IT Cybersecurity Specialist (Security)

U.S. Department of Health and Human Services

Woodlawn (MD)

On-site

USD 110,000 - 140,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

U.S. Department of Health and Human Services (HHS) is seeking an IT Cybersecurity Specialist (Security) at GS-2210-13 to secure SaaS platforms and cloud-hosted business applications used across CMS.

The role requires meeting all basic qualifications and applying federal cybersecurity frameworks to assess and monitor cloud environments. Expect work across SaaS security tools and automation to integrate findings.

Qualifications

  • Attention to detail demonstrated consistently and thoroughly.
  • Strong customer service skills when working with diverse users and stakeholders.
  • Effective oral communication, adapting to technical or sensitive information for different audiences.
  • Problem solving with sound judgment to identify alternatives and make recommendations.

Skills

Attention to detail
Customer service
Oral communication
Problem solving

Job description

This position is located in the Department of Health & Human Services (HHS), Centers for Medicare & Medicaid Services (CMS), Office of Information Technology (OIT), Information Security and Privacy Group (ISPG), Division of Security and Privacy Compliance (DSPC).

As a IT Cybersecurity Specialist (Security), GS-2210-13, you will secure Software-as-a-Service (SaaS) platforms and cloud-hosted business applications utilized throughout CMS.

ALL QUALIFICATION REQUIREMENTS MUST BE MET BY THE CLOSING DATE OF THIS ANNOUNCEMENT. Your resume (limited to no more than 2 pages) must include detailed information as it relates to the responsibilities and specialized experience for this position. Evidence of copying and pasting directly from the vacancy announcement without clearly documenting supplemental information to describe your experience will result in an ineligible rating. This will prevent you from being considered further.

There is a Basic Requirement and Minimum Qualification Requirement for this position. You must meet both requirements.

Basic Requirement:

You must have IT related experience, demonstrated by paid or unpaid experience obtained in either the private or public sector, and/or completion of specific, intensive training that demonstrates that I possess each of the following four competencies:

  • (1) Attention to Detail - Is thorough when performing work and conscientious about attending to detail.
  • (2) Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services.
  • (3) Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately.
  • (4) Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations.

AND

In order to qualify for the GS-13

You must demonstrate in your resume at least one year (52 weeks) of qualifying specialized experience equivalent to the GS-12 grade level in the Federal government, obtained in either the private or public sector, to include:

  • 1) Securing SaaS platforms and cloud-hosted applications (e.g., Microsoft 365, Salesforce, ServiceNow) using SaaS Security Posture Management (SSPM) or Cloud Access Security Broker (CASB) technologies to identify issues - such as misconfigurations, policy violations, and security risks; AND
  • 2) Applying federal cybersecurity frameworks - such as Federal Information Security Modernization Act (FISMA), Federal Risk and Authorization Management Program (FedRAMP), or National Institute of Standards and Technology Risk Management Framework (NIST RMF) - to assess and monitor the compliance posture of cloud environments; AND
  • 3) Developing and integrating automated workflows, scripts, or security tools to manage security findings across a cloud or SaaS environment.

Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional, philanthropic, religious, spiritual, community, student, social). Volunteer work helps build critical competencies, knowledge, and skills, and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity State Coordinator
Cybersecurity State Coordinator

US Cybersecurity and Infrastructure Security Agency • Little Rock (AR)

On-site
USD 90,000 - 120,000
IT Specialist (INFOSEC)
IT Specialist (INFOSEC)

Towson • Rockville (MD), Northern (KY)

Hybrid
USD 120,000 - 150,000
IT Specialist (INFOSEC)
IT Specialist (INFOSEC)

Southern Arkansas University • Rockville (MD), Northern (KY)

Hybrid
USD 110,000 - 140,000
Lead IT Cybersecurity Specialist
Lead IT Cybersecurity Specialist

U.S. Department of Health and Human Services • Atlanta (GA)

On-site
USD 115,000 - 150,000
Lead IT Cybersecurity Specialist
Lead IT Cybersecurity Specialist

Centers for Disease Control and Prevention • Atlanta (GA)

On-site
USD 120,000 - 144,000
SUPV IT CYBERSECURITY SPECIALIST (PLCYPLN/INFOSEC)
SUPV IT CYBERSECURITY SPECIALIST (PLCYPLN/INFOSEC)

Defense Information Systems Agency • Fort Meade (MD)

On-site
USD 110,000 - 140,000
Full Stack Engineer
Full Stack Engineer

Centers for Medicare & Medicaid Services • Maryland

On-site
USD 141,000 - 188,000
Information Technology Specialist (INFOSEC)
Information Technology Specialist (INFOSEC)

US Federal Emergency Management Agency • Anniston (AL)

On-site
USD 90,000 - 120,000
IT Cybersecurity Specialist (INFOSEC)
IT Cybersecurity Specialist (INFOSEC)

U.S. Department of Commerce • Alexandria (VA)

On-site
USD 90,000 - 135,000
IT CYBERSECURITY SPECIALIST (INFOSEC)
IT CYBERSECURITY SPECIALIST (INFOSEC)

Defense Finance and Accounting Service • United States

On-site
USD 85,000 - 130,000