Jobs › Maryland › Washington, DC › Deputy Chief Information Security Officer
Deputy Chief Information Security Officer
Department of Energy Headquarters is hiring for the job of Deputy Chief Information Security Officer, Washington, District of Columbia (On-site). This is a Cybersecurity job in the governance, risk, and compliance field, with a posted range of $169279 - $197200 Per Year. Review the full details below and apply directly with Department of Energy Headquarters.
This position is part of the Office of the Chief Information Officer, Department of Energy. As a Deputy Chief Information Security Officer, you will provide advice to the Deputy Chief Information Officer for Cybersecurity and provide senior-level management leadership, guidance, expert advice, and collaboration regarding cybersecurity programs, field sites, laboratories, and oversight of contractors in developing, promoting, and maintaining information assurance security measures.
Qualifications: You must meet both the Basic Requirement and the Specialized Experience to qualify for this series as described below. BASIC REQUIREMENT Applicants must have IT-related education and experience demonstrating each of the four competencies listed below at a proficiency level equivalent to the next lower grade level in federal service. Attention to Detail - Is thorough when performing work and conscientious about attending to detail. Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services. Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately. Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations. SPECIALIZED EXPERIENCE REQUIREMENTS: A qualified candidate's online application and resume must demonstrate at least one year of specialized experience equivalent to the next lower grade level GS-14 in the Federal service. Specialized experience for this position is defined as meeting 2 of the 3 of the following: Leading and overseeing an organizational or enterprise-wide IT security (INFOSEC) program, including establishing program goals, strategic roadmaps, and resource plans to protect critical network infrastructure. Formulating, implementing, and evaluating cybersecurity policies, standards, or operating procedures to ensure compliance with federal mandates, statutory requirements, or industry security frameworks (e.g., NIST, FISMA, ISO/IEC 27001). Managing project lifecycles, budgets, schedules, and technical performance metrics for multi-faceted cybersecurity projects or initiatives to ensure deliverables are met within cost and timeline constraints. Limit your resume to no more than two (2) pages. If more than two pages are submitted, only the first two pages will be reviewed to determine your eligibility and qualifications. Your full resume will be made available to the hiring manager if you are referred. "Experience" refers to paid and unpaid experience. Examples of qualifying unpaid experience may include: volunteer work done through National Service programs (such as Peace Corps and AmeriCorps); as well as work for other community-based philanthropic and social organizations. Volunteer work helps build critical competencies, knowledge, and skills; and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience. Time-in-Grade: Current Federal employees must meet time-in-grade requirements by the closing date of this announcement to receive consideration. CTAP/ICTAP candidates: To be considered "well qualified" you must (1) meet all of the requirements as described in this section; and 2) be rated "well-qualified", which is defined as having a score of 85 or better. You must meet all qualifications and eligibility requirements by the closing date of this announcement. Reasonable Accommodation Requests: If you believe you have a disability (i.e., physical or mental), covered by the Rehabilitation Act of 1973 as amended, that would interfere with completing the USA Hire Competency Based Assessments, you will be granted the opportunity to request a reasonable accommodation in your online application. Requests for Reasonable Accommodations for the USA Hire Competency Based Assessments and appropriate supporting documentation for Reasonable Accommodation must be received prior to starting the USA Hire Competency Based Assessments. Decisions on requests for Reasonable Accommodations are made on a case-by-case basis. If you meet the minimum qualifications of the position, after notification of the adjudication of your request, you will receive an email invitation to complete the USA Hire Competency Based Assessments. You must complete all assessments within 48 hours of receiving the URL to access the USA Hire Competency Based Assessments, if you received the link after the close of the announcement. To determine if you need a Reasonable Accommodation, please review the Procedures for Requesting a Reasonable Accommodation for Online Assessments here.
Location and market context
This job is based in Washington on-site. Local candidates benefit from being close to Department of Energy Headquarters's teams and regional hiring market. Confirm the exact in-office expectation and any relocation support with the employer.
About cybersecurity governance jobs
Cybersecurity governance connects security control frameworks to business and regulatory risk, covering policy, risk assessment, and control assurance rather than hands-on operations. Jobs like this one are typically evaluated against frameworks such as NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices.
How to position yourself for this cybersecurity governance job
Strong candidates emphasize security control frameworks, risk assessment, policy and standards, and translating technical security posture into governance and board-level reporting. In your resume and outreach, tie your experience to how Department of Energy Headquarters would apply NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices, and lead with concrete outcomes rather than duties.
Similar GRC jobs
- IT Cybersecurity Specialist · Federal Energy Regulatory Commission · Washington, District of Columbia
- IT Cybersecurity Manager (PLCYPLN-INFOSEC) · U.S. Coast Guard · Washington, District of Columbia
- Information Technology Specialist (Cyber Security) · Bureau of Industry and Security · Washington, District of Columbia
- Supervisory IT Cybersecurity Specialist (INFOSEC) · Offices, Boards and Divisions · Washington, District of Columbia
- Senior IT Specialist (Cyber Incident Response Analyst) II · Supreme Court of the United States · Washington, District of Columbia
- IT CYBERSECURITY SPECIALIST (SYSANALYSIS/INFOSEC) · Defense Information Systems Agency · Multiple Locations
- IT CYBERSECURITY SPECIALIST (APPSW/INFOSEC) · Defense Finance and Accounting Service · Multiple Locations
- IT CYBERSECURITY SPECIALIST (SYSANALYSIS/NETWORK) · Air Combat Command · Langley AFB, Virginia
More GRC jobs in Washington
- Senior Environmental and Social Risk Specialist · Development Finance Corporation · Washington, District of Columbia
- Senior Environmental & Social Risk Specialist · Development Finance Corporation · Washington, District of Columbia
- Legal Counsel, Supply Chain and Government Contracts Compliance · Anduril Industries · Washington, District of Columbia
- Auditor · National Endowment for the Arts · Washington, District of Columbia
- General Attorney (Information and Privacy Law) · Immigration and Customs Enforcement · Washington, District of Columbia
- Emergency Management Specialist (Risk Analyst) · Federal Emergency Management Agency · Washington, District of Columbia
Hiring for Cybersecurity?
Reach candidates who are already searching for this role, not a general audience. Your posting appears on this page, in the job alerts, and across the GRC Careers network.
Post a job Pricing from $99 · About GRC Careers · Hiring toolkit
Want to be next in a job like this?
Jobs like Deputy Chief Information Security Officer in Washington, District of Columbia open regularly. Be first to know, privately. No current employer ever sees you looking.
Employer, or see something wrong with this posting? Report this posting and we will review it promptly.