Cloud Network Security Engineer, Senior
The Opportunity:
Everyone is trying to “harness the power of the cloud,” but not everyone knows how. As a Cloud Computing Infrastructure Architect, you know how to take advantage of cloud capabilities. On our team of experts, you’ll use cutting-edge enterprise cloud platforms to support your clients as they modernize their IT infrastructure and meet their most challenging missions. We’re looking for an engineer who can create advanced network security solutions in the cloud that will stand up to even the most advanced cyber threats.
As a senior cloud network security engineer at Booz Allen, you’ll research, design, and implement network security solutions to protect our client's most sensitive information in AWS, Azure, and GCP. You’ll coordinate with investment teams, executives, clients, and industry-leading vendors to identify the right mix of tools and techniques to translate your customer’s goals into a plan that will enable secure and effective cloud-hosted solutions. We need to come up with the best solution, so you’ll investigate new techniques, break free from the legacy model, and go where the industry is going. You’ll lead the team through a critical approach to design, including providing alternatives and customizing solutions to maintain a balance of security and mission needs. This is a chance to make a difference in the security of our country's financial markets, warfighters, citizen services, and healthcare. Your technical expertise will be vital as you help customers overcome their most difficult challenges by integrating cloud-native network security, next-generation firewalls (NGFW), Transport Layer Security (TLS), intrusion detection and prevention systems (IDS/IPS), packet capture (PCAP), web application firewalls (WAF), and network monitoring and analytics capabilities. You’ll be able to broaden your skillset into advanced and emerging areas of cybersecurity like zero trust networks, software-defined networking, and container security to support dynamic and immutable cloud infrastructure. Join our team as we deliver innovative cybersecurity solutions to protect our client's information in the cloud.
Join us. The world can’t wait.
You Have:
- 5+ years of experience with the government, public, or private industry
- Experience with firewall, network security, or network monitoring solutions, including leading firewall vendors, such as Palo Alto, Checkpoint, Fortinet, Cisco Firepower, or ASA
- Knowledge of network security concepts, including packet capture, intrusion detection, encryption in transit, break-and-inspect, and OWASP
- Knowledge of the OSI model, TCP/IP, TLS, FISMA, FedRAMP, PCI, RMF, DoD cybersecurity policies and control frameworks, modern encryption algorithms, IPSec, and TLS
- Knowledge of cloud-native and 3rd party network solutions to protect information hosted in Cloud providers, including AWS and Microsoft Azure, web application firewalls, and application delivery solutions, such as F5-BIG IP, Citrix ADC, and NGINX
- Ability to analyze requirements, design, implement, and operate highly available and scalable firewall and network security solutions in cloud environments
- Ability to educate and inform clients on network security concepts and how they can be applied to protect information, communicate and convey complex network solutions and concepts to a wide range of stakeholder audiences, and create technical artifacts, including logical and physical network diagrams, technical specifications, system installation procedures, and bills of materials
- Ability to obtain a security clearance
- HS diploma or GED
Nice If You Have:
- Experience with AWS cloud-native network and solutions, including Security Groups and ACLs, VPC, Transit Gateway, VPC FlowLogs, PrivateLink, and Direct Connect
- Experience with software-defined network and WAN solutions
- Experience with network monitoring and security solutions for containerization technologies, including Docker, Kubernetes, and OpenShift
- Experience with writing proposals, whitepapers, and other technical marketing materials to compete for and win new business
- Experience with Git, Jenkins, and Ansible for implementing CI/CD pipeline solutions, infrastructure as code, and automation solutions
- Ability to develop code or scripts using Python, JavaScript, or programming languages
- Ability to lead a team of engineers in the development of complex integrated solutions
- Secret clearance
- Bachelor's degree in Mathematics, Science, or Engineering
- Security+, Cisco CCNA, Cisco CCNP, Palo Alto PCNSE, Palo Alto PCNSA, CISSP, AWS, GCP, or Microsoft Azure Certification
Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.
Create Your Career:
Grow With Us
Your growth matters to us—that’s why we offer a variety of ways for you to develop your career. With professional and leadership development opportunities like upskilling programs, tuition reimbursement, mentoring, and firm-sponsored networking, you can chart a unique and fulfilling career path on your own terms.
A Place Where You Belong
Diverse perspectives cultivate collective ingenuity. Booz Allen’s culture of respect, equity, and opportunity means that, here, you are free to bring your whole self to work. With an array of business resource groups and other opportunities for connection, you’ll build your community in no time.
Support Your Well-Being
Our comprehensive benefits package includes wellness programs with HSA contributions, paid holidays, paid parental leave, a generous 401(k) match, and more. With these benefits, plus the option for flexible schedules and remote and hybrid locations, we’ll support you as you pursue a balanced, fulfilling life—at work and at home.
Your Candidate Journey
At Booz Allen, we know our people are what propel us forward, and we value relationships most of all. Here, we’ve compiled a list of resources so you’ll know what to expect as we forge a connection with you during your journey as a candidate with us.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $81,800.00 to $186,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.
Work Model
Our people-first culture prioritizes the benefits of flexibility and collaboration, whether that happens in person or remotely.
- If this position is listed as remote or hybrid, you’ll periodically work from a Booz Allen or client site facility.
- If this position is listed as onsite, you’ll work with colleagues and clients in person, as needed for the specific role.
EEO Commitment
We’re an equal employment opportunity/affirmative action employer that empowers our people to fearlessly drive change – no matter their race, color, ethnicity, religion, sex (including pregnancy, childbirth, lactation, or related medical conditions), national origin, ancestry, age, marital status, sexual orientation, gender identity and expression, disability, veteran status, military or uniformed service member status, genetic information, or any other status protected by applicable federal, state, local, or international law.