Information Technology Specialist

3 weeks ago


Washington, Washington, D.C., United States Administrative Office Of The U.S. Courts Full time

The Security Control Assessor (SCA) will play a critical role in evaluating the effectiveness of security controls implemented within the organization's information systems.

The incumbent will be responsible for conducting assessments using a variety of methods, including examinations, interviews, and testing, to identify vulnerabilities, weaknesses, and areas for improvement within our information systems.

The incumbent must have a strong background in information security, risk management, and a thorough understanding of regulatory requirements such as NIST standards and industry-specific compliance frameworks.

This position requires a deep understanding of security assessment methodologies, strong analytical skills, and the ability to communicate findings effectively to stakeholders.

Duties of the position include, but are not limited to:
Collaborating with stakeholders to develop assessment plans that outline the scope, objectives, and methodology for conducting security assessments. This involves understanding the organization's information systems, business processes, and security requirements.
Conducting thorough examinations of security controls implemented within information systems, including technical, administrative, and physical controls. Analyzing documentation, policies, and procedures to assess the adequacy of security measures and identify areas of non-compliance or weakness.

Conducting structured interviews with key personnel, including IT staff, system administrators, and business stakeholders, to gather insights into security practices, procedures, and challenges.

Identifying potential security gaps or vulnerabilities through dialogue and questioning during interviews.

Performing technical testing activities, such as vulnerability scanning, penetration testing, and security configuration reviews, to assess the effectiveness of security controls.

Utilize automated tools and manual techniques to identify and exploit security vulnerabilities and assess the organization's resilience to cyber threats.

Analyzing assessment findings from examinations, interviews, and testing to identify trends, patterns, and areas for improvement. Preparing comprehensive assessment reports that summarize findings, highlight areas of concern, and provide actionable recommendations for enhancing security posture. Presenting assessment results to stakeholders, including management, IT teams, and regulatory authorities, in a clear and concise manner.

Documenting assessment findings in the Governance and Risk Compliance (GRC) system, including identified vulnerabilities, weaknesses, and recommendations for remediation.

Staying informed about emerging threats, vulnerabilities, and best practices in security assessment methodologies. Collaborating with internal teams to implement remediation plans and security enhancements based on assessment findings and recommendations. Participating in ongoing monitoring and evaluation activities to track the effectiveness of security controls and ensure continuous improvement.

Performing the tasks and meeting the skills, knowledge and abilities as described in NIST Special Publication National Initiative for Cybersecurity Education (NICE) Cybersecurity Workforce for the roles of Security Control Assessor (SP-RSK-002).



  • Washington, Washington, D.C., United States Department Of State Full time

    Summary This serves as a public notice for the use of the Direct Hire Authority in accordance with 5 U.S.C. 3327 and 3330 and 5 CFR 330. These positions are to be filled under the OPM Government-Wide Direct Hire Authority for Information Technology Specialist (Information Security) Positions. Under this recruitment procedure, applications will be accepted...


  • Washington, Washington, D.C., United States U.S. Capitol Police Full time

    This position is located in the Service Operations Division(SOPD), Office of Information Services (OIS), Office of the ChiefAdministrative Officer (OCAO), in the United States Capitol Police (USCP).Serves as an ΙΤ Specialist for the USCP-Wide development, analysis, and implementation of technologies used to store and retrievedata, automated data systems,...


  • Washington, Washington, D.C., United States Government National Mortgage Association (Ginnie Mae) Full time

    As an Information Technology Specialist, you will:Have responsibility for solutioning, and supporting development, implementation, and coordination of Information Technology (IT) projects. Provide all necessary program management and coordination in the review and approval of proposed designs and exercise technical responsibility for planning,...


  • Washington, Washington, D.C., United States Office Of The Comptroller Of The Currency Full time

    As an Information Technology Specialist (Systems Analysis/Applications Software), you will:Provide a full range of support in all areas and functions associated with OCC systems analysis, systems administration, OCC applications software, and cloud (infrastructure/Platform/Services) management. Manage, install, maintain, monitor, and/or troubleshoot all...


  • Washington, Washington, D.C., United States Bureau Of Industry And Security Full time

    As an Information Technology Cybersecurity Specialist (Direct-Hire), you will perform the following duties:Works with senior BIS leadership to design and review requirements for technical projects to determine objectives of the program, concepts, nature of the unprocessed data, and processes required in support of the technology effort in order to organize...


  • Washington, Washington, D.C., United States Pipeline And Hazardous Materials Safety Administration Full time

    As an Information Technology Specialist, you will:Provide PHMSA support, services, and tools required to enable the PHMSA staff to efficiently, effectively, and economically execute mission servicesThis includes: implementing continuous process improvement; performing data analysis to identify trends and proactively addressing problems before they become...


