> Markdown version of [/jobs/ext/2727882-information-system-security-officer](https://www.wearedevelopers.com/jobs/ext/2727882-information-system-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Officer - **Company:** Booz Allen Hamilton Inc. - **Location:** Reston, VA, United States (Remote available) - **Salary:** $99,000.0 - $225,000.0 - **Contract:** Internship / Graduate position - **Skills:** Xacta, Amazon Web Services, Automation of Tests, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Information Systems, Information Security Management, Network Planning and Design, Ansible, Zero Trust Network Access, Security Content Automation Protocol, Web Applications, Information Technology, Cybercrime, Terraform, Splunk, Vulnerability Analysis - **Published:** September 5, 2026 - **Apply:** https://careers.boozallen.com/jobs/JobDetail?jobId=129900 ## About the Role * 3+ years of experience as an Information System Security Officer (ISSO) or Information System Security Analyst (ISSA) * Experience conducting tools assessments and configuration analysis against best practices, vendor specifications, and government security guidelines and requirements * Experience with the implementation, oversight, and maintenance of security configuration, practices, and procedures for systems * Experience implementing controls from NIST 800-53, FedRAMP, ICD 503, RMF, and DoD Information Levels, including applying them to the design and implementation of information technology solutions to achieve an authorization to operate (ATO) * Experience with eMASS or Xacta IA Manager * Ability to perform risk analysis * Active TS/SCI clearance; willingness to take a polygraph exam * HS diploma or GED and 7+ years of experience supporting IT projects and activities, Associate's degree and 5+ years of experience supporting IT projects and activities, Bachelor's degree and 3+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities * DoD 8570 IAT Level II Certification such as CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification * DoD 8570.01-M CSSP Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification Nice If You Have: * Experience with DoD security technical implementation guides (STIGs), checklists, and testing tools, including STIG Viewer, SCAP, and ACAS scanning tool * Experience assessing configuration changes such as new COTS tools or web application upgrades, to system security boundary * Experience drafting tool implementation CONOPS and reviewing tool or capabilities topologies, CONOPS, and vulnerability scans to assess risk * Experience with cyber-related tools such as Ansible, Terraform, Splunk, or STIG Viewer * Knowledge of cloud-native security tools, including HBSS * Knowledge of Zero Trust principles and concepts * Ability to plan and conduct security authorization reviews and assurance case development for initial installation of systems and networks * Ability to work within a collaborative team and a fast-paced dynamic environment * Possession of excellent written, organizational, presentation, and verbal communication skills * AWS, Azure, or GCP Certification ## Description We're looking for an Information System Security Officer (ISSO) who can create solutions for the government that will withstand even the most advanced cyber threats. As a cyber tools assessor at Booz Allen, you'll detect, evaluate, and document the security configuration of developmental and operational tools, and security impacts, and make improvement recommendations. You'll coordinate work with in-house teams, subcontractors, and vendors to identify the right mix of tools and techniques to translate your customer's IT needs and future goals into a plan that will enable secure and effective solutions. We need to come up with the best solutions, so you'll investigate new techniques, break free from the legacy model, and go where the industry is going. You'll lead the team through a critical approach to network design, providing alternatives and customizing solutions to maintain a balance of security and mission needs. As an information security risk specialist on our team, you'll advise the client through leading the discovery of their cyber risks, understanding applicable policies, and developing a mitigation plan. You'll oversee the analysis of technical, environmental, and personnel details from technical subject matter experts and engineers as your team reviews the entire threat landscape. Then, you'll guide your client through a plan of action with presentations, whitepapers, and milestones. Your client will rely on you to translate security concepts so they can make the best decisions to secure their mission-critical systems. This is your opportunity to take a leadership role in information security while sharing your skills in cloud technologies with both clients and your team. Be a part of our team as we protect our nation's information systems. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Eclipse Che for Infrastructure Automation](https://www.wearedevelopers.com/videos/1611-eclipse-che-for-infrastructure-automation) - [Embracing the Hybrid Cloud: Unlocking Success with Ansible](https://www.wearedevelopers.com/videos/932-embracing-the-hybrid-cloud-unlocking-success-with-ansible) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)