GRC Careers: AI Governance, Risk and Compliance JobsConnecting Talent and Trust. Post a Job Log in

JobsMultiple LocationsIT Cybersecurity Specialist INFOSEC

IT Cybersecurity Specialist INFOSEC

Cybersecurity and Infrastructure Security Agency
CybersecurityOn-siteFull-timeMultiple Locations$90925 - $139684 Per Year

Cybersecurity and Infrastructure Security Agency is hiring for the job of IT Cybersecurity Specialist INFOSEC, Multiple Locations (On-site). This is a Cybersecurity job in the governance, risk, and compliance field, with a posted range of $90925 - $139684 Per Year. Review the full details below and apply directly with Cybersecurity and Infrastructure Security Agency.

Organization: Cybersecurity and Infrastructure Security AgencyLocation: Multiple LocationsWorkplace: On-siteFocus: CybersecuritySalary: $90925 - $139684 Per YearPosted: Aug 27, 2026
Cybersecurity and Infrastructure Security Agency is hiring for this Cybersecurity job in Multiple Locations, one of the metros GRC Careers tracks for governance, risk, and compliance hiring.

This announcement is issued under the Direct Hire Authority (DHA) to recruit for positions for which there is a critical hiring need. Selectee(s) will receive a career or career-conditional appointment in the competitive service and may be required to serve a one year probationary period.

Qualifications: Do NOT copy and paste the duties, specialized experience, or occupational assessment questionnaire from this announcement into your resume as that will not be considered a demonstration of your qualifications for this position. Your resume must describe your work and experience, in your own words. To be considered minimally qualified for this position, you must demonstrate that you have the required competencies and experience for the respective grade level in which you are applying: BASIC REQUIREMENT: REQUIRED COMPETENCIES: Experience must be Information Technology (IT)-related; the experience may be demonstrated by paid or unpaid experience and/or completion of specific, intensive training (for example, IT certification), as appropriate. You must have IT-related experience demonstrating each of the 9 competencies listed below: Attention to Detail - Is thorough when performing work and conscientious about attending to detail. Minimum Proficiency Level: 4 Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services. Minimum Proficiency Level: 4 Decision Making - Makes sound, well-informed, and objective decisions; perceives the impact and implications of decisions; commits to action, even in uncertain situations, to accomplish organizational goals; causes change. Minimum Proficiency Level: 4 Information Management - Identifies a need for and knows where or how to gather information; organizes and maintains information or information management systems. Minimum Proficiency Level: 4 Interpersonal Skills - Shows understanding, friendliness, courtesy, tact, empathy, concern, and politeness to others; develops and maintains effective relationships with others; may include effectively dealing with individuals who are difficult, hostile, or distressed; relates well to people from varied backgrounds and different situations. Minimum Proficiency Level: 4 Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately. Minimum Proficiency Level: 4 Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations. Minimum Proficiency Level: 4 Teamwork - Encourages and facilitates cooperation, pride, trust, and group identity; fosters commitment and team spirit; works with others to achieve goals. Minimum Proficiency Level: 4 Technical Competence - Uses knowledge that is acquired through formal training or on-the-job experience to perform one's job; works with, understands, and evaluates technical information related to the job; advises others on technical issues. Minimum Proficiency Level: 4 AND SPECIALIZED EXPERIENCE: In addition to meeting the qualification requirement listed above, you must have at least one year of specialized experience at the next lower GS-grade level (or equivalent). Specialized experience is experience that has equipped you with the particular competencies/knowledge, skills, and abilities to successfully perform the duties of the position and is typically in or related to the work of the position to be filled. Such experience is typically gained in the IT field or through the performance of work where the primary concern is IT.GS-13I have at least one (1) year of specialized experience comparable in scope and responsibility to the GS-12 grade level in the Federal service (obtained in either the public or private sector). Experience includes performing the performing AT LEAST FOUR of the following duties: Developing Cybersecurity plans, strategy and policies or Developing methods to monitor and measure risk, compliance, and assurance efforts; or Managing the underlying information technology operational processes; or Advocating for changes in policy that will support new initiatives or required changes/enhancements; or Assisting with recommending the appropriate measures to internal and/or external Information Technology (IT) and/or Operational Technology (OT); or Conducting risk and vulnerability assessments to protect IT/OT infrastructure assets and mitigate network vulnerabilities; or Consulting with customers to evaluate functional requirements and translate functional requirements into technical solutions; or Assisting with conducting risk and vulnerability assessments to protect IT/OT infrastructure assets and mitigate network vulnerabilities; or Overseeing the development, implementation and evaluation of solutions for cybersecurity tools integration based on systems requirements, capabilities, and constraints to ensure the design meets customers' satisfaction; or Managing the Information Technology (IT) planning process to ensure that developed solutions meet customer requirements. GS-14 I have at least one (1) year of specialized experience comparable in scope and responsibility to the GS-13 grade level in the Federal service (obtained in either the public or private sector). Experience includes performing the performing AT LEAST FOUR of the following duties: L

Location and market context

This job is based in Multiple Locations on-site. Local candidates benefit from being close to Cybersecurity and Infrastructure Security Agency's teams and regional hiring market. Confirm the exact in-office expectation and any relocation support with the employer.

About cybersecurity governance jobs

Cybersecurity governance connects security control frameworks to business and regulatory risk, covering policy, risk assessment, and control assurance rather than hands-on operations. Jobs like this one are typically evaluated against frameworks such as NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices.

How to position yourself for this cybersecurity governance job

Strong candidates emphasize security control frameworks, risk assessment, policy and standards, and translating technical security posture into governance and board-level reporting. In your resume and outreach, tie your experience to how Cybersecurity and Infrastructure Security Agency would apply NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices, and lead with concrete outcomes rather than duties.

Similar GRC jobs

More GRC jobs in Multiple Locations

Hiring for Cybersecurity?

Reach candidates who are already searching for this role, not a general audience. Your posting appears on this page, in the job alerts, and across the GRC Careers network.

Post a job  Pricing from $99 · About GRC Careers · Hiring toolkit

Want to be next in a job like this?

Jobs like IT Cybersecurity Specialist INFOSEC in Multiple Locations open regularly. Be first to know, privately. No current employer ever sees you looking.

New Cybersecurity jobs, the moment they post.

One click unsubscribe.
Know your GRC? Take the 2-minute AI Governance Challenge. No signup needed.
Play now →

Employer, or see something wrong with this posting? Report this posting and we will review it promptly.