EngineerJobs.io
← Back to all jobs

Job Description

In this Information Systems Security Engineer role, you will design, implement, and evaluate security controls for cloud-hosted information systems across the full lifecycle. You will work with cloud, cybersecurity, risk management, and assessment and authorization stakeholders to convert security requirements into practical technical designs and to support authorization decisions.

Location and Work Model

Reston, VA (onsite)

Key Responsibilities

  • Engineer, implement, and assess security controls for cloud-hosted information systems in alignment with RMF, ICD 503, NIST guidance, and assessment and authorization requirements.
  • Translate security requirements, system architectures, data flows, and mission use cases into technical controls and documented security designs.
  • Develop and maintain A&A artifacts, including system security plans, control implementation statements, architecture diagrams, security assessment plans and procedures, POA&Ms, continuous-monitoring plans, and evidence packages.
  • Assess control implementation and effectiveness, identify security gaps and residual risk, recommend remediation, and track corrective actions to closure.
  • Apply security engineering practices including Zero Trust, least privilege, defense in depth, segmentation, encryption, auditability, and secure configuration.
  • Perform security engineering activities across the system lifecycle, including requirements analysis, architecture reviews, implementation oversight, vulnerability remediation, testing, deployment, and operational transition.
  • Support security assessments, authorization decisions, control validation, audit readiness, and continuous-monitoring efforts.
  • Communicate security risks, decisions, compliance status, remediation plans, and technical recommendations to program stakeholders.

Required Qualifications

  • 8+ years of experience in information systems security engineering, cloud security, or cybersecurity.
  • Experience engineering, implementing, and assessing security controls for cloud-hosted information systems using RMF, ICD 503, NIST guidance, and assessment and authorization processes.
  • Experience securing cloud environments across identity, network, compute, storage, database, logging, monitoring, encryption, secrets management, and privileged-access capabilities.
  • Experience translating security requirements, system architectures, data flows, and mission use cases into implementable technical controls and security designs.
  • Experience developing and maintaining A&A artifacts, including system security plans, control implementation statements, security assessment plans, POA&Ms, continuous-monitoring plans, and evidence packages.
  • Experience applying Zero Trust, least privilege, defense in depth, segmentation, encryption, auditability, and secure configuration practices.
  • Experience performing security engineering across the system lifecycle.
  • Ability to assess control effectiveness, identify security gaps and residual risk, recommend remediation, and track corrective actions to closure.
  • TS/SCI clearance; willingness to take a polygraph exam.
  • Bachelor’s degree.

Technologies

  • RMF, ICD 503, NIST
  • Zero Trust, least privilege, defense in depth, segmentation, encryption, auditability
  • Terraform, OCI Resource Manager, Ansible
  • SIEM, SOAR

Nice If You Have

  • Experience supporting classified, Government, or highly regulated information systems.
  • Experience with vulnerability management, configuration compliance, SIEM, SOAR, endpoint security, or cloud security posture management tools.
  • Experience with infrastructure as code and automated security configuration using Terraform, OCI Resource Manager, Ansible, APIs, or scripting.
  • Experience supporting authorization packages, control validation, audit readiness, remediation tracking, or continuous monitoring in an agency environment.
  • Strong written and verbal communication skills.
  • Associate or Professional level security, architecture, networking, or cloud operations certification.

Clearance Requirements

Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information. TS/SCI clearance is required.

Compensation

The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD).

Benefits

  • Health, life, disability, financial, and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program acknowledging employees for exceptional performance and superior demonstration of company values
  • Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs
  • Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits

Identity Verification and Interview Requirements

  • As part of the hiring process, you will complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud.
  • You are expected to be on camera during interviews and assessments.
  • Booz Allen reserves the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

  • The use of artificial intelligence (AI) or other tools to assist with responses during interviews (in-person or virtual) is prohibited unless permission is explicitly provided.

Work Model Details

  • Onsite: work will primarily be performed full-time at a customer facility, where employees will collaborate directly with colleagues and customers as required by the role.

Similar Jobs