Skip to main content
U.S. flag
 

Information Systems Security Officer (ISSO)

Department of Health and Human Services
National Institutes of Health
National Institute on Drug Abuse (NIDA)

Summary

This position is in the National Institute on Drug Abuse (NIDA), Information and Resource Management Branch (IRMB). The IRMB serves as the central point for Institute-wide Information Technology (IT) resources, policies, and procedures and supports both administrative and scientific applications throughout the full software development lifecycle - initiation and implementation to operations and maintenance.

Overview

Help
Accepting applications
Posted today · Apply by 06/15/26
Due by 11:59 p.m. ET on June 15, 2026
Location
1 vacancy in the following location:
Work site options
Telework eligible
No
Remote job
No
Relocation expenses reimbursed
No
Salary
$143,913 - $187,093 per year
Pay scale & grade
GS 14
Promotion potential
14
Pay scale and grade determines the salary of the job.
Work schedule
Full-time
Travel Required
Not required
Appointment type
Permanent
Occupations and job series
Supervisory status
No
Federal service type
This job is in the Competitive Service
Represented by a union
No
Drug test
No
Security clearance
Other
Position sensitivity and risk
Moderate Risk (MR)
Jobs require a background check and some require a security clearance. The type depends on the job.
Background check type
Financial disclosure required
Yes
Some jobs require financial disclosure to identify conflicts of interests.
Announcement number
NIH-NIDA-DH-26-12979169
Control number
872390900

This job is open to

Help

Clarification from the agency

You must be a U.S. Citizen or U.S. National. Foreign nationals or legal permanent residents are not eligible for consideration.

Duties

Help

  • Advises the Chief Information Officer (CIO) on the direction and management of NIDA's Information Systems Security Program (NISSP).
  • Serves as the principal NIDA liaison to the NIH on Information Systems Security matters.
  • Identifies all systems requiring Accreditation & Authorization (A&A) clearance, reviewing new assessment deliverables, managing the resolution of all Plan of Action and Milestone activities, and continuously monitoring all systems operating under an Authority to Operate to ensure compliance with the latest NIST guidance.
  • Reviews and develops high level management, policy and procedure documents, federal policy proposals, and responses to data calls for the NIDA CIO.
  • Serves as the lead decision-making authority for NIDA's Vulnerability Management Program, NIDA's Threat Mitigation and Incident Response (TMIR) Program, and NIDA's Cyberhygiene (Cyberhealth and Education) Program.

Requirements

Help

Conditions of employment

  • U.S. Citizenship requirement or proof of being a U.S. National must be met by closing date.
  • Employment is subject to the successful completion of a background investigation, verification of qualifications, completion of onboarding forms, submission of required documents, and any other job-related requirement before or after appointment.
  • Applicants must meet all qualification requirements by the closing date of this announcement.
  • Males born after December 31, 1959 must be registered with the Selective Service.

Qualifications

You qualify at the GS-14 level, if you meet one of the following qualification requirements:

You qualify for this position at the GS-14 level because you have IT related experience demonstrated by paid or unpaid experience obtained in either the private or public sector, and/or completion of specific, intensive training that demonstrates that you possess each of the following four competencies:

1. Attention to Detail - is thorough when performing work and conscientious about attending to detail;
2. Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services;
3. Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately;
4. Problem Solving - identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations;
AND, you have 1 year of specialized experience equivalent to at least the GS-13 level in the Federal service obtained in either the private or public sector typically gained in the IT field or through performing the following types of IT tasks:
a) Interpreting and applying privacy laws, regulations, and policies, including Privacy Act requirements, to evaluate compliance, resolve privacy-related issues, and implement corrective actions to protect sensitive information and organizational data.
b) Managing cybersecurity incident response and threat mitigation activities by identifying security threats, analyzing security incidents, directing containment and remediation efforts, and implementing corrective actions to reduce organizational risk.
c) Conducting Security Assessment and Authorization (SA&A) activities by reviewing security assessment deliverables, evaluating security controls, managing Plans of Action and Milestones (POA&Ms), supporting Federal Information Security Modernization Act (FISMA) compliance efforts, and overseeing Continuous Monitoring activities for authorized information systems.
d) Providing information security program guidance to senior leadership and management officials by assessing organizational security posture, evaluating cybersecurity risks, and developing recommendations to support information security program objectives and risk management decisions.
e) Managing cybersecurity risk reduction activities by overseeing vulnerability management efforts, monitoring remediation activities, and developing cybersecurity awareness and education initiatives to strengthen workforce security practices and reduce organizational exposure to cyber threats.

You will receive credit for all experience material to the position, including experience gained in religious, civic, welfare, service, and organizational activities, regardless of whether you received pay.

Do not copy and paste the duties or specialized experience from this announcement into your resume as that will not be considered a demonstration of your qualifications for this position.

