Information Security Risk Specialist
$62k - $141kBooz Allen Hamilton
The Opportunity:
Cyber threats evolve constantly. In this role, you'll turn complex risk into clear action by supporting Risk Management Framework (RMF) activities and driving Assessment & Authorization (A&A) packages through Authorization to Operate (ATO). You'll partner with engineering and mission teams to scope controls, assess risk, remediate gaps, and sustain continuous monitoring so systems remain secure and compliant.
Join us. The world can't wait.
You Have:
3+ years of experience within Information Security, Cyber Risk Management, or Security Compliance Functions
Experience applying NIST Risk Management Framework (RMF) across categorization, control selection or implementation, assessment, authorization, and continuous monitoring
Experience supporting Assessment & Authorization (A&A) efforts and coordinating Authority to Operate (ATO) decisions with Authorizing Officials
Experience performing security control assessments and producing artifacts such as Security Assessment Reports (SAR) and Plans of Action & Milestones (POA&Ms)
Experience developing and maintaining security documentation, including System Security Plans (SSP) and control implementation statements
Knowledge of NIST SP 80053 Rev.5 control families and tailoring controls to impact levels
Knowledge of FISMA processes supporting RMF and authorization decisions
Ability to translate technical findings into risk statements and remediation recommendations aligned to mission and business priorities, plan and execute continuous monitoring (ConMon), track residual risk, and drive closure of POA&Ms
Public Trust
Bachelor's degree
Nice If You Have:
Experience communicating complex security concepts clearly to nontechnical stakeholders and senior leaders
Experience producing concise A&A documentation and executiveready summaries
Knowledge of structured writing and plainlanguage techniques for technical documentation
Knowledge of stakeholder analysis and change management to drive adoption of security recommendations
Ability to write crisply, edit meticulously, and proofread to ensure consistency across artifacts
Ability to facilitate working sessions, build consensus, and present recommendations confidently
Master's degree
Vetting:
Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client; Public Trust determination is required.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $62,000.00 to $141,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.Identity Statement
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Candidate AI Usage Policy
AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided .
Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.
Remote : If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
Hybrid : If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
Onsite : If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
$62k - $141k
...this role, you'll turn complex risk into clear action by... ...monitoring so systems remain secure and compliant. Join us. The... ...+ years of experience within Information Security, Cyber Risk Management... ...Title Information Security Risk Specialist EEO Statement All qualified...SuggestedFull timePart timeLocal area- TLA-LLC seeks a Security Assessor to evaluate and enhance security measures across various systems. This role involves identifying vulnerabilities and ensuring compliance with industry standards such as NIST and ISO 27001. The ideal candidate will have a degree in Computer...Suggested
- A security services company is hiring a Security Specialist II - Risk Assessment Specialist in Washington, DC. This full-time role requires managing the Position... ...assessments, and maintaining accurate contractor information. Applicants should have a minimum of 4 years in...SuggestedFull timeFor contractors
- A security management company based in Arlington, VA is seeking a Mid-Senior level Security Operations Physical Security Specialist. This full-time position involves conducting assessments for the... ...provided. #J-18808-Ljbffr Watermark Risk Management International, LLCSuggestedFull time
- Security Specialist II - Risk Assessment Specialist Type: Full Time Location: Washington, DC Overtime Exempt: No Reports To: ARMADA HQ Security... ..., contracting vendors, and FCC CORs to maintain accurate information in the personnel management case system. Assist SOC in...SuggestedFull timeFor contractorsLocal areaRelocation
- ...Cyber And It Security Risk Analyst Location: Bethesda, MD Contract: 12 Months Position Summary We are seeking a Cyber and Information Security Risk Analyst to join our growing professional services team. As a Cyber and IT Security Risk Analyst, you will assist...Contract workFor contractors
- ...identifying gaps in existing architectures. Experience in designing security architectures to mitigate threats. Knowledge of computer... ...multiple classification levels of data. Knowledge of risk management processes and experience in conducting risk assessments...Work experience placementRemote workWork from homeFlexible hours
- ...Information Assurance Security Specialist Location: Washington DC Job Code: 2749 Job Description: Requires skills to assess, plan, and enact... ...information assurance (IA) or cyber security controls and risk mitigation strategy. Provide detailed risk...
