- Salary
- $69k – $158k
- Location
- USA, KS, Leavenworth (1100 N 4th St), United States of America
- Type
- Full-time
- Department
- Administration
- Experience
- 4+ years
- Education
- Bachelor
- Clearance
- Required
- Closing date
- Today
- Source
- Workday
Description
The Opportunity:
Cybersecurity for mission systems requires more than reacting to findings. This role leads the technical and documentation work needed to maintain an effective security posture, move information systems through Risk Management Framework (RMF), and sustain authorization through continuous monitoring, vulnerability management, and coordinated remediation.
As an Information Assurance Systems Administrator supporting MCTP, you will work across cybersecurity, system administration, enterprise services, communications, engineering, and government leadership to translate DoD and Army security requirements into executable controls and operational actions. You will help maintain authorization evidence, administer vulnerability scanning capabilities, assess and remediate risk, and keep stakeholders informed through working groups, technical coordination, and program reporting.
What You'll Work On:
- Engineer, administer, harden, patch, and maintain Windows Server and Red Hat Enterprise Linux (RHEL) cybersecurity infrastructure, including servers supporting the centralized log monitoring solution and other mission cybersecurity services.
- Maintain STIGs, hardened security baselines, system health, approved software repositories, and lifecycle updates.
- Administer and sustain enterprise cybersecurity toolsets, including ACAS or Nessus, Trellix or McAfee ePO, AESS, HIPS, VSE, DLP, and IDS/IPS.
- Configure security policies, plugins or content, repositories, integrations, and monitoring services.
- Perform vulnerability scanning, asset discovery, event analysis, troubleshooting, and remediation coordination.
- Build and maintain security scanning and monitoring capabilities for classified and releasability environments, including SIMLAN, TestNet, Reference Set systems, exercises, and other authorized mission environments.
- Maintain separation between exercise and ATO scanning data, and integrate newly authorized systems and locations into cybersecurity coverage.
- Support information systems throughout the RMF lifecycle, including categorization, security-control implementation and assessment, authorization, and authorization sustainment.
- Manage eMASS profiles, POA&Ms, STIG evidence, SSPs, SAPs, SARs, RARs, Security Authorization Packages, MOUs or MOAs, and other required authorization artifacts.
- Maintain continuous monitoring, compliance, and program cybersecurity readiness through ISCM, IAVM, policies and SOPs, hardware or software inventories, security baselines, applicable DoD or Army guidance, risk and remediation reporting, and coordination with the ISSM, system owners, engineers, administrators, and Enterprise, Commo, and program leadership in support of exercises, WFXs, Reference Set validation, network extensions, and other mission requirements.
Join us. The world can’t wait.
You Have:
- 4+ years of experience working with cybersecurity, information assurance, information system security engineering, or IT security
- Experience engineering, administering, hardening, patching, and maintaining Windows Server and RHEL systems in cybersecurity or mission environments, including STIG compliance, security baselines, and vulnerability remediation
- Experience administering ACAS, Nessus, or vulnerability management and security scanning technologies, including scanner configuration, plugins, repositories, asset discovery, scan analysis, troubleshooting, and remediation coordination, and administering Trellix or McAfee ePolicy Orchestrator (ePO) and AESS technologies, including HIPS, VSE, DLP, security policy configuration and tuning, deployment, troubleshooting, and endpoint security maintenance
- Experience with centralized log monitoring, IDS/IPS, and security event monitoring technologies, including analyzing security events and using monitoring results to identify risk and support remediation
- Experience supporting classified and releasability environments, segmented networks, exercises, and mission systems with distinct authorization, scanning, monitoring, or security boundaries, and applying NIST RMF and supporting information systems through security control implementation, assessment and authorization, continuous monitoring, remediation, and continued authorization activities
- Experience with eMASS, Xacta, or a DoD RMF assessment and authorization management platform, including system profile management, security controls, control evidence, STIG artifacts, scan evidence, POA&Ms, and authorization documentation
- Secret clearance
- Bachelor's degree
- HBSS, ACAS, RHEL, and DoD 8140 Policy Framework Cyber Workforce Certifications
- Ability to obtain an ISSM-designated Program Certification such a CISSP, CASP, SecurityX, or CISM Certification, within 6 months of hire date
Nice If You Have:
- Experience developing, reviewing, or maintaining RMF authorization artifacts, including SSPs, SAPs, SARs, RARs, POA&Ms, ISCM plans or strategies, security authorization packages, and supporting assessment evidence
- Experience coordinating cybersecurity activities across technical and government stakeholders, including system administrators, engineers, system owners, ISSMs, managers, and leadership
- Experience serving as an ISSO, ISSM, ISSE, security control assessor support specialist, or cybersecurity lead in a DoD environment
- Experience performing security scanning or vulnerability assessment of business application code, including interpreting scan results and coordinating remediation of identified application security findings
- Experience leading technical working groups, coordinating remediation across multiple teams, and translating cybersecurity policy into operational execution
- Knowledge of NIST 800-series security controls and applicable DoD and Army cybersecurity requirements, including STIGs, vulnerability management requirements, and compliance guidance
- Ability to communicate technical risk, remediation status, compliance requirements, and issues requiring decisions
- Ability to maintain accurate hardware and software inventories, security artifacts, scan evidence, configuration records, and compliance documentation supporting operational security and system authorization
- TS/SCI clearance
- Completion of AESS-specific Training such as AESS Administration or Advanced ePO Training
Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Secret clearance is required.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $69,300.00 to $158,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.Identity Statement
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Candidate AI Usage Policy
AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.
Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.
Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.