> Markdown version of [/jobs/ext/2006487-information-security-risk-specialist-lead](https://www.wearedevelopers.com/jobs/ext/2006487-information-security-risk-specialist-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Risk Specialist, Lead - **Company:** Booz Allen Hamilton Inc. - **Location:** Houston, TX, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Xacta, Amazon Web Services, SC Clearance, Cybercrime - **Published:** August 9, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/information-security-risk-specialist-lead-houston-tx-usa-58863525 ## About the Role aaaq_ accreditation efforts and communicate security concepts to non-specialists * Collaborate with cross-functional teams to protect critical infrastructure and mission-critical systems * Support DoD RMF accreditation activities and assist in creating artifacts like POA&Ms and artifact uploads Tasks * 8+ years of experience in a cybersecurity role * 3+ years of experience with the DoD RMF accreditation processes * Experience with RMF, STIGs, NIST 800-53, NIST 800-37, AWS, Xacta, or eMASS * Experience implementing and maintaining security controls * Ability to work through challenging security requirements and maintain compliance * Ability to develop technical documentation to support accreditation efforts * Secret clearance * Bachelor's degree Key requirements * health benefits * life and disability benefits * retirement benefits * paid leave * professional development * tuition assistance ## Description Experteer Overview In this role you lead information security risk work for Federal Government clients, translating complex cyber threats into actionable plans. You will guide discovery of risks, map requirements to risk mitigation, and oversee documentation and accreditation activities. You'll present plans, milestones, and findings to clients and stakeholders, helping secure critical infrastructure and mission-critical systems. This leadership role offers impact across teams and clients, shaping security strategies in a high-stakes environment. Compensation / Benefits * Lead discovery of cyber risks for federal clients and translate findings into actionable mitigation plans * Oversee analysis of technical and personnel details from SMEs and crafts a plan of action with presentations, white papers, and milestones * Guide clients through accreditation and compliance processes (RMF, STIGs, NIST 800-53/800-37) and maintain supporting documentation * Develop technical documentation to support accreditation efforts and communicate security concepts to non-specialists * Collaborate with cross-functional teams to protect critical infrastructure and mission-critical systems * Support DoD RMF accreditation activities and assist in creating artifacts like POA&Ms and artifact uploads Tasks * 8+ years of experience in a cybersecurity role * 3+ years of experience with the DoD RMF accreditation processes * Experience with RMF, STIGs, NIST 800-53, NIST 800-37, AWS, Xacta, or eMASS * Experience implementing and maintaining security controls * Ability to work through challenging security requirements and maintain compliance * Ability to develop technical documentation to support accreditation efforts * Secret clearance * Bachelor's degree Key requirements * health benefits * life and disability benefits * retirement benefits * paid leave * professional development * tuition assistance ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)