Stand out for this role — generate a tailored resume and cover letter in about a minute.
Department of Veterans Affairs (VA) in Salt Lake City seeks an IT Specialist (INFOSEC) to develop and manage a complex information security program within the CRR, DBRS. You will help safeguard data, coordinate breach responses, and ensure privacy and security controls across the enterprise.
The role requires collaboration with Privacy Officers, System Security Officers, and legal counsel, plus delivering guidance, training, and remediation actions to protect veterans' information.
This position is located in the Department of Veterans Affairs (VA), Office of Information and Technology (OIT), Compliance, Risk, and Remediation (CRR), Data Breach Response Services (DBRS) serving as an IT Specialist (INFOSEC) responsible for developing, maintaining, and administering a complex information security program. To qualify for this position, applicants must meet all requirements by the closing date of this announcement, 09/29/2026.
To qualify for this position, you must have information technology-related experience demonstrating all of the four competencies listed below. Ensure that this experience is clearly described in your resume:
-AND-
You must have one year of specialized experience equivalent to at least the next lower grade in the normal line of progression for the occupation in the organization. Specialized Experience is defined as experience developing, implementing, and managing complex information security and privacy programs; overseeing and coordinating organizational responses to privacy and security breaches; applying information security and privacy compliance requirements to evaluate contracts and interpret and apply applicable laws, regulations, policies, and reporting requirements; investigating, analyzing, and assessing data breach incidents using privacy and security systems to determine risk, prioritize facts, and recommend appropriate remediation and notification actions; collaborating with cross-functional stakeholders, including Privacy Officers, Information/System Security Officers, Human Resources, and Legal Counsel, to develop and implement privacy and security policies, procedures, and training; and providing technical guidance and recommendations to management and staff regarding breach response, remediation, audits, compliance activities, and enterprise-wide information security initiatives.
Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic; religious; spiritual; community; student; social). Volunteer work helps build critical competencies, knowledge, and skills and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience.
Note: A full year of work is considered to be 35-40 hours of work per week. Part-time experience will be credited on the basis of time actually spent in appropriate activities. Applicants wishing to receive credit for such experience must indicate clearly the nature of their duties and responsibilities in each position and the number of hours a week spent in such employment.
For more information on these qualification standards, please visit the United States Office of Personnel Management's website at https://www.opm.gov/policy-data-oversight/classification-qualifications/general-schedule-qualification-standards/.