Where Cybersecurity Talent, Opportunity, and Trust Connect.

Opportunité de carrière en cybersécurité

Chief Information Security Officer

Publié par National Institutes of Health

  • Bethesda, Maryland
  • full-time
  • onsite
  • 27 juillet 2026

Lieu

Bethesda, Maryland

Description du poste

The National Institutes of Health (NIH), a part of the Department of Health and Human Services, is the largest biomedical research funding organization in the world. NIH is made up of 27 Institutes and Centers. The Office of the Director, in the NIH, is seeking exceptional candidates for the position of Director of Cybersecurity/Chief Information Security Officer. This is a career Federal position in the Senior Executive Service. See "Duties" section for a list of the major responsibilities.

Provides executive level leadership, direction, and oversight for planning, coordination, and control of NIH-wide cybersecurity infrastructure and technology functions.

Serves as the principal technical advisor to the Chief Information Officer (CIO), the Deputy Chief Information Officer, and other senior NIH officials on cybersecurity infrastructure and technology across the 27 institutes and centers.

Ensures the cybersecurity programs are consistent with the current security and business needs and long-term goals of NIH.

Manages continuous monitoring and remediation of potential and actual threats and vulnerabilities to NIH’s systems and data.

Provides strategic planning, integration and support for NIH cybersecurity and counter-intelligence initiatives and physical security through collaboration with executives, research scientists, and technical internal and external groups.

Assesses risks and improve the NIH information security.

Directs and manages a cybersecurity program to protect NIH information and its assets, cybersecurity policy, and related functions (e.g., vulnerability management, intrusion detection and incident response, and continuous monitoring, etc.).

Represents the CIO and Deputy CIO in meetings with NIH and HHS officials, OMB, representatives of business and industry, Congressional committees and staff, and other matters involving plans, programs, policies, and objectives of the OCIO and NIH.

Works with organizational units and partners to implement practices that meet agreed-on policies and standards for information security and privacy.

Ensures that NIH cybersecurity infrastructure and technology meet all requirements in compliance with Federal laws, regulations, and best practices.

Manages an annual budget of approximately $77M and directs a staff of approximately 50 federal employees and 150 contractors.

BASIC QUALIFICATIONS: Candidates should be committed to improving the efficiency of the Federal government, passionate about the ideals of our American republic, and committed to upholding the rule of law and the United States Constitution. Candidates will not be hired based on their race, sex, color, religion, or national origin. To meet the minimum qualification requirements for this position, you must show that you possess the Executive Core Qualifications (ECQ) and Technical Qualifications (TQ) related to this position within your resume - NOT TO EXCEED 2 PAGES. Resumes over the 2-page limit, will not be reviewed beyond page 2 or may be disqualified. Your resume must include examples of experience, education, and accomplishments applicable to the qualification(s). If your resume does not reflect demonstrated evidence of these qualifications, you may not receive consideration for the position. There is NO requirement to prepare a narrative statement specifically addressing the Executive Core Qualifications (ECQs) or the Technical Qualifications (TQs). TECHNICAL QUALIFICATIONS (TQs): Your resume must demonstrate accomplishments that would satisfy the technical qualifications. TQ 1: Demonstrated ability providing executive-level leadership for a large, comprehensive cybersecurity program that ensures regulatory compliance and leads infrastructure and technology initiatives consistent with information security, business needs, change management, and long-term organizational goals to protect government information, operations, and assets. TQ 2: Demonstrated ability to build coalitions by advising and representing senior level executives inside and outside the agency regarding cybersecurity programs, systems policy, and technical matters, while demonstrating senior-level expertise in managing agency-wide cybersecurity infrastructure to deliver secure, result-oriented outcomes. EXECUTIVE CORE QUALIFICATIONS (ECQs): In addition to the Technical Qualification requirements listed above, all new entrants into the Senior Executive Service (SES) under a career appointment will be assessed for executive competency against the following five mandatory ECQs. If your 2-page resume does not reflect demonstrated evidence of the ECQs and TQs, you may not receive further consideration for the position. There are five ECQs: ECQ 1: Commitment to the Rule of Law and the Principles of the American Founding - This core qualification requires a demonstrated knowledge of the American system of government, commitment to uphold the Constitution and the rule of law, and commitment to serve the American people. ECQ 2: Driving Efficiency - This core qualification involves the demonstrated ability to strategically and efficiently manage resources, budget effectively, cut wasteful spending, and pursue efficiency through process and technological upgrades. ECQ 3: Merit and Competence - This core qualification involves the demonstrated knowledge, ability and technical competence to effectively and reliably produce work that is of exceptional quality. ECQ 4: Leading People - This core qualification involves the demonstrated ability to lead and inspire a group toward meeting the organization's vision, mission, and goals, and to drive a high-performance, high-accountability culture. This includes, when necessary, the ability to lead people through change and to hold individuals accountable. ECQ 5: Achieving Results - This core qualification involves the demonstrated ability to achieve both individual and organizational results, and to align results to stated goals from superiors. Note: If you are a member of the SES or have been certified through successful participation in an OPM approved SES Candidate Development Program (SESCDP), or have SES reinstatement eligibility, you do not need to respond to the ECQs. Instead, you should attach proof (e.g., SF-50, Certification by OPM's SES Qualifications Review Board (QRB)) of your eligibility for noncompetitive appointment to the SES. Please DO NOT submit separate documents addressing the ECQs or TQs. BASIC QUALIFICATIONS: The Office of the Director, NIH seeks candidates who have a commitment to excellence and the energy, enthusiasm, and innovative thinking necessary to lead a dynamic organization. All competitive candidates for SES positions with the Federal Government must demonstrate leadership experience indicative of senior executive level management capability. The Director of Cybersecurity/Chief Information Security Officer (CISO) position resides within the Office of Chief Information Officer (OCIO) in the Office of the Director, NIH, and reports directly to the NIH Chief Information Officer. Applicants must meet the requirements for the GS-2210 series as defined by the U.S. Office of Personnel Management Qualifications Standards Manual for General Schedule Positions which is available at: OPM Qualifications Standards GS-2210 Website and demonstrate in your two (2) page resume that you possess the Technical Qualifications (TQs) listed above. It is recommended that your resume emphasize levels of responsibility, scope and complexity of programs managed, and program accomplishments and results. Candidates must possess experience at the senior level (GS-14/15 level or equivalent) in the job-specific Technical Qualifications (TQs). The TQs measure the technical expertise required by this position and must be addressed within your 2-page resume. It is recommended that corresponding TQs be annotated in parenthesis within your 2-page resume. Political, Schedule C, Non-career SES Appointee*: In the last five years, based on the closing date of this announcement, have you been or are you currently an employee in the Executive Branch serving on a political, Schedule C, or Non-career SES appointment? If yes, and you are selected through this vacancy announcement, you may be required to obtain approval by the Office of Personnel Management (OPM) prior to beginning employment. (Please confirm whether or not you have this experience within your 2-page resume) *A political appointee is an appointment made by the President without confirmation by the Senate (5 CFR 213.3102(c)) OR an Assistant position to a top-level Federal official if filled by a person designated by the President as a White House Fellow (5 CFR 213.3102(z)). A Non-career SES appointee is approved by the White House and serves at the pleasure of the appointing official without time limitations. A Schedule C appointee occupies a position excepted from the competitive service by the President, or by the Director, OPM, because of the confidential or policy-determining nature of the position duties. NOTE: IF SELECTED, a Structured Interview will be used to certify the candidate by an OPM Qualifications Review Board (QRB). If you are currently serving in a career SES appointment, are eligible for reinstatement into the SES, or have successfully completed an SES Candidate Development Program approved by the Office of Personnel Management (OPM), you WILL NOT need to participate in a Structured Interview.

Source and application: Official federal vacancy data provided by USAJOBS. Apply on the original USAJOBS listing.

View the original job listing. SecurityTalent is displaying an aggregated listing and does not represent that the employer has claimed or verified this record.

En bref

Informations sur l’emploi

Informations sur l’emploi
Profil de l’opportunité
EmployeurNational Institutes of Health
LieuBethesda, Maryland
Domaine de cybersécuritéIncident Response & DFIR
SpécialitéChief Information Security Officer
Type d’emploifull-time
Mode de travailonsite
Publié27 juillet 2026
Date limite10 août 2026
RémunérationUSD 151,661 – USD 228,000
Compétences et qualifications
Niveau d’expérienceexecutive
Compétences requisesInformation Technology Management
Outils de sécuritéAWS
Parrainage de visaNon