Security Engineer
Role details
Job location
Tech stack
Job description
We need a technical professional responsible for designing, building, and maintaining systems that protect an organization's data, networks, and IT infrastructure from cyber-attacks. In this position, you will focus on proactive defense by creating secure architectures and automated defenses.
What You'll Work On:
- Design and deploy firewalls, int rus ion detection systems or intrusion prevention systems ( IDS / IPS ) , and encryption protocols.
- C ond uct regular penetration tests and security audits to identify and patch system weaknesses.
- Perform Identity and Access Management ( IAM ) , including implementing policies to ensure only authorized users can access sensitive company data.
- Lead or assist in the technical response to security breaches, including digital forensics and damage mitigation.
- Create and enforce company-wide security standards such as password management and data classification.
- Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management.
- Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises.
- Lead risk and vulnerability assessments in network, system, and application areas.
- Leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise.
Requirements
- 6+ years of experience administering Elastic Stack, including Elasticsearch, Kibana, Logstash, Beats, or Fleet
- Experience managing Elasticsearch index lifecycle policies , index templates, and data streams at scale, and building Kibana dashboards, visualizations, and lens-based analytics for security operations
- Experience with Elastic Security detection rules, alerts, and case management workflows
- Experience with log ingestion pipeline design, including parsing, enrichment, and normalization across heterogeneous log sources such as network, endpoint, identity, and cloud
- Experience with Elastic Common Schema ( ECS ) and mapping non-standard log sources into ECS-compliant fields
- Experience with ES|QL or EQL for advanced threat hunting and detection-as-code workflows
- Experience working in a DoD, IC, or federal cybersecurity environment such as SOC, SIEM operations, or defensive cyber
- Secret clearance
- HS diploma or GED
Nice If You Have:
- Experience building SOAR- related automation around Elastic, including webhook actions, connector integrations, or n8n / XSOAR orchestration
- Experience with Elastic's transforms and runtime fields for creating enriched security datasets and risk scoring indices
- Experience with RAG architectures or vector search in Elasticsearch for security knowledge retrieval, including TTP lookup and incident context enrichment
- Experience with Elastic's ML jobs, including for User and Entity Behavior Analytics ( UEBA ) , rare process detection, or anomalous login patterns
- Experience with Elastic AI Assistant or integration of LLMs into Elastic Security workflows such as natural language querying and alert triage assistance
- Experience building or fine-tuning ML models outside Elastic, including Python, scikit-learn, and PyTorch, for security use cases such as threat detection or lateral movement scoring
- Knowledge of AI / ML concepts applied to security analytics such as anomaly detection, behavioral baselining, or threat scoring
- TS/SCI clearance
Benefits & conditions
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $112,800.00 to $257,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.
Identity Statement
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.