Posted August 19, 2026

Supervisory It Specialist (Infosec)


Phoenix, AZOnsiteFull Time

Compensation: $125,776 to $163,514 Annually


This Supervisory It Specialist (Infosec) position is with Deputy Assistant Secretary for Information and Technology (Department of Veterans Affairs) in Phoenix, AZ. The Office of Information Security (OIS) provides information security and privacy infrastructure for the U.S. Department of Veterans Affairs (VA). The office assures the confidentiality, integrity, and risk management, record management, Freedom of Information Act (FOIA) requests. In addition, the OIS team develops, implements, and oversees the training, communication how VA and its partners safeguard the personally identifiable information (PII) of Veterans and VA employees. Key duties: • Major Duties: Coordinate responses and follow-up actions to information security audits and external oversight organizations and maintain secure files of such responses and actions as required. Use information systems life cycle reviews and budget cycle approvals to promote information security objectives within VA. Ensures security standards, industry best practices, and evaluation criteria are integrated in all phases of information resources life cycle planning from capital investment review at the project imitation and design phase to acquisition approval, in-process reviews of operational systems, and planning for system replacement. Provide SME input to enhance the VA certification process and to ensure that systems undergo sufficient rigorous management review prior to accreditation. Influences, motivates, and challenges others; adapts leadership styles to a variety of situations. Knowledge of the laws, regulations, and guidelines related to securing personnel, facilities, and information, including the requirements for handling, transporting, and protecting classified information and proper reporting of security incidents. Formulates effective strategies consistent with the business and competitive strategy of the organization in a global economy; examines policy issues and strategic planning with a long term perspective; determines objectives and sets priorities; anticipates potential threats or opportunities. Knowledge of how to perform one's job. Refers to specialized knowledge that is acquired through formal training or extensive on-the-job experience. Identifies and analyzes problems; weighs relevance and accuracy of information; generates and evaluates alternative solutions; makes recommendations. Master cybersecurity risk management and be capable of supervising personnel/tasks in: the Assessment and Authorization (A&A) process; compliance and oversight of the PIV Card Issuing station audits; and management of VA's Governance Risk, and Compliance (GRC) capabilities Develop and supervise a full range of cybersecurity risk management compliance programs, working closely with facility- and executive-level management to isolate and define operating policies of the Veterans Health Administration (VHA), Veterans Benefits Administration (VBA), National Cemetery Administration (NCA), and VA staff offices and vendors to identify critical systemic problems and develop appropriate solutions. Supervise cybersecurity risk management activities which are designed to improve VA's overall cybersecurity risk management policies and procedure Develop, design, and execute of strategic initiatives to meet Federal regulatory requirement and emerging technologies, as required by the Office of Management and Budget (0MB) based on guidance formulated by the National Institute of Standards and Technology (NIST). Facilitate innovative application of best practices and cybersecurity risk management methods. Prepare trends analysis to reflect shifts in IT security priorities. Supervise and keep abreast of all emerging compliance issues and policies and socialize with their team. Supervise, monitor and report compliance to VA policies, procedures, and processes at designated VA and non-VA facilities. Supervise the monitoring of compliance with federal, state and local laws and regulations at designated VA and non-VA facilities and VA-wide programs. Develop assessment strategies ensuring they are sound and accurate. Supervise the implementation of new project reviews in accordance with the latest VA requirements. Assist managers and technical specialists in identifying business areas with potential for significant cybersecurity improvement. Perform other related duties and responsibilities as assigned Work Schedule: Monday through Friday (8:00am to 4:30pm and/or 7:30am to 4:00pm) Compressed/Flexible: Available Telework: This position may be authorized for telework. Virtual: This is not a virtual position. Position Description/PD#: Supervisory It Specialist (Infosec)/PD17198A Qualifications: To qualify for this position, applicants must meet all requirements by the closing date of this announcement, 09/08/2026. Applicants must have IT-related experience demonstrating each of the four competencies listed below at a proficiency level equivalent to the next lower grade level in federal service You must meet both the Basic Requirement and the Specialized Experience to qualify for this series as described below. Attention to Detail - Is thorough when performing work and conscientious about attending to detail. Customer Service - Works with clients and customers (that is, any individuals who use or receive the services or products that your work unit produces, including the general public, individuals who work in the agency, other agencies, or organizations outside the Government) to assess their needs, provide information or assistance, resolve their problems, or satisfy their expectations; knows about available products and services; is committed to providing quality products and services. Oral Communication - Expresses information (for example, ideas or facts) to individuals or groups effectively, taking into account the audience and nature of the information (for example, technical, sensitive, controversial); makes clear and convincing oral presentations; listens to others, attends to nonverbal cues, and