Information System Security OfficerThe Opportunity: We’re looking for an Information System Security Officer (ISSO) who can create solutions for the government that will withstand even the most advanced cyber threats. As a cyber tools assessor at Booz Allen, you’ll detect, evaluate, and document the security configuration of developmental and operational tools, and security impacts, and make improvement recommendations. You’ll coordinate work with in-house teams, subcontractors, and vendors to identify the right mix of tools and techniques to translate your customer’s IT needs and future goals into a plan that will enable secure and effective solutions. We need to come up with the best solutions, so you’ll investigate new techniques, break free from the legacy model, and go where the industry is going. You’ll lead the team through a critical approach to network design, providing alternatives and customizing solutions to maintain a balance of security and mission needs. As an information security risk specialist on our team, you’ll advise the client through leading the discovery of their cyber risks, understanding applicablepolicies, and developing a mitigation plan. You’ll oversee the analysis of technical, environmental, and personnel details from technical subject matter experts and engineers as your team reviews the entire threat landscape.
Then, you’ll guide your client through a plan of action with presentations, whitepapers, and milestones. Your client will rely on you to translate security concepts so they can make the best decisions to secure their mission-critical systems. This is your opportunity to take a leadership role in information security while sharing your skills in cloud technologies with both clients and your team. Be a part of our team as we protect our nation's information systems.Join us. The world can’t wait. You Have: 3+ years of experience as an Information System Security Officer (ISSO) or Information System Security Analyst (ISSA)Experience conducting tools assessments and configuration analysis against best practices, vendor specifications, and government security guidelines and requirementsExperience with the implementation, oversight, and maintenance of security configuration, practices, and procedures for systemsExperience implementing controls from NIST 800-53, FedRAMP, ICD 503, RMF, and DoD Information Levels, including applying them to the design and implementation of information technology solutions to achieve an authorization to operate (ATO)Experience with eMASS or Xacta IA ManagerAbility to perform risk analysisActive TS/SCI clearance; willingness to take a polygraph examHS diploma or GED and 7+ years of experience supporting IT projects and activities, Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, or Master’s degree and 1+ years of experience supporting IT projects and activitiesDoD 8570 IAT Level II Certification such as CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP CertificationDoD -M CSSP Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND CertificationNice If You Have: Experience with DoD security technical implementation guides (STIGs), checklists, and testing tools, including STIG Viewer, SCAP, and ACAS scanning toolExperience assessing configuration changes such as new COTS tools or web application upgrades, to system security boundaryExperience drafting tool implementation CONOPS and reviewing tool or capabilities topologies, CONOPS, and vulnerability scans to assess riskExperience with cyber-related tools such as Ansible, Terraform, Splunk, or STIG ViewerKnowledge of cloud-native security tools, including HBSSKnowledge of Zero Trust principles and conceptsAbility to plan and conduct security authorization reviews and assurance case development for initial installation of systems and networksAbility to work within a collaborative team and a fast-paced dynamic environmentPossession of excellent written, organizational, presentation, and verbal communication skillsAWS, Azure, or GCP CertificationClearance:Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information;TS/SCI clearance is required.CompensationAt Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values.
Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.Identity StatementAs part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments.
We reserve the right to take your picture to verify your identity and prevent fraud.Candidate AI Usage PolicyAI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided. Work ModelOur people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.Commitment to Non-DiscriminationAll qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.SummaryLocation: Reston, VA; Washington, DC; Riverdale, MD; Norfolk, VAType: Full time
Information System Security Officer in norfolk at Unknown Company
- Typical pay
- $33,540–$39,520
For context, most security guards earn between $33,540–$39,520 a year according to Bureau of Labor Statistics wage data. What this particular role pays is set by the employer — check the description above.
This position is listed as part time and able to be worked remotely.