business continuity.

Overview

Help
Hiring complete
Open & closing dates
08/20/2018 to 09/04/2018
Salary
$126,148 to - $189,600 per year
Pay scale & grade
ES 00
Location
Washington DC, DC
1 vacancy
Telework eligible
No
Travel Required
25% or less - You may be expected to travel for this position.
Relocation expenses reimbursed
Yes—Permanent Change of Station (PCS) may be authorized. PCS is the relocation of a household due to government convenience in connection with a transfer between duty stations or facilities. For more information visit: http://vaww.fscdirect.fsc.va.gov/pcs.asp.
Appointment type
Permanent
Work schedule
Full-Time
Service
Senior Executive
Promotion potential
00
Supervisory status
Yes
Security clearance
Sensitive Compartmented Information
Drug test
Yes
Announcement number
VA-SES-18-10288921-OM
Control number
508457000

This job is open to

Help

Clarification from the agency

All groups of qualified individuals; and Those who meet the 5 Executive Core Qualifications (ECQs).

Duties

Help

The Deputy Assistant Secretary, Chief Information Security Officer serves as the primary advisor to the Assistant Secretary and Chief Information Officer, Office of Information and Technology on matters related to information protection including privacy (including Health Insurance Portability and Accountability Act (HIPAA)) security, risk, and business continuity. The responsibilities include, but are not limited to:

  • Directs the VA Data Security Management and Identity Management programs, identifies protection goals, objectives and metrics consistent with the VA Strategic Plan.
  • Responsible for appropriate and timely coordination with the VA Office of the Inspector General to ensure timely notification of cybersecurity incidents and facilitation of investigation and oversight responsibilities by VA OIG.
  • Coordinates with appropriate VA Operations, Security and Preparedness staff principals on matters related to security and privacy.
  • Defines information protection activities, including network infrastructure security architecture, network and infrastructure access and monitoring processes and policies; and ensures compliance.
  • Establishes VA-wide policies for encryption of data and information; and ensures VA-wide implementation of Federal Information Security Management Act (FISMA) and Office of Management and Budget (OMB) Circular A-130 compliance, including confidentiality, integrity, and available requirements for all VA application and general support systems.
  • Participates in disciplinary and legal matters associated with security breaches; works with outside consultants as appropriate for independent security audits; oversees the establishment of effective risk management policies and practices.
  • The CISO sets the direction and strategy for the development and implementation of global security privacy policies, standards, guidelines and procedures to ensure ongoing maintenance of security and privacy in accordance with Federal laws and policies.
  • The CISO provides executive leadership to subordinate service level organizations and employee.

Requirements

Help

Conditions of employment

  • US citizenship is required.
  • One year probationary period required for initial SES appointment.
  • Males born after 12-31-59 must be registered for Selective Service.
  • Successful completion of background investigation and drug screening.
  • Public Financial Disclosure Report (SF-278) is required.
  • May be subject to reassignment geographically or organizationally.

Qualifications

To meet the minimum qualifications, applicant must possess the following technical and executive core qualifications. These qualifications would typically be gained through progressively responsible management or executive level assignments such as director of a regional office, medical facility or program manager. An individual's total experience, education and volunteer work experience must demonstrate the ability to perform the duties of the position.

Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g. Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic; religious; spiritual; community, student, social). Volunteer work helps build critical competencies, knowledge, and skills and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience.

MANDATORY EXECUTIVE CORE QUALIFICATIONS (ECQs): All applicants must submit a written narrative response to the following ECQs. Your narrative must address each ECQ separately. Additional information on ECQs is available at: http://www.opm.gov/ses/recruitment/qualify.asp. Applicants are encouraged to follow the Challenge, Context, Action and Results model outlined in the guide. It is recommended that you draft your ECQs in a Word document and then upload into the system.

1. Leading Change: The ability to bring about strategic change, both within and outside the organization, to meet organizational goals. Inherent to this ECQ is the ability to establish an organizational vision and to implement it in a continuously changing environment.

2. Leading People: The ability to lead people toward meeting the organization's vision, mission, and goals. Inherent to this ECQ is the ability to provide an inclusive workplace that fosters the development of others, facilitates cooperation and teamwork, and supports constructive resolution of conflicts.

3. Results Driven: The ability to meet organizational goals and customer expectations. Inherent to this ECQ is the ability to make decisions that produce high-quality results by applying technical knowledge, analyzing problems, and calculating risks.

4. Business Acumen: The ability to manage human, financial and information resources strategically.

5. Building Coalitions: The ability to build coalitions internally and with other Federal agencies, state and local governments, nonprofit and private sector organizations, foreign governments, or international organizations to achieve common goals.

TECHNICAL QUALIFICATION (TQ)s: In addition, all applicants must submit a written narrative response to the following TQ(s). Please give examples and explain how often you used your skills, the complexity of the knowledge possessed, the level of people you interacted with, the sensitivity of the issues you handled managing a large public or private sector organization that administers complex, rules-based benefits or services, etc. It is recommended that you draft your TQ(s) in a word document and then upload into the system.

TQ1: Experience planning, designing, developing, deploying and managing security, incident response, and IT business continuity programs for health care delivery organizations and/or benefits delivery organizations (e.g. banking/insurance).

TQ2: Experience analyzing, evaluating, developing, deploying and managing IT privacy, security and risk response programs.

Education

This job does not have an education qualification requirement.

Additional information

Veteran Preference does not apply to the Senior Executive Service.: http://www.usajobs.gov.

How you will be evaluated

You will be evaluated for this job based on how well you meet the qualifications above.

Step 1: ECQ qualifications

Step 2: Technical Qualification(s)

Step 3: VA Executive Resources Board

Step 4: Nominating Organization may conduct interviews

Step 5: Approval by the Selecting Official (may include additional screening)

Step 6: OPM Qualifications Review Board certification

Your session is about to expire!

Your USAJOBS session will expire due to inactivity in 8 minutes. Any unsaved data will be lost if you allow the session to expire. Click the button below to continue your session.