Simplify Logo

Full-Time

Enterprise Cybersecurity Risk and Compliance Lead

Confirmed live in the last 24 hours

Booz Allen

Booz Allen

Consulting
Government & Public Sector
Cybersecurity
AI & Machine Learning

Compensation Overview

$96.6k - $220kAnnually

Senior, Expert

McLean, VA, USA

Position requires periodic work from a Booz Allen or client site facility.

US Citizenship Required

Category
Cybersecurity
IT & Security
Required Skills
Management
Requirements
  • Experience reporting compliance, trends in controls, and vulnerability management metrics across business lines to technical and non-technical teams
  • Experience developing and implementing strategic initiatives, fostering innovation, and executing process improvements to improve cybersecurity hygiene cross-functionally and increase efficiencies
  • Experience managing a full cybersecurity risk management process from identification to treatment to closure
  • Ability to lead maturation efforts of the existing assessment and risk framework to incorporate qualitative and quantitative aspects as well as provide visibility and management processes for cyber risks
  • Ability to continuously evaluate cybersecurity controls to ensure effectiveness, compliance, and adherence to key controls and policies
  • Ability to enhance security posture to achieve compliance with security initiatives and industry regulations including implementing security improvements for environments to resolve or mitigate security findings
  • Ability to drive remediation efforts through innovative security risk assessment processes, policies, and automation
  • Ability to execute functional tasks and cross-functional initiatives and work collaboratively with peer leaders to develop and execute GRC program initiatives across multiple teams, functions, and programs
  • Ability to partner with technology and security operations to reduce the number of security findings under exception
  • HS diploma or GED and 8+ years of experience in cybersecurity or cyber risk leadership
  • 7+ years of experience in people management and talent development
  • Experience identifying problems and determining pragmatic solutions
  • Experience with Archer and ServiceNow or comparable Governance, Risk, and Compliance tools
  • Experience determining level of effort (LOE), obtaining appropriate resources, and executing with minimal supervision
  • Knowledge of Cyber Risk Management and Strategy frameworks and common enterprise threat scenarios
  • Knowledge of security controls and alignment to key regulations, such as NIST SP 800-53, NIST SP 800-171, FedRamp, CMMC or SOC 2 Type II
  • Ability to lead, coordinate, and motivate multi-disciplinary teams in a fast-paced, change-intensive environment
  • Ability to quickly comprehend complex problems, draw logical conclusions, develop solutions, and respond accordingly to drive closure
  • Ability to communicate and collaborate to effectively engage and interact with senior and executive leadership
  • Bachelor’s degree
  • Cyber risk certifications, including CISSP, Certified Governance Risk and Compliance (CGRC), or Certified in Risk and Information Systems Control (CRISC)
Responsibilities
  • Facilitate an effective risk and compliance program with a focus on enabling business efforts
  • Lead with a hands-on approach that has accountability for assessing and managing compliance and regulatory requirements with key stakeholders
  • Collaborate with cross-functional teams across Booz Allen enterprise operations and client-facing teams to ensure alignment and application of practices that support business goals and meet defined policies and standards for information security

Company Stage

N/A

Total Funding

$66.1M

Headquarters

New York City, New York

Founded

N/A

Simplify Jobs

Simplify's Take

What believers are saying

  • Strategic investments in high-growth areas like AI security and space technology offer employees exposure to innovative and impactful projects.
  • Booz Allen's diversified portfolio across commercial and military sectors provides stability and multiple avenues for career growth.
  • The company's venture capital arm allows for a dynamic work environment where employees can engage with startups and emerging technologies.

What critics are saying

  • The competitive landscape in AI and space technology sectors could pose challenges in maintaining a leading edge.
  • Balancing investments between commercial and military applications may lead to strategic misalignments.

What makes Booz Allen unique

  • Booz Allen's venture capital arm, Booz Allen Ventures, strategically invests in dual-use technologies, setting it apart from traditional consulting firms.
  • Their focus on AI security and space automation through investments in companies like HiddenLayer and Albedo highlights a unique blend of consulting and cutting-edge technology.
  • Booz Allen's involvement in both commercial and military sectors provides a diversified portfolio that leverages dual-use capabilities.