Zero Trust Information Systems Security Engineer
About the Role
As a Zero Trust Information Systems Security Engineer, you will lead the development and implementation of security solutions to protect critical military infrastructure. You'll analyze complex challenges, research and develop security solutions, and assess security threats to implement effective controls. This role focuses on Identity, Credential, and Access Management (ICAM) and Privileged Access Management (PAM) solutions, with an emphasis on zero trust architecture.
Responsibilities
- Design, develop, and implement ICAM and PAM solutions, specifically leveraging the Delinea PAM solution
- Safeguard critical information systems and data against advanced cyber threats
- Utilize data analytics, visualization, and observability techniques to enhance threat detection and incident response
- Collaborate with cross-functional teams to develop security policies and evaluate security controls
- Ensure confidentiality, integrity, and availability of sensitive information
- Troubleshoot and resolve complex identity and federation issues
Requirements
- 3+ years of experience in ISSE, ISSO, or IT roles
- 3+ years of experience with ICAM principles and technologies (e.g., SailPoint, Radiant Logic, Ping Federate, Delinea)
- 3+ years of experience with directory services administration and integration (e.g., Active Directory)
- 3+ years of experience with SAML, OAuth 2.0, and OpenID Connect (OIDC) integrations
- 3+ years of experience with DoD architecture, strategic planning, and regulatory requirements
- Knowledge of Zero Trust principles and frameworks (e.g., NIST 800-207)
- TS/SCI clearance
- Bachelor’s degree
- IASAE II Certification (e.g., CASP+, CISSP, or CSSLP)
Qualifications
- Experience with cybersecurity tools (e.g., IDS, IPS, firewalls)
- Experience with SIEM systems (e.g., Splunk, Elastic, Logstash, Kibana)
- Experience with data broker technologies (e.g., Cribl, Confluent)
- Programming or scripting experience (e.g., PowerShell, Ansible, Python)
- Experience integrating AI/ML capabilities for IT operations and security monitoring
- Offensive Security Certified Professional (OSCP), GIAC Certified Incident Handler (GCIH), or GIAC Vulnerability Assessment Professional (GVAP) Certification (nice to have)
Benefits
Booz Allen offers a comprehensive benefits package, including health, life, disability, financial, and retirement benefits, paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges exceptional performance and demonstration of our values.
Pay
The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). Salary is determined by factors such as location, education, skills, and experience.
Schedule
This position may be remote, hybrid, or onsite, depending on the specific needs of the role and leadership expectations.