- ...Information Security Specialist As an Information Security Specialist, you will perform information system security manager responsibilities for the Office of the Chief Information Officer (OCIO). Location of position: The Office of GSA IT, ISSO Support Division...Work at office
- ...Information Assurance / Security Specialist (ISSO) We are seeking a highly skilled and mission-focused Information Assurance / Security Specialist (ISSO... ...authorities, ensuring security requirements are met, risks are communicated, and systems remain compliant with DOE...Contract workFor contractors
$55 - $60 per hour
...Replies within 24 hours Job Description: Short Description: Information Assurance and Security Specialist for ITAM team Complete Description: Duties and Responsibilities: • Provide support of incoming requests via telephone, web portal, email...Hourly payPermanent employmentWork experience placementWork at officeRemote workWork from homeFlexible hours$121.79k
...Organizational Location: This position is with the Department of Homeland Security, within U.S. Customs and Border Protection, Office of Professional Responsibility, Security Management Division, Information Security Branch located in Washington DC. This announcement will be...Permanent employmentTemporary workFor contractorsInternshipWork at officeLocal areaRemote workWork from home$80k - $120k
...Overview VTG is seeking a Information System Security Specialist to support the Navy located at the Washington Navy Yard . Position is 100% onsite... ...should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior...Contract workWork experience placement- ...Senior Information Systems Security Specialist - Position Description Join a team that's shaping the future of Navy support. ICI Services -a 100%... ...specialist should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior...Temporary workFor contractorsImmediate startFlexible hours
$58 - $65 per hour
...hours Job Description: Short Description: Information Assurance and Security Specialist - Journeyman (IA & SS - Jrny) FT, Hybrid Position -... ...in solving these problems. • Performs vulnerability/risk analyses of computer systems and applications during...Hourly payPermanent employmentWork from homeFlexible hours$80 - $85 per hour
...Replies within 24 hours Role : Information Assurance and Security Specialist Location : Washington DC Client : DC Government Job Description... ...solving these problems. m. Performs vulnerability/risk analyses of computer systems and applications during...Hourly payPermanent employment- ...Information Security Threat Management Specialist Denver, Colorado;Washington, District of Columbia; Chicago, Illinois To proceed with your application... ...protocols are in place to reduce potential risk and vulnerability to the Bank's computing environment...Work at officeImmediate startFlexible hoursShift workDay shift
- ...Summary Arlo Solutions (Arlo) is an information technology consulting services company... ...Description: The Information Security Specialist III supports the National Oceanic and... ...Atmospheric Administration (NOAA) Internal Risk Management Program (IRMP), providing advanced...Contract workFor contractorsWork at office
$101.38k - $152.06k
...to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a Information Security Senior Specialist to join our team in Merrifield, Virginia (US-VA), United States (US). Job Summary: The Cyber Defense & Incident...Temporary workInterim roleWork at officeRemote workFlexible hours- ...Responsibilities: Conduct security assessments of system security plans to help ensure... ...plans provide security controls for information systems that meet stated security requirements... ...configurations. Support the risk management process by helping to determine...Temporary work
- ...The Federal Reserve Board is seeking a Principal Information Security Analyst to oversee and implement IT security measures. Located in Washington... ...and 6-8 years of experience, with responsibilities including risk management, compliance audits, and staff training. This...Relocation package
$80k - $130k
Vosper Thornycroft Group is seeking a Sr. Information System Security Specialist to support the Navy at the Washington Navy Yard. This onsite role involves responsibilities in managing IT security programs, evaluating solutions for compliance, and ensuring operational...- Koniag Information Security Services, LLC is seeking a Personnel Security Specialist with a TS/SCI clearance to support operations at the Pentagon in Arlington, VA. This role includes managing the Personnel Security Program and ensuring compliance with security regulations...
- ...and Type: Regular, Full Time Required Security Clearance (Minimum for hire): TS/SCI Required... ...Job Description: The Security Specialist (Physical/Personnel) will support USMC... ...general knowledge of Sensitive Compartmented Information Facility construction and accreditation...Full timeWorldwide
$80k - $120k
Vosper Thornycroft Group is looking for an Information System Security Specialist to work at the Washington Navy Yard. The role focuses on supporting all aspects of Program Information Assurance processes, including evaluating security solutions and ensuring compliance...- ...Systems Plus today. Position Details Position Title Information Assurance/Security Specialist - Level II-Charleston Position Type Full Time, Onsite... ...and system administrators to address vulnerabilities and risks. Develop and maintain system security plans, security...Full timeContract workFor contractorsWorldwide
- ...Arlington, VA 22202 Position Type: Full Time Position title: Information Security Specialist (INFOSEC) Location: Arlington, Virginia Clearance required... ...matter experts to assess information sensitivity and risk and assist in the prevention and reporting of security violations...Full timeContract workWork at office
$82 - $91 per hour
...hours Job Description: Short Description: Information Assurance and Security Specialist - Master Complete Description: Duties: •... ...in solving these problems. • Performs vulnerability/risk analyses of computer systems and applications during all...Hourly payPermanent employmentWork from homeFlexible hours$81k - $121k
Fairygodboss is seeking an experienced operational risk management professional to support IT risk oversight and... ...will have strong communication skills, detail orientation, and experience in Information Technology or Information Security. #J-18808-Ljbffr Fairygodboss$80k - $110k
Alvarez & Marsal Deutschland GmbH is seeking an experienced AI/ML Security professional in Washington, D.C. The role involves leading AI... ...include 3+ years in AI development, expertise in information security, and proficiency in tools like TensorFlow, Docker, and...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Risk Specialist. Be the first to apply!

