CDAO - IT Cybersecurity Specialist
$139.4k - $191.9kOffice of the Under Secretary of War for Research and Engineering
CDAO - IT Cybersecurity Specialist Application Deadline: 3 June 2026 Department: Front Office Employment Type: Full Time Location: Arlington, VA Description Job Title: IT Cybersecurity Specialist
JOA: CDAO-View phone number on click.appcast.io.
Pay Scale: $139,395–$191,900. Open Date: 20 May 2026. Close Date: 3 June 2026. The Chief Digital and Artificial Intelligence Office (CDAO) supports the Office of the Under Secretary of War for Research and Engineering (OUSW(R&E)) by delivering secure, reliable, and scalable capabilities that enable mission‑critical decision‑making across the Department of Defense. As a Security Control Assessor within the CDAO, you will be at the forefront of the Department's cyber defense strategy. In this senior role, you will drive the Risk Management Framework (RMF) process and execute comprehensive, independent assessments of complex enterprise systems, network enclaves, and dynamic cloud architectures. You will serve as a strategic advisor to Authorizing Officials, Program Managers, and Information System Owners, translating complex national and federal cybersecurity policies—including NIST SP 800‑53, FISMA, and FedRAMP—into actionable compliance and mitigation strategies. This position demands expertise in advanced cybersecurity principles, Zero Trust network architectures, and comprehensive vulnerability management. You will be responsible for evaluating sophisticated threat landscapes, managing Plans of Action and Milestones (POA&Ms), and establishing robust continuous monitoring processes to ensure that evolving system architectures do not introduce unacceptable risks to the mission environment. By aggressively validating security controls, conducting rigorous independent audits, and analyzing residual risks, your technical evaluations will directly secure critical infrastructure and support the Interim Authority to Test (IATT) and Authorization to Operate (ATO) decisions vital to national security operations. This position is covered by the Department of Defense (DoD) Civilian Acquisition Workforce Personnel Demonstration Project (AcqDemo). The position is located in Washington, DC. The pay plan and broadband level for this role is NH‑2210‑04, which is equivalent to the GS‑14/15 grade level. This role will close for submissions on 3 June 2026 at 11:59:59 pm. What you’ll do here Ensuring compliance with federal information security and privacy requirements, including implementing and assessing National Institute of Standards and Technology (NIST) Special Publication 800‑53 controls, Federal Information Security Modernization Act (FISMA), and FedRAMP requirements. Demonstrated knowledge of cybersecurity principles, cyber threats and vulnerabilities, risk management processes (including assessment and mitigation), and the operational impacts of cybersecurity lapses, as well as familiarity with relevant laws, regulations, and policies (Federal, DoW, and international) related to cybersecurity and critical infrastructure. Proficiency in computer networking concepts and protocols, network security methodologies, network security architecture (including defense‑in‑depth and Zero Trust), IT security principles and methods (e.g., firewalls, encryption), and cloud computing service and deployment models (SaaS, IaaS, PaaS, private/public/hybrid/on‑premises/off‑premises). Evaluating and validating security controls, conducting risk assessments and authorizations per the Risk Management Framework, using cyber defense and vulnerability assessment tools (including open source and penetration testing tools), and determining protection needs for information systems and networks. Roles & Responsibilities Plans and executes comprehensive independent assessments of enterprise information systems, enclaves, and cloud environments to evaluate the implementation and effectiveness of assigned NIST SP 800‑53 security controls. Drives the RMF process by reviewing, analyzing, and validating highly complex System Security Plans (SSPs), Security Assessment Reports (SARs), and other required authorization documentation to support Interim Authority to Test (IATT) and Authorization to Operate (ATO) decisions. Analyzes vulnerability scan results, penetration testing reports, and threat intelligence to determine the residual risk to the mission environment. Identifies systemic security issues across multiple systems or networks. Evaluates and approves Plans of Action and Milestones (POA&Ms) proposed by Information System Owners. Assesses the feasibility and effectiveness of technical remediation strategies to reduce the organizational attack surface. Serves as a senior cybersecurity advisor to Authorizing Officials, Program Managers, and Information System Owners. Defends risk‑based recommendations, briefs senior leadership on critical security vulnerabilities, and influences enterprise‑wide security architecture decisions. Establishes and oversees continuous monitoring strategies for authorized systems to ensure security controls remain effective over time and that any