Cloud Security Engineer, Senior
Define, communicate, and implement cybersecurity architecture and administration processes for cloud environments across multiple network domains. Collaborate across our cloud infrastructure delivery team and with stakeholders using an Agile process to ensure design, implementation, verification, and continuous monitoring of cloud solutions. Automate cyber processes to support Continuous Authorization to Operate (CATO). Evaluate enhancements to cloud environments against Risk Management Framework (RMF) controls and DoD Security Technical Implementation Guidance (STIG) requirements. Work without considerable direction. Mentor and supervise team members, as needed.
Responsibilities
- Secure computer systems, perform DoD authorization activities, and write security plans for secure IT architecture and computing hardware and software
- Work with cloud technologies, including Amazon Web Services (AWS), Microsoft Azure, or Infrastructure as a Service
- Automate tasks in cloud environments using scripting tools such as Bash, PowerShell, Python, AWS, and Azure Command Line Interface (CLI)
- Support automation of CATO objectives using cloud-native tools
- Apply terminology, processes, and regulations of IT system Assessment and Authorization (A&A) for the RMF
- Support security assessment of software and system releases within a DevSecOps framework such as CI/CD pipelines
- Use code management tools such as Git supporting Infrastructure-as-Code (IaC)
- Obtain a DoD Directive 8570 or 8140 Series IAT Level II Certification within 90 days of hire date
Requirements
- 8+ years of experience securing computer systems, performing DoD authorization activities, and writing security plans for secure IT architecture and computing hardware and software
- 8+ years of experience working with cloud technologies, including Amazon Web Services (AWS), Microsoft Azure, or Infrastructure as a Service
- 4+ years of experience with Army, DoD, or Intelligence Community (IC) cybersecurity or information systems
- 2+ years of experience automating tasks in cloud environments using scripting tools such as Bash, PowerShell, Python, AWS, and Azure CLI
- HS diploma or GED and 6+ years of experience with cloud security, or Bachelor's degree and 2+ years of experience with cloud security
Qualifications
- Experience with cloud-native tools to support automation of CATO objectives
- Experience supporting security assessment of software and system releases within a DevSecOps framework
- Experience with code management tools such as Git supporting Infrastructure-as-Code (IaC)
- Experience planning, implementing, and managing continuous monitoring solutions
- Experience working within an Agile-based project management framework and tools such as Jira and Confluence
- Experience with Linux or Windows system administration
- Experience in Information System Security Engineer (ISSE) or Information System Security Officer (ISSO) roles
- Experience developing Body of Evidence artifacts for A&A of systems under frameworks, including NIST SP 800-Series, DoD RMF, and Intelligence Community Directive (ICD) 503
- Knowledge of terminology and federal regulations related to specification, development, acquisition, and maintenance of IT systems
- Ability to work independently and as an integrated member of a project team
- Excellent verbal and written communication skills
- Top Secret clearance; TS/SCI clearance is a plus
Benefits
- Health, life, disability, financial, and retirement benefits
- Paid leave
- Professional development and tuition assistance
- Work-life programs and dependent care
- Recognition awards program for exceptional performance and superior demonstration of company values
Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits.
Pay
The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). Salary is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements.
Schedule
This posting will close within 90 days from the posting date.
Work model expectations:
- Remote: Generally expected to have cameras on during virtual meetings. May occasionally be required to work in person at a Booz Allen or customer facility.
- Hybrid: Expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. May also be required to work from or visit a customer facility.
- Onsite: Work will primarily be performed at a Booz Allen office or customer facility, collaborating directly with colleagues and customers as required by the role.