
Information Systems Security Manager
- Alexandria, VA
- Permanent
- Full-time
- 7+ years of experience implementing risk management methodologies contained in best practice documentation, such as NIST SP 800-30, SP 800-53, SP 800-128, SP 800-160, SP 800-171, or CIS benchmarks, in support of system security configurations, practices, and oversight
- 3+ years of experience providing cybersecurity leadership in an ISSM capacity and interfacing with internal and external SMEs, such as PMs, Cyber Assessors, and AOs
- Experience with control implementations associated with RMF, FedRAMP, ICD 503, and DoD Information Levels, including applying them to the design and implementation of IT solutions to achieve system authorizations
- Experience implementing and maintaining security controls within AWS cloud, containerized, CI/CD pipeline, and agile development environments
- Experience developing and reviewing ATO authorization packages in Xacta or eMASS
- Experience analyzing compliance and vulnerability scan results and implementing appropriate mitigations
- Experience performing audit log reviews to detect anomalous behavior in information systems and networks, and overseeing continuous monitoring activities
- Active TS/SCI clearance; willingness to take a polygraph exam
- HS diploma or GED
- DoD 8570 IAT III or IAM III level certification, such as CISSP
- Experience with DoD security technical implementation guides (STIGs), checklists, and testing tools, including STIG Viewer, SCAP, and ACAS scanning tools
- Experience with cyber related tools, such as Ansible, Terraform, Splunk, or STIG Viewer
- Ability to work through challenging security requirements to maintain compliance
- Possession of excellent organizational and presentation skills
- Possession of excellent verbal and written communication skills
- TS/SCI clearance with a polygraph
- Bachelor's degree in Information Technology, Cybersecurity, Data Science, Information Systems, or Computer Science
- CISSP certification
- AWS Solutions Architect or Certified Security - Specialty certification
Our people-first culture prioritizes the benefits of flexibility and collaboration, whether that happens in person or remotely.
- If this position is listed as remote or hybrid, you’ll periodically work from a Booz Allen or client site facility.
- If this position is listed as onsite, you’ll work with colleagues and clients in person, as needed for the specific role.