changes to the system architecture do not introduce unacceptable risks. Interprets complex national, federal, and agency‑level cybersecurity policies (e.g., FISMA, FedRAMP, DoD directives) and translates them into actionable assessment procedures and compliance metrics for the organization. Develop and implement methods to monitor, measure, and evaluate risk, compliance, and assurance efforts; ensure systems meet IT security, resilience, and dependability requirements; and maintain and verify the currency of information systems assurance and accreditation materials. Draft statements of preliminary or residual security risks for system operation, support the assessment of Privacy Impact Assessments (PIA) to ensure appropriate security controls for PII, and plan and conduct security authorization reviews while developing assurance cases for initial system and network installations. Apply coding and testing standards, utilize security testing tools (such as fuzzing and static analysis), conduct code reviews, perform validation by comparing actual and expected results to identify impacts and risks, and provide technical evaluations of software, systems, or networks by documenting their security posture, capabilities, and vulnerabilities. Develop specifications and processes to ensure risk, compliance, and assurance efforts conform to security, resilience, and dependability requirements at all levels (application, system, network); develop and implement independent cybersecurity audit processes for software, networks, and systems; and oversee ongoing audits to ensure compliance with organizational and mandatory requirements, verifying that staff accurately follow established procedures. Recommend new or revised security, resilience, and dependability measures based on review results; verify implementation of security postures, document deviations, and recommend corrective actions; develop security compliance processes and audits for external services such as cloud providers and data centers; and, as Authorizing Official, determine the acceptability of security and privacy risks associated with operating or using systems, services, or applications, including those from external providers. Requirements U.S. Citizenship is required. Candidate is encouraged to provide e‑portfolio, project samples, Github, etc. to their submission package. Males born after 12‑31‑59 must be registered or exempt from Selective Service This position is subject to provisions of the WHS/OSD Priority Placement Program (please see details below). Applicants for employment are covered by federal laws and Presidential Executive Orders designed to safeguard federal employees and job applicants from discrimination based on race, color, religion, sex (including pregnancy, gender identity, and sexual orientation), parental status, national origin, age, disability, genetic information (including family medical history), political affiliation, military service, or other non‑merit‑based factors. A three‑year trial period may be required if not previously completed a trial or probationary period in the excepted or competitive service. Must be determined suitable for federal employment. Required to participate in the direct deposit program. This position is subject to pre‑employment and random drug testing. We may use this announcement to fill additional vacancies within 90 days of the closing date. Recruitment, relocation, or retention incentives may be authorized based on the availability of funds. This position is being recruited under 10 USC 1599f into the Cyber Excepted Service and does NOT convey eligibility to be converted to the Competitive Service. For more information on the Cyber Excepted Service Personnel System, This position requires a Top Secret/ Sensitive Compartmented Information (SCI) security clearance. Because this position is in the Cyber Excepted Service, Veterans' Preference will be applied to preference‑eligible candidates, as defined by Section 2108 of the Title 5 U.S.C. in accordance with the procedures provided in DoD Instruction. If you are a veteran claiming veteran's preference, as defined by Section 2108 of Title 5 U.S.C., you must submit documents verifying your eligibility with your application package. This position may require work other than normal duty hours, which may include evenings, weekends, and/or holidays and/or mandatory overtime. This position may occasionally require travel away from the normal duty station via military or commercial aircraft. Priority Placement Program Details Military Spouse Preference (MSP) Eligible: Military Spouse Preference applicants must be selected and placed at the highest grade level for which they have applied and been determined best qualified up to and including the full performance level. You must include a completed copy of the Military Spouse PPP Self‑Certification Checklist dated within 30 days along with the documents identified on the checklist to verify your eligibility for Military Spouse Preference. Military Reserve (MR) and National Guard (NG) Technicians PPP Eligible: MR and NG technicians PPP applicants must be selected and placed at the full