Job description
This position is located in the Cybersecurity and Privacy Division (CSPD) of the Office of the Chief Information Officer (OCIO). As a Cybersecurity Risk Manager (CSRM), you will guide stakeholders as they implement assessment and authorization policies and procedures, cybersecurity continuous monitoring, and risk management activities. You will collaborate with other CSRMs to provide support for stakeholders in identifying, communicating, and managing cybersecurity risks. Duties described below are at the highest grade advertised. Duties assigned at lower grade levels will be of more limited scope, performed with less independence and limited complexity; duties will be commensurate with the grade of selected employee. Validate the Risk Management Framework process activities and related documentation (e.g., system life-cycle support plans, concept of operations, operational procedures, and maintenance training materials). Validate that security controls are correctly implemented and remain effective throughout the system lifecycle. Design or advise on technical solutions to complex problems which require technical expertise and ingenuity. Leads information system stakeholders by…


