Information Security Risk Specialist
$62k - $141kBooz Allen Hamilton
The Opportunity:
Cyber threats evolve constantly. In this role, you'll turn complex risk into clear action by supporting Risk Management Framework (RMF) activities and driving Assessment & Authorization (A&A) packages through Authorization to Operate (ATO). You'll partner with engineering and mission teams to scope controls, assess risk, remediate gaps, and sustain continuous monitoring so systems remain secure and compliant.
Join us. The world can't wait.
You Have:
3+ years of experience within Information Security, Cyber Risk Management, or Security Compliance Functions
Experience applying NIST Risk Management Framework (RMF) across categorization, control selection or implementation, assessment, authorization, and continuous monitoring
Experience supporting Assessment & Authorization (A&A) efforts and coordinating Authority to Operate (ATO) decisions with Authorizing Officials
Experience performing security control assessments and producing artifacts such as Security Assessment Reports (SAR) and Plans of Action & Milestones (POA&Ms)
Experience developing and maintaining security documentation, including System Security Plans (SSP) and control implementation statements
Knowledge of NIST SP 80053 Rev. 5 control families and tailoring controls to impact levels
Knowledge of FISMA processes supporting RMF and authorization decisions
Ability to translate technical findings into risk statements and remediation recommendations aligned to mission and business priorities, plan and execute continuous monitoring (ConMon), track residual risk, and drive closure of POA&Ms
Public Trust
Bachelor's degree
Nice If You Have:
Experience communicating complex security concepts clearly to nontechnical stakeholders and senior leaders
Experience producing concise A&A documentation and executiveready summaries
Knowledge of structured writing and plainlanguage techniques for technical documentation
Knowledge of stakeholder analysis and change management to drive adoption of security recommendations
Ability to write crisply, edit meticulously, and proofread to ensure consistency across artifacts
Ability to facilitate working sessions, build consensus, and present recommendations confidently
Master's degree
Vetting:
Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client; Public Trust determination is required.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $62,000.00 to $141,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.Identity Statement
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Candidate AI Usage Policy
AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided .
Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.
Remote : If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
Hybrid : If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
Onsite : If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
$62k - $141k
A leading cybersecurity firm in Arlington, VA seeks an Information Security Risk Specialist. This role involves discovering and mitigating cyber risks, guiding clients in security decision-making, and leveraging your extensive cybersecurity experience. Candidates should...SuggestedRemote job$62k - $141k
...overwhelming. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is you—an information security risk specialist who will break down complex threats into manageable plans of action. Information Security...SuggestedFull timeContract workPart timeLocal areaRemote work- A leading cybersecurity firm is seeking an Information Security Risk Specialist in Washington, DC. This role involves assessing cyber risks for government clients, developing comprehensive mitigation plans, and translating security concepts for client understanding. The...SuggestedFlexible hours
- ...Overtime Exempt: No Reports To: ARMADA HQ Security Clearance Required: Top Secret ******... ...Duties & Responsibilities Security Specialist II - Risk Assessment Specialist will manage the... ..., and FCC CORs to maintain accurate information in the personnel management case...SuggestedFull timeFor contractorsLocal areaRelocation
- A security services company is hiring a Security Specialist II - Risk Assessment Specialist in Washington, DC. This full-time role requires managing the Position... ...assessments, and maintaining accurate contractor information. Applicants should have a minimum of 4 years in...SuggestedFull timeFor contractors
- A security management company based in Arlington, VA is seeking a Mid-Senior level Security Operations Physical Security Specialist. This full-time position involves conducting assessments for the... ...provided. #J-18808-Ljbffr Watermark Risk Management International, LLCFull time
- A leading security services provider is seeking a Security Specialist II in Washington, DC. The candidate will manage the FCC position database, complete risk assessments, and maintain accurate data of contractors. Responsibilities include handling sensitive documents,...Full timeFor contractors
- TLA-LLC seeks a Security Assessor to evaluate and enhance security measures across various systems. This role involves identifying vulnerabilities and ensuring compliance with industry standards such as NIST and ISO 27001. The ideal candidate will have a degree in Computer...
