Skip to main content
U.S. flag
Back to results
 

Privacy Engineer

Department of Health and Human Services
Centers for Medicare & Medicaid Services
Office of Information Technology (OIT)

Summary

This position is located in the Department of Health & Human Services (HHS), Centers for Medicare & Medicaid Services (CMS), Office of Information Technology,(OIT), Information Security and Privacy Group (ISPG) .

As a Privacy Engineer, GS-2210-13, you will design, implement, and maintain privacy-by-design principles and privacy-enhancing technologies across CMS information technology systems, networks, and applications to ensure compliance with federal privacy laws.

Overview

Help
Accepting applications
Open & closing dates
05/01/2026 to 05/07/2026
Salary
$119,630 - $158,322 per year

Your pay will be determined by the location of the official duty station. See additional information for salary ranges.

Pay scale & grade
GS 13
Locations
1 vacancy in the following locations:
Woodlawn, MD
Seattle, WA
Remote job
No
Telework eligible
Yes—as determined by the agency policy.
Travel Required
Occasional travel - You may be expected to travel up to 5% for this position.
Relocation expenses reimbursed
No
Appointment type
Permanent
Work schedule
Full-time
Service
Competitive
Promotion potential
13
Supervisory status
No
Security clearance
Not Required
Drug test
No
Position sensitivity and risk
High Risk (HR)
Trust determination process
Financial disclosure
No
Bargaining unit status
No
Announcement number
CMS-OIT-26-12947366-DH
Control number
867465800

This job is open to

Help

Clarification from the agency

This announcement is advertised under Direct Hire Authority and is open to all United States Citizens or Nationals.

Videos

Duties

Help
  • Perform systematic analysis of IT systems, applications, and data flows to identify privacy risks and ensure privacy controls are properly implemented within the framework of Federal Regulations.
  • Perform systematic analysis of IT systems, applications, and data flows to identify privacy risks and ensure privacy controls are properly implemented.
  • Develop and execute strategies for comprehensive privacy engineering and data protection across the enterprise.
  • Prepare internal and external reports that may include providing audit liaison support to IT operations, such as Federal Information Security Act (FISMA), Chief Financial Officer, Office of Inspector General (OIG), and others as directed.
  • May serve as a Contracting Officer Representative (COR) and formulate project plans, statements of work (SOW) and budgets in support of privacy engineering and data protection initiatives.

Requirements

Help

Conditions of employment

  • You must be a U.S. Citizen or National to apply for this position.
  • You will be subject to a background and suitability investigation.
  • Selective Service: Males born after December 31, 1959, must be registered or exempt from Selective Service-http//www.sss.gov
  • One-year probationary period may be required.
  • If you are selected for this position, the documentation that you present for purposes of completing the Department of Homeland Security (DHS) form I-9 will be verified through the DHS "E-Verify" System.
  • All Federal employees are required to have Federal salary payments made by direct deposit to a financial institution of their choice.

Qualifications

ALL QUALIFICATION REQUIREMENTS MUST BE MET BY THE CLOSING DATE OF THIS ANNOUNCEMENT.

Your resume (limited to no more than 2 pages) must include detailed information as it relates to the responsibilities and specialized experience for this position. Evidence of copying and pasting directly from the vacancy announcement without clearly documenting supplemental information to describe your experience will result in an ineligible rating. This will prevent you from being considered further.

There is a BASIC REQUIREMENT AND MINIMUM QUALIFICATION REQUIREMENT for this position. You must meet both requirements.

BASIC REQUIREMENT: You must have IT-related experience demonstrating each of the four competencies listed:
1) Attention to Detail - Is thorough when performing work and conscientious about attending to detail.
2) Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services.
3) Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately.
4) Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations.

AND

In order to qualify for the GS-13 grade level, you must meet the following: You must demonstrate in your resume at least one year (52 weeks) of qualifying specialized experience equivalent to the GS-12 grade level in the Federal government, obtained in either the private or public sector, to include:

1. Conducting PIAs (Privacy Impact Assessment) , data flow analyses, and privacy control testing per the Privacy Act, HIPAA, FISMA, NIST, and OMB guidance; delivered risk-based recommendations to senior leadership, AND;
2. Applying privacy-by-design principles within the Software Development Life Cycle (SDLC), including architecture reviews and privacy-enhancing technologies (data minimization, anonymization, pseudonymization) to protect PII and PHI, AND;
3. Preparing executive briefings, compliance reports, and audit documentation; supported FISMA and OIG audits; and tracked privacy gap remediation through resolution, AND;
4. Monitoring legislative, regulatory, and technology changes affecting privacy; contributed to incident response planning; and collaborated with federal and private-sector stakeholders to resolve privacy and data protection issues.

Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional, philanthropic, religious, spiritual, community, student, social). Volunteer work helps build critical competencies, knowledge, and skills, and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience.

