The Office of Information Security (OIS) provides information security and privacy infrastructure for the U.S. Department of Veterans Affairs (VA). The office assures the confidentiality, integrity, and risk management, record management, Freedom of Information Act (FOIA) requests.
In addition, the OIS team develops, implements, and oversees the training, communication how VA and its partners safeguard the personally identifiable information (PII) of Veterans and VA employees.
Major Duties: Coordinate responses and follow-up actions to information security audits and external oversight organizations and maintain secure files of such responses and actions as required. Use information systems life cycle reviews and budget cycle approvals to promote information security objectives within VA.
Ensures security standards, industry best practices, and evaluation criteria are integrated in all phases of information resources life cycle planning from capital investment review at the project imitation and design phase to acquisition approval, in-process reviews of operational systems, and planning for system replacement.
Provide SME input to enhance the VA certification process and to ensure that systems undergo sufficient rigorous management review prior to accreditation. Influences, motivates, and challenges others; adapts leadership styles to a variety of situations.
Knowledge of the laws, regulations, and guidelines related to securing personnel, facilities, and information, including the requirements for handling, transporting, and protecting classified information and proper reporting of security incidents.
Formulates effective strategies consistent with the business and competitive strategy of the organization in a global economy; examines policy issues and strategic planning with a long term perspective; determines objectives and sets priorities; anticipates potential threats or opportunities. Knowledge of how to perform one's job. Refers to specialized knowledge that is acquired through formal training or extensive on-the-job experience.
Identifies and analyzes problems; weighs relevance and accuracy of information; generates and evaluates alternative solutions; makes recommendations.
Master cybersecurity risk management and be capable of supervising personnel/tasks in: the Assessment and Authorization (A&A) process; compliance and oversight of the PIV Card Issuing station audits; and management of VA's Governance Risk, and Compliance (GRC) capabilities Develop and supervise a full range of cybersecurity risk management compliance programs, working closely with facility- and executive-level management to isolate and define operating policies of the Veterans Health Administration (VHA), Veterans Benefits Administration (VBA), National Cemetery Administration (NCA), and VA staff offices and vendors to identify critical systemic problems and develop appropriate solutions.
Supervise cybersecurity risk management activities which are designed to improve VA's overall cybersecurity risk management policies and procedure Develop, design, and execute of strategic initiatives to meet Federal regulatory requirement and emerging technologies, as required by the Office of Management and Budget (0MB) based on guidance formulated by the National Institute of Standards and Technology (NIST).
Facilitate innovative application of best practices and cybersecurity risk management methods. Prepare trends analysis to reflect shifts in IT security priorities. Supervise and keep abreast of all emerging compliance issues and policies and socialize with their team. Supervise, monitor and report compliance to VA policies, procedures, and processes at designated VA and non-VA facilities.
Supervise the monitoring of compliance with federal, state and local laws and regulations at designated VA and non-VA facilities and VA-wide programs. Develop assessment strategies ensuring they are sound and accurate. Supervise the implementation of new project reviews in accordance with the latest VA requirements. Assist managers and technical specialists in identifying business areas with potential for significant cybersecurity improvement.
Perform other related duties and responsibilities as assigned Work Schedule: Monday through Friday (8:00am to 4:30pm and/or 7:30am to 4:00pm) Compressed/Flexible: Available Telework: This position may be authorized for telework. Virtual: This is not a virtual position. Position Description/PD#: Supervisory It Specialist (Infosec)/PD17198A
There is no educational substitution at this grade level.
VAOITOPSHRRPTeam1A@va.gov · 000-000-0000
This position is with Deputy Assistant Secretary for Information and Technology, Department of Veterans Affairs.
The posted pay range is $125776 – $163514/yr.
This position is eligible for telework.
This position requires a Other security clearance.
Applications close on 2026-09-08.
This position is open under the 'Fed Transition' hiring path.
Source: USAJOBS.gov — U.S. Federal Government
Apply on official site →