Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Risk Specialist

$62k - $141k

Booz Allen Hamilton

Job Number: R0240993

Information Security Risk Specialist

The Opportunity:

Cyber threats evolve constantly. In this role, you'll turn complex risk into clear action by supporting Risk Management Framework (RMF) activities and driving Assessment & Authorization (A&A) packages through Authorization to Operate (ATO). You'll partner with engineering and mission teams to scope controls, assess risk, remediate gaps, and sustain continuous monitoring so systems remain secure and compliant.

Join us. The world can't wait.

You Have:

  • 3+ years of experience within Information Security, Cyber Risk Management, or Security Compliance Functions

  • Experience applying NIST Risk Management Framework (RMF) across categorization, control selection or implementation, assessment, authorization, and continuous monitoring

  • Experience supporting Assessment & Authorization (A&A) efforts and coordinating Authority to Operate (ATO) decisions with Authorizing Officials

  • Experience performing security control assessments and producing artifacts such as Security Assessment Reports (SAR) and Plans of Action & Milestones (POA&Ms)

  • Experience developing and maintaining security documentation, including System Security Plans (SSP) and control implementation statements

  • Knowledge of NIST SP 80053 Rev. 5 control families and tailoring controls to impact levels

  • Knowledge of FISMA processes supporting RMF and authorization decisions

  • Ability to translate technical findings into risk statements and remediation recommendations aligned to mission and business priorities, plan and execute continuous monitoring (ConMon), track residual risk, and drive closure of POA&Ms

  • Public Trust

  • Bachelor's degree

Nice If You Have:

  • Experience communicating complex security concepts clearly to nontechnical stakeholders and senior leaders

  • Experience producing concise A&A documentation and executiveready summaries

  • Knowledge of structured writing and plainlanguage techniques for technical documentation

  • Knowledge of stakeholder analysis and change management to drive adoption of security recommendations

  • Ability to write crisply, edit meticulously, and proofread to ensure consistency across artifacts

  • Ability to facilitate working sessions, build consensus, and present recommendations confidently

  • Master's degree

Vetting:

Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client; Public Trust determination is required.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $62,000.00 to $141,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.

Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided .

Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.

  • Remote : If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.

  • Hybrid : If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.

  • Onsite : If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Information Security Risk Specialist in Bethesda, MD vacancy
  • $62k - $141k

    A leading cybersecurity firm in Arlington, VA seeks an Information Security Risk Specialist. This role involves discovering and mitigating cyber risks, guiding clients in security decision-making, and leveraging your extensive cybersecurity experience. Candidates should... 
    Suggested
    Remote job

    Booz Allen Hamilton

    Arlington, VA
    4 days ago
  • $62k - $141k

     ...overwhelming. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is you—an information security risk specialist who will break down complex threats into manageable plans of action. Information Security... 
    Suggested
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    4 days ago
  • A leading cybersecurity firm is seeking an Information Security Risk Specialist in Washington, DC. This role involves assessing cyber risks for government clients, developing comprehensive mitigation plans, and translating security concepts for client understanding. The... 
    Suggested
    Flexible hours

    Phase2 Technology

    Washington DC
    3 days ago
  •  ...Overtime Exempt: No Reports To: ARMADA HQ Security Clearance Required: Top Secret ******...  ...Duties & Responsibilities Security Specialist II - Risk Assessment Specialist will manage the...  ..., and FCC CORs to maintain accurate information in the personnel management case... 
    Suggested
    Full time
    For contractors
    Local area
    Relocation

    Armada LTD

    Washington DC
    22 hours ago
  • A security services company is hiring a Security Specialist II - Risk Assessment Specialist in Washington, DC. This full-time role requires managing the Position...  ...assessments, and maintaining accurate contractor information. Applicants should have a minimum of 4 years in... 
    Suggested
    Full time
    For contractors

    ARMADA, Ltd.

