About this role
Cyber Mission Specialist
The Opportunity:
As a cyber mission specialist, you understand the value of hunt-forward operations, and you know that battles are won in the grey. At Booz Allen, you can use your cyberspace operations experience to create solutions that will be executed on a worldwide stage. We’re looking for an experienced cyber mission specialist like you to apply your knowledge in network security, risk management, and continuous monitoring to impact our nation’s security.
In this role, you will perform continuous monitoring and authorization reassessment activities for an IaaS or PaaS CSO at the client’s Contractor Network Operations Center. You will perform tasks that include reviewing key artifacts or data such as boundary diagrams, data flow diagrams, configurations, code, container, or application vulnerability scan results, to assist the client with determining the security impact of Cloud Service Provider (CSP) changes, reviewing continuous monitoring monthly executive summaries or reports, helping provide the client evidence of ongoing control effectiveness and flag areas where the CSO’s security posture may be degrading, reviewing CSP-submitted Acceptance of Risk (AOR) and Deviation Requests (DR) such as reviewing CSP or CSO mission impact assessments and mitigation efforts and ensuring the risk is properly documented, and making approval or disapproval recommendations to the client. You’ll provide additional support, including working with a U.S.-based Third-Party Assessment Organization (3PAO) team to conduct quarterly risk review board reviews and conduct annual authorization reassessments of the IaaS or PaaS CSO, underlying cloud infrastructure and services, and supporting infrastructure.
This is an opportunity to use your research and analysis abilities to adequately assess and inform operators and senior leadership or commanders on dynamic adversarial tactics, techniques, and procedures for cloud security. Your role will be vital in the development of operation plans to support command and control.
If you want to be in the fight, working shoulder to shoulder with our cybersecurity teams influencing the most critical global cyber missions, this is the opportunity for you.
Join us. The world can’t wait.
You Have:
- 5+ years of experience with control assessment in frameworks or standards such as NIST SP 800-53r4/5, ISO or IEC 27001:2022, or System and Organization Controls (SOC)
- 2+ years of experience with a Governance, Risk, and Compliance (GRC) tool
- Bachelor's degree in a Science field
- CISSP, CISA, ISO 27001, or ISO 17020 Certification
Nice If You Have:
- Experience with the FedRAMP 3PAO
- Oracle Cloud Infrastructure (OCI) Foundations Associate Certification
- Cybersecurity Maturity Model Certification (CMMC) Level 2 Assessor, CCP, CCA, or LCCA Certification
Identity Statement
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Candidate AI Usage Policy
AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided .
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.