Cybersecurity Engineer, Lead

Booz Allen Hamilton

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Aberdeen Proving Ground, MDAlexandria, VA
Salary
$112,800–$257,000 / yr
Posted
1 day ago
Freshness
Confirmed live yesterday

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $170k
This role $185k
$95k most similar roles pay here $274k

This role pays more than 70% of similar roles. Most pay $147,050–$192,812 — the shaded band above. At the midpoint, this role pays about $185k versus about $170k for comparable roles.

Based on 240 similar postings.

Employer

About Booz Allen Hamilton

Booz Allen Hamilton is a management and technology consulting firm that provides analytics, digital, engineering, and cybersecurity solutions primarily to U.S. government agencies and commercial clients. Industry: Management & Technology Consulting

Booz Allen Hamilton currently has 789 open roles on FindRole.

Listed pay typically runs $86,800–$198,000 across 766 roles with salary data.

Most-posted roles

View all roles at Booz Allen Hamilton

At a glance

TL;DR · Cybersecurity Engineer, Lead

The ISSO Cybersecurity Engineer, Lead manages RMF governance activities for DoD information systems to ensure authorization artifacts and security postures are accurately maintained. This role involves managing the RMF lifecycle, maintaining SSPs and ConMon plans, performing eMASS package administration, and coordinating POA&M updates. The individual will analyze NIST SP 800-53 Rev.5 controls, develop Security Impact Assessments, and coordinate system interconnections through ISAs, MOAs, and MOUs. Key responsibilities include evaluating technical evidence like STIGs, SCAP, and ACAS findings while reviewing data flows and network security. Required expertise includes Windows, Linux, AWS Cloud, and containerization systems. The role requires proficiency in TCP/IP, PKI, encryption, and identity management. Candidates must possess a TS/SCI clearance and relevant certifications such as Security+, CISSP, or CASP+ to address complex cybersecurity challenges within the DoD domain.

What you'll do

  • Manage RMF lifecycle activities and maintain authorization packages for DoD information systems.
  • Maintain system security documentation including SSPs, ConMon Plans, IRPs, and control narratives.
  • Perform eMASS package administration and quality assurance to ensure accurate cybersecurity posture records.
  • Coordinate monthly POA&M updates, evidence validation, and the tracking of remediation activities.
  • Translate NIST SP 800-53 requirements into specific system implementation statements and technical evidence.
  • Conduct Security Impact Assessments for proposed system changes and manage interconnection agreements like ISAs and MOUs.
  • Analyze network traffic, protocols, and data sensitivity to identify required security artifacts and firewall actions.
  • Validate STIG and ACAS findings to determine risk acceptances, mitigations, and remediation requirements.

What we're looking for

  • 8+ years of experience with DoD RMF or cybersecurity.
  • Experience using eMASS to manage security controls, POA&Ms, and artifacts like STIG checklists or ACAS scans.
  • Experience administering Windows, Linux, AWS Cloud, and containerization systems.
  • Knowledge of NIST SP 800-37, NIST SP 800-53 Rev. 5, DoDI 8510.01, and DoD authorization practices.
  • Knowledge of TCP/IP, firewalls, PKI, encryption, identity and access management, and DoD network security concepts.
  • Ability to validate STIG and vulnerability findings using ACAS, Nessus, SCAP, and other manual procedures.
  • Bachelor's degree in a technical field and a DoD 8570 or 8140-aligned certification (Security+, CISSP, or CASP+).
  • TS/SCI clearance.

More like this

Similar roles

Senior ISSO Cybersecurity Engineer

Booz Allen Hamilton

Aberdeen Proving Ground, MD +1 1 day ago $99,000$225,000
RMF NIST SP 800-53 eMASS STIG ACAS Nessus SCAP AWS Linux Windows Containerization TCP, IP PKI ICAM MFA Firewalls Encryption Cybersecurity
5+ yrs exp

Cybersecurity Compliance and Risk Manager

Booz Allen Hamilton

Newport, RI 32 days ago $61,900$141,000
RMF NIST SP 800-53 ACAS eMASS VRAM STIGs SRGs Xacta ESS Altiris ServiceNow VMware Cisco TCP, IP VLANs Firewalls ConMon POA&M
Hybrid

Lead Security Control Assessor

Booz Allen Hamilton

Aberdeen Proving Ground, MD +1 1 day ago $99,000$225,000
RMF NIST SP 800-53 NIST SP 800-37 eMASS STIG SCAP ACAS POA&M AWS Linux Windows Containerization Vulnerability Management Continuous Monitoring Technical Writing Security Assessment Risk Assessment
8+ yrs exp

Information Assurance Systems Administrator

Booz Allen Hamilton

Leavenworth, KS 7 days ago $69,300$158,000
RMF Windows Server Red Hat Enterprise Linux (RHEL) ACAS Nessus Trellix McAfee ePO HIPS VSE DLP IDS/IPS eMASS Xacta STIGs NIST 800-series Cybersecurity Vulnerability Management Continuous Monitoring Information Assurance
4+ yrs exp

Lead Cyber Security Engineer

Northern Trust

Chicago, IL 49 days ago
Zscaler DLP Microsoft Purview Broadcom Layer7 API Gateway API Security CASB Endpoint DLP Azure SIEM Kubernetes CI/CD DevOps Linux Unix MySQL SSL/TLS DNS Firewall YAML
7+ yrs exp

Lead Cybersecurity Engineer

Visa

Foster City, CA 22 days ago $200,000$320,000
Python Go Azure AWS Terraform GenAI LLM GitOps Infrastructure‑as‑Code policy‑as‑code CSPM CNAPP Wiz Prisma Cloud Microsoft Defender for Cloud Sumo Logic ADX API‑driven architecture
10+ yrs exp Hybrid