Skip to main content
U.S. flag
Back to results

Information Technology Security Officer

Judicial Branch
U.S. Courts
United States Court of Appeals for the Federal Circuit

Summary

The Information Technology (IT) Security Officer is located in the Information Technology Office (ITO) and is supervised by the Assistant Circuit Executive for Information Technology. The position maintains the operational security posture for the United States Court of Appeals for the Federal Circuit, performing professional work related to security policy implementation, risk assessment, vulnerability management, compliance monitoring, incident coordination, and security awareness.

Overview

Help
Accepting applications
Open & closing dates
02/09/2026 to 08/09/2026
Salary
$62,212 to - $133,178 per year

Salary determined by qualifications and experience as outlined below under "Required Qualifications".

Pay scale & grade
CL 26 - 28
Location
1 vacancy in the following location:
Washington, DC
Remote job
No
Telework eligible
Yes—as determined by the agency policy.
Travel Required
Not required
Relocation expenses reimbursed
No
Appointment type
Permanent
Work schedule
Full-time
Service
Excepted
Promotion potential
29 - Promotion up to the CL 29 may occur without further posting or competition.
Supervisory status
No
Security clearance
Other
Drug test
No
Financial disclosure
No
Bargaining unit status
No
Announcement number
CAFC-26-02-REVISED
Control number
857076500

Duties

Help

Representative duties are intended to illustrate the major duties and responsibilities that are performed by this position. Representative duties may be adjusted, and additional duties may be added, based on the operational needs of the court and ITO. Primary responsibilities are project and program management (approximately 40-45% of time) and systems management support, compliance monitoring, and documentation (approximately 35-40% of time), with business analysis and other duties (approximately 15-20% of time) prioritized based on organizational needs and capacity.

  • Security Operations and Compliance: Implement and maintain local security policies, processes, and technologies consistent with the national information security program. Monitor compliance with judiciary technology policies and security standards. Complete the annual Judiciary IT Scorecard self-assessment. Develop and maintain security documentation including policies, procedures, guidelines, and checklists. Participate in the acquisition process following supply chain risk management practices and ensure procurements address security requirements. Prepare budget justifications for security initiatives and special management reports as needed. Coordinate IT disaster recovery and continuity planning, including maintaining recovery procedures, ensuring backup security, and supporting periodic testing.
  • Risk Assessment and Vulnerability Management: Conduct security risk and vulnerability assessments of planned and installed information systems to identify weaknesses, risks, and protection requirements. Perform technical research to identify potential vulnerabilities and threats in existing and proposed technologies. Communicate findings and recommend mitigation strategies. Coordinate with the Circuit Executive's Office on risk management matters and contribute to the court's risk management framework. Participate in regular IT security and risk management meetings.
  • Project Coordination: Plan and execute IT security projects, developing project plans, timelines, and resource requirements. Coordinate security-related aspects of broader ITO projects, ensuring security requirements are integrated throughout the project lifecycle. Provide regular project status updates and escalate issues through appropriate channels. Ensure project documentation and outcomes are communicated to stakeholders.
  • Technical Security Services: Provide technical advisory services to securely design, implement, and maintain information technology systems, applications, cloud services, and network infrastructure. Ensure confidentiality, integrity, and availability of systems, applications, networks, and data across the system development lifecycle. Integrate security into system development by educating stakeholders and creating supporting methodologies and templates. Oversee implementation of security controls and generation of security documentation for system authorization.
  • Training and Awareness: Conduct annual security awareness training for court staff. Provide security briefings, updates, and resources. Promote awareness and adoption of IT security best practices. Advise management on security needs, objectives, and vulnerabilities.
  • General Responsibilities: Communicate and respond to judges, chambers staff, and management requests regarding court operations. Answer IT security questions for judges and staff, and the public. Communicate clearly and effectively, both orally and in writing, to explain complex operational matters and concepts to individuals and groups with varying experience and backgrounds. Interact effectively with the public and staff, providing good customer and quality service and resolving difficulties efficiently while complying with regulations, rules, and procedures. Develop, implement, and maintain written procedures for assigned functions. Comply with The Guide to Judiciary Policy, applicable Administrative Office policies and procedures, internal controls guidelines, and all local policies and procedures. Abide by the Code of Conduct for Judicial Employees and court confidentiality requirements. Demonstrate sound ethics and good judgment at all times. Display a careful and deliberate approach in handling confidential information in a variety of contexts.