    Washington DC
    4 days ago
  • A security management company based in Arlington, VA is seeking a Mid-Senior level Security Operations Physical Security Specialist. This full-time position involves conducting assessments for the...  ...provided. #J-18808-Ljbffr Watermark Risk Management International, LLC
    Full time

    Watermark Risk Management International, LLC

    Arlington, VA
    1 day ago
  • A leading security services provider is seeking a Security Specialist II in Washington, DC. The candidate will manage the FCC position database, complete risk assessments, and maintain accurate data of contractors. Responsibilities include handling sensitive documents,... 
    Full time
    For contractors

    Armada LTD

    Washington DC
    2 days ago
  • TLA-LLC seeks a Security Assessor to evaluate and enhance security measures across various systems. This role involves identifying vulnerabilities and ensuring compliance with industry standards such as NIST and ISO 27001. The ideal candidate will have a degree in Computer... 

    TLA-LLC

    Mc Lean, VA
    1 day ago
  • Security Specialist II - Risk Assessment Specialist Type: Full Time Location: Washington, DC Overtime Exempt: No Reports To: ARMADA HQ Security...  ..., contracting vendors, and FCC CORs to maintain accurate information in the personnel management case system. Assist SOC in... 
    Full time
    For contractors
    Local area
    Relocation

    ARMADA, Ltd.

    Washington DC
    4 days ago
  •  ...Cyber And It Security Risk Analyst Location: Bethesda, MD Contract: 12 Months Position Summary We are seeking a Cyber and Information Security Risk Analyst to join our growing professional services team. As a Cyber and IT Security Risk Analyst, you will assist... 
    Contract work
    For contractors

    InteliX Systems

    Bethesda, MD
    4 days ago
  • $101.38k - $152.06k

     ...to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a Information Security Senior Specialist to join our team in Merrifield, Virginia (US-VA), United States (US). Job Summary: The Cyber Defense & Incident... 
    Temporary work
    Interim role
    Work at office
    Remote work
    Flexible hours

    NTT Data Americas, Inc.

    Vienna, VA
    22 hours ago
  • $80 - $85 per hour

     ...Replies within 24 hours Role : Information Assurance and Security Specialist Location : Washington DC Client : DC Government Job Description...  ...solving these problems. m. Performs vulnerability/risk analyses of computer systems and applications during... 
    Hourly pay
    Permanent employment

    AHU Technologies, Inc.

    Washington DC
    3 days ago
  •  ...Summary Arlo Solutions (Arlo) is an information technology consulting services company...  ...Description: The Information Security Specialist III supports the National Oceanic and...  ...Atmospheric Administration (NOAA) Internal Risk Management Program (IRMP), providing advanced... 
    Contract work
    For contractors
    Work at office

    Arlo Solutions

    Silver Spring, MD
    1 day ago
  •  ...Senior Information Systems Security Specialist - Position Description Join a team that's shaping the future of Navy support. ICI Services -a 100%...  ...specialist should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    ICI Services

    Washington DC
    3 days ago
  • $80k - $120k

     ...Overview VTG is seeking a Information System Security Specialist to support the Navy located at the Washington Navy Yard . Position is 100% onsite...  ...should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior... 
    Contract work
    Work experience placement

    VTG

    Washington DC
    4 days ago
  • $55 - $60 per hour

     ...Replies within 24 hours Job Description: Short Description: Information Assurance and Security Specialist for ITAM team Complete Description: Duties and Responsibilities: • Provide support of incoming requests via telephone, web portal, email... 
    Hourly pay
    Permanent employment
    Work experience placement
    Work at office
    Remote work
    Work from home
    Flexible hours

    AHU Technologies, Inc.

    Washington DC
    2 days ago
  •  ...safeguarding classified and sensitive information from foreign and domestic...  ...to contribute to national security through cutting-edge...  ...The Junior Technical Security Specialist (JTSS) provides technical expertise...  ...to operate in high-risk, confined, or adverse environments... 
    Contract work
    Traineeship

    Mayvin®

    Alexandria, VA
    2 days ago
  • $84 - $93 per hour

     ...hours Job Description: Short Description: Information Assurance and Security Specialist - Master Hybrid position - will require on-site...  ...in solving these problems. • Performs vulnerability/risk analyses of computer systems and applications during all... 
    Hourly pay
    Permanent employment
    Work at office
    Work from home
    Flexible hours

    AHU Technologies, Inc.

