Technical Cyber Risk Assessor, Senior

Key Role:

Work in a team with respected and experienced professionals to support our clients in helping them assess their cybersecurity posture to evaluate and improve the effectiveness of their security controls. Support client delivery and execution with a growing team of Cyber Assessors, Cyber Strategists, and Risk Management professionals. Work with clients across a variety of industry verticals, including, defense, energy, financial services, health/pharmaceuticals, high-tech, manufacturing, and transportation. Refine and apply Booz Allen’s cyber assessment capabilities and solutions to address each client’s strategic, operational, and regulatory assessment needs. Apply your expertise to identify management, operational, and technical vulnerabilities, evaluate areas of non-compliance, and assess risks to client systems and environments. Work with clients to develop risk mitigating strategies, identify areas for systemic improvement, and build long-term strategies to ensure assets are secure, and internal and external compliance requirements are addressed. This position may require travel of up to 25% of the time to client sites. This position is open to temporary remote delivery from any location in the U.S., to include the District of Columbia.

Basic Qualifications: 

  • 4+ years of experience in cybersecurity
  • Experience with cybersecurity assessments using common industry frameworks, including CIS Top 20, NIST CSF, NIST RMF, NIST 800-53, ISO 27001, or OWASP
  • Experience with identifying technology vulnerabilities via manual and automated processes, including automated compliance, vulnerability scanners or system configuration reviews
  • Experience with authoring technical reports, presentations, and briefs based on performed assessments
  • Experience with Microsoft Excel and PowerPoint
  • Ability to collaboratively work in complex client environments
  • Ability to clearly communicate complex ideas in both written and oral form
  • Ability to travel up to 25% of the time
  • Bachelor’s degree in Business, IT, CS, or Computer Engineering

Additional Qualifications:

  • Experience with cyber risk and threat modeling assessments using common industry frameworks, including COBIT, NIST, FAIR or MITRE ATT&CK
  • Experience with developing threat models using an industry standard threat modeling approaches
  • Experience with working in a consulting or client customer service delivery role 
  • Experience with Windows and Linux system administration
  • Experience with network administration or network engineering
  • Experience with assessing network device security
  • Knowledge of security standards
  • Knowledge of cybersecurity risk or control assessments that evaluate and analyze threat, vulnerability, impact, risk, and security issues to the business 
  • CISSP, CAP, GSEC, Security+, CISM, CISA, or other relevant certification preferred


The proposed salary range for this position in Colorado is $100,000 to $140,000. Final salary will be determined based on various factors.

At Booz Allen, we celebrate your contributions, provide you with opportunities and choice, and support your total well-being. Our comprehensive benefit offerings include healthcare, retirement plan, insurance programs, commuter program, employee assistance program, paid and unpaid leave programs, education assistance, and childcare benefits.

We’re an EOE that empowers our people—no matter their race, color, religion, sex, gender identity, sexual orientation, national origin, disability, veteran status, or other protected characteristic—to fearlessly drive change.

#LI-AH1, #LI-Remote, ID15-CMCL

Not ready to apply? Join our talent community and sign up for job alerts.