performance level if determined well qualified. You must include a completed copy of the Military Reserve and National Guard Technician PPP Self‑Certification Checklist to verify your eligibility for the Military Reserve and National Guard Technician preference. Military Reserve (MR) and National Guard (NG) Technicians Receiving Disability Retirement PPP Eligible: MR and NG technicians receiving disability retirement PPP applicants must be selected and placed at the full performance level if determined well qualified. You must include a completed copy of the Military Reserve and National Guard Technician Disability PPP Self‑Certification Checklist to verify your eligibility for Military Reserve and National Guard Technician Disability preference. Retained Grade PPP Eligible: Retained Grade PPP applicants must be selected and placed at the full performance level if determined well qualified. You must include a completed copy of the Retained Grade PPP Self‑Certification Checklist to verify your eligibility for Retained Grade preference. #J-18808-Ljbffr Office of the Under Secretary of War for Research and EngineeringVacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the CDAO - IT Cybersecurity Specialist in Arlington, VA vacancy
- ...Summary This position serves as a IT Specialist (CUSTSPT/SYSADMIN), located in the Department of Justice, Chief Information Officer, Cybersecurity Services Staff, National Classified Systems Directorate, NCS IT service Desk in Washington, DC. The incumbent is responsible...SuggestedTrial period
- ...Job Title Job Description Install, configure, and maintain servers, software, and essential IT infrastructure actively. Focus on data security and availability by actively managing daily backups and recovery systems. Continuously monitor system health actively...SuggestedImmediate start
- ...recruited under 10 USC 1599f into the Cyber Excepted Service and does NOT convey eligibility to be converted to the Competitive Service. It has been identified as a position necessary to carry out and support the mission of the US Cyber Command. It is in the...Suggested
$143.91k - $187.09k
...Telework Eligible No Major Duties As an IT Specialist (Cybersecurity) you will be responsible for the following duties: Serves as the senior technical authority for cybersecurity architecture and engineering across complex networks and critical Industrial...SuggestedRemote work- ...and Deputy Director in internal and external engagement activities. Examples include briefings to senior FAA leadership and the Cybersecurity Steering Committee. This Chief Privacy Office position is also responsible for AIS program control functions including AIS budget...SuggestedContract workTemporary workWork at office
- ...ActioNet is seeking an to serve as Tier 2 - Senior Desk Side IT Specialist technical resource supporting IT operations in Washington,... ...Managed IT Services ~Agile Software Development ~DevSecOps ~Cybersecurity ~Health IT ~C4ISR & SIGINT ~Data Center Engineering &...Full timeRemote work
$107.74k - $140.76k
...None Job Family: Cyber and IT Risk Management Job Qualifications:... ...authorization accreditation Conduct cybersecurity portion of the self-inspection's checklist... ...System, Network Administrator, or IT/IA Specialists Education: ~ Bachelor's degree OR...Temporary workWork at officeLocal areaImmediate startRemote workWorldwideFlexible hours- ...IT Cybersecurity Specialist This vacancy is for a GS-2210-13, IT Cybersecurity Specialist located in the Department of Homeland Security, U.S. Coast Guard, Asset Logistics Division (ALD), Internal Controls & Software Management Branch (ICSM), Software Acquisition Section...
- Job Title This position is in the professional work category at the full performance work level within the CES occupational structure. This position is for DISA White House Communications Agency at Joint Base Anacostia-Bolling, District of Columbia. This is an Excepted...
- ...Information Technology-Information Assurance (IT-IA) Specialist 3- This is a future position that may come open in the future. We are... ...that might affect authorization accreditation Conduct cybersecurity portion of the self-inspections checklist Review and provide...Work at office
$10k
...Summary This vacancy is for a GS-2210-13, IT Cybersecurity Specialist (CUSTSPT-INFOSEC) located in the Department of Homeland Security, U.S. Coast Guard, Asset Logistics Division (ALD), Internal Controls & Software Management Branch (ICSM), Software Acquisition Section...Permanent employmentFull timePart timeWork at officeFlexible hours- ...Position Description: PingWind is seeking an IT Specialist responsible for managing, maintaining, and supporting the organization... ...government. We have extensive experience in the fields of cybersecurity, development, IT infrastructure, supply chain management and...Temporary workFlexible hours
- ...IT Specialist (Cybersecurity) As an IT Specialist (Cybersecurity) you will be responsible for the following duties: Serves as the senior technical authority for cybersecurity architecture and engineering across complex networks and critical Industrial Control...
