Skip to main content
U.S. flag
Back to results

IT Specialist

Federal Communications Commission
This job announcement has closed

Summary

This position is located in the Cybersecurity Group, Office of the Chief Information Officer, Office of the Managing Director, Federal Communications Commission, Washington, D.C.

RELOCATION EXPENSES WILL NOT BE PAID.  

THIS VACANCY ANNOUNCEMENT MAY BE USED TO FILL ADDITIONAL POSITIONS WITHIN 90 DAYS.

Overview

Help
Hiring complete
Open & closing dates
11/07/2023 to 11/21/2023
Salary
$112,015 to - $145,617 per year
Pay scale & grade
GS 13
Location
District of Columbia, DC
1 vacancy
Remote job
No
Telework eligible
Yes—as determined by the agency policy.
Travel Required
Occasional travel - Occasional travel may be required
Relocation expenses reimbursed
No
Appointment type
Permanent
Work schedule
Full-time - This is a full-time position. Work schedules, including telework, are at the discretion of the supervisor, consistent with agency policy and reentry planning.
Service
Competitive
Promotion potential
13 - This position is at the full performance level
Supervisory status
No
Security clearance
Sensitive Compartmented Information
Drug test
Yes
Position sensitivity and risk
Special-Sensitive (SS)/High Risk
Trust determination process
Announcement number
DHA-OMD-2023-029
Control number
759406200

This job is open to

Help

Clarification from the agency

OPEN TO THE PUBLIC - Open to all U.S. Citizens. Individuals who typically apply for positions under other authorities may also apply competitively to this position. (e.g. VRA, Schedule A, Peace Corps, Students, Recent Graduates, Military Spouses, National Guard, Indian Preference, Land Management, Family of Overseas Employees, Federal Employees, Agency Employees, ICTAP) Non-citizens may be eligible for this excepted service position under certain circumstances.

Duties

Help

The Governance, Risk and Compliance (GRC) Subject Matter Expert (SME) duties and responsibilities include the following:

Researches, develops, publishes, and implements Cybersecurity policies, manuals, processes and procedures.

Reviews and comments on all Security, Privacy, Information Technology (IT), and Cybersecurity directives, policies and procedures.

Develops, publishes, implements, tests and updates the FCC Information Systems Contingency Plan and Disaster Recovery (DR) Plans. Ensure that these plans are consistent across the FCC Headquarters, Regional and/or Field Offices and meet the National Institute of Standards and Technology (NIST) Commission, and Federal requirements.

Supports audit execution and the development of concepts and approaches, guides, and resources; conduct audit reviews; and report progress.

Supports development of audit reports, ensuring compliance with standards and protocols and the development of appropriate corrective action.

Supports planning of projected work including development of long range and annual audit plans, research and coordination of fact sheets and audit plans.

Supports annually required enterprise-wide security training for all FCC employees and contractors and other cybersecurity training as needed.

Supports the FCC Assessment and Authorization (A&A) process and lifecycle.

Reviews submitted Authority to Operate (ATO) packages to ensure compliancy with the National Institute of Standards and Technology (NIST), Commission, and Federal requirements.

Administers and manages the Federal Information System Management Act (FISMA) system repository and Cyber Security Assessment Management (CSAM) tool and/or its replacement.

Reviews and provides recommendation on and/or approve submitted Federal Risk and Authorization Management Program (FedRAMP) Authority to Operate (ATO) packages, continuous monitoring reports, and deviation requests for Cloud Service Providers (CSP).

Researches, plans, develops, and supports FCC’s migration from NIST Special Publication 800-37, “Risk Management Framework (RMF) for Information Systems and Organizations”, Revision 1 to Revision 2 (and subsequent revisions, updates and/or related guidance).

Supports independent risk and vulnerability assessments of planned and installed information systems to identify vulnerabilities, risk and measures needed to protect FCC automated information, and to complete the required assessment and authorization for each system.

Supports and monitors Plans of Action and Milestones (POA&M) for the Cybersecurity Program.

Requirements

Help

Conditions of employment

  • US Citizenship.
  • Suitable for employment as determined by a background investigation.
  • Serve a probationary period of one year, if applicable.
  • Males born after 12/31/59 must be registered with Selective Service.
  • Financial disclosure statement may be required upon assuming the position.
  • Drug Testing Required.
  • Security Clearance Required

Please note your resume must thoroughly support your responses to the vacancy questions.  Your resume is an integral part of the process for determining if you meet the basic qualifications of the position and determining if you are to be among the best qualified.

