Jobs and Careers
BO

Cybersecurity Risk Analyst

Booz Allen Hamilton
San Diego, United Statesfull_timeVerifiedPosted 1 Oct 2025
💰 $176,000/yr($77,600/yr$176,000/yr)

About the role

Cybersecurity Risk Analyst

The Opportunity:

Are you looking for an opportunity to share your experience in cybersecurity and security engineering to safeguard our nation? As a systems security and network security engineer, you can identify the tools, applications, and systems needed to assess vulnerabilities and recommend the best solution and security strategy. We need your experience to lead the development and implementation of security solutions that will protect our military.

On our team, you’ll troubleshoot and analyze complex challenges for customers using your knowledge of cybersecurity policy and risk management. You’ll use your curiosity for technology and market trends to further research and develop security solutions. Using your knowledge and experience in ACAS, STIGging, and scanning, you’ll assess security threats and implement infrastructure controls.

In this role, you’ll closely impact Navy missions by championing cybersecurity, discovering cyber risks, and providing hands-on support to critical mission areas. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers.  

Work with us as we secure and protect our military’s cybersecurity posture for the better. 

What You’ll Work On: 

  • Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. 
  • Implement infrastructure and cyber security controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises.  
  • Perform risk and vulnerability assessments in network, system, and application areas; leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. 

Join us. The world can’t wait.

You Have:

  • 5+ years of experience supporting the Information Technology (IT) systems for a DoD or government agency
  • 5+ years of experience supporting Navy Risk Management Framework (RMF), including Assessment and Authorization (A&A) activities, direct development of RMF artifacts, and deliverables across all steps
  • 5+ years of experience performing cybersecurity compliance testing using industry standard tools, including Assured Compliance Assessment Solution (ACAS), DoD Security Technical Implementation Guides (STIG), SCAP, and eMASS, and performing vulnerability analysis of networks, systems, and communications protocols
  • Experience with eMASS including Security Plan development and hands-on processing of packages through workflows, supporting the generation and maintenance of security policies, evaluating assessment documentation, and developing written security risks, mitigations, and recommendations
  • Experience with operating systems, platforms, and technologies, including Windows, Linux, cloud, or virtualization
  • Ability to devise and execute client deliverables, work independently, identify problems and devise analysis and solutions, communicate results, and lead the accomplishments of client tasks from inception to completion 
  • Secret clearance
  • HS diploma or GED
  • DoD 8140 Certification

Nice If You Have:

  • Experience with technologies supporting cyber activities, including Xacta, Evaluate-STIG, eMASSter, scripting, or Ansible
  • Experience with cloud-based software technologies, virtualization, and containerization, and in programming languages, including C++, Python, and Java
  • Experience with cyber hardening, vulnerability management, scanning, assessment, and associated tools
  • Experience with network engineering functions, including Windows, Linux, and virtual operating systems, security tools, platforms, and technologies, including network and web application firewalls, web proxy, intrusion prevention systems, vulnerability scanners, and penetration tools
  • Experience as a Navy Qualified Validator
  • Knowledge of ship-to-shore communication architectures
  • Ability to integrate and build risk assessment tools and threat mapping tools, including ESS and SIEM tools
  • Top Secret clearance

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Booz Allen Hamilton

View company profile →