Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Risk Specialist

$62k - $141k

Booz Allen Hamilton

Job Number: R0241402

Information Security Risk Specialist

The Opportunity:

Cyber threats evolve constantly. In this role, you'll turn complex risk into clear action by supporting Risk Management Framework (RMF) activities and driving Assessment & Authorization (A&A) packages through Authorization to Operate (ATO). You'll partner with engineering and mission teams to scope controls, assess risk, remediate gaps, and sustain continuous monitoring so systems remain secure and compliant.

Join us. The world can't wait.

You Have:

  • 3+ years of experience within Information Security, Cyber Risk Management, or Security Compliance Functions

  • Experience applying NIST Risk Management Framework (RMF) across categorization, control selection or implementation, assessment, authorization, and continuous monitoring

  • Experience supporting Assessment & Authorization (A&A) efforts and coordinating Authority to Operate (ATO) decisions with Authorizing Officials

  • Experience performing security control assessments and producing artifacts such as Security Assessment Reports (SAR) and Plans of Action & Milestones (POA&Ms)

  • Experience developing and maintaining security documentation, including System Security Plans (SSP) and control implementation statements

  • Knowledge of NIST SP 80053 Rev.5 control families and tailoring controls to impact levels

  • Knowledge of FISMA processes supporting RMF and authorization decisions

  • Ability to translate technical findings into risk statements and remediation recommendations aligned to mission and business priorities, plan and execute continuous monitoring (ConMon), track residual risk, and drive closure of POA&Ms

  • Public Trust

  • Bachelor's degree

Nice If You Have:

  • Experience communicating complex security concepts clearly to nontechnical stakeholders and senior leaders

  • Experience producing concise A&A documentation and executiveready summaries

  • Knowledge of structured writing and plainlanguage techniques for technical documentation

  • Knowledge of stakeholder analysis and change management to drive adoption of security recommendations

  • Ability to write crisply, edit meticulously, and proofread to ensure consistency across artifacts

  • Ability to facilitate working sessions, build consensus, and present recommendations confidently

  • Master's degree

Vetting:

Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client; Public Trust determination is required.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $62,000.00 to $141,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.

Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided .

Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.

  • Remote : If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.

  • Hybrid : If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.

  • Onsite : If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Information Security Risk Specialist in Bethesda, MD vacancy
  • $62k - $141k

     ...this role, you'll turn complex risk into clear action by...  ...monitoring so systems remain secure and compliant. Join us. The...  ...+ years of experience within Information Security, Cyber Risk Management...  ...Title Information Security Risk Specialist EEO Statement All qualified... 
    Suggested
    Full time
    Part time
    Local area

    Phase2 Technology

    Mc Lean, VA
    4 days ago
  • TLA-LLC seeks a Security Assessor to evaluate and enhance security measures across various systems. This role involves identifying vulnerabilities and ensuring compliance with industry standards such as NIST and ISO 27001. The ideal candidate will have a degree in Computer... 
    Suggested

    TLA-LLC

    Mc Lean, VA
    3 days ago
  • A security services company is hiring a Security Specialist II - Risk Assessment Specialist in Washington, DC. This full-time role requires managing the Position...  ...assessments, and maintaining accurate contractor information. Applicants should have a minimum of 4 years in... 
    Suggested
    Full time
    For contractors

    ARMADA, Ltd.

    Washington DC
    1 day ago
  • A security management company based in Arlington, VA is seeking a Mid-Senior level Security Operations Physical Security Specialist. This full-time position involves conducting assessments for the...  ...provided. #J-18808-Ljbffr Watermark Risk Management International, LLC
    Suggested
    Full time

    Watermark Risk Management International, LLC

    Arlington, VA
    3 days ago
  • Security Specialist II - Risk Assessment Specialist Type: Full Time Location: Washington, DC Overtime Exempt: No Reports To: ARMADA HQ Security...  ..., contracting vendors, and FCC CORs to maintain accurate information in the personnel management case system. Assist SOC in... 
    Suggested
    Full time
    For contractors
    Local area
    Relocation

    ARMADA, Ltd.