- Security Specialist II - Risk Assessment Specialist Type: Full Time Location: Washington, DC Overtime Exempt: No Reports To: ARMADA HQ Security... ..., contracting vendors, and FCC CORs to maintain accurate information in the personnel management case system. Assist SOC in...Full timeFor contractorsLocal areaRelocation
- ...Cyber And It Security Risk Analyst Location: Bethesda, MD Contract: 12 Months Position Summary We are seeking a Cyber and Information Security Risk Analyst to join our growing professional services team. As a Cyber and IT Security Risk Analyst, you will assist...Contract workFor contractors
$101.38k - $152.06k
...to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a Information Security Senior Specialist to join our team in Merrifield, Virginia (US-VA), United States (US). Job Summary: The Cyber Defense & Incident...Temporary workInterim roleWork at officeRemote workFlexible hours$80 - $85 per hour
...Replies within 24 hours Role : Information Assurance and Security Specialist Location : Washington DC Client : DC Government Job Description... ...solving these problems. m. Performs vulnerability/risk analyses of computer systems and applications during...Hourly payPermanent employment- ...Summary Arlo Solutions (Arlo) is an information technology consulting services company... ...Description: The Information Security Specialist III supports the National Oceanic and... ...Atmospheric Administration (NOAA) Internal Risk Management Program (IRMP), providing advanced...Contract workFor contractorsWork at office
- ...Senior Information Systems Security Specialist - Position Description Join a team that's shaping the future of Navy support. ICI Services -a 100%... ...specialist should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior...Temporary workFor contractorsImmediate startFlexible hours
$80k - $120k
...Overview VTG is seeking a Information System Security Specialist to support the Navy located at the Washington Navy Yard . Position is 100% onsite... ...should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior...Contract workWork experience placement$55 - $60 per hour
...Replies within 24 hours Job Description: Short Description: Information Assurance and Security Specialist for ITAM team Complete Description: Duties and Responsibilities: • Provide support of incoming requests via telephone, web portal, email...Hourly payPermanent employmentWork experience placementWork at officeRemote workWork from homeFlexible hours- ...safeguarding classified and sensitive information from foreign and domestic... ...to contribute to national security through cutting-edge... ...The Junior Technical Security Specialist (JTSS) provides technical expertise... ...to operate in high-risk, confined, or adverse environments...Contract workTraineeship
$84 - $93 per hour
...hours Job Description: Short Description: Information Assurance and Security Specialist - Master Hybrid position - will require on-site... ...in solving these problems. • Performs vulnerability/risk analyses of computer systems and applications during all...Hourly payPermanent employmentWork at officeWork from homeFlexible hours- ...safeguarding classified and sensitive information from foreign and domestic threats. This... ...opportunity to contribute to national security through cutting-edge technical and security... .... The Senior Technical Security Specialist (STSS) will provide technical expertise...Contract work
- ...Systems Plus today. Position Details Position Title Information Assurance/Security Specialist - Level II-Charleston Position Type Full Time, Onsite... ...and system administrators to address vulnerabilities and risks. Develop and maintain system security plans, security...Full timeContract workFor contractorsWorldwide
$80k - $130k
Vosper Thornycroft Group is seeking a Sr. Information System Security Specialist to support the Navy at the Washington Navy Yard. This onsite role involves responsibilities in managing IT security programs, evaluating solutions for compliance, and ensuring operational...$80k - $120k
Vosper Thornycroft Group is looking for an Information System Security Specialist to work at the Washington Navy Yard. The role focuses on supporting all aspects of Program Information Assurance processes, including evaluating security solutions and ensuring compliance...- Position Title: Mid-Level International Security Specialist Location: Arlington, VA (Crystal City) Category: Funded Schedule (FT/PT): FT... ...(SAPF) Security Operations; Personnel Security (PERSEC), Information Security (INFOSEC), Communication Security (COMSEC), Physical...Temporary workWork experience placementLocal areaRemote workFlexible hoursShift work
- ...and Type: Regular, Full Time Required Security Clearance (Minimum for hire): TS/SCI Required... ...Job Description: The Security Specialist (Physical/Personnel) will support USMC... ...general knowledge of Sensitive Compartmented Information Facility construction and accreditation...Full timeWorldwide
$80k - $110k
Alvarez & Marsal Deutschland GmbH is seeking an experienced AI/ML Security professional in Washington, D.C. The role involves leading AI... ...include 3+ years in AI development, expertise in information security, and proficiency in tools like TensorFlow, Docker, and...- ...Technical Risk Analyst Location: Open to hybrid in Vienna, VA, Wichester, VA, Pensacola, FL, or remote. Basic Purpose: This... ...and encourage the need for submitting issues impacting information security. Aid in the development of action plans and ensure those plans...For contractorsRemote work
$62k - $141k
...In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is you. We need your knowledge as an information security risk specialist to help break down complex threats into manageable plans of action. As an information...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Job Title Responsibilities Support annual information security program risk assessments. Facilitate/Support interviews and evidence gathering. Coordinate risk assessment activities with service provider. Coordinate and prepare documentation, internal...Local areaRemote work
$87.8k - $160.9k
...build a better working world. Digital Risk - Senior Consultant - Power & Utilities... ...leader to assist clients in employing proper information systems, resources, and controls to... ...performing information technology control and security engagements. Skills and attributes for...Contract workSummer holidayFlexible hours- Dexian DISYS is seeking a Central Monitor (Risk Based Quality Monitoring Specialist) in Bethesda, MD. This position offers remote work and requires a thorough knowledge of ICH GCP, with a focus on Risk Based Quality Management and Central Monitoring. The role involves...Remote job
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Risk Specialist. Be the first to apply!
- it risk analyst Bethesda, MD
- risk analyst Bethesda, MD
- risk officer Bethesda, MD
- risk consultant Bethesda, MD
- technology risk Bethesda, MD
- risk assurance Bethesda, MD
- sr information security engineer Bethesda, MD
- information security lead Bethesda, MD
- data center security officer Bethesda, MD
- director information security Bethesda, MD

