Information Systems Security Engineer

Booz Allen HamiltonReston, VirginiaOn-siteFull-timeStaff, 8–12 yearsListed 1 hour ago

Apply now

About this role

Information Systems Security Engineer
The Opportunity:

Security is most effective when it is part of system design from the beginning. As an Information Systems Security Engineer, you’ll help design, implement, and assess security controls that protect cloud-hosted information systems throughout their lifecycle.

In this role, you’ll work across cloud architecture, cybersecurity, Risk Management Framework, assessment and authorization, and operational readiness. You’ll help translate system requirements, architectures, data flows, and mission needs into practical security designs and controls that can be implemented, tested, documented, and sustained.

You’ll collaborate with cloud, network, application, database, cybersecurity, and customer stakeholders to identify risks, strengthen security protections, and support informed authorization decisions. If you’re motivated by solving complex security challenges and helping teams deliver systems that are both capable and trusted, we invite you to join us.

What You’ll Work On:

- Engineer, implement, and assess security controls for cloud-hosted information systems in accordance with RMF, ICD 503, NIST guidance, and assessment and authorization requirements.
- Translate security requirements, system architectures, data flows, and mission use cases into implementable technical controls and documented security designs.
- Develop and maintain A&A artifacts, including system security plans, control implementation statements, architecture diagrams, security assessment plans and procedures, POA&Ms, continuous-monitoring plans, and evidence packages.
- Assess control implementation and effectiveness, identify security gaps and residual risk, recommend remediation, and track corrective actions to closure.
- Apply Zero Trust, least privilege, defense in depth, segmentation, encryption, auditability, and secure configuration practices.
- Perform security engineering across requirements analysis, architecture reviews, implementation oversight, vulnerability remediation, testing, deployment, and operational transition.
- Support security assessments, authorization decisions, control validation, audit readiness, and continuous-monitoring activities.
- Communicate security risks, decisions, compliance status, remediation plans, and technical recommendations to program stakeholders.

Join us. The world can’t wait.

You Have:

- 8+ years of experience in information systems security engineering, cloud security, or cybersecurity
- Experience engineering, implementing, and assessing security controls for cloud-hosted information systems in accordance with RMF, ICD 503, NIST guidance, and assessment and authorization processes
- Experience securing cloud environments across identity, network, compute, storage, database, logging, monitoring, encryption, secrets management, and privileged-access capabilities
- Experience translating security requirements, system architectures, data flows, and mission use cases into implementable technical controls and documented security designs
- Experience developing and maintaining A&A artifacts, including system security plans, control implementation statements, security assessment plans, POA&Ms, continuous-monitoring plans, and evidence packages
- Experience applying Zero Trust, least privilege, defense in depth, segmentation, encryption, auditability, and secure configuration practices
- Experience performing security engineering across the system lifecycle
- Ability to assess control effectiveness, identify security gaps and residual risk, recommend remediation, and track corrective actions to closure
- TS/SCI clearance; willingness to take a polygraph exam
- Bachelor’s degree

Nice If You Have:

- Experience supporting classified, Government, or highly regulated information systems
- Experience with vulnerability management, configuration compliance, SIEM, SOAR, endpoint security, or cloud security posture management tools
- Experience with infrastructure as code and automated security configuration using Terraform, OCI Resource Manager, Ansible, APIs, or scripting
- Experience supporting authorization packages, control validation, audit readiness, remediation tracking, or continuous monitoring in an agency environment
- Possession of strong written and verbal communication skills
- Associate or Professional level security, architecture, networking, or cloud operations Certification

Clearance:

Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided .

Work Model
Our people-first culture prioritizes the benefits of collaboration. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.

- Remote : If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
- Hybrid : If this position is listed as hybrid, you will be expected to work from a Booz Allen or customer facility, in alignment with your leadership's expectations and the needs of the role.
- Onsite : If this position is listed as onsite, work will primarily be performed full-time at a customer facility, where employees will collaborate directly with colleagues and customers as required by the role.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.