    Washington DC
    1 day ago
  •  ...Cyber And It Security Risk Analyst Location: Bethesda, MD Contract: 12 Months Position Summary We are seeking a Cyber and Information Security Risk Analyst to join our growing professional services team. As a Cyber and IT Security Risk Analyst, you will assist... 
    Contract work
    For contractors

    InteliX Systems

    Bethesda, MD
    1 day ago
  •  ...identifying gaps in existing architectures. Experience in designing security architectures to mitigate threats. Knowledge of computer...  ...multiple classification levels of data. Knowledge of risk management processes and experience in conducting risk assessments... 
    Work experience placement
    Remote work
    Work from home
    Flexible hours

    AHU Technologies Inc

    Washington DC
    6 days ago
  •  ...Information Assurance Security Specialist Location: Washington DC Job Code: 2749 Job Description: Requires skills to assess, plan, and enact...  ...information assurance (IA) or cyber security controls and risk mitigation strategy. Provide detailed risk... 

    Orbis Corporation

    Washington DC
    4 days ago
  •  ...Information Security Specialist As an Information Security Specialist, you will perform information system security manager responsibilities for the Office of the Chief Information Officer (OCIO). Location of position: The Office of GSA IT, ISSO Support Division... 
    Work at office

    US Government Jobs

    Washington DC
    16 hours ago
  •  ...Information Assurance / Security Specialist (ISSO) We are seeking a highly skilled and mission-focused Information Assurance / Security Specialist (ISSO...  ...authorities, ensuring security requirements are met, risks are communicated, and systems remain compliant with DOE... 
    Contract work
    For contractors

    Powder River Industries LLC

    Washington DC
    3 days ago
  • $55 - $60 per hour

     ...Replies within 24 hours Job Description: Short Description: Information Assurance and Security Specialist for ITAM team Complete Description: Duties and Responsibilities: • Provide support of incoming requests via telephone, web portal, email... 
    Hourly pay
    Permanent employment
    Work experience placement
    Work at office
    Remote work
    Work from home
    Flexible hours

    AHU Technologies, Inc.

    Washington DC
    4 days ago
  • $121.79k

     ...Organizational Location: This position is with the Department of Homeland Security, within U.S. Customs and Border Protection, Office of Professional Responsibility, Security Management Division, Information Security Branch located in Washington DC. This announcement will be... 
    Permanent employment
    Temporary work
    For contractors
    Internship
    Work at office
    Local area
    Remote work
    Work from home

    Customs and Border Protection

    Washington DC
    4 days ago
  • $80k - $120k

     ...Overview VTG is seeking a Information System Security Specialist to support the Navy located at the Washington Navy Yard . Position is 100% onsite...  ...should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior... 
    Contract work
    Work experience placement

    Navstar

    Washington DC
    4 days ago
  •  ...Senior Information Systems Security Specialist - Position Description Join a team that's shaping the future of Navy support. ICI Services -a 100%...  ...specialist should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    ICI Services

    Washington DC
    5 days ago
  • $58 - $65 per hour

     ...hours Job Description: Short Description: Information Assurance and Security Specialist - Journeyman (IA & SS - Jrny) FT, Hybrid Position -...  ...in solving these problems. • Performs vulnerability/risk analyses of computer systems and applications during... 
    Hourly pay
    Permanent employment
    Work from home
    Flexible hours

    AHU Technologies, Inc.

    Washington DC
    4 days ago
  • $80 - $85 per hour

     ...Replies within 24 hours Role : Information Assurance and Security Specialist Location : Washington DC Client : DC Government Job Description...  ...solving these problems. m. Performs vulnerability/risk analyses of computer systems and applications during... 
    Hourly pay
    Permanent employment

    AHU Technologies, Inc.

    Washington DC
    5 days ago
  •  ...Information Security Threat Management Specialist Denver, Colorado;Washington, District of Columbia; Chicago, Illinois To proceed with your application...  ...protocols are in place to reduce potential risk and vulnerability to the Bank's computing environment... 
    Work at office
    Immediate start
    Flexible hours
    Shift work
    Day shift

    Bank of America

    Washington DC
    3 days ago
  •  ...Summary Arlo Solutions (Arlo) is an information technology consulting services company...  ...Description: The Information Security Specialist III supports the National Oceanic and...  ...Atmospheric Administration (NOAA) Internal Risk Management Program (IRMP), providing advanced... 
    Contract work
    For contractors
    Work at office

    Arlo Solutions

    Silver Spring, MD
    3 days ago
  • $101.38k - $152.06k

     ...to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a Information Security Senior Specialist to join our team in Merrifield, Virginia (US-VA), United States (US). Job Summary: The Cyber Defense & Incident... 
    Temporary work
    Interim role
    Work at office
    Remote work
    Flexible hours

    NTT Data Americas, Inc.

