> Markdown version of [/jobs/ext/2103645-software-engineer](https://www.wearedevelopers.com/jobs/ext/2103645-software-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Software Engineer - **Company:** Booz Allen Hamilton Inc. - **Location:** McLean, VA, United States - **Experience:** Expert - **Salary:** $112,800.0 - $257,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Audit Trail, Configuration Management, Code Reuse, Code Review, Computer Programming, Continuous Integration, Github, Identity and Access Management, Python (Programming Language), Machine Learning, Policy as Code, Pulumi, SC Clearance, AI Platforms, Infrastructure Automation Frameworks, Github Enterprise, Graphql, Api Design, Terraform, Devsecops - **Published:** August 18, 2026 - **Apply:** https://www.dice.com/job-detail/4b0c19ca-15ec-4472-b86e-056c2237fa7f ## About the Role * 7+ years of experience with sof tware engineering, DevSecOps, or platform engineering * Experience with GitHub Enterprise administration at scale * Experience with GitHub Actions, reusable workflows, and pipeline security controls * Experience with scripting and programming, such as Python or Go, for automation and tooling * Experience with IaC tools, such as Terraform and Pulumi, and API-driven configuration management * Experience with SBOM standards, such as SPDX and CycloneDX, and artifact signing, such as Sigstore and Cosign * Knowledge of secure sof tware supply chain principles, SLSA, SSDF, and NIST 800-218 * Secret clearance * HS diploma or GED Nice If You Have : * Experience in a large, regulated environment, such as DoD, FedRAMP, CMMC, SOX, or HIPAA * Experience with multi-org governance, cross-repo code reuse, and enterprise-scale GitHub migration and modernization * Experience with container security, policy -as-code, such as OPA or Kyverno, and compliance automation tooling * Knowledge of OpenSSF best practices and secure sof tware maturity models * Possession of strong interpersonal and communication skills to communicate with engineering and leadership stakeholders ## Description As an AI sof tware engineer, you know that good sof tware is more than just a nice-looking interface + data. Today, you need to develop user-focused solutions that increase organizational efficiency and enable better decision-making. Booz Allen is the leading provider of AI services to the nation and we're looking for a sof tware engineer like you to create artifi cia l intelligence and machine learning solutions that help solve industry's toughest problems. Here, you'll lead a team as they create and implement complete end-to-end solutions that modernize client systems. You'll ensure that your team's solutions consider the broader ecosystem and operating environment as well as future functionality and enhancements. You will architect the patterns, templates, and automation that empower teams across the enterprise to start projects quickly while meeting the highest standards for security, compliance, and delivery excellence without sacrificing develop er velocity. What You'll Do: * Design and implement a repeatable, automated process to create new GitHub organizations pre-configured for secure sof tware delivery. * Configure default repository, branch, and team settings aligned with SLSA Level 3, NIST Secure Sof tware Develop ment Framework ( SSDF ) , and other applicable security standards. * Establish governance controls, access management patterns, and audit logging capabilities to ensure compliance at scale. * Create and maintain reusable GitHub Actions workflows and pipeline components for common sof tware delivery scenarios. * Integrate code scanning, dependency scanning, artifact signing, provenance generation, and release workflows into the default templates. * Ensure CI / CD workflows produce cryptographically verifiable build artifacts compliant with SLSA provenance requirements. * Implement organization-wide enforcement of branch protection rules, mandatory reviews, security scanning, and secrets detection. * Integrate GitHub Advanced Security features into templates to enforce code scanning, Dependabot alerts, and secret scanning by default. * Automate compliance evidence collection for internal audits and external frameworks such as SOC 2, FedRAMP, or CMMC. * Develop tooling such as Terraform, GitHub CLI, REST, or GraphQL APIs to provision and configure GitHub orgs at scale. * Integrate GitHub org provisioning into enterprise onboarding workflows. * Establish guardrails that allow autonomy for product teams while maintaining