Information Systems Security Manager
Listed on 2026-06-03
-
IT/Tech
Cybersecurity, Information Security, IT Consultant
Overview
Your growth matters to us - explore our career development opportunities.
BE EMPOWERED TO SUCCEEDConnect with others in our people-first culture and enhance our collective ingenuity.
SUPPORT YOUR WELLBEINGLearn how we’ll support you as you pursue a balanced, fulfilling life.
YOUR CANDIDATE JOURNEYDiscover what to expect during your journey as a candidate with us.
Support Army efforts, leveraging experience in information security and cybersecurity guided by the NIST Risk Management Framework (RMF) during the Assessment and Authorization (A&A) process. Provide guidance in the modification and review of existing ATO documentation, and proactively provide insight into the documentation packets for ATO. Communicate risks with the internal team and client and integrate information assurance solutions within architecture, system, or system components.
Participate in information systems (IS) risk assessments, continuous monitoring, and design of security mitigation or remediation solutions for identified risks. Ensure the architecture and design of Army IS is functional and secure, and use expertise and judgment to plan and accomplish security-related goals. Support system or network designs that encompass multiple data centers or networks, including those with differing data protection and classification requirements.
Report to the internal Team Lead and Security Controls Assessor (SCA) for IA issues and concerns with separate reporting to senior management for network operational requirements, as necessary.
- 5+ years of experience with NIST RMF policies, including continuous monitoring and information system security policies, standards, and procedures
- 3+ years of experience supporting system ATO processes and creating artifacts, control implementation details, and POA&Ms
- Experience with National Institute of Standards and Technology (NIST) security controls, the Governance, Risk, and Compliance (GRC) security documentation tool, RMF, and security compliance processes
- Knowledge of the DoD RMF process
- Knowledge of DoD A&A processes and standards
- Ability to travel up to 25% of the time
- HS diploma or GED
- Security+ Certification
- Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP) or Associate, or GRC Certification
- Experience with the Enterprise Mission Assurance Support Service (eMASS), Security Technical Implementation Guides (STIGs), Security Content Automation Protocol (SCAP), Assured Compliance Assessment Solution (ACAS), Ports, Protocols, and Services Matrix, Vulnerability Remediation Asset Manager (VRAM), and Host-Based Security System
- Experience using Microsoft Office products, including Word, Excel, PowerPoint, and Visio
- Experience managing the authorization status of DoD RMF from step 1 through step 6
- Ability to interface with senior leadership
- Ability to prioritize and react to changing requirements with a sense of urgency to meet deliverables on time
- Ability to manage and prioritize work independently
- Ability to juggle multiple tasks, tight deadlines, and changing priorities
- P ossession of excellent verbal and written communication skills
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information;
Secret clearance is required.
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs.
Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).