Full-Time

Enterprise Cybersecurity Risk and Compliance Lead

Posted on 9/20/2024

Booz Allen

Booz Allen

Global consulting in strategy and technology

Data & Analytics
Consulting
Government & Public Sector
Cybersecurity
Defense

Compensation Overview

$96.6k - $220kAnnually

Senior, Expert

No H1B Sponsorship

McLean, VA, USA

Position requires periodic work from a Booz Allen or client site facility.

US Citizenship Required

Category
Cybersecurity
IT & Security
Required Skills
ServiceNow
Requirements
  • Experience reporting compliance, trends in controls, and vulnerability management metrics across business lines to technical and non-technical teams
  • Experience developing and implementing strategic initiatives, fostering innovation, and executing process improvements to improve cybersecurity hygiene cross-functionally and increase efficiencies
  • Experience managing a full cybersecurity risk management process from identification to treatment to closure
  • Ability to lead maturation efforts of the existing assessment and risk framework to incorporate qualitative and quantitative aspects as well as provide visibility and management processes for cyber risks
  • Ability to continuously evaluate cybersecurity controls to ensure effectiveness, compliance, and adherence to key controls and policies
  • Ability to enhance security posture to achieve compliance with security initiatives and industry regulations including implementing security improvements for environments to resolve or mitigate security findings
  • Ability to drive remediation efforts through innovative security risk assessment processes, policies, and automation
  • Ability to execute functional tasks and cross-functional initiatives and work collaboratively with peer leaders to develop and execute GRC program initiatives across multiple teams, functions, and programs
  • Ability to partner with technology and security operations to reduce the number of security findings under exception
  • HS diploma or GED and 8+ years of experience in cybersecurity or cyber risk leadership
  • 7+ years of experience in people management and talent development
  • Experience identifying problems and determining pragmatic solutions
  • Experience with Archer and ServiceNow or comparable Governance, Risk, and Compliance tools
  • Experience determining level of effort (LOE), obtaining appropriate resources, and executing with minimal supervision
  • Knowledge of Cyber Risk Management and Strategy frameworks and common enterprise threat scenarios
  • Knowledge of security controls and alignment to key regulations, such as NIST SP 800-53, NIST SP 800-171, FedRamp, CMMC or SOC 2 Type II
  • Ability to lead, coordinate, and motivate multi-disciplinary teams in a fast-paced, change-intensive environment
  • Ability to quickly comprehend complex problems, draw logical conclusions, develop solutions, and respond accordingly to drive closure
  • Ability to communicate and collaborate to effectively engage and interact with senior and executive leadership
  • Bachelor’s degree
  • Cyber risk certifications, including CISSP, Certified Governance Risk and Compliance (CGRC), or Certified in Risk and Information Systems Control (CRISC)
Responsibilities
  • Facilitate an effective risk and compliance program with a focus on enabling business efforts
  • Lead with a hands-on approach that has accountability for assessing and managing compliance and regulatory requirements with key stakeholders
  • Collaborate with cross-functional teams across Booz Allen enterprise operations and client-facing teams to ensure alignment and application of practices that support business goals and meet defined policies and standards for information security

Booz Allen Hamilton provides consulting services focused on strategy, technology, and engineering. The firm works with a variety of clients, including government agencies, corporations, and non-profits, primarily in the defense, intelligence, and civil sectors. Their services help clients tackle complex technical and strategic issues, utilizing their expertise in areas like cybersecurity, data analytics, and digital transformation. Booz Allen's business model includes long-term contracts and project-based work, allowing them to generate revenue while delivering tailored solutions. What sets Booz Allen apart from competitors is their deep industry knowledge combined with advanced technological capabilities, which enables them to effectively address modern challenges. The company's goal is to help clients optimize their operations and navigate threats while fostering an inclusive and collaborative work environment for their employees.

Company Stage

IPO

Total Funding

$34.6M

Headquarters

McLean, Virginia

Founded

1914

Simplify Jobs

Simplify's Take

What believers are saying

  • Investment in Synthetaic enhances AI-driven image analysis capabilities for defense sectors.
  • Strategic investment in Second Front Systems boosts secure software deployment for government clients.
  • Recognition as a top employer for veterans attracts skilled talent to Booz Allen.

What critics are saying

  • Competition from emerging AI companies like Synthetaic may impact market share.
  • Investment in Second Front Systems poses risks of integration challenges and security vulnerabilities.
  • Collaboration with L3Harris may face delays, affecting defense contract deliveries.

What makes Booz Allen unique

  • Booz Allen excels in cybersecurity, data analytics, and digital transformation services.
  • The firm has a strong presence in defense, intelligence, and civil sectors.
  • Booz Allen's inclusive work environment fosters innovation and collaboration.

Help us improve and share your feedback! Did you find this helpful?

INACTIVE