Qualifications

Applicants must meet eligibility and qualification requirements by the closing date of this announcement.  Time in grade restrictions do not apply to Direct Hire procedures.

GS-13

In order to be deemed as qualified candidates must have one year of specialized experience which is equivalent to at least the GS-12 grade level in the federal service. Specialized experience is defined as:

1) Experience researching, developing, publishing, and implementing Cybersecurity policies, manuals, processes and procedures.
2) Experience reviewing and commenting on Security, Privacy, Information Technology (IT), and Cybersecurity directives, policies, and procedures.
3) Experience supporting Assessment & Authorization (AA) process and lifecycle.
4) Experience reviewing Authority to Operate (ATO) packages to ensure compliance with the National Institute of Standards and Technology (NIST).
5) Experience supporting independent risk and vulnerability assessments of planned and installed information systems to identify vulnerabilities and risks.

PART-TIME OR UNPAID EXPERIENCE: Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic; religious; spiritual; community, student, social). Volunteer work helps build critical competencies, knowledge, and skills and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience.

Education

Any/all educational requirements (if applicable) are listed and outlined within the "Qualifications" section.

Additional information

EEO Policy Statement

Reasonable Accommodation Policy Statement

Veterans Information

Legal and Regulatory Guidance

Other:
-  Before hiring, an agency will ask you to complete a Declaration for Federal Employment to determine your suitability for Federal employment and to authorize a background investigation.  The agency will also ask you to sign and certify the accuracy of all the information in your application.  If you make a false statement in any part of your application, you may not be hired; you may be fired after you begin work; or you may be fined or jailed. If you are a male over age 18 who was born after December 31, 1959, you must have registered with the Selective Service System (or have an exemption) to be eligible for a Federal job.

-  If applicable, you will be required to serve a trial period of one year.

-  In order for you to be employed at the FCC, there are certain Commission and Federal laws governing the financial interests of you and members of your immediate family. If selected for the position, you must submit a financial disclosure statement upon assuming the position

How you will be evaluated

You will be evaluated for this job based on how well you meet the qualifications above.

All applicants will be rated on the extent and quality of experience and education relevant to the duties of the position.  The FCC determines the BEST QUALIFIED CANDIDATES based upon whether or not all of the qualification requirements have been met (education, basic experience requirements and specialized experience requirements).

As this position is being advertised under Direct Hire procedures, veterans preference does not apply.

A selecting official may make a selection from the list of candidates who are deemed as "Best Qualified".

Applicants under Merit Promotion will be considered in accordance with the agency's merit promotion plan and union agreement.

There are several parts to the application process that affect the overall evaluation of your application including:

1.  Resume-Must address the specialized experience
2.  SF-50-For current federal employees
3.  Supplemental documentation (e.g., DD-214, SF-50, SF-15, cover letter), if applicable; and
4.  Unofficial or official transcripts

Applicants will be rated ineligible if they do not meet all of the qualification requirements (education, basic experience requirements and specialized experience requirements).

You will be evaluated for this position on the following Knowledge, Skills, Abilities and Other characteristics (KSAOs):

  • Ability to provide advice, guidance, and recommendations to management and other technical specialists on critical policy issues; make decisions or recommendations that significantly influence important Commission IT and Cybersecurity policies or programs.
  • Skill in applying advanced IT principles, concepts, methods, standards, and practices sufficient to accomplish assignments such as develop and interpret policies, procedures, and strategies
    governing the planning and delivery of IT services throughout the agency.
  • Ability to interpret, advise, and communicate policy and procedural requirements to non-technical personnel; prepare and present briefings to management officials on complex/controversial matters to include those of National Security concern.
  • Knowledge of Federal cyber and cybersecurity policy, procedures, and guidelines, cyber and cybersecurity concepts, terms, and technical aspects.

You may preview questions for this vacancy.

Your session is about to expire!

Your USAJOBS session will expire due to inactivity in 8 minutes. Any unsaved data will be lost if you allow the session to expire. Click the button below to continue your session.