    Vienna, VA
    7 days ago
  •  ...Responsibilities: Conduct security assessments of system security plans to help ensure...  ...plans provide security controls for information systems that meet stated security requirements...  ...configurations. Support the risk management process by helping to determine... 
    Temporary work

    HN Consulting

    Arlington, VA
    3 days ago
  •  ...The Federal Reserve Board is seeking a Principal Information Security Analyst to oversee and implement IT security measures. Located in Washington...  ...and 6-8 years of experience, with responsibilities including risk management, compliance audits, and staff training. This... 
    Relocation package

    Federal Reserve Board

    Washington DC
    17 hours ago
  • $80k - $130k

    Vosper Thornycroft Group is seeking a Sr. Information System Security Specialist to support the Navy at the Washington Navy Yard. This onsite role involves responsibilities in managing IT security programs, evaluating solutions for compliance, and ensuring operational... 

    Vosper Thornycroft Group

    Washington DC
    1 day ago
  • Koniag Information Security Services, LLC is seeking a Personnel Security Specialist with a TS/SCI clearance to support operations at the Pentagon in Arlington, VA. This role includes managing the Personnel Security Program and ensuring compliance with security regulations... 

    Koniag Information Security Services, LLC

    Arlington, VA
    4 days ago
  •  ...and Type: Regular, Full Time Required Security Clearance (Minimum for hire): TS/SCI Required...  ...Job Description: The Security Specialist (Physical/Personnel) will support USMC...  ...general knowledge of Sensitive Compartmented Information Facility construction and accreditation... 
    Full time
    Worldwide

    FGS, LLC

    Arlington, VA
    1 day ago
  • $80k - $120k

    Vosper Thornycroft Group is looking for an Information System Security Specialist to work at the Washington Navy Yard. The role focuses on supporting all aspects of Program Information Assurance processes, including evaluating security solutions and ensuring compliance... 

    Vosper Thornycroft Group

    Washington DC
    2 days ago
  •  ...Systems Plus today. Position Details Position Title Information Assurance/Security Specialist - Level II-Charleston Position Type Full Time, Onsite...  ...and system administrators to address vulnerabilities and risks. Develop and maintain system security plans, security... 
    Full time
    Contract work
    For contractors
    Worldwide

    Systems Plus, Inc.

    Rockville, MD
    4 days ago
  •  ...Arlington, VA 22202 Position Type: Full Time Position title: Information Security Specialist (INFOSEC) Location: Arlington, Virginia Clearance required...  ...matter experts to assess information sensitivity and risk and assist in the prevention and reporting of security violations... 
    Full time
    Contract work
    Work at office

    People Technology And Processes

    Arlington, VA
    4 days ago
  • $82 - $91 per hour

     ...hours Job Description: Short Description: Information Assurance and Security Specialist - Master Complete Description: Duties: •...  ...in solving these problems. • Performs vulnerability/risk analyses of computer systems and applications during all... 
    Hourly pay
    Permanent employment
    Work from home
    Flexible hours

    AHU Technologies, Inc.

    Washington DC
    4 days ago
  • $81k - $121k

    Fairygodboss is seeking an experienced operational risk management professional to support IT risk oversight and...  ...will have strong communication skills, detail orientation, and experience in Information Technology or Information Security. #J-18808-Ljbffr Fairygodboss

    Fairygodboss

    Mc Lean, VA
    2 days ago
  • $80k - $110k

    Alvarez & Marsal Deutschland GmbH is seeking an experienced AI/ML Security professional in Washington, D.C. The role involves leading AI...  ...include 3+ years in AI development, expertise in information security, and proficiency in tools like TensorFlow, Docker, and... 

    Alvarez & Marsal Deutschland GmbH

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Risk Specialist. Be the first to apply!