Cybersecurity Risk Specialist, Mid
Booz Allen HamiltonAbout the role
The Opportunity:
Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to government agencies. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is you. We need your knowledge as an information security risk specialist to help break down complex threats into manageable plans of action.
As an information security risk specialist on our team, you’ll work with Navy programs to discover their cyber risks, understand applicable policies, and develop a mitigation plan. You’ll get technical, environmental, and personnel details from engineers and subject matter experts to assess the entire threat landscape. Then, you’ll help your team guide your client through a plan of action with presentations, whitepapers, and milestones.
You’ll work on translating security concepts for your client so they can make the best decisions to secure their mission-critical networks and systems. This is your opportunity to take an active role in information security while growing your skills in cybersecurity, security and network tools, systems engineering, and data science.
Work with us as we protect our military's cybersecurity posture.
Join us. The world can’t wait.
You Have:
2+ years of experience with supporting Navy Risk Management Framework (RMF) execution, including the Navy RMF Process Guide (RPG), RMF Steps Standard Operation Procedures (SOP), eMASS Security Plan and artifact generation, eMASS workflows, National Institute of Standards and Technology (NIST) 800-53 security controls, cybersecurity risk assessment, and Plan of Actions and Milestones (POA&M) development actions
2+ years of experience with performing cybersecurity compliance testing using standard tools, including Assured Compliance Assessment Solution (ACAS) and DoD Security Technical Implementation Guides (STIG)
Experience with IT technologies and security, including networking and Linux
Ability to devise and execute a Security Assessment Plan (SAP) in accordance with Navy Security Control Assessor (SCA) risk assessment guidance
Ability to work independently and lead the accomplishments of client tasks from inception to completion
Ability to work onsite for 90% of the time
Secret clearance
Bachelor's degree
DoD 8140 Certification, including CompTIA Security+
Ability to obtain Navy Qualified Validator (NQV) Certification
Nice If You Have:
Experience as a validator or tester
Experience with DoD or Navy acquisition processes
Ability to travel up to 10% of the time
Ability to brief senior leadership on complex cybersecurity issues
Top Secret clearance
Master’s degree
Navy Qualified Validator (NQV) Certification
CISSP Certification
Vendor Technology Certification, including CCNA or Linux+
Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Secret clearance is required.
Create Your Career:
Grow With Us
Your growth matters to us—that’s why we offer a variety of ways for you to develop your career. With professional and leadership development opportunities like upskilling programs, tuition reimbursement, mentoring, and firm-sponsored networking, you can chart a unique and fulfilling career path on your own terms.
A Place Where You Belong
Diverse perspectives cultivate collective ingenuity. Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds. Free account required — sign up in 30sApply for this role