Information Security Risk Specialist
$99k - $225kBOOZ, ALLEN & HAMILTON, INC.
Information Security Risk Specialist
The Opportunity:
As an information security risk specialist on our team, you'll assist military leaders with discovering their cyber risks, understanding applicable policies, and developing a mitigation plan. You'll gather technical and personnel details from subject matter experts to help with the assessment of the entire threat landscape. You'll learn how to guide your client through a plan of action with presentations, white papers, and milestones, and help to translate security concepts so they can make the best decisions to secure their critical systems. This is your opportunity to build experience in a strategic information security role while developing skills in cybersecurity. Work with us as we protect our nation's cyber infrastructure. Join us. The world can't wait. You Have:
- 7+ years of experience leading and executing Navy Risk Management Framework (RMF), including full lifecycle implementation across all RMF steps, application of Navy SOPs and cybersecurity directives, and ownership of Plans of Action and Milestones (POA&Ms)
- Experience with eMASS and ACAS, including analysis and prioritization of scan results, development and maintenance of hardware and software inventories, and vulnerability management using SCAP, VRAM and HBSS
- Experience reviewing, interpreting, and enforcing Security Technical Implementation Guides (STIGs) using STIG Viewer, and a strong understanding of Ports, Protocols, and Services Management (PPSM)
- Experience developing and supporting Security Assessment Plans (SAPs) and Security Assessment Reports (SARs) in alignment with Navy RMF requirements
- Ability to operate in a structured and compliance-driven environment while executing established cybersecurity processes with minimal supervision
- Secret clearance
- Bachelor's degree
- Current DoD 8140, 752- Cyber Policy and Strategy Planner, Advance, Certification
- Top Secret clearance
- Master's degree
Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.
- Remote : If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
- Hybrid : If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
- Onsite : If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Information Security Risk Specialist in Maryland vacancy
$99k - $225k
Information Security Risk Specialist page is loaded## Information Security Risk Specialistlocations: St Inigoes, MDtime type: Full timeposted on: Posted Todaytime left to apply: End Date: July 8, 2026 (30+ days left to apply)job requisition id: R0237489Information Security...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- ...Information Systems Security Specialist (contingent 034) Job Category: Operations Requisition Number: INFOR001845 Posted: March 31, 2026 Full-... ...work. Execute and monitor the Enterprise Protection Risk Management Program Recommend modification(s) to existing...SuggestedFull timeWork experience placementWork at officeLocal area
- ...Senior Information System Security Specialist TriTech Enterprise Systems (TriTech) is seeking a Senior Information System Security Specialist to support... ...testing reports, including executive summaries, risk ratings, proof-of-concept evidence, and actionable remediation...SuggestedContract workFlexible hours
- ...Summary Arlo Solutions (Arlo) is an information technology consulting services company... ...Description: The Information Security Specialist III supports the National Oceanic and... ...Atmospheric Administration (NOAA) Internal Risk Management Program (IRMP), providing advanced...SuggestedContract workFor contractorsWork at office
- ...Information System Security Specialist - Level II ACI is a professional services provider of engineering and technical services to the United States... ...work. Execute and monitor the Enterprise Protection Risk Management Program Participate in the Garrison level...SuggestedContract workWork experience placementWork at officeLocal area
- Job Description Responsible for providing security and risk analysis of engineering solutions, to include technical solution development,... ...assists in the identification and implementation of appropriate information security functionality. Interfaces with IT and non-IT...Remote work
$91k - $125k
...Information Security, Risk, and Compliance Consultant California, US residents click here. The job details are as follows: We are the first publicly-traded biotech or pharmaceutical company to take the form of a public benefit corporation. Our public benefit purpose...Temporary workWork experience placement2 days per week- Inside Higher Ed is seeking an Information Assurance (IA) Security Specialist for Bowie State University. The role involves performing security assessments, implementing policies, and coordinating with data stewards. Candidates should have at least two years of experience...Remote job
- A leading cyber technology firm is seeking an Information Security Risk Specialist in Maryland. The ideal candidate will possess at least 7 years of experience in executing Navy Risk Management Framework (RMF). You will assist military leaders in assessing cyber risks,...
- A university in Maryland seeks a Security Analyst to provide security and risk analysis of engineering solutions. Responsibilities include conducting security... ...requires a minimum of two years of experience in information security and is open to candidates with a Bachelor’s...Remote job
- ...Systems Plus today. Position Details Position Title Information Assurance/Security Specialist - Level II-Charleston Position Type Full Time, Onsite... ...and system administrators to address vulnerabilities and risks. Develop and maintain system security plans, security...Full timeContract workFor contractorsWorldwide
- ...Lead Information Assurance (IA)/ Security Specialist Full Time Ft. Meade, MD Secret clearance **This position is contingent upon contract award**... ...and organizational security requirements, and guiding risk management activities across IT programs. Key Responsibilities...Full timeContract work
- Tactibit Technologies provides innovative information technology, cybersecurity, and cloud... ...we do. About the Information Security Compliance Specialist position We are looking for a talented... ...and maintain effective security and risk management programs on complex government...Flexible hours
- ...Cyber And It Security Risk Analyst Location: Bethesda, MD Contract: 12 Months Position Summary We are seeking a Cyber and Information Security Risk Analyst to join our growing professional services team. As a Cyber and IT Security Risk Analyst, you will assist...Contract workFor contractors
- ...Information Systems Security Expert (ISSE) (Mid to Senior Level) Location: Suitland, Maryland Clearance: TS/SCI Salary: Highly Competitive... .... Assesses and mitigates system security threats/risks throughout the program life cycle. Contributes to the security...
