> Markdown version of [/jobs/ext/3347257-information-security-risk-specialist](https://www.wearedevelopers.com/jobs/ext/3347257-information-security-risk-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Risk Specialist - **Company:** Booz Allen Hamilton Inc. - **Location:** Oklahoma City, OK, United States (Remote available) - **Experience:** Expert - **Salary:** $99,000.0 - $225,000.0 - **Contract:** Internship / Graduate position - **Skills:** Configuration Management, Cyber Security, Firmware, Identity and Access Management, Information Security Management, Information Systems Security Architecture Professional, Local Security Policy, Systems Integration, SC Clearance - **Published:** September 22, 2026 - **Apply:** https://careers.boozallen.com/jobs/JobDetail?jobId=130794 ## About the Role * 5+ years of experience with cybersecurity * Experience providing configuration management (CM) for information system security software, hardware, and firmware, and coordinating changes and modifications with the Security Control Assessor (SCA) and Authorizing Official (AO) * Experience providing security guidance and IS validation using National Institute of Standards and Technology (NIST) RMF, DoD, and local security policies * Ability to manage security authorization activities * Ability to coordinate security requirements for connected and non-connected systems and unclassified and classified systems * Secret clearance * HS diploma or GED * IAT Level II Certification including Security+ Certification Nice If You Have: * 7+ years of experience with cybersecurity * Top Secret clearance * Bachelor's degree * DoD IAM or IAT Level III Certification * Certified Information Systems Security Professional (CISSP) Certification ## Description When our country's cybersecurity is on the line, simply reacting is not enough, we need a plan. And when that plan needs to protect our nation's airborne networks, we need strategic policy development. That's why we need you, a cybersecurity analyst with the expertise required to analyze the policies, procedures, and requirements that determine our cyber resilience. As an Information Assurance or Cybersecurity Specialist of airborne, ground support systems, and System Integration Labs, you'll review systems to identify potential security weaknesses and recommend improvements to mitigate risk, implement changes, and document modifications. You'll review technical, environmental, and personnel details from subject matter experts, engineers, and program managers to assess the entire threat landscape. You'll work closely with the program manager to translate security concepts enabling them to make informed decisions to secure their mission critical systems. As you guide your client through understanding acceptable risk and availability, you'll advance the development of a strategic cyber roadmap. You'll ensure the client operates securely as they navigate an evolving environment. As an Information Assurance or Cybersecurity Specialist at Booz Allen, you'll identify the right mix of tools and techniques to translate your customer's cybersecurity needs and goals into a plan that will enable secure and effective solutions. You will advise on new techniques and guide the team through critical approaches to design, providing alternatives and customizing solutions to maintain a balance of security and operational needs. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)