Information Systems Security Officer, Mid
About the role
As an Information Systems Security Officer (ISSO) or Information System Security Analyst (ISSA), you will play a crucial role in helping clients understand and mitigate cyber risks. Your expertise will be used to conduct tools assessments, analyze configurations, implement security controls, and develop comprehensive mitigation plans.
Responsibilities
- Conduct tools assessments and configuration analyses against best practices, vendor specifications, and government security guidelines and requirements.
- Implement, oversee, and maintain security configurations, practices, and procedures for systems.
- Implement controls from NIST 800-53, FedRAMP, ICD 503, RMF, and DoD Information Levels, including applying them to the design and implementation of information technology solutions to achieve an authorization to operate (ATO).
- Perform risk analysis and contribute to the development of mitigation strategies.
- Work with clients to translate security concepts into actionable plans, using presentations, whitepapers, and milestones.
- Collaborate with a team to ensure the security of mission-critical systems.
Requirements
- 2+ years of experience as an ISSO or ISSA.
- Experience conducting tools assessments and configuration analysis.
- Experience with the implementation, oversight, and maintenance of security configurations.
- Experience implementing controls from NIST 800-53, FedRAMP, ICD 503, RMF, and DoD Information Levels.
- Active TS/SCI clearance and willingness to take a polygraph exam.
- HS diploma or GED.
- DoD 8570 IAM Level II Certification such as CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP.
Qualifications
- Ability to perform risk analysis.
- Experience with DoD security technical implementation guides (STIGs), checklists, and testing tools.
- Experience assessing configuration changes and new COTS tools or web application upgrades.
- Experience with cyber-related tools, such as Splunk.
- Knowledge of Zero Trust principles and concepts.
- Excellent written, organizational, presentation, and verbal communication skills.
Skills
- Experience with AWS, Azure, or GCP.
- Knowledge of cloud technologies.
Benefits
At Booz Allen, we offer a comprehensive benefits package including health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. We also recognize employee contributions through our recognition awards program.
Pay
The estimated annual salary range for this position is $61,900.00 to $141,000.00 (annualized USD). Please note that the actual salary may vary based on factors such as location, education, experience, and organizational requirements.
Schedule
Our work model supports collaboration and engagement, with some positions requiring occasional in-person work at a Booz Allen or customer facility.