Compliance and Privacy Specialist
Washington, AR - USA
Job Summary
Job Title: Compliance and Privacy Specialist( 2 positions)
Washington DC(Hybrid)
Long Term
Job Summary
Compliance and Privacy Specialists provide cross-functional ISSO support across SAMHSA systems with a privacy-domain lean. They draft and review PIAs PTAs and TPWAs; coordinate Privacy Act clearance reviews; support SORN development and Federal Register coordination; conduct privacy impact analysis on system changes and incidents; and support FISMA reporting on privacy controls. Each Specialist serves as the privacy-aware ISSO for a portfolio of systems containing PII.
Mandatory Qualifications
- Minimum three (3) years FISMA experience
- Demonstrated ISSO support cross-functional capability (compliance privacy vulnerability management configuration management)
- Demonstrated Privacy Act of 1974 background - PIA development SORN coordination Privacy Act clearance review
- Vulnerability management experience - scan result interpretation POA&M generation remediation prioritization
- Familiarity with USGCB (United States Government Configuration Baseline) and DISA STIG / CIS Benchmark hardening standards
- Knowledge of cloud computing FISMA and FedRAMP environments
- U.S. citizenship required
Preferred Qualifications
- Direct experience with HHS or another HHS Operating Division
- Experience with HIPAA Privacy and Security Rule compliance
- Experience with OMB privacy memoranda (M-17-12 M-22-09 M-24-04)
- Experience with HHS Senior Agency Official for Privacy (SAOP) office coordination
Required Certifications (mandatory unless noted)
- Industry-recognized cybersecurity certification (CISSP CIPP/G CIPT Security or equivalent) preferred
- Active or recent Public Trust suitability
Recruiting Submission Checklist
- Resume in TGI federal proposal format (chronological work history certifications education security clearances federal experience flag)
- Signed Letter of Commitment (using template in Section 4 of this document)
- Verified copies of required certifications (e.g. CISSP CAP CISM)
- Public trust suitability status if currently held; HSPD-12 readiness statement if not
- Contact information for two professional references (federal supervisors preferred)
- Confirmation of availability within 30-day Transition-In window.