Skip to main content
U.S. flag
Back to results

Chief Information Security Officer (CISO)

National Foundation on the Arts and the Humanities
Institute of Museum and Library Services
Office of the Chief Information Officer
This job announcement has closed

Summary

The incumbent serves as the Chief Information Security Officer (CISO) and is supervised by the Chief Information Officer (OCIO). Additionally, this position also supports privacy program implementation, electronic records management program implementation, and information management.

Overview

Help
Hiring complete
Open & closing dates
09/14/2020 to 09/18/2020
Salary
$142,701 to - $170,800 per year
Pay scale & grade
GS 15
Location
1 vacancy in the following location:
Washington, DC
Telework eligible
Yes—as determined by the agency policy.
Travel Required
Not required
Relocation expenses reimbursed
No
Appointment type
Permanent
Work schedule
Full-Time
Service
Competitive
Promotion potential
15
Supervisory status
No
Security clearance
Not Required
Drug test
Yes
Position sensitivity and risk
Noncritical-Sensitive (NCS)/Moderate Risk
Trust determination process
Announcement number
DE-10877462-20-SW
Control number
578684900

This job is open to

Help

Clarification from the agency

This position is being filled under OPMs Direct-Hire Authority (DHA) (5 U.S.C. 3309-3318). Veteran's preference and traditional rating and ranking of applicants are not applicable to this vacancy. Applications will be accepted from all U.S. Citizens, as well as individuals that are eligible under the federal government's Interagency/Career Transition Assistance Program (ICTAP/CTAP).

Duties

Help

This announcement is being used to recruit qualified individuals under the Office of Personnel Management (OPM) Direct Hire Authority authorized by 5 United States Code (U.S.C.), Section 3304. Category Rating, Veterans' Preference, and traditional rating/ranking of applicants do not apply to this Public Notice.

If selected for the Chief Information Security Officer (CISO) position, the incumbent will serves as the Information Security architect for all IMLS information systems; direct and oversee the management of all activities of the Security area with responsibility for the planning, development, implementation and maintenance of programs and policies per the Federal Information Security Management Act and other federal security policies and guidance necessary to assure security of all existing and newly deployed systems; Internet/Intranet security; and security for the enterprise network. Typical work assignments will include, but are not limited to:

  1. Assure successful implementation and functionality of security requirements and appropriate information technology (IT) policies and procedures that are consistent with the organization's mission and goals.
  2. Manage threat or target analysis of cyber defense information and production of threat information within the enterprise.
  3. Lead and align information technology (IT) security priorities with the security strategy.
  4. Lead and oversee information security budget, staffing, and contracting.
  5. Establish overall enterprise information security architecture (EISA) with the organization's overall security strategy.
  6. Acquire and manage the necessary resources, including leadership support, financial resources, and key security personnel, to support information technology (IT) security goals and objectives and reduce overall organizational risk.
Performs other duties as assigned.

Requirements

Help

Conditions of employment

  • Must be a U.S. Citizen or National
  • Males born after 12-31-59 must be registered for Selective Service
  • May be required to successfully complete a probationary period.
  • You must successfully pass a background/suitability investigation. This may include a credit check, a criminal check, and drug test.
  • Documentation that you present for purposes of completing the Department of Homeland Security (DHS) Form I-9 will be verified through the DHS "E-Verify" System.
  • Relocation expenses will not be authorized.
  • Resume and supporting documents (See How To Apply).
  • If you receive a conditional offer of employment for this position, you will be required to complete an Optional Form OF-306, Declaration of Federal Employment for this position.
  • You must meet all qualification requirements upon the closing date of this announcement.

Qualifications

MINIMUM QUALIFICATIONS:
Basic Experience: Applicants must have IT-related experience demonstrating each of the four competencies listed below. Applicants resume must demonstrate expert proficiency related to each competency below:

  1. Attention to Detail - Is thorough when performing work and conscientious about attending to detail.
  2. Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services.
  3. Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately.
  4. Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations.
In addition to the Basic Experience requirements above, applicants must have at least one year of specialized experience (equivalent to at least the GS-14 grade level or pay band in the Federal service). Specialized experience is defined as: (1) the ability to integrate information security requirements into the acquisition process: using applicable baseline security controls as one of the sources for security requirements, ensuring a robust software quality control process, and establishing multiple sources (e.g., delivery routes for critical system elements); (2) knowledge of cybersecurity and privacy principles used to manage risks related to the use, processing, storage, and transmission of information or data; (3) knowledge of current industry methods for evaluating, implementing, and disseminating information technology (IT) security assessment, monitoring, detection, and remediation tools and procedures utilizing standards-based concepts and capabilities; (4) knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth); (5) skill in determining how a security system should work (including its resilience and dependability capabilities) and how changes in conditions, operations, or the environment will affect these outcomes; (6) knowledge of Federal laws and regulations, and reporting requirements (e.g., Federal Records Management, Federal Information Security Modernization Act (FISMA), Privacy and Data Act, and National Institute of Standards and Technology (NIST) guidelines).