  • Washington, Washington, D.C., United States National Gallery Of Art Full time

    As the Information Technology Specialist you will:Administer, evaluate, and maintain integrity and functionality of all modules (acquisition, cataloging, circulation, interlibrary loan, discovery, user management, and reporting analysis and visualization) of a cloud-based library service platform (such as Ex Libris Alma/PrimoVE).Maintain service operation,...


  • Washington, Washington, D.C., United States Federal Emergency Management Agency Full time

    What will I do in this position if hired?In this position, you will serve as Information Technology Specialist (Customer Support) responsible for End User Computing support and serves as the primary technical specialist and focal point for the planning and implementing of customer support services covering all organization IT equipment, software, systems,...


  • Washington, Washington, D.C., United States General Dynamics Information Technology Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Engineer to join our team at General Dynamics Information Technology. As a Cybersecurity Engineer, you will play a critical role in ensuring the safety and security of our information systems and networks.Key ResponsibilitiesSecurity Policy Expertise:Stay current with headquarters' policies and...


  • Washington, Washington, D.C., United States USAJobs Full time

    DutiesThis position is located in the Service Operations Division(SOPD), Office of Information Services (OIS), Office of the Chief Administrative Officer (OCAO), in the United States Capitol Police (USCP).Serves as an ΙΤ Specialist for the USCP-Wide development, analysis, and implementation of technologies used to store and retrieve data, automated data...


  • Washington, Washington, D.C., United States National Gallery Of Art Full time

    As the Information Technology Specialist, you will:Advise on day-to-day system operations and manages all configuration and functional oversight duties for identification, planning, and implementation of configuration changes to improve overall system functionality.Review, optimize, and maintain business process configurations for all financial system...


  • Washington, Washington, D.C., United States Department Of Defense Full time

    Position Overview The Department of Defense seeks a dedicated professional to ensure the effective functioning of our information technology systems. This role encompasses a variety of responsibilities aimed at maintaining operational excellence.Key Responsibilities As an IT Specialist, you will: - Collaborate with a diverse team to implement innovative...


  • Washington, Washington, D.C., United States National Gallery Of Art Full time

    As the Information Technology Specialist, you will:Responsible for the management of the Gallery's Supplier Registration Portal to ensure the processing of vendor registration requests and updates to the Gallery's supplier master record information.Provide troubleshooting support to ensure functional issues are proactively detected and resolved to promote...


  • Washington, Washington, D.C., United States Department Of Defense Full time

    Position Overview The Department of Defense is seeking skilled professionals to ensure the seamless operation of our information technology systems. This role encompasses a variety of responsibilities aimed at maintaining and enhancing our IT infrastructure.Key Responsibilities As an IT Specialist, you will: - Engage in innovative problem-solving to adapt to...


  • Washington, Washington, D.C., United States USAJobs Full time

    DutiesDeveloping/directing the development of information technology policies and procedures of substantial complexity with significant coordination, technical consideration, and administrative components. Planning, anticipating, identifying, evaluating, mitigating, and minimizing risks associated with IT systems vulnerability and security control...


  • Washington, Washington, D.C., United States USAJobs Full time

    DutiesAt the Securities and Exchange Commission (SEC), we are committed to diversity, equity, inclusion and accessibility (DEIA) and value a workforce that reflects the diverse experiences and perspectives of the communities we serve. As such, we welcome applications from qualified individuals of all backgrounds who share our commitment to public service.The...


  • Washington, Washington, D.C., United States USAJobs Full time

    DutiesDeveloping and directing the development of information technology policies and procedures of substantial complexity with significant coordination, technical consideration, and administrative components. Plan, anticipate, identify, evaluates, mitigate, and minimize risks associated with IT systems vulnerability and security control deficiencies through...


  • Washington, Washington, D.C., United States General Dynamics Information Technology Full time

    Job Summary:We are seeking an experienced IT Support Manager to join our team at General Dynamics Information Technology. The successful candidate will be responsible for managing and leading the support of incident management related to IT failures of Unified Endpoint Management (UEM) platforms, provisioning technologies, and endpoint security platforms.Key...


  • Washington, Washington, D.C., United States Federal Emergency Management Agency Full time

    What will I do in this position if hired?In this position, you will serve as an Information Technology Specialist (INFOSEC) and will lead, direct, and implement cyber assessments for FEMATypical assignments include:Defining the scope of a project, creating and managing the project plan, identifying key stakeholders, managing the budget, ensuring all work is...


  • Washington, Washington, D.C., United States Chenega MIOS SBU Full time

    Req ID: 32227Position OverviewIT Specialist IICompany OverviewAt Chenega MIOS, we are dedicated to enhancing both human and organizational performance through innovative business process improvements and cutting-edge information technology (IT) modernization, including data analytics and cloud solutions.We provide alternative strategies to elevate the...