Cybersecurity Risk Analyst

Booz Allen HamiltonWashington, DC
203d$55,200 - $126,000

About The Position

When our country's cybersecurity is on the line, simply reacting is not enough - we need a plan. And when that plan needs to protect our nation's cybersecurity infrastructure, we need strategic policy support. That's why we need you, a security policy specialist with the skills to analyze the policies that determine our cyber resilience. As a cyber strategic planning and policy advisor on our team, you'll help review your client's current cyber policies, the coverage of those policies, and areas of risk. You'll work with the information security office to review risk acceptance requests and assess overall risk, and collaborate with information system stakeholders to develop clear risk acceptance justifications. As you guide your client through understanding acceptable risk and availability, you'll help develop a strategic cyber roadmap. You'll work with the client to help them operate securely as they navigate an evolving IT environment. Join us as we protect our nation's critical infrastructure through strategic cyber policy analysis. Join us. The world can't wait.

Requirements

  • 2+ years of experience with NIST 800-53
  • Experience conducting IT Audits
  • Experience with cybersecurity risk analysis matters
  • Knowledge of cybersecurity strategy, governance, and policies within the federal space
  • Knowledge of cyber frameworks, including the Risk Management Framework (RMF) and NIST Cybersecurity Framework (CSF)
  • Knowledge of FISMA, NIST 800-37 RMF, FedRAMP, security control assessments, POA&M management, risk management, and continuous monitoring
  • Ability to perform data analysis and report findings
  • Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements
  • Bachelor's degree

Nice To Haves

  • Experience with RSA Archer
  • Experience with policy documentation
  • Possession of excellent verbal and written communication skills, including developing engaging presentations
  • Security+, CAP, CISSP, CISA, or CISM Certification

Responsibilities

  • Review client's current cyber policies and coverage
  • Assess areas of risk in cyber policies
  • Work with information security office to review risk acceptance requests
  • Collaborate with information system stakeholders to develop risk acceptance justifications
  • Guide clients in understanding acceptable risk and availability
  • Develop a strategic cyber roadmap for clients

Benefits

  • Health, life, and disability insurance
  • Financial and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program for exceptional performance

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Career Level

Entry Level

Industry

Professional, Scientific, and Technical Services

Education Level

Bachelor's degree

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service