Other Agencies and Independent Organizations

IT Specialist (Cybersecurity), CG-2210-14

Washington, District of Columbia Full time

IT Specialist (Cybersecurity), CG-2210-14

Department: Other Agencies and Independent Organizations

Location(s): Washington, District of Columbia

Salary Range: $156737 - $255000 Per Year

Job Summary: This position is located in the Chief Information Officer Organization, Office of the Chief Information Security Officer, Cyber Risk Management Section of the Federal Deposit Insurance Corporation (FDIC). The incumbent leads, implements, and manages cyber risk management programs, projects, and other efforts focused on Continuous Authorizations, DevSecOps and Application Security.

Major Duties:

  • - Conduct assessments of controls, threats and vulnerabilities to determine deviations from acceptable configurations, enterprise or local policy, assesses the level of risk, and develop and/or recommend appropriate mitigation countermeasures in all situations. - Plan and conduct cybersecurity assessment and authorization activities as systems are deployed to production for the first time and after they are transitioned to continuous monitoring, including strategies, concepts, processes for managing cybersecurity risks through DevSecOps methods, and compliance processes and/or assessments for external services (e.g., cloud service providers, external data centers). - Participate in Risk Governance process to provide security risks, mitigations, and input on other technical risks, and provide input to the Risk Management Framework process activities and related documentation (e.g., security categorization worksheets, system security plans, configuration management plans, business impact analysis, contingency plans, concept of operations, operational procedures, maintenance training materials, security categorization worksheets, configuration management plans). - Verify that controls are implemented as stated, any deviations and gaps are documented, and required actions to correct those deviations are tracked through Plan of Action and Milestones (POA&Ms). Ensure that POA&Ms or remediation plans are in place for vulnerabilities identified during security and privacy control assessments, audits, inspections, etc.

Qualifications: Qualifying experience may be obtained in the private or public sector. Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic, religious/spiritual; community; student, social). Volunteer work helps build critical competencies, knowledge, and skills and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience. Additional qualifications information can be found here. To qualify, applicants must have completed at least one year of specialized experience equivalent to at least the grade 13 level or above in the Federal service. Specialized experience is defined as includes experience developing solutions to integration/interoperability issues; designing, developing, and assisting with managing IT security systems; and providing advice on issues that comply with federal security requirements and guidance. You must have Information Technology (IT)-related experience which demonstrates proficiency in each of the following competencies: • Attention to Detail - Is thorough when performing work and conscientious about attending to detail. • Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services. • Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately. • Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations. Applicants must have met the qualification requirements (including selective placement factors – if any) for this position within 30 calendar days of the closing date of this announcement. For qualification determinations, your resume must contain the following for each work experience listed: Organization/Agency's Name Title Salary (series and grade, if applicable) Start and end dates (including the month and year) Number of hours you worked per week Relevant experience that supports your response to the specialized experience that is stated in the job announcement If your resume does not contain this information, your application may be marked as incomplete, and you may not receive consideration for this position.

How to Apply: To begin, click the “Apply” button and follow the prompts. If you haven’t already, register and establish a USAJOBS account. After you register online, click the “Apply” button to complete the online assessment questionnaire, and submit all required documents. Please be sure to click “Submit Application” to complete the application process. You must apply online. To apply for this position, you MUST provide a complete application package which includes: Your two (2) page resume showing all relevant work experience (paid and unpaid) including: duties performed; full name and address of the each employer; start and end dates (month/year); work schedule (part-time, full-time, number of hours if intermittent); salary; and any completed education and training (program title, subject area, number of hours completed, and completion date). Applicants requesting an exception from the online process must contact the Human Resources Specialist or point of contact listed in this announcement prior to 12:00 noon local time on the closing date. To return to your saved application, log in to your USAJOBS account and click on “Applications” tab. Click on the “Position Title,” and then select “Update Application” or “Additional Application Information” to continue. You have until 11:59 p.m. ET (Eastern Time) on the closing date of this announcement to complete the application process. Please ensure you have completed the application process by verifying the status of your application on-line to reflect: “Received”. Failure to complete the application process will result in an incomplete application and you will not be considered for the position.

Application Deadline: 2025-11-07