    Washington DC
    4 days ago
  •  ...safeguarding classified and sensitive information from foreign and domestic threats. This...  ...opportunity to contribute to national security through cutting-edge technical and security...  .... The Senior Technical Security Specialist (STSS) will provide technical expertise... 
    Contract work

    Mayvin®

    Alexandria, VA
    1 day ago
  •  ...Systems Plus today. Position Details Position Title Information Assurance/Security Specialist - Level II-Charleston Position Type Full Time, Onsite...  ...and system administrators to address vulnerabilities and risks. Develop and maintain system security plans, security... 
    Full time
    Contract work
    For contractors
    Worldwide

    Systems Plus, Inc.

    Rockville, MD
    2 days ago
  • $80k - $130k

    Vosper Thornycroft Group is seeking a Sr. Information System Security Specialist to support the Navy at the Washington Navy Yard. This onsite role involves responsibilities in managing IT security programs, evaluating solutions for compliance, and ensuring operational... 

    Vosper Thornycroft Group

    Washington DC
    4 days ago
  • $80k - $120k

    Vosper Thornycroft Group is looking for an Information System Security Specialist to work at the Washington Navy Yard. The role focuses on supporting all aspects of Program Information Assurance processes, including evaluating security solutions and ensuring compliance... 

    Vosper Thornycroft Group

    Washington DC
    22 hours ago
  • Position Title: Mid-Level International Security Specialist Location: Arlington, VA (Crystal City) Category: Funded Schedule (FT/PT): FT...  ...(SAPF) Security Operations; Personnel Security (PERSEC), Information Security (INFOSEC), Communication Security (COMSEC), Physical... 
    Temporary work
    Work experience placement
    Local area
    Remote work
    Flexible hours
    Shift work

    ACT1 Federal LLC.

    Arlington, VA
    1 day ago
  •  ...and Type: Regular, Full Time Required Security Clearance (Minimum for hire): TS/SCI Required...  ...Job Description: The Security Specialist (Physical/Personnel) will support USMC...  ...general knowledge of Sensitive Compartmented Information Facility construction and accreditation... 
    Full time
    Worldwide

    FGS, LLC

    Arlington, VA
    4 days ago
  • $80k - $110k

    Alvarez & Marsal Deutschland GmbH is seeking an experienced AI/ML Security professional in Washington, D.C. The role involves leading AI...  ...include 3+ years in AI development, expertise in information security, and proficiency in tools like TensorFlow, Docker, and... 

    Alvarez & Marsal Deutschland GmbH

    Washington DC
    2 days ago
  •  ...Technical Risk Analyst Location: Open to hybrid in Vienna, VA, Wichester, VA, Pensacola, FL, or remote. Basic Purpose: This...  ...and encourage the need for submitting issues impacting information security. Aid in the development of action plans and ensure those plans... 
    For contractors
    Remote work

    TechWish

    Vienna, VA
    2 days ago
  • $62k - $141k

     ...In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is you. We need your knowledge as an information security risk specialist to help break down complex threats into manageable plans of action. As an information... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Alexandria, VA
    2 days ago
  •  ...Job Title Responsibilities Support annual information security program risk assessments. Facilitate/Support interviews and evidence gathering. Coordinate risk assessment activities with service provider. Coordinate and prepare documentation, internal... 
    Local area
    Remote work

    C.C. Pace Systems

    Washington DC
    22 hours ago
  • $87.8k - $160.9k

     ...build a better working world. Digital Risk - Senior Consultant - Power & Utilities...  ...leader to assist clients in employing proper information systems, resources, and controls to...  ...performing information technology control and security engagements. Skills and attributes for... 
    Contract work
    Summer holiday
    Flexible hours

    Ernst & Young Oman

    Mc Lean, VA
    1 day ago
  • Dexian DISYS is seeking a Central Monitor (Risk Based Quality Monitoring Specialist) in Bethesda, MD. This position offers remote work and requires a thorough knowledge of ICH GCP, with a focus on Risk Based Quality Management and Central Monitoring. The role involves... 
    Remote job

    Dexian DISYS

    Bethesda, MD
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Risk Specialist. Be the first to apply!