DE Jobs

Search from over 2 Million Available Jobs, No Extra Steps, No Extra Forms, Just DirectEmployers

Job Information

Administrative Office of the U.S. Courts Information Technology Specialist (Security) in Washington, District Of Columbia

Summary The Information Technology Specialist (Security) position is located in the Department of Administrative Services (DAS), Administrative Systems Office (ASO), Security and Data Integration Staff (SDIS). The SDIS is responsible for administering and overseeing the system security requirements for various Human Resources, Financial, Facilities and AO Support applications and information systems. Responsibilities This position will report to the Chief of the Security and Data Integration Staff (SDIS), Administrative Systems Office (ASO), Department of Administrative Services (DAS). The SDIS is seeking a self-motivated and experienced Information Technology Specialist (Security) to join its team. This position will serve as an Information System Security Officer (ISSO) administering and overseeing the system security program for the various applications and information systems within the Human Resources, Financial, Facilities and AO Support portfolios. The incumbent will be the primary advisor to the Chief and Deputy Chief of the SDIS and various Portfolio Managers on information security matters pertaining to assigned applications and systems. The incumbent will be providing recommendations concerning safeguarding of technical security controls employed within or inherited by an information system to determine the overall effectiveness of the controls; and reviewing information systems to identify potential security weaknesses, recommends improvements to address vulnerabilities, implement changes and documents upgrades. The duties of this position include, but are not limited to: Communicating Judiciary security policies, procedures, and safeguards for all applications and information systems. Developing and maintaining security documentation including, system security plans, incident response plans, contingency plans, and all security documentation. Analyzing and advising on the risk and remediation of security issues based on reports from vulnerability assessment scanners, patch management tools, and emerging threat information. Ensuring risk assessments are conducted periodically to re-evaluate the security and risk posture of the system and mitigation strategies as well as assessing the impact of new requirements. Developing remediation plans, along with stakeholders, for discovered vulnerabilities and documents in Plan of Actions Milestones. Assisting with investigations into security violations related to applications and information systems; and ensuring corrective actions are implemented and information security incidents are handled in accordance with Judiciary policies and procedures. Participating in associated security and change control boards for applications and information systems; and evaluating the risk impact of proposed changes to the Judiciary. Conducting meetings and briefings with Project Managers, Portfolio Managers, Business Owners, and System Owners on the state of security for the systems. Ensuring information security is addressed in the development and acquisition process of all applications and information systems consistent with the Judiciary's System Development Life cycle (SDLC). Ensuring security assessments and continuous monitoring activities are conducted for all applications and information systems to ensure effective implementation of and compliance with established policies and procedures. Creating, maintaining, and updating security related documentation for all applications and information systems including, risk assessments, system security plans, security manuals, contingency plans, and incident response plans. Coordinating the tracking of remediation actions to mitigate risks in accordance with established policies and procedures. Working with system and business stakeholders to determine the information type and system impact levels and determine the control baseline for protection of those systems and data. Ensuring Judiciary policies, procedures, and practices are followed related to the applications and information systems. Validating engineered information security and application security controls meet the specified requirements. Reviewing new and existing information security technologies to support secure engineering across SDLC phases. Requirements Conditions of Employment CONDITIONS OF EMPLOYMENT All information is subject to verification. Applicants are advised that false answers or omissions of information on application materials or inability to meet the following conditions may be grounds for non-selection, withdrawal of an offer of employment, or dismissal after being employed. Selection for this position is contingent upon completion of OF-306, Declaration of Federal Employment during the pre-employment process and proof of U.S. citizenship for competitive status positions or conversion to a competitive status position with the AO. If non-citizens are considered for hire into a temporary or any other position with non-competitive status or when it is confirmed by the AO Human Resources Office there are no qualified U.S. citizens for a competitive status position (unless prohibited by a law or statue), non-citizens must provide proof of authorization to work in the U.S. and proof of entitlement to receive compensation. Additional information on the employment of non-citizens can be found at USAJOBS Help Center | Employment of non-citizens/. For a list of documents that may be used to provide proof of citizenship or authorization to work in the United States, please refer to Form I-9, Employment Eligibility Verification. All new AO employees will be required to complete an FBI fingerprint-based national criminal database and records check and pass a public trust suitability check. New employees to the AO will be required to successfully pass the E-Verify employment verification check. To learn more about E-Verify, including your rights/responsibilities, visit https://www.e-verify.gov/. All new AO employees are required to identify a financial institution for direct deposit of pay before appointment. You will be required to serve a trial period if selected for a first-time appointment to the Federal government, transferring from another Federal agency, or serving as a first-time supervisor. Failure to successfully complete the trial period may result in termination of employment. If appointed to a temporary position, management may have the discretion of converting the position to permanent depending upon funding and staffing allocation. Qualifications Applicants must have demonstrated experience as listed below. This requirement is according to the AO Classification, Compensation, and Recruitment Systems which include interpretive guidance and reference to the OPM Operating Manual for Qualification Standards for General Schedule Positions. Specialized Experience: Applicants must have at least one full year (52 weeks) (preferably 5 or more years) of specialized experience which is in or directly related to the line of work of this position. Specialized experience must demonstrate experience in ALL areas defined below: Managing an information security program for IT applications and infrastructure; Developing system security plans and supporting documentation; Experience remediating security weaknesses including Plan of Action and Milestones (POAMs) and documenting controls, processes, and improvements; and Knowledge of NIST SP 800-53 or other Federal Guidance. Highly Desired: Experience supporting the Federal Government as an ISSO. Knowledge of current security tools, hardware/software security implementation. Knowledge of communication protocols and encryption techniques/tools. Applicants with the following certification is highly desirable: Certified Information Systems Security Professional (CISSP) Education This position does not require education to qualify. However, a bachelor's degree (BA or BS) from a four-year college or university in information technology, computer science, or a related field is highly desired. Additional Information The AO is an Equal Opportunity Employer.

DirectEmployers