Cloud Security Engineer
About the role
Define, communicate, and implement cybersecurity architecture and administration processes for cloud environments across multiple network domains. Collaborate across our cloud infrastructure delivery team and with stakeholders using an Agile process to ensure design, implementation, verification, and continuous monitoring of cloud solutions across multiple domains. Automate cyber processes to support Continuous Authorization to Operate (CATO). Evaluate enhancements to Cloud environments against Risk Management Framework (RMF) controls and DoD Security Technical Implementation Guidance (STIG) requirements. Work without considerable direction. Mentor and supervise team members, as needed.
Requirements
- 2+ years of experience securing computer systems, performing DoD authorization activities, and writing security plans for secure IT architecture and computing hardware and software
- 2+ years of experience working with Cloud technologies, including Amazon Web Services (AWS), Microsoft Azure, or Infrastructure as a Service
- Experience automating tasks in cloud environments using scripting tools such as Bash, Powershell, Python, AWS, and Azure Command Line Interface (CLI)
- Experience with Cloud Native tools to support automation of continuous Authorization to Operate (cATO) objectives
- Experience supporting security assessment of software and system releases within a DevSecOps framework such as CI/CD pipeline
- Experience with code management tools such as Git supporting Infrastructure as Code (IaC)
- Experience with terminology, processes, and regulations of IT system A&A for the RMF
- Top Secret clearance
- HS diploma or GED with 6+ years of experience with Cloud Security or Bachelor's degree and 2+ years of experience with Cloud Security
- Ability to obtain DoD Directive 8570 or 8140 Series IAT Level II Certification within 90 days of hire date
Nice to have
- Experience planning, implementing, and managing continuous monitoring solutions and working within an Agile-based project management framework
- Experience with Agile processes and tools such as Jira and Confluence
- Experience with Linux or Windows system administration
- Experience with the Army, DoD, or Intelligence Community (IC) Cybersecurity or Information Systems
- Experience in Information System Security Engineer (ISSE) or Information System Security Officer (ISSO) roles
- Experience developing Body of Evidence artifacts for Assessment and Authorization (A&A) of systems under frameworks, including National Institute of Standards and Technology (NIST) Special Publication (SP) 800-Series, DoD Risk Management Framework (RMF), and Intelligence Community Directive (ICD) 503
- Knowledge of terminology and federal regulations related to specification, development, acquisition, and maintenance of IT systems
- Ability to work independently and as an integrated member of a project team
- Possession of excellent verbal and written communication skills
- TS/SCI clearance
Benefits
Health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits.
Pay
Salary is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD).
Schedule
This posting will close within 90 days from the posting date.
Work model expectations:
- Remote: Generally expected to have cameras on during meetings. May still require occasional in-person work at a Booz Allen or customer facility.
- Hybrid: Expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and role needs. May also require work from or visits to a customer facility.
- Onsite: Work will primarily be performed at a Booz Allen office or customer facility, collaborating directly with colleagues and customers as required by the role.