Information Security Risk Specialist

Booz Allen Hamilton

Saint Inigoes Shores (MD)

Remote

USD 62,000 - 141,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health benefits
Life insurance
Disability insurance
Tuition assistance
Paid leave
Professional development
Work-life programs
Retirement benefits
Dependent care

Job summary

Booz Allen Hamilton is seeking an Information Security Risk Specialist to help DoD clients assess cyber risks, translate complex threats, and build actionable plans of action. You will work on RMF artifacts, authorization packages, and policy interpretation to support secure operations in government systems.

The role requires DoD RMF experience, STIG interpretation, and hands-on use of eMASS/ACAS in a structured, compliance-driven environment.

Qualifications

  • 3+ years of experience leading RMF for DoD information systems.
  • Experience supporting DoD system authorization and ATO activities.
  • Experience reviewing and enforcing STIGs using STIG Viewer.
  • Experience using eMASS and ACAS in a DoD environment.

Responsibilities

  • Assist military leaders in discovering cyber risks and understanding policies.
  • Develop mitigation plans and POA&Ms with milestones and timelines.
  • Gather technical and personnel details to assess threat landscapes.
  • Translate security concepts for clear client decisions in risk management.
  • Prepare supporting presentations and white papers for stakeholders.

Skills

RMF DoD
STIGs
eMASS
ACAS
SAPs & SARs
PPSM
Security policies
DoD 8140

Education

Bachelor's degree in Cybersecurity/IT/CS/IS/Data Science/Software Eng
DoD 8140 Intermediate Certification

Tools

STIG Viewer
eMASS
ACAS

Job description

Information Security Risk Specialist The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to government agencies. In all of this "cyber noise," how can these organizations understand their risks and how to mitigate them? The answer is you. We need your knowledge as an information security risk specialist to help break down complex threats into manageable plans of action. As an information security risk specialist on our team, you'll assist military leaders with discovering their cyber risks, understanding applicable policies, and developing a mitigation plan. You'll gather technical and personnel details from subject matter experts to help with the assessment of the entire threat landscape. You'll learn how to guide your client through a plan of action with presentations, white papers, and milestones, and help to translate security concepts so they can make the best decisions to secure their critical systems. This is your opportunity to build experience in a strategic information security role while developing skills in cybersecurity. Work with us as we protect our nation's cyber infrastructure. Join us. The world can't wait.

You Have:
  • 3+ years of experience leading and executing the Department of Defense (DoD) Risk Management Framework (RMF) for DoD information systems, including full lifecycle implementation across RMF steps, application of DoD and DoD Component cybersecurity policies, procedures, and directives, and development and management of Plans of Actions and Milestones (POA&M)
  • Experience supporting DoD system authorization and Authorization to Operate (ATO) activities
  • Experience reviewing, interpreting, and enforcing Security Technical Implementation Guides (STIGs) using STIG Viewer
  • Experience using eMASS and ACAS within a DoD environment, including analyzing and prioritizing vulnerability scan results, developing and maintaining hardware and software inventories, tracking vulnerabilities, and supporting remediation activities
  • Experience developing and supporting Security Assessment Plans (SAPs), Security Assessment Reports (SARs), RMF artifacts, control assessments, and authorization packages in accordance with DoD RMF requirements
  • Knowledge of Ports, Protocols, and Services Management (PPSM)
  • Ability to operate in a structured and compliance-driven environment while executing established cybersecurity processes with minimal supervision
  • Secret clearance
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Data Science, or Software Engineering
  • DoD 8140, 752- Cyber Policy and Strategy Planner, Intermediate Certification
Nice If You Have:
  • Top Secret clearance
  • Master's degree
  • Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Secret clearance is required.
Compensation
  • Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care.
  • Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values.
  • Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs.
  • Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits.
  • We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements.

The projected compensation range for this position is $61,900.00 to $141,000.00 (annualized USD).

This posting will close within 90 days from the Posting Date.

Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.

Work Model
  • Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
  • Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen or customer facility, in alignment with your leadership's expectations and the needs of the role.
  • Onsite: If this position is listed as onsite, work will primarily be performed full-time at a customer facility, where employees will collaborate directly with colleagues and customers as required by the role.
Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Know Your Rights Poster Accommodations

Applicants who need a reasonable accommodation for any part of the application, hiring, or employment process because of a disability, a sincerely held religious belief, practice, or observance, or as otherwise required by applicable law should contact the Booz Allen Help Desk by calling 1-877-927-8278 or sending

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Risk Specialist
Information Security Risk Specialist

Talentify • Honolulu (HI)

On-site
USD 99,000 - 225,000
Information Security Risk Specialist
Information Security Risk Specialist

Talentify • McLean (VA)

On-site
USD 99,000 - 225,000
RMF Cybersecurity Analyst
RMF Cybersecurity Analyst

Booz Allen Hamilton • Lexington (MA)

On-site
USD 62,000 - 141,000
Cybersecurity Analyst, Junior
Cybersecurity Analyst, Junior

Booz Allen Hamilton • City of Rome (NY)

On-site
USD 53,000 - 108,000
Information Security Risk Specialist, Lead
Information Security Risk Specialist, Lead

Booz Allen Hamilton • Houston (TX)

On-site
USD 113,000 - 257,000
Information System Security Officer
Information System Security Officer

Booz Allen Hamilton • Huntsville (TN)

On-site
USD 62,000 - 141,000
Information Security Risk Specialist
Information Security Risk Specialist

Booz Allen Hamilton • Colorado Springs (CO)

On-site
USD 62,000 - 141,000
Information Security Risk Specialist
Information Security Risk Specialist

Talentify • Arlington (VA)

Remote
USD 62,000 - 141,000
Information Systems Security Engineer
Information Systems Security Engineer

Booz Allen Hamilton • Warner Robins (GA)

On-site
USD 99,000 - 225,000
Security & Compliance Administrator
Security & Compliance Administrator

Booz Allen Hamilton • McLean (VA)

On-site
USD 99,000 - 225,000