Information Security Risk Specialist

Booz Allen Hamilton

Actively hiring
Locations Fort Belvoir, Virginia, US Posted 49 days ago $99,000$225,000 / year

At a glance

AI generated

TL;DR

As an Information Security Risk Specialist at our organization, you will join a dedicated team focused on enhancing cybersecurity for DoD systems. Your primary responsibilities include collaborating with system owners and administrators to identify cyber risks, analyze policies, and develop mitigation strategies. You will leverage your expertise in DevSecOps and cloud security to evaluate technical infrastructure and personnel dynamics, providing actionable remediation plans through presentations and detailed documentation. Key technologies and tools you’ll work with include ACAS, SCAP, STIGs, eMASS, Xacta, and NIST SP 800-53, ensuring compliance in AWS, Azure, or hybrid cloud environments. This role requires a TS/SCI clearance and extensive experience in cybersecurity and A&A for DoD systems.

Skills

AWS Azure RMF ACAS SCAP STIGs SRGs eMASS Xacta NIST SP 800-53 CNSSI 1253 DevSecOps CI/CD Kubernetes Rancher Red Hat Enterprise Linux 8 Windows Server 2012

What you'll do

  • Identify and analyze cyber risks for DoD systems in various cloud environments.
  • Develop comprehensive mitigation strategies based on risk assessments and policy analysis.
  • Guide clients through remediation plans using presentations, white papers, and milestones.
  • Lead DoD ATO packages and perform Assessment and Authorization (A&A) tasks.
  • Interface with engineering teams to align DevSecOps pipelines with cybersecurity policies.

What we're looking for

  • 5+ years of professional IT experience with a focus on cybersecurity.
  • 3+ years of DoD A&A and RMF experience, leading ATO packages for cloud systems.
  • Expertise in technical evaluations, security control assessments, and compliance testing tools.
  • Experience interfacing engineering teams to align DevSecOps pipelines with cybersecurity policies.
  • TS/SCI clearance and DoD 8570 Level II Security+ Certification required.

Market check

Salary context

This $99,000–$225,000 range sits above 57% of similar postings on FindRole.

Peer median band

$113,400$198,000

Median floor and ceiling across peers.

Typical midpoint (25–75%)

$137,700$184,900

Middle half of comparable postings.

Based on 239 comparable postings.

* 240 is the maximum number of comparable postings sampled.

Employer

About Booz Allen Hamilton

Booz Allen Hamilton is a management and technology consulting firm that provides analytics, digital, engineering, and cybersecurity solutions primarily to U.S. government agencies and commercial clients. Industry: Management & Technology Consulting

Booz Allen Hamilton currently has 629 open roles on FindRole.

Listed pay typically runs $86,800–$198,000 across 616 roles with salary data.

Most-posted roles

View all roles at Booz Allen Hamilton

More like this

Similar roles

Information Systems Security Officer

Booz Allen Hamilton

Locations San Diego, California, US 17 days ago $99,000$225,000
NIST 800-53 RMF Risk Management Framework eMASS XACTA ACAS STIGs SCAP SAPF SCIF cloud architecture virtualization computer networking DoD STIGs configuration management CI/CD

Cybersecurity Engineer and Risk Analyst

Booz Allen Hamilton

Locations San Diego, California, US 21 days ago $69,300$158,000
ACAS STIG eMASS DevSecOps CI/CD Automation Network Engineering Windows Linux Vulnerability Scanners Intrusion Prevention Systems Web Application Firewalls Penetration Testing RMF A&A Security Assessment Plans Boundary Diagrams Data Flow Diagrams

Cybersecurity Engineer and Risk Analyst

Booz Allen Hamilton

Locations San Diego, California, US 41 days ago $69,300$158,000
ACAS STIG eMASS DevSecOps CI/CD Automation Network Engineering Windows Linux Vulnerability Scanners Intrusion Prevention Systems Web Application Firewalls Penetration Testing RMF A&A Security Assessment Plans Boundary Diagrams Data Flow Diagrams

Information Systems Security Engineer

Booz Allen Hamilton

Locations Warner Robins, Georgia, US 9 days ago $99,000$225,000
RMF ATO ACAS STIGs Firewalls IDS/IPS SIEM DoD directives DevSecOps AWS Agile Linux UNIX Ubuntu Red Hat CI/CD

Information Security Specialist

The Federal Reserve

Kansas City, Mo, US 56 days ago $79,100$111,500
AWS Azure DevSecOps Git Terraform Ansible CloudFormation AWS Config AWS Inspector Guard Duty Python JSON YAML Java CI/CD Prometheus Grafana Kubernetes Docker AI

Sr. Info Security Specialist

Cboe Global Markets

Locations Chicago, Illinois, US 10 days ago $121,550$157,300
Python PowerShell Bash MITRE ATT&CK EDR SIEM Cloud Security Controls TTPs Endpoint Detection Identity Protection Network Security Application Security Threat Intelligence CI/CD