Mobile Information Systems Security Officer, Senior

Fort Meade, Maryland, United States
Jan 17, 2019
Jan 22, 2019
Full Time
Job Description Job Number: R0046057

Mobile Information Systems Security Officer, Senior

The Challenge:

Everyone knows security needs to be “baked in” to a system architecture, but you actually know how to bake it in. You can identify and implement ways to harden systems and reduce their attack surface. What if you could use your Cyber engineering skills to design and build secure systems for DoD?  We're looking for an engineer who can create solutions for our DoD customer that will stand up to even the most advanced Cyber threats.

As an Information Systems Security Officer on our project, you'll provide Cyber security support to the client Risk Management Executive Office for translating mobile device management solutions into security requirements.  You'll coordinate work with your team and leads to identify the right mix of tools and techniques to translate your customer's IT needs and future goals into a plan that will enable secure and effective solutions. We need to come up with the best solution, so you'll investigate new techniques, break free from the legacy model, and go where the industry is going. You'll lead the team through a critical approach to network design, providing alternatives and customizing solutions, to maintain a balance of security and mission needs. This is a chance to make a difference in the security of the DoD's Mobility Program. Your technical expertise will be vital as you help customers overcome their most difficult challenges by integrating secure practices like identifying security solutions for vulnerabilities and creating and mapping client Security Technical Implementation Guides (STIGs) for mobile devices. You'll be able to broaden your skillset into areas by developing Plan of Action and Milestones (POA&M), creating Risk Management Framework (RMF) documentation in support of information assurance accreditations, performing vulnerability management using automated systems such as client's Continuous Monitoring and Risk Scoring (CMRS) tool in conjunction with the Assured Compliance Assessment Solution (ACAS) data feeds, and creating and submitting RMF packages using the Enterprise Mission Assurance Support Service (eMASS) while building peace of mind in a critical infrastructure. Join our team, as we improve performance of security risk assessments of systems and equipment and assisting engineers and junior security staff with identifying security solutions for vulnerabilities through Cybersecurity.

Empower change with us.

Build Your Career:

Rewarding work, fun challenges, and a ton of investment in our people—that's Booz Allen Cyber. When you join Booz Allen, we'll help you develop the career you want.

Competitions — From programming competitions at our PyNights (Python competition and learning events) to competing in CTFs, we've got plenty of chances for you to show off your skills.

Paid Research — Have an innovative idea to explore or hypothesis to test? You can participate in challenges via our crowdsourcing platform, the Garage, and other programs to be awarded dedicated time and/or funding to advance your skills.

Cyber University — CyberU has more than 5000 instructor-led and self-paced Cyber courses, a free online library that you can access from just about anywhere—including your phone—and certification exam prep guides that include practical assessments to prepare you for your exam.

Academic Partnerships — In addition to our tuition reimbursement benefit, we've partnered with University of Maryland University College to offer two graduate certificate programs in Cybersecurity—fully funded without a tuition cap.

Maker/Hackerspaces — Race drones, print 3D gadgets, drink coffee from our Wi-Fi coffee maker, and get hands-on training on tools and tech from in-house experts in our dedicated maker and hackerspaces.

You Have:

-Experience with executing certification and accreditation of DoD systems

-Experience with commercial mobile device security architecture evaluation, guidance development, and troubleshooting

-Experience with NIST and the Risk Management Framework

-Experience with supporting the technical and business processes associated with Mobile Application Stores (MAS) and their interdependencies with Mobile Device Management (MDM) solutions

-Top Secret clearance

-MA or MS degree or 15+ years of experience in DoD related systems

-DoD 8570 IAT Level III Certification, Security + and CISSP

Nice If You Have:

-Experience with iOS, Android, BlackBerry, and Windows mobile operating system

-Experience with DoD information assurance policies, directives and STIGs, as applicable to mobile devices

-Experience with assessing organizational risk associated with mobile device implementations and recommending mitigation strategies

-Experience working in a fast-paced & changing environment

-Knowledge of NIST 800 series publications, including 800-30, 800-37, 800-53, and 800-53a

-Knowledge of Field Security Office review procedures


Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Top Secret clearance is required.

We're an EOE that empowers our people—no matter their race, color, religion, sex, gender identity, sexual orientation, national origin, disability, or veteran status—to fearlessly drive change.

Similar jobs