Information Systems Security Officer

Booz Allen Hamilton

Quick summary

Work type
On-site
Location
Chantilly, VA · Arlington, VA
Salary
$77,600–$176,000 / yr
Posted
11 days ago
Closes
Jun 30, 2026

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $166k
This role $127k
$63k most similar roles pay here $212k

This role pays less than 87% of similar roles. Most pay $140,000–$192,762 — the shaded band above. At the midpoint, this role pays about $127k versus about $166k for comparable roles.

Based on 238 similar postings.

Employer

About Booz Allen Hamilton

Booz Allen Hamilton is a management and technology consulting firm that provides analytics, digital, engineering, and cybersecurity solutions primarily to U.S. government agencies and commercial clients. Industry: Management & Technology Consulting

Booz Allen Hamilton currently has 375 open roles on FindRole.

Listed pay typically runs $86,800–$198,000 across 368 roles with salary data.

Most-posted roles

View all roles at Booz Allen Hamilton

At a glance

TL;DR · Information Systems Security Officer

As the lead Information Systems Security Officer (ISSO) for mission-critical national security programs, you will oversee the full lifecycle of Risk Management Framework (RMF) authorization activities, ensuring compliance with cybersecurity and Information Assurance policies. Your daily tasks include leading RMF processes such as system categorization, control selection, and vulnerability management cycles using ACAS reviews and CVE analysis. You will develop and maintain A&A artifacts like SSPs and POA&Ms, manage audit log collection through SPLUNK, and ensure incident response adherence to approved procedures. This role requires 5+ years of experience with NIST 800-53, ICD 503, RMF, and secure system operations, along with expertise in STIGs, Tenable scanning, and vulnerability remediation coordination. You will work within the Intelligence Community, protecting systems critical to national security while driving RMF excellence and mentoring technical teams.

What you'll do

  • Lead RMF authorization activities including system categorization and control selection.
  • Oversee vulnerability management cycles involving ACAS reviews and CVE analysis.
  • Direct the development and maintenance of A&A artifacts such as SSP and POA&M.
  • Manage audit log collection, review, and reporting through SPLUNK and other tools.
  • Ensure compliance with security policies and directives for classified information systems.
  • Serve as central point of contact for security posture, policy interpretation, and guidance.

What we're looking for

  • 5+ years of experience with NIST 800-53, ICD 503, RMF, and secure system operations.
  • Experience developing and maintaining A&A artifacts such as SSP, POA&M, CONOPS, and monitoring plans.
  • Expertise in vulnerability management including ACAS reviews, CVE analysis, and mitigation coordination.
  • Knowledge of network security principles and practices with experience building SPLUNK dashboards for audit analysis.
  • IAM Level III certification (CISSP, GSLC, or CISM).
  • Strong communication and leadership skills to serve as the central point of contact for security posture and compliance guidance.

More like this

Similar roles

Information Systems Security Officer

Anduril Industries

Irvine, CA 2 days ago $113,000$149,000
IDS/IPS encryption protocols secure communications technologies Splunk DISA STIGs SCC Python Powershell Bash Linux Red Hat SELinux policy CI/CD PostgreSQL

Information Systems Security Officer

Anduril Industries

Seattle, WA 2 days ago $113,000$149,000
IDS/IPS encryption protocols secure communications technologies Splunk DISA STIGs SCC Python Powershell Bash Linux Red Hat SELinux policy CI/CD PostgreSQL

Information System Security Officer, Mid

Booz Allen Hamilton

Arlington, VA 9 days ago $62,000$141,000
ACAS Nessus SCAP MS Windows OS MS Server Cisco Juniper Brocade ICD 503 ICD 703 eMASS DoD RMF NIST 800 series DCSA DAAPM

Senior Information System Security Officer

Leidos

Annapolis Junction, MD 22 days ago $131,300$237,350
IAVA SSP TS/SCI Polygraph CI/CD DoD 8570 IAT IAM Encryption Communication Protocols Hardware Security Software Security Security Evaluations Information Systems Security Policies Day-to-Day Security Operations

Information Systems Security Manager

Booz Allen Hamilton

Warren, MI 10 days ago $86,900$198,000
NIST RMF GRC security documentation tool eMASS STIGs SCAP ACAS Ports Protocols and Services Matrix VRAM Host-Based Security System MICROSOFT OFFICE CI/CD

Information Systems Security Manager

Leidos

Arlington, Virginia 50 days ago $107,900$195,050
RMF NIST DISA DoD STIGs JSIG eMASS DRAM ACAS Splunk CI/CD Terraform AWS Kubernetes Python PostgreSQL Git Jenkins Ansible Docker