NOTES:
  1. We do not require a separate statement responding to the competencies; however, your resume should clearly show possession of these competencies.
  2. Specialized experience is experience that has equipped the applicant with the particular competencies/knowledge, skills, and abilities to successfully perform the duties of the position and is typically in or related to the work of the position to be filled. Such experience is typically gained in the IT field or through the performance of work where the primary concern is IT. The employing agency is responsible for defining the specialized experience based on the requirements of the position being filled.
  3. Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic; religious; spiritual; community, student, social). Volunteer work helps build critical competencies, knowledge, and skills and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience.

Education

Education is not a substitute for specialized experience at this grade level.

Additional information

Career Transition Assistance Programs:
These programs apply to employees who have been involuntarily separated from a Federal service position within the competitive service or Federal service employees whose positions have been deemed surplus or no longer needed. To receive selection priority for this position, you must: (1) meet CTAP or ICTAP eligibility criteria; (2) be rated well-qualified for the position with a score of 85 or above; and, (3) submit the appropriate documentation to support your CTAP or ICTAP eligibility. For more information visit: http://www.opm.gov/rif/employee_guides/career_transition.asp .

Selective Service Registration:
Males born after 12-31-59 must be registered or exempt from Selective Service (see https://www.sss.gov/RegVer/wfRegistration.aspx).

Veterans:
Under the provisions of the Direct-Hire Authority, veterans' preference does not apply. However, applicants who are eligible for Veterans Preference are still encouraged to include that information in their application and submit supporting documentation (i.e. DD-214, or other substantiating documents). View information on veterans' preference.

Your resume and supporting documentation will be reviewed to ensure that you meet the minimum qualification requirements. If you are qualified, you may be referred to the hiring manager for consideration and may be called for an interview.

Background Investigation:
Selectee(s) will be required to complete a "Declaration of Federal Employment", (OF-306), prior to being appointed to determine their suitability for Federal employment and to authorize and initiate a background investigation. False statements or responses on your resume, questionnaire, and other documentation can jeopardize your employment opportunity and subject you to disciplinary action, including removal from Federal service, a transferable security clearance from another agency or a background investigation leading to a security clearance, if applicable.

Selectee(s) may be appointed and begin work in the position pending the successful completion of a full-field background investigation. Successful background investigation is required for continued employment.

Current or Former Political Appointees:
The Office of Personnel Management (OPM) must authorize employment offers made to current or former political appointees. If you are currently, or have been within the last 5 years, a political Schedule A, Schedule C, Non-career SES or Presidential Appointee employee in the Executive Branch, you must disclose this information to the Human Resources Office.

How you will be evaluated

You will be evaluated for this job based on how well you meet the qualifications above.

This position(s) will be filled through the Office of Personnel Management's Direct Hire Authority. The "Rule of Three", Category Rating and Veterans Preference does not apply under Direct Hire Authority. For more information on Direct Hire Authority, please see: OPM Direct Hire Fact Sheet.

Before a certificate is issued to the selecting official, the resume is reviewed to ensure that you meet all qualification requirements. All applicants who meet all qualifications, to include any selective placement factor(s), if applicable, will be referred to the selecting official for consideration and may be called for an interview. All applicants' qualifications will be evaluated on the below-listed competencies, which are required for this position. Please outline experience/education for these competencies in your resume.

The required competencies for this position are as follows:

  • Information Systems Security: This specialty ensures the integrity, availability, and confidentiality of information systems through the planning, analysis, development, implementation, maintenance, and enhancement of systems, programs, policies, procedures, and tools.
  • Information Systems Security Certification: Knowledge of the principles, methods, and tools for evaluating information systems security features against a set of specified security requirements. Includes developing security certification and accreditation plans and procedures, documenting deficiencies, reporting corrective actions, and recommending changes to improve the security of information systems.
  • Information Systems/Network Security: Knowledge of methods, tools, and procedures, including development of information security plans, to prevent information systems vulnerabilities, and provide or restore security of information systems and network services.
  • Information Technology Program Management: Knowledge of the principles, methods, and tools for the coordinated management of an IT program to include providing oversight of multiple IT projects, integrating dependent schedules and deliverables, and related activities (for example, benefits management, life cycle management, program governance).
  • Oral Communication: Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately.
  • Strategic Thinking: Formulates effective strategies consistent with the business and competitive strategy of the organization in a global economy; examines policy issues and strategic planning with a long term perspective; determines objectives and set priorities; anticipates potential threats or opportunities.
  • Writing: Recognizes or uses correct English grammar, punctuation, and spelling; communicates information (for example, facts, ideas, or messages) in a succinct and organized manner; produces written information, which may include technical material, that is appropriate for the intended audience.
Be sure that your resume clearly addresses your experience and education relevant to this position.

The Occupational Questionnaire will take you approximately 20 minutes to complete.

To preview the Occupational Questionnaire, click the following link: https://apply.usastaffing.gov/ViewQuestionnaire/10877462

Your session is about to expire!

Your USAJOBS session will expire due to inactivity in 8 minutes. Any unsaved data will be lost if you allow the session to expire. Click the button below to continue your session.