
location_onHybrid
We are seeking an Information System Security Officer (ISSO) to create solutions for the government that withstand even the most advanced cyber threats. At Booz Allen, you will detect, evaluate, and document the security configuration of developmental and operational tools, assessing security impacts and making improvement recommendations. You will coordinate with in-house teams, subcontractors, and vendors to identify the right mix of tools and techniques, translating customers' IT needs and future goals into plans that enable secure and effective solutions.
You will lead the team through a critical approach to network design, providing alternatives and customizing solutions to maintain a balance of security and mission needs. As an ISSO, you will advise the client, lead the discovery of their cyber risks, understand applicable policies, and develop a mitigation plan. You will oversee the analysis of technical, environmental, and personnel details as your team reviews the entire threat landscape, then guide your client through a plan of action with presentations, whitepapers, and milestones.
Your client will rely on you to translate security concepts so they can make the best decisions to secure their mission-critical systems. This is your opportunity to take a leadership role in information security while sharing your skills in cloud technologies with both clients and your team. Be a part of our team as we protect our nation's critical information systems. Join us. The world can't wait.
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings. Depending on the specific role designation:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran, or any other status protected by applicable federal, state, local, or international law.
Work model: Hybrid
Hybrid
Experience with DoD security technical implementation guides (STIGs), checklists, and testing tools, including STIG Viewer, SCAP, and ACAS scanning tool. Experience assessing configuration changes such as new COTS tools or web application upgrades to the system security boundary. Experience drafting tool implementation CONOPS and reviewing tool or capabilities topologies, CONOPS, and vulnerability scans to assess risk. Experience with cyber-related tools such as Ansible, Terraform, Splunk, or STIG Viewer. Knowledge of cloud-native security tools, including HBSS. Knowledge of Zero Trust principles and concepts. Ability to plan and conduct security authorization reviews and assurance case development for the initial installation of systems and networks. Ability to work within a collaborative team, and a fast-paced and dynamic environment. Possession of excellent written, organizational, presentation, and verbal communication skills. AWS, Azure, or GCP Certification.
TLA-LLC • McLean, Virginia
Dunhill Professional Search & Government Solutions • Oak Ridge, Tennessee
CACI International Inc • Arlington, Virginia
Skills: Nist 800-53, Fedramp, Icd 503, RMF, Do Information Levels, Emass, Xacta Ia Manager, Risk Analysis, Ccna-Security, Cysa+.
Education: HS diploma or GED with 12+ years experience; Associate's degree with 10+ years experience; Bachelor's degree with 8+ years experience.