Job Details for Deputy Chief Information Security Officer
| Court Name/Organization | Administrative Office of the U.S. Courts |
| Overview of the Position | The Deputy Chief Information Security Officer position is in the Department of the Chief Information Office (DCIO), Information Technology Security Office (ITSO). ITSO manages the judiciary's IT security program; promotes the confidentiality, integrity, and availability of the judiciary's IT; oversees the judiciary's security operations; proposes national IT security policies; and establishes collaborative relationships with third-party partners to ensure the judiciary's IT security. |
| Location | Washington, DC |
| Opening and Closing Dates | 04/21/2026 - 07/21/2026 |
| Appointment Type | Permanent |
| Salary | $169,292 - $209,600 |
| Announcement Number | 26-CIO-12940653 |
| Link to Job Announcement | |
Position Description
Duties of the position include, but are not limited to:
- Advocating for necessary resources to conduct an effective enterprise security program.
- Advising senior management on cost-benefit analyses of information security programs, policies, processes, systems, and elements.
- Communicating the value of IT security to all levels of stakeholders.
- Aligning IT security priorities with the security strategy.
- Overseeing information security budgets and contracting.
- Monitoring and evaluating the effectiveness of the enterprise's cybersecurity safeguards to ensure that they provide the intended level of protection.
- Recommending policy and coordinating review and approval.
- Supervising or managing protective or corrective measures when a cybersecurity incident or vulnerability is discovered.
- Promoting awareness of security issues among management and ensuring sound security principles are reflected in the organization's vision and goals.
- Overseeing policy standards and implementation strategies to ensure procedures and guidelines comply with cybersecurity policies.
- Ensuring plans of action, milestones, and remediation plans are in place for vulnerabilities identified during risk assessments, audits, and inspections, etc.
- Coordinating with organizational manpower stakeholders to ensure appropriate allocation and distribution of human capital assets.
- Assessing policy needs and collaborating with stakeholders to develop policies to govern cyber activities.
- Designing and integrating a cyber strategy that outlines the vision, mission, and goals and aligns with the organization's strategic plan.
- Conducting long-range strategic planning efforts with internal and external partners in cyber activities.
- Collaborating on cyber privacy and security policies and procedures.
- Collaborating with cybersecurity personnel on the security risk assessment process to address privacy compliance and risk mitigation.
- Guiding a team of IT security experts.
- Collaborating with key stakeholders to establish a cybersecurity risk management program.
- Performing the tasks and meeting the skills, knowledge and abilities as described in NIST Special Publication 800-181 National Initiative for Cybersecurity Education (NICE) Cybersecurity Workforce Framework for the role of Executive Cyber Leadership (OV-EXL-001).
Miscellaneous
Duties of the position include, but are not limited to:
- Advocating for necessary resources to conduct an effective enterprise security program.
- Advising senior management on cost-benefit analyses of information security programs, policies, processes, systems, and elements.
- Communicating the value of IT security to all levels of stakeholders.
- Aligning IT security priorities with the security strategy.
- Overseeing information security budgets and contracting.
- Monitoring and evaluating the effectiveness of the enterprise's cybersecurity safeguards to ensure that they provide the intended level of protection.
- Recommending policy and coordinating review and approval.
- Supervising or managing protective or corrective measures when a cybersecurity incident or vulnerability is discovered.
- Promoting awareness of security issues among management and ensuring sound security principles are reflected in the organization's vision and goals.
- Overseeing policy standards and implementation strategies to ensure procedures and guidelines comply with cybersecurity policies.
- Ensuring plans of action, milestones, and remediation plans are in place for vulnerabilities identified during risk assessments, audits, and inspections, etc.
- Coordinating with organizational manpower stakeholders to ensure appropriate allocation and distribution of human capital assets.
- Assessing policy needs and collaborating with stakeholders to develop policies to govern cyber activities.
- Designing and integrating a cyber strategy that outlines the vision, mission, and goals and aligns with the organization's strategic plan.
- Conducting long-range strategic planning efforts with internal and external partners in cyber activities.
- Collaborating on cyber privacy and security policies and procedures.
- Collaborating with cybersecurity personnel on the security risk assessment process to address privacy compliance and risk mitigation.
- Guiding a team of IT security experts.
- Collaborating with key stakeholders to establish a cybersecurity risk management program.
- Performing the tasks and meeting the skills, knowledge and abilities as described in NIST Special Publication 800-181 National Initiative for Cybersecurity Education (NICE) Cybersecurity Workforce Framework for the role of Executive Cyber Leadership (OV-EXL-001).
The federal Judiciary is an Equal Employment Opportunity employer.