Requirements

Help

Conditions of employment

  • All offers of employment are provisional pending successful completion of a background check or investigation and a favorable employment suitability determination. Initial and continued appointment in this position is conditioned on a favorable moderate risk, five-year background investigation (renewed every five years). An unfavorable investigation at any point during employment may lead to removal.
  • This position is subject to Electronic Funds Transfer (EFT) for payroll deposit.
  • Must be a U.S. citizen or eligible to work in the United States. Non-citizens may be interviewed and considered for employment, but employment offers will only be made to individuals who qualify under one of the exceptions in 8 U.S.C.§ 1324b(a)(3)(B). Under 8 U.S.C.§1324b(a)(3)(B), a lawful permanent resident seeking citizenship may not apply for citizenship until he or she has been a permanent resident for at least five years (three years if seeking naturalization as a spouse of a citizen), at which point he or she must apply for citizenship within six months of becoming eligible, and must complete the process within two years of applying (unless there is a delay caused by the processors of the application). Non-citizens who have not been permanent residents for five years will be required to execute an affidavit that they intend to apply for citizenship when they become eligible to do so.

Qualifications

Specialized Experience:

  • CL 26 ($62,212 - $101,109): Entry-level position. Candidates must possess at least one year of specialized experience in IT security. Experience must demonstrate knowledge of security principles, risk assessment, and vulnerability management, and ability to communicate technical information to varied audiences and work collaboratively within a team environment. Alternatively, candidates may qualify by completing a bachelor's degree with a major in cybersecurity, information assurance, or closely related field from an accredited college or university and superior academic achievement as listed below.
  • CL 27 ($68,346 - $111,099): At a minimum, candidates must possess at least two years of specialized experience in IT security. Experience must demonstrate knowledge of security principles, risk assessment, and vulnerability management, and ability to communicate technical information to varied audiences and work collaboratively within a team environment.
  • CL 28 ($81,906 - $133,178): Candidates must possess at least three years of specialized experience in IT security. Experience must demonstrate knowledge of security principles, risk assessment, and vulnerability management, and ability to communicate technical information to varied audiences and work collaboratively within a team environment. Specialized experience may be substituted by a master's degree from an accredited college or university in cybersecurity, information assurance, or closely related field.
Superior Academic Achievement:
  • An overall "B" grade point average equaling 2.90 or better of a possible 4.0; AND/OR
  • Standing in the upper third of the class; AND/OR
  • Grade point average 3.5 or better in the major field of study, such as Human Resources or a related field that would prepare a candidate well to perform in this position; AND/OR
  • Election to membership in Phi Beta Kappa, Sigma XI, or one of the National Honorary Scholastic Societies meeting the minimum requirements of the Association of College Honor Societies, other than Freshman Honor Societies.
  • Completion of one academic year (18 semester or 27 quarter hours) of graduate study at an accredited college or university. A degree program in cybersecurity, information assurance, or closely related field is preferred.
Preferred Qualifications:
  • Professional certifications: CISSP, CISM, CISA, Security+, or GIAC certifications
  • Federal government or federal judiciary IT security experience
  • Experience with NIST Cybersecurity Framework or similar security frameworks
  • Experience conducting security assessments and supporting audit activities
  • Project management experience or PMP certification
  • Experience working within a management team structure and coordinating across functional areas

Education

At a minimum, candidates must possess a bachelor's degree from an accredited college or university in computer science, information technology, cybersecurity, or similar field of study.

Additional information

  • Only those applicants selected for an interview will be contacted. For in-person interviews, candidates must travel at their own expense.
  • The court reserves the right to modify the conditions of this announcement, commence interviews immediately, withdraw the announcement, or fill the position at any time, any of which actions may occur without notice.
  • The position will report to downtown Washington, DC; however, limited telework may be available on an ad hoc basis and/or according to agency policy.
  • Employees of the United States Court of Appeals for the Federal Circuit are excepted service, at-will appointments. Federal government civil service classifications or regulations do not apply.
  • For full posting, please visit Job Announcement / CAFC-25-02 / IT Security Officer
The U.S. Court of Appeals for the Federal Circuit is an Equal Opportunity Employer.

Candidates should be committed to improving the efficiency of the Federal government, passionate about the ideals of our American republic, and committed to upholding the rule of law and the United States Constitution.

How you will be evaluated

You will be evaluated for this job based on how well you meet the qualifications above.

Applicants will be evaluated based upon review of their qualifications and the application package.

Your session is about to expire!

Your USAJOBS session will expire due to inactivity in 8 minutes. Any unsaved data will be lost if you allow the session to expire. Click the button below to continue your session.