- Peraton, located in Maryland, is seeking an Information Systems Security Officer (ISSO) to join our cybersecurity team. The ISSO will oversee operational... ...security measures, manage security compliance, and perform risk assessments. Candidates must possess a Bachelor’s degree...
$110k - $125k
...live, learn, and work. CampusGuard, a Nelnet company, provides information security and privacy consulting and compliance services primarily for... ...scope verification, and incident response. Understanding of risk assessments and targeted risk analyses. Technical...Temporary workFixed term contractLocal areaRemote workWork from homeHome office- The Maryland Department of Information Technology is seeking an analyst for its Third-Party Risk Management program. This role involves developing vendor assessments and ensuring compliance with state security standards. Qualified candidates will have four years of experience...
- ...DatamanUSA is looking for a Cyber Risk & Compliance Analyst for our direct client... ...Abilities: *) Hands-on experience of cyber security and privacy industry, including the... ...integrity and availability of sensitive information. *) Hands-on experience working knowledge...Work experience placement
- ...new ways to apply the latest technologies securely and expertly. By owning your opportunity... ...may include: Acting as an appointed Information System Security Officer (ISSO) for IC cyber... ...timely progression through the clients’ Risk Management Framework (RMF) to the...
- As the state’s IT leader, DoIT manages information technology and telecommunications services... ..., ensuring the State of Maryland is more secure, productive, and accessible. Main Purpose... ...Information Technology’s (DoIT) Third-Party Risk Management (TPRM) program while providing...Contract workFor contractorsWork experience placementWork at officeLocal area
- GAMA-1 is seeking a remote Cloud Security Specialist IV focused on AWS security operations, IAM,... ...Provide subject matter expertise on information security architecture and systems engineering... ...effective access governance Assess risks and vulnerabilities and implement...Local areaRemote work
$70k - $125k
...The cornerstone of Morgan Stanley's risk management philosophy is the execution of risk-adjusted returns through prudent risk-... ...Function and Legal Entity. The NFR Cyber, Technology and Information Security (CTIS) Department is focused specifically on managing cyber,...Temporary workLocal area- Sr IT Security/Vulnerability Management Specialist AAC is seeking Senior Security Analyst focusing on Vulnerability... ..., you will work closely with the Information Systems Security Officer (ISSO)... ...agency infrastructure and communicate risk posture and remediation progress...Work experience placement3 days per week
- ...Subject Matter Expert (SME) – Cybersecurity & Risk Assessment The Subject Matter Expert... ..., integrity, and effectiveness of security-related initiatives. The SME works cross... ...Support the development and implementation of information security policies, standards, and...
- Overview As the state’s IT leader, DoIT manages information technology and telecommunications... ..., ensuring the State of Maryland is more secure, productive, and accessible. Position Main... ...Information Technology’s (DoIT) Third-Party Risk Management (TPRM) program while providing...Contract workFor contractorsWork experience placementWork at officeLocal area
$90k - $110k
...Management, Acquisition/Procurement, and Information Technology. OCT currently has an opening for a Cloud Security & Compliance Specialist to support a federal client. The... ...management. Experience with Governance, Risk, and Compliance (GRC) platforms such as Archer...Contract workTemporary workFor contractorsWork experience placementRemote work$30 per hour
...professional development in fields such as information technology, technical/systems consulting... ...Federal Sales Teams. The Information Security Compliance Analyst is expected to work with... ...Knowledge and expertise in projects of risk, information security and environment...Hourly payTemporary workInternshipFlexible hours- ...commercial markets. Summary DataPath, Inc. is seeking an Information Security Analyst that will Plan, implement, upgrade, or monitor... ...and information. Assess system vulnerabilities for security risks and propose and implement risk mitigation strategies. May ensure...Remote work
- ...Information Security Analyst - SME Zantech is looking for a talented Information Security Analyst - SME to provide specialized cybersecurity expertise supporting risk management operations, conduct security assessments, implement continuous monitoring solutions, and...Contract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Risk Specialist. Be the first to apply!
Related searches
- security advisor Maryland
- network security consultant Maryland
- security analyst remote Maryland
- security coordinator Maryland
- security clearance specialist Maryland
- physical security consultant Maryland
- senior information security analyst Maryland
- physical security specialist Maryland
- security systems specialist Maryland
- security specialist Maryland