responds appropriately. Problem Solving - Identifies problems; determines accuracy and relevance of information; uses sound judgment to generate and evaluate alternatives, and to make recommendations. AND Specialized Experience: You must have one year of specialized experience equivalent to at least the next lower grade GS-13 in the normal line of progression for the occupation in the organization. Specialized experience is defined as Experience developing, maintaining, and administering complex enterprise information security programs where solutions are not off-the-shelf, requiring interpretation of federal-wide laws, policies, and standards. Demonstrated experience applying and interpreting NIST Risk Management Framework (RMF) guidance, including leading or overseeing Assessment & Authorization (A&A) activities. Experience leading or contributing to enterprise cybersecurity compliance programs, including Governance, Risk, and Compliance (GRC) capabilities. Experience monitoring enterprise cybersecurity posture through metrics, trends analysis, compliance assessments, and reporting to senior leadership. Experience modernizing, sustaining, or overseeing an enterprise Cybersecurity Continuous Monitoring (CCM) program, including automation, integration of risk data, and optimization of monitoring capabilities. Experience overseeing, selecting, implementing, or optimizing enterprise cybersecurity risk management tools (e.g., GRC platforms, vulnerability management systems, dashboards, RMF automation tools). Experience developing strategic roadmaps or modernization plans to improve continuous monitoring, technology adoption, or enterprise cyber risk visibility. AND-Selective Placement Factor: Do you have experience MINIMUM EXPERIENCE: 3-5 years or more of hands-on network, application and security experience. This qualification is essential for successful performance in the position and is required for applicants to be considered. Main Quality Ranking Factor (verbatim from the position description): Mastery knowledge of contemporary information technology including hardware, software, communications, networking, data management and administration, higher order computer languages, and expert knowledge of information security and VA's Information Security Program. Mastery knowledge of regulations, federal-wide laws, policies and standards related to CFO and CIO programs generally, and to information security, in particular. Communicate effectively both orally and in writing, to express thoughts clearly, and to develop ideas in a logical sequence. Explain the purpose, scope, method, and results of projects and studies to both technical and non- technical audiences. Ability to be persuasive and diplomatic in making presentations. For more information on these qualification standards, please visit the United States Office of Personnel Management's website at https://www.opm.gov/policy-data-oversight/classification-qualifications/general-schedule-qualification-standards/. Beginning September 27, 2025, Federal agencies will only accept resumes up to two pages in length to comply with the Merit Hiring Plan. Resumes longer than two pages will result in ineligibility for further consideration for the position. USAJOBS will not allow you to upload or build resumes longer than two pages, and you will need to update the resumes in your profile before applying for a job. Resumes should include information relevant to the knowledge, skills, abilities, and competencies of the position to which you are applying. VA is unable to make assumptions about qualifications if not clearly listed. Resumes must be legible so they can be reviewed for eligibility, minimum qualifications and other position requirements listed in the job announcement. Your resume must be 5MB or less. We recommend saving and uploading your resume as a PDF to maintain formatting and number of pages. We also accept GIF, JPG, JPEG, PNG, RTF, TXT, PDF, ODT or Word (DOC or DOCX). We do not accept PDF portfolio files. We recommend using a sans-serif font size like Lato, if available. Other widely available options are Calibri, Helvetica, Arial, Verdana, Open San Source Sans Pro, Roboto or Noro Sans. Make your page margins 0.5 inches. Consider using 14-point size font for titles and 10-point for the main text in your resume. The resume builder can help you create a resume using these recommendations and uses the information in your USAJOBS profile to help you get started. This occupation is being considered for a Veterans Health Administration enterprise-wide Critical Skills Incentive (CSI). Candidates may be eligible for a lump sum CSI. The amount of lump sum CSI is determined based on appointment date and may be pro-rated as determined by the end date of the CSI. Eligible candidates will be required to sign a service agreement agreeing to an obligated service period and failure to complete the obligated service period may result in a debt for the unearned portion of the CSI. This occupation is currently approved for a Veterans Health Administration enterprise-wide Critical Skills Incentive through [insert date]. Candidates may be eligible for a lump sum CSI for a pro-rated amount if onboard prior to the CSI expiration date. Eligible candidates will be required to sign a service agreement agreeing to an obligated service period and failure to complete the obligated service period may result in a debt for the unearned portion of the CSI. Receiving Service Credit or Earning Annual (Vacation) Leave: Federal Employees earn annual leave at a rate (4, 6 or 8 hours per pay period) which is based on the number of years they have served as a Federal employee. VA may offer newly-appointed Federal employee's credit for their job-related non-federal experience or active duty uniformed military service. This credited service can be used in determining the rate at which they earn annual leave. Such credit must be requested and approved prior to the appointment date and is not guaranteed. View the full announcement and apply on USAJOBS.gov.
Expires September 18, 2026

Share this Job

Location

Map of Phoenix, AZ

Browse by Category

Jobs by City