Click the following link to view the occupational questionnaire: https://apply.usastaffing.gov/ViewQuestionnaire/12947366

Education

This job does not have an education qualification requirement.

Additional information

Bargaining Unit Position: Yes - American Federation of Government Employees, Local 1923.
Tour of Duty: Flexible
Recruitment Incentive: Not Authorized
Relocation Incentive: Not Authorized
Financial Disclosure: Not Authorized

Workplace Flexibility at CMS: This position has a regular and recurring reporting requirement to the CMS office listed in this announcement. CMS offers flexible working arrangements and allows employees the opportunity to participate in alternative work schedules at the manager's discretion.

Salary Ranges by Location:

  • Seattle, WA - $119,630 -$ 155,521
  • Woodlawn, MD $121,785 - $158,322
The Interagency Career Transition Assistance Plan (ICTAP) and Career Transition Assistance Plan (CTAP) provide eligible displaced federal employees with selection priority over other candidates for competitive service vacancies. To be qualified you must submit the required documentation and be rated well-qualified for this vacancy. Click here for a detailed description of the required supporting documents. A well-qualified applicant is one whose knowledge, skills and abilities clearly exceed the minimum qualification requirements of the position. Additional information about ICTAP and CTAP eligibility is on OPM's Career Transition Resources website at www.opm.gov/rif/employee_guides/career_transition.asp.

Candidates should be committed to improving the efficiency of the Federal government, passionate about the ideals of our American republic, and committed to upholding the rule of law and the United States Constitution.

How you will be evaluated

You will be evaluated for this job based on how well you meet the qualifications above.

You will be evaluated based on how well you meet the qualifications listed in this vacancy announcement. Your qualifications will be evaluated based on your application materials (e.g., resume, supporting documents), the responses you provide on the application questionnaire, and the results of the online assessments required for this position. A Subject Matter Expert may assist in the resume review process to help determine whether you meet the minimum job qualifications. Please follow all instructions carefully. Errors or omissions may affect your rating. You will be assessed on the following competencies (knowledge, skills, abilities, and other characteristics):

  • Attention to Detail
  • Customer Service
  • Decision Making
  • Flexibility
  • Influencing/Negotiating
  • Integrity/Honesty
  • Interpersonal Skills
  • Learning
  • Reasoning
  • Self-Management
  • Stress Tolerance
  • Teamwork
In order to be considered for this position, you must complete all required steps in the process. In addition to the application and application questionnaire, this position requires an online assessment. The online assessment measures critical general competencies required to perform the job. The assessment includes a cut score based on the minimum level of required proficiency in these critical general competencies. You must meet or exceed the cut score to be considered. You will not be considered for the position if you score below the cut score or fail to complete the assessment. Overstating your qualifications and/or experience in your application materials or application questionnaire may result in your removal from consideration. Cheating on the online assessment may also result in your removal from consideration.

RPL Applicants

RPL applicants who are verified as registered for the same series, grade, and location as this vacancy announcement will be placed in one of the following categories based on category rating procedures:
  • Best Qualified - significantly exceeds the evaluation criteria
  • Well Qualified - excelsin the evaluation criteria
  • Qualified - meets the minimum qualification requirements
If you are found to be among the top-qualified candidates, you will be referred to the selecting official for employment consideration. The category rating process does not add veterans' preference points or apply the "rule of three" but protects the rights of veterans by placing them ahead of non-preference eligibles within each category. Veterans' preference eligibles who meet the minimum qualification requirements and who have a compensable service-connected disability of at least 10 percent will be listed in the highest quality category (except in the case of professional or scientific positions at the GS-09 level or higher).

Centers for Medicare & Medicaid Services

The Department of Health & Human Services (HHS), Centers for Medicare & Medicaid Services (CMS) works in partnership with the entire health care community to improve quality and efficiency in an evolving health care system and provides leadership in the broader health care marketplace.

CMS' effectiveness depends on the capabilities of a dedicated, professional staff that is committed to supporting these objectives. A career with CMS offers the opportunity to get involved in important national health care issues and be part of a dynamic, fast-paced, and highly visible organization. For more information on CMS, please visit: http://www.cms.gov/.

HHS has a critical preparedness and response mission: HHS protects the American people from health threats, researches emerging diseases, and mobilizes public health programs with domestic and international partners. In support of this mission, HHS offers its employees the opportunity to contribute their unique skills through voluntary temporary assignments to humanitarian emergencies or Departmental priorities countering new and emerging health, safety, and security threats.

Agency contact information

CMS HR Inquiries
Email
hrinquiries@cms.hhs.gov
Address
Office of Information Technology
7500 Security Blvd
Woodlawn, MD 21244
US

Your session is about to expire!

Your USAJOBS session will expire due to inactivity in 8 minutes. Any unsaved data will be lost if you allow the session to expire. Click the button below to continue your session.