> Markdown version of [/jobs/ext/549301-information-security-risk-specialist](https://www.wearedevelopers.com/jobs/ext/549301-information-security-risk-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Risk Specialist - **Company:** BOOZ, ALLEN & HAMILTON, INC. - **Location:** Kirtland, NM, United States - **Experience:** Expert - **Salary:** $61,900.0 - $141,000.0 - **Contract:** Permanent contract - **Skills:** Xacta, Amazon Web Services, Cyber Security, Information Systems, Identity and Access Management, Cloud Platform System - **Published:** June 12, 2026 - **Apply:** https://www.juju.com/job/00000000g7c0d0 ## About the Role + 5+ years of experience in a cybersecurity role and with DoD RMF accreditation processes + Experience with RMF, STIGs, NIST 800-53, NIST 800-37, or eMASS + Experience implementing and maintaining security controls and with cloud environments, including AWS + Ability to conduct ACAS scans + Ability to build ATO packages for Xacta or eMASS submission + Ability to work through challenging security requirements and maintain compliance + Ability to develop technical documentation to support accreditation efforts + TS/SCI clearance + Bachelor's degree + IAM Level 1 Certification ## Description Conduct security assessments on DoD cloud environments using the Risk Management Framework ( RMF ) . Provide guidance on policies and procedures to ensure compliance within an accreditation boundary. Implement security strategies to control and manage organizational information risks. Assess information systems to determine risk exposure and develop documentation addressing system security requirements. Enhance information security education within the organization and team. Monitor the latest security technologies to ensure that project personnel remain in the know. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Containers in the cloud - State of the Art in 2022](https://www.wearedevelopers.com/videos/410-containers-in-the-cloud-state-of-the-art-in-2022) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Reliable scalability: How Amazon.com scales on AWS](https://www.wearedevelopers.com/videos/983-reliable-scalability-how-amazon-com-scales-on-aws) ## Related Articles - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)