Technical Security Engineer
About the role
The Technical Security Engineer plays a crucial role in securing enterprise cross-domain platforms for multiple government clients. They are responsible for identifying and mitigating security threats, implementing security solutions, and ensuring compliance with security standards.
Responsibilities
- Develop and implement security solutions to protect critical infrastructure and mission data.
- Perform risk and vulnerability assessments in network, system, and application areas.
- Leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise.
- Recommend secure solutions and help design architecture improvements to enhance security across the platform.
- Collaborate with other teams to communicate security complexities effectively to senior management.
- Support Risk Management Framework (RMF) processes through ATO or ATO renewal and coordinate with ISSMs, ISSOs, assessors, and authorizing officials.
Requirements
- 3+ years of experience with information system security management, including monitoring, auditing, and analyzing information for risks and ensuring secure system operations.
- Experience in secure systems administration, including system hardening, patching, logging, and configuration management.
- Experience authoring or editing technical security documentation and developing accreditation body of evidence packages.
- Knowledge of network fundamentals, including TCP/IP, firewalls, VLANs, routing, and VPNs.
- Knowledge of NIST SP 800-37, NIST SP 800-53, and CNSSI 1253.
- Ability to independently review technical system architectures and identify security gaps.
- Ability to map 800-171 / CMMC practices to technical implementations.
- TS/SCI clearance with a polygraph.
Qualifications
- Bachelor’s degree in a CS or IT field and 5+ years of experience with security engineering or systems/network administration, or 10+ years of experience with security engineering or systems/network administration in lieu of a degree.
Skills
- Experience with RMF processes and tools such as Xacta or eMass in DoD or cleared environments.
- Experience with SCAP, ACAS, or Tenable, Splunk, or similar security tools.
- Experience with Red Hat Enterprise Linux or Rocky.
- Knowledge of Linux firewalls, Linux RPMs, networking configuration, and DNS.
Benefits
- Health, life, disability, financial, and retirement benefits.
- Paid leave, professional development, tuition assistance, work-life programs, and dependent care.
- Recognition awards program.
Pay
The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD).
Schedule
Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits.
Identity Statement
We will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Candidate AI Usage Policy
The use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.
Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.