We may verify or assess your qualifications at any time. Inflated or unsupported qualifications may affect your rating. Any misrepresentation or material omission of facts may be sufficient cause to end further consideration of your candidacy. Persons listed as knowing your past accomplishments or experience in your application may be contacted for verification purposes at any time. Verification may, but need not, begin before receiving an offer.

Preview application questionnaire before you apply: https://apply.usastaffing.gov/ViewQuestionnaire/12979169

Education

This job does not have an education qualification requirement.

Additional information

  • This position is advertised using the working title Information Systems Security Officer (ISSO). The official title of record is IT Specialist (INFOSEC), GS-2210.
  • This position is designated as a "non-emergency/teleworker" position and the selected candidate will be considered a "non-emergency/teleworker" employee. In the event of a closure, you must be available to telework or request leave.
  • If selected, you will be required to complete a Confidential Financial Disclosure Report, OGE Form 450 to determine if a conflict or an appearance of a conflict exists between your financial interest and your prospective position with the agency. This information is required annually. For information, visit the NIH Ethics website: https://ethics.od.nih.gov/topics/fd.html.
  • Based on your appointment, a one or two-year trial/probationary period may be required. A decision regarding your continued employment with NIH will be made as you near the end of this period.
  • PHS Commissioned Officers interested in performing the duties of this position within the Commissioned Corps should also apply online to this announcement in order to receive consideration.
  • The National Institutes of Health participates in the USCIS Electronic Employment Eligibility Verification Program (E-Verify). E-Verify helps employers determine employment eligibility of new hires and the validity of their Social Security numbers.
  • The NIH maintains a tobacco free work environment and campus.
  • Must be able to perform the essential duties of the position, with or without reasonable accommodation.
  • Visit our Help Applying page for helpful information on the application process.
  • If selected, you may be eligible to receive a salary above the minimum based on superior qualifications and/or a special need of the Government for your services. This applies to employees paid under the General Schedule (GS) and Federal Wage System (FWS) pay systems and is at the discretion of the hiring manager. A salary above the minimum must be approved before the appointment.

Candidates should be committed to improving the efficiency of the Federal government, passionate about the ideals of our American republic, and committed to upholding the rule of law and the United States Constitution.

How you will be evaluated

You will be evaluated for this job based on how well you meet the qualifications above.

The position(s) advertised in this announcement are covered by a direct hire authority. Traditional rating and ranking of applicants, including category rating, does not apply to this vacancy. You will be initially evaluated against the basic qualifications only. Qualified applicants will be referred for consideration in accordance with the Office of Personnel Management direct hire guidelines. Veterans' Preference does not apply to positions covered by a direct hire authority.

This position is also covered by the agency's Reemployment Priority List (RPL). Any qualified priority candidates will be further evaluated on job-related criteria through a resume review, placed into one of the following categories, and referred to the hiring office for first priority once veterans' preference is applied.

  • Qualified
  • Well Qualified
  • Best Qualified

To be considered well qualified for the Career Transition Assistance Program (CTAP) and the Interagency Career Transition Assistance Program (ICTAP), you must be able to satisfactorily perform the duties of the position upon entry and substantively exceed the basic qualifications and meet all eligibility, physical, medical, suitability, and all other requirements.

Additional selections may be made for similar positions across the Department of Health and Human Services (HHS) within the local commuting area(s) of the location identified in this announcement. By applying, you agree to have your application shared with interested selecting official(s) at HHS. Clearance of CTAP/ICTAP will be applied for similar positions across HHS.

National Institutes of Health

The National Institutes of Health (NIH), a part of the U.S. Department of Health and Human Services, is the largest biomedical research funding organization in the world. NIH is made up of 27 Institutes and Centers, each with a specific research agenda, often focusing on particular diseases or body systems. NIH employs approximately 18,000 employees in varied occupations, all supporting research efforts that improve health and save lives. For more information on NIH's mission and goals, and its 27 Institutes and Centers, visit the NIH website.

Virtually explore the National Institutes of Health's (NIH) Bethesda campus, learn about scientific research, and get to know NIH community members who are working to help people live longer, healthier lives: https://www.nih.gov/virtual-tour/.

Ideal Candidate: The ideal candidate has experience serving as a Contracting Officer's Representative (COR) or overseeing cybersecurity-related contracts and contractor deliverables. Applicants will not be disqualified or determined ineligible solely for lacking this experience.

Agency contact information

Jessica Phillips
Email
phillipsjesl@mail.nih.gov
Address
National Institutes of Health
6701 Rockledge Drive
Bethesda, MD 20892
US

Your session is about to expire!

Your USAJOBS session will expire due to inactivity in 8 minutes. Any unsaved data will be lost if you allow the session to expire. Click the button below to continue your session.