Job Description

Remote Work:
Hybrid
Job Number:
R0237158
Location:
McLean,VA,US
Enterprise Cybersecurity IT and Cyber Risk Expert

The Opportunity:  

Serve as a lead operator within Enterprise Cybersecurity’s Information Technology (IT) and Cyber Risk portfolio, managing and advancing critical risk management workstreams while acting as a central translator between technical teams and business stakeholders. 

This role is responsible for driving execution and continuous improvement across core IT and cyber risk functions, including enterprise risk register transformation, user exceptions oversight, and product risk. The ideal candidate combines strong IT and cyber risk expertise with the ability to operationalize strategy, communicate effectively across audiences, and optimize day-to-day program execution. This is a high-impact, high-visibility role with increasing leadership responsibility, including mentoring junior staff and ownership of key program outcomes. Due to the nature of work performed within this facility, U.S. citizenship is required.

What You’ll Work On:  

  • Independently manage and advance enterprise cyber risk workstreams. Manage and enhance components of the IT and cyber risk register, support ongoing transformation efforts, such as tooling migration, and contribute to maturation of the product risk program. 

  • Oversee and improve user exceptions program outcomes. Provide oversight of day-to-day execution, guide junior staff, and drive more consistent, outcomes-based risk decision making.

  • Deliver high-quality risk reporting and insights. Produce clear and actionable risk reports and analysis that support leadership decision-making and risk reduction. 

  • Serve as a central risk translator and stakeholder partner. Act as a primary point of contact across business and technical teams, translating complex technical findings into executive-ready risk narratives and aligning stakeholders on risk prioritization and treatment.

  • Drive operational excellence and team enablement. Provide day-to-day guidance and mentorship to junior team members while establishing scalable processes, templates, and standards for risk execution. 

  • Advance program maturity through process improvement. Identify and implement improvements across risk workstreams, including automation, tooling optimization, such as Smartsheet, and contributions to strategic initiatives that enhance scalability and effectiveness. 

Join us. The world can't wait.

You Have: 

  • Experience in enterprise IT and cyber risk management, including risk identification, assessment, reporting, and lifecycle management 

  • Experience working across technical and non-technical teams with a customer-service mindset and strong communication skills 

  • Experience with GRC platforms including Smartsheet, ServiceNow, or risk and compliance tools, with the ability to quickly adapt to new tooling environments 

  • Knowledge of industry-standard frameworks, including, Factor Analysis Information Risk (FAIR), Massachusetts Institute of Technology Research and Engineering (MITRE), National Institute of Standards and Technology (NIST), Cyber Security Framework (CSF), NIST Special Publication (SP) 800-53, Cybersecurity Maturity Model Certification (CMMC), and International Organization for Standardization (ISO) 27001 

  • Ability to write clear, concise, and executive-ready risk reports and translate technical concepts into business context 

  • Ability to independently manage and execute complex workstreams with minimal oversight 

Nice If You Have: 

  • Experience supporting enterprise risk register development or transformation efforts 

  • Experience in Defense Industrial Base (DIB) or federal compliance environments 

  • Experience mentoring or leading junior team members in a project or program setting 

  • Experience driving process improvement, automation, or AI-enabled enhancements within risk or GRC programs 

  • Experience with GRC-specific tools or platforms, including Archer

  • Knowledge of product risk, supplier or third-party risk, or security findings management 

    Compensation

    At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

    Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

    Identity Statement

    As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

    Candidate AI Usage Policy

    AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.

    Work Model
    Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.

    • Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.

    • Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.

    • Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.

    Commitment to Non-Discrimination

    All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

    Not ready to apply? Join our Talent Community and sign up for job alerts.