Security Control Assessor
Listed on 2026-01-02
-
IT/Tech
Cybersecurity, Systems Engineer
Your growth matters to us - explore our career development opportunities.
BE EMPOWERED TO SUCCEEDConnect with others in our people-first culture and enhance our collective ingenuity.
SUPPORT YOUR WELLBEINGLearn how we’ll support you as you pursue a balanced, fulfilling life.
YOUR CANDIDATE JOURNEYDiscover what to expect during your journey as a candidate with us.
Design, implement, and manage policies and procedures to ensure database and sof tware security. Apply advanced skills, extensive technical expertise, and full industry knowledge. Develop innovative solutions to complex problems. Work without considerable direction. Mentor and supervise team members.
Basic Qualifications:
- Experience in an ISSE, ISSO, or IT role
- Experience with HBSS or Trellix, Active Directory, and Group Policy
- Experience with Security Technical Implementation Guide (STIG)
- Experience with vulnerability management, including ACAS, Nessus, Nex Pose, or OpenVAS
- Experience administering, maintaining, and implementing upgrades and ensuring the readiness of several classified virtual enterprise systems and corresponding technologies such as Enterprise Linux, Cisco Systems, Red Hat, Palo Alto, Windows Server, Windows Workstation, or Juniper, including Switch, Router, or NGFW
- Knowledge of how system engineers or administrators perform system hardening utilizing STIGs
- Knowledge of Information Assurance (IA) concepts, practices, and procedures using established DoD security policies and standards to mitigate RMF security risks
- TS / SCI clearance
- HS diploma or GED
- DoD 8140 Level II Certification
Additional Qualifications:
- Experience with ICAM principles and technologies such as multi-factor authentication and privileged access management
- Experience with DoD architecture, strategic planning, concept of operations, performance attributes, system architecture and design, evolving met hodologies, and statutory or regulatory requirements
- Experience with Security Information and Event Management (SIEM) systems such as Splunk, Elastic, Logstash, or Kibana
- Experience with data broker technologies such as Cribl or Confluent, operating system security events such as Windows or Linux, and networking protocols such as TCP / IP, DNS, DHCP, or HTTP / HTTPS
- Experience with cybersecurity tools and technologies such as IDS or IPS, firewalls, host-based security, or Identity and Access Management (IDAM), and Dev Sec Ops tools and practices such as CI / CD pipelines, including Git Lab CI / CD or Azure Dev Ops
- Knowledge of Zero Trust principles and frameworks such as NIST 800-207
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related technical field
- Offensive Security Certified Professional (OSCP), GIAC Certified Incident Handler (GCIH), or GIAC Vulnerability Assessment Professional (GVAP) Certification
Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs.
Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).