$55k - $65k
.... To learn more about Quadrant, visit our website at IT Specialist We seek a highly motivated candidate to join our team as... ...prior to deployment Ensure the rigorous application of cybersecurity policies, principles, and practices in the delivery of systems...Full timeWork experience placementWork at officeRelocationFlexible hours3 days per week$30 - $50 per hour
...platform for onboard operational technology (OT). We deliver cybersecurity, predictive maintenance, and compliance capabilities that... ...mission assurance. Shift5 is seeking a versatile Tier 1 IT Support Specialist for a contract-to-hire position in Rosslyn, VA, focused on...Permanent employmentContract workFor contractorsWork at office- ...manager in developing long-range plans for Information Technology (IT) security systems that anticipate, identify, evaluate, mitigate... ..., in the federal, state, local, or private sector. Managing cybersecurity compliance to obtain and maintain Authority to Operate for...Local area
- IT Specialist Position Summary: An IT Specialist supports an organization's technology infrastructure by maintaining hardware, software... ...Security & Compliance Assist in implementing and enforcing cybersecurity policies and best practices as needed. Assist in supporting...Full timeRemote work
$75k - $110k
...Description We are looking for a highly skilled IT Specialistto join our SageWater team! We... ...: SageWater is seeking a hands-on IT Specialist to lead and support the company’s core... ...Assist in implementing and maintaining cybersecurity best practices, including user access...Relocation- Ripple Effect is looking for a Public Relations Specialist in Arlington, VA to lead public affairs initiatives and support strategic... ...communication skills, with a focus on translating complex IT and cybersecurity topics into engaging messages. Ideal candidates should have...
- This is a Supervisory Information Technology Cybersecurity Specialist (INFOSEC) position with the purpose of supervising staff, developing and analyzing... ...and compliance readiness is evaluated as it relates to both IT and traditional programs. To qualify for this position,...Work at office
- ...involves administering technical support for Navy information systems, troubleshooting complex issues, and ensuring compliance with cybersecurity measures. Candidates must have a high school diploma or equivalent with ten years of relevant experience, or a Bachelor's degree...Full time
$65k - $75k
...IT Support Specialist Contact Discovery Services - Washington, DC Location: Hybrid Start Date: Negotiable A leading eDiscovery... ..., Hyper-V, Horizon) ~ Solid understanding of cybersecurity principles and best practices, including interfacing with...For contractorsWork at office- ...Trust ActioNet is seeking a Tier 2 - Desk Side Support - IT Specialist to provide technical and administrative support for IT... ...Managed IT Services Agile Software Development DevSecOps Cybersecurity Health IT C4ISR & SIGINT Data Center Engineering &...Full timeWork at officeRemote work
- ...Job Title: IT Support Specialist Address: Atlanta, GA 30334 ( Hybrid 3 days onsite/Week) 6 Months Contract Position Job... ..., Data Analysis, Application Development, Cloud Services, Cybersecurity, Digital Marketing, ERP Management, Custom Software Development...Contract workRemote work3 days per week
- IT Specialist (Secret clearance or higher required - Ability to obtain and maintain TS/SCI) Location: Washington, DC (Onsite - 5 days/... ...security protocols. Collaborate with network, systems, and cybersecurity teams to elevate and resolve complex technical issues. Ensure...Full timeLocal area
$85k - $100k
...of stakeholders to guide its work Position Summary The IT Category Procurement Specialist (ICPS) is an individual‑contributor position within the... ...to ensure compliance with technical requirements, cybersecurity standards, data‑protection policies, and system‑integration...Contract workFor contractorsWork at office- ...wide range of real‑estate talent. Our team is seeking an IT Relocation Specialist to support the Department of Energy (DoE) with the required... ..., and telecommunications in the new facility. Ensure cybersecurity and compliance requirements are maintained during transition...Long term contractPart timeFor contractorsRelocationRelocation package
- Martek Global Services, Inc. is looking for a part-time IT Relocation Specialist in Washington, DC. The role involves assessing existing IT... ...developing migration plans, and ensuring compliance with cybersecurity requirements. Candidates should have a Bachelor’s degree...Part timeRelocation
$70k - $110k
...D.C., District of Columbia, United States About the job IT Support Specialist Contractor IT Support Specialist Contractor Location: Washington... ..., and network troubleshooting, maintaining regulatory cybersecurity compliance, and optimizing IT operations for end-users and...Full timeFor contractorsRemote workWorldwideRelocation packageFlexible hoursShift work- ...Technology (OIT) is seeking an Information Technology Specialist (CUSTSPT/INFOSEC) (IT Specialist - Executive Support). As an IT Specialist, you... ...of federal IT security mandates, you will ensure all cybersecurity, information assurance, and compliance-related requirements...Work at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to CDAO - IT Cybersecurity Specialist. Be the first to apply!
Related searches
- computer operator Arlington, VA
- entry level IT support specialist Arlington, VA
- IT technician Arlington, VA
- senior IT support specialist Arlington, VA
- IT specialist Arlington, VA
- executive IT support specialist Arlington, VA
- IT internship Arlington, VA
- information technology Arlington, VA
- senior director it Arlington, VA
- IT account executive Arlington, VA

