Full Job Description
Cloud Security Engineer
The Opportunity:
define, communicate, and implement cybersecurity architecture and administration processes for Oracle Cloud Infrastructure (OCI), Amazon Web Services (AWS) and Microsoft Azure cloud environments across multiple network domains. Collaborate across our cloud infrastructure delivery team and with stakeholders using an Agile process to design, implement, verify, and continuously monitor cloud solutions across multiple domains. Develop Risk Management Framework (RMF) Body of Evidence artifacts, including system security plans and cybersecurity concept of operations documents for Cloud environments in alignment with existing RMF packages. Support assessment and authorization activities to achieve and maintain Authority to Operate (ATO) on multiple networks. Evaluate enhancements to Cloud environments against RMF controls and DoD Security Technical Implementation Guidance (STIG) requirements. Support data capture and configuration within tools to enable achievement of the organization's Assessment and Authorization (A&A) objectives. Work without considerable direction. Mentor and supervise team members, as needed.
You Have:
6+ years of experience securing computer systems, performing DoD authorization activities, developing a body of evidence for RMF, and writing security plans
6+ years of experience with secure IT architecture and computing hardware and software
Experience working with Cloud technologies, including AWS, Azure, GCP, Oracle, or Infrastructure as a Service
Experience with incident monitoring and endpoint security
Experience with Red Hat Enterprise Linux (RHEL) or Windows system administration
Experience supporting security reviews of software and system releases within a DevSecOps framework and supporting recurring path-to-production software and system release activities
Experience with terminology, processes, and regulations of IT system A&A for the RMF
Secret clearance
HS diploma or GED
Ability to obtain a DoD 8570 or 8140 IAT Level II Certification within 90 days of hire date
Nice If You Have:
Experience assessing and authorizing network connections
Experience planning, implementing, and managing continuous monitoring solutions and working within an Agile-based project management framework
Experience with scripts, PowerShell, and Bash to provide automated scanning or monitoring solutions
Experience with code management tools such as Git or GitLab in a team setting
Experience with the Army, DoD, or Intelligence Community (IC) Information Assurance (IA) or Information Systems
Experience in Information System Security Engineer (ISSE) or Information System Security Officer (ISSO) roles
Knowledge of terminology and federal regulations related to the specification, development, acquisition, and maintenance of IT systems
Ability to work independently and as an integrated member of a project team
Possession of excellent verbal and written communication skills
TS/SCI clearance
Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Secret clearance is required.
Compensation
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.
Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.
- Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
- Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
- Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.