This position may be filled prior to the posted deadline. Interested candidates are encouraged to apply as soon as possible.
Koniag Operations Services, LLC (KOS), a Koniag Government Services company is seeking a Gov Info Specialist SME -Privacy Senior (Lead) to support KOS and our government customer in Washington, DC. This position requires the candidate to be able to obtain a Public Trust.
Benefits include medical, dental, and vision insurance, 401(k) retirement plan, paid time off, paid parental leave, life and disability insurance, flexible spending accounts, commuter benefits, and tuition reimbursement.
We are seeking an experienced Government Information Specialist SME – Privacy Senior Lead to support the U.S. Small Business Administration (SBA). The ideal candidate is a highly skilled federal privacy professional with extensive expertise in government information management, privacy program leadership, and the application of federal privacy law and policy within a complex federal agency environment. This individual will serve as the senior subject matter expert (SME) for all privacy-related activities supporting the SBA, providing authoritative guidance, strategic leadership, and hands‑on program management to ensure the agency's information handling practices, systems, and policies fully comply with applicable federal privacy statutes, regulations, and OMB directives.
The Government Information Specialist SME – Privacy Senior Lead will serve as the authoritative privacy expert and program lead responsible for directing and managing all aspects of SBA's privacy program, ensuring the agency's compliance with federal privacy laws, regulations, and policies while fostering a culture of privacy awareness and accountability across the organization.
Principal Responsibilities Will Include But Are Not Limited To
- Serve as the senior subject matter expert (SME) and program lead for all privacy activities supporting the SBA, providing authoritative technical and policy guidance to SBA leadership, program offices, IT teams, legal counsel, and contracting staff on all matters related to federal privacy law, regulation, and program management.
- Lead the development, implementation, and continuous improvement of SBA's comprehensive privacy program, ensuring alignment with the Privacy Act of 1974, the E-Government Act of 2002, OMB Circular A-130, applicable OMB privacy memoranda, and all other federal privacy statutes, regulations, and directives applicable to SBA's mission and operations.
- Oversee and manage the full lifecycle of SBA's privacy program documentation, including Privacy Impact Assessments (PIAs), System of Records Notices (SORNs), Privacy Threshold Analyses (PTAs), privacy policies, privacy program plans, and other required privacy artifacts, ensuring all documentation is accurate, complete, current, and compliant with federal requirements.
- Provide senior-level expert guidance on the identification, categorization, and protection of personally identifiable information (PII) and sensitive PII (SPII) across SBA's enterprise systems, business processes, and data sharing activities, ensuring appropriate safeguards and controls are in place to protect personal information throughout its lifecycle.
- Lead and oversee privacy impact assessments and privacy threshold analyses for new and modified SBA IT systems, programs, and business processes, evaluating privacy risks, recommending mitigation measures, and ensuring privacy considerations are integrated into system design and development from inception.
- Collaborate with SBA's Senior Agency Official for Privacy (SAOP), legal counsel, IT leadership, system owners, and program offices to embed privacy by design principles into SBA's technology investments, procurement activities, and business process development.
- Lead the integration of privacy requirements and controls into SBA's NIST Risk Management Framework (RMF) and Authorization to Operate (ATO) processes, ensuring privacy controls are appropriately selected, implemented, assessed, and documented in accordance with NIST SP 800-53 and the NIST Privacy Framework.
- Develop and lead the delivery of comprehensive privacy awareness training programs, targeted privacy training, and educational briefings for SBA personnel, contractors, and leadership, ensuring all individuals with access to SBA systems and data understand their privacy responsibilities and obligations.
- Lead privacy compliance assessments and audits across SBA's enterprise, evaluating the agency's adherence to federal privacy requirements, identifying compliance gaps and privacy risks, and developing and overseeing the implementation of corrective action plans and remediation strategies.
- Serve as the senior lead for privacy incident management activities, directing the investigation and response to privacy incidents and PII breaches, coordinating with SBA's incident response team, legal counsel, oversight bodies, and affected individuals, and ensuring compliance with OMB breach notification requirements and federal reporting timelines.
- Monitor and assess changes to federal privacy laws, regulations, executive orders, and OMB guidance, providing expert analysis of their impact on SBA's privacy program and leading the development and implementation of required program updates, policy revisions, and procedural changes.
- Lead the development and maintenance of SBA's enterprise data inventory and data flow documentation, ensuring comprehensive identification and mapping of