Cloud SecDevOps Engineer, Senior in Mc Lean, VA

View All Business Services jobs


Business Services   •  

5 - 7 years

Posted 7 weeks ago

The Challenge:

Everyone knows security needs to be "baked in" to a system architecture, but you actually know how to bake it in. You can identify and implement Cybersecurity solutions to protect the confidentiality, integrity, and availability of systems in leading commercial Clouds like Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP). What if you could use your Cyber engineering skills to design and build Cybersecurity solutions in the Cloud to protect personal, financial, health, and other sensitive information for government agencies and global enterprises? We're looking for an engineer who can create advanced Cybersecurity solutions in the Cloud that will stand up to even the most advanced Cyber threats.

As a Senior Cloud SecDevOps Engineer at Booz Allen, you'll research, design, and develop automation and Cybersecurity solutions to protect our client's most sensitive information in AWS, Azure, and GCP. You'll coordinate with investment teams, executives, clients, and industry leading vendors to identify the right mix of tools and techniques to translate your customer's goals into a plan that will enable secure and effective Cloud-hosted solutions. We need to come up with the best solution, so you'll investigate new techniques, break free from the legacy model, and go where the industry is going. You'll lead the team through a critical approach to design, providing alternatives and customizing solutions to maintain a balance of security and mission needs. This is a chance to make a difference in the security of our country's financial markets, warfighters, citizen services, and healthcare. Your technical expertise will be vital as you help customers overcome their most difficult challenges by integrating security best practices like infrastructure as code, automated compliance and security testing, immutable containers, and end-to-end automated deployments. You'll be able to broaden your skillset into advanced and emerging areas of Cybersecurity like zero trust networks, automated incident response, and advanced analytics to support dynamic and secure cloud infrastructure. Join our team as we deliver innovative Cybersecurity solutions to protect our client's information in the Cloud.

Empower change with us.

You Have:

-5 years of experience with engineering and administering production IT infrastructure systems or networks for large commercial enterprises or government agencies, including design, development, integration, and testing

-2 years of experience with building and supporting integrated solutions in AWS, Azure, or Google Cloud Platform and using version control systems to manage code, including Git, SVN, and BitBucket

-Experience with using and managing continuous integration (CI) and continuous delivery (CD) pipeline solutions, including Jenkins, Bamboo, Travis CI, and GitLab

-Experience with scripting languages to automate tasks, including Bash, Python, and PowerShell and configuration automation tools, including Ansible, Puppet, and Chef

-Experience with Infrastructure as Code concepts and tools, including AWS CloudFormation, Terraform, Packer, and Azure Resource Manager (ARM) templates

-Experience with static code analysis for software or infrastructure code, including SonarQube, Fortify, cfn-nag, and Terrascan

-Experience with vulnerability scanners, including Tenable Nessus, Qualys, Fortify WebInspect, and Acunetix

-Ability to obtain a security clearance

-BA or BS degree in Math, Science, or Engineering

-Security+ Certification

Nice If You Have:

-Experience with container and orchestration solutions, including Docker, Kubernetes, and OpenShift

-Experience with serverless technologies, including AWS Lambda, Azure Functions, and Google Cloud Functions

-Experience with APIs and web services, including REST and SOAP

-Experience with unit, integration, and functional testing tools, including JUnit and Selenium

-Experience with application, network, and infrastructure performance monitoring and analysis

-Knowledge of secure systems development practices, including principle of least privilege, secrets management, static code analysis, and artifact management

-Knowledge of Cybersecurity concepts, including threats, vulnerabilities, security operations, encryption, boundary defense, auditing, authentication, and supply chain risk management

-Knowledge of secure configuration guidelines, including DoD STIGs and CIS benchmarks

-Knowledge of Agile software development methodologies

-Knowledge of high availability and resiliency concepts for infrastructure, including failover, clustering, disaster recovery, blue-green deployment, and site reliability engineering

-Secret clearance

-AWS SysOps Administrator, Developer, or DevOps Engineer Certifications

-CISSP Certification


Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.

Build Your Career:

Rewarding work, fun challenges, and a ton of investment in our people—that's Booz Allen cyber. When you join Booz Allen, we'll help you develop the career you want.

Competitions — From programming competitions at our PyNights (Python competition and learning events) to competing in CTFs, we've got plenty of chances for you to show off your skills.

Paid Research — Have an innovative idea to explore or hypothesis to test? You can participate in challenges via our crowdsourcing platform, the Garage, and other programs to be awarded dedicated time and/or funding to advance your skills.

Cyber University — CyberU has more than 5000 instructor-led and self-paced cyber courses, a free online library that you can access from just about anywhere—including your phone—and certification exam prep guides that include practical assessments to prepare you for your exam.

Academic Partnerships — In addition to our tuition reimbursement benefit, we've partnered with University of Maryland University College to offer two graduate certificate programs in cybersecurity—fully funded without a tuition cap.

Maker/Hackerspaces — Race drones, print 3D gadgets, drink coffee from our Wi-Fi coffee maker, and get hands-on training on tools and tech from in-house experts in our dedicated maker and hackerspaces.