Booz Allen

EnterpriseCybersecurityandITRiskManagementOperationsLead

$113–113k McLean, Virginia, United States FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Lead candidates.

The Brief

“Enterprise Cybersecurity and IT Risk Management Operations Lead at Booz Allen. Skills: Cybersecurity operations, IT risk management, Enterprise risk governance. Direct daily operations. Oversee core workflows”

What You'll Achieve.

Ensure risk workflows executed consistently; Ensure risk workflows executed efficiently; Support timely risk treatment; Support accurate risk records; Support actionable operational reporting; Drive tasks to closure

Industry & Context.

Problems you'll solve

Process gaps; Data quality issues; Opportunities for improvement; Operational blockers; Complex operational problems

Eligibility Requirements

U. S. citizenship required, On camera during interviews

What They're Looking For.

Must Have

8+ years cybersecurity IT risk leadership, Manage day-to-day cybersecurity IT risk operations, Coordinate product risk assessment workflows, Support AI use case risk reviews, Manage operational lifecycle security findings, Coordinate vulnerability risk tracking, Generate operational risk reports, Monitor operational cybersecurity controls, Prioritize daily functional tasks, Manage team workflows, Resolve operational blockers, HS diploma or GED

Nice to Have

7+ years people management, Experience tracking risk data, Manage workflows in GRC tools, Identify operational trends, Identify data quality issues, Identify workflow bottlenecks, Identify recurring exception patterns, Knowledge of security controls, Alignment to key regulations, Triage complex operational problems, Determine level of effort, Secure resources, Drive tasks to closure, Bachelor’s degree, Cyber risk certifications

What You'll Do.

Direct daily operations

Oversee core workflows

Manage operational intake

Triage operational intake

Assign operational intake

Track operational intake

Report on operational intake

Escalate operational intake

Ensure risk workflows executed consistently

Ensure risk workflows executed efficiently

Align risk workflows with governance

Maintain hands-on approach

Collaborate with technical teams

Collaborate with control owners

Collaborate with product owners

Collaborate with business stakeholders

Collaborate with security operations teams

Support timely risk treatment

Support accurate risk records

Support actionable operational reporting

Report operational insights

Report workflow metrics

Report exception trends

Report vulnerability themes

Report risk register inputs

Inform enterprise risk strategy

Inform governance improvements

Inform executive reporting

Inform maturity roadmap priorities

Monitor operational cybersecurity controls

Monitor workflow adherence

Identify process gaps

Identify data quality issues

Identify opportunities for improvement

Prioritize daily functional tasks

Manage team workflows

Resolve operational blockers

Collaborate with peer leaders

Maintain risk management discipline

How You'll Work.

Team & Collaboration

Cross-functional coordination; Vendor management; Stakeholder management; Technical teams; Control owners; Product owners; Business stakeholders; Security operations teams; Peer leaders

Communication Scope

Operational reporting; Executive reporting

Full Job Description

Enterprise Cybersecurity and IT Risk Management Operations Lead **The Opportunity:** Direct the daily operations of the cybersecurity and IT risk management team, overseeing core workflows including user exception management, product risk assessment execution, security findings tracking, vulnerability risk coordination, AI use case risk review support, and enterprise risk register maintenance. Manage operational intake, triage, assignment, tracking, reporting, and escalation processes to ensure cybersecurity risk workflows are executed consistently, efficiently, and in alignment with established enterprise risk governance standards. Maintain a hands-on approach to daily execution, collaborating with technical teams, control owners, product owners, business stakeholders, and security operations teams to support timely risk treatment, accurate risk records, and actionable operational reporting. Report to and partner with the Enterprise IT and Cybersecurity Risk Evolution Lead to provide operational insights, workflow metrics, exception trends, findings data, vulnerability themes, and risk register inputs that inform enterprise risk strategy, governance improvements, executive reporting, and maturity roadmap priorities. Due to the nature of work performed within this facility, U.S. citizenship is required. **You Have:** * 8+ years of experience working in cybersecurity IT risk leadership * Experience managing day-to-day cybersecurity and IT risk operations, including enterprise risk register maintenance, security findings tracking, user exception workflows, and operational risk intake * Experience coordinating product risk assessment workflows and supporting AI use case risk reviews in alignment with established enterprise risk governance standards * Experience managing the operational lifecycle of security findings, including intake, assignment, tracking, aging, reporting, and escalation, while remediation remains owned by accountable control, system, technology, prod

Free ATS check

Applying for this Enterprise Cybersecurity and IT Risk Management Operations Lead role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Booz Allen?

Real rants from real employees. Read before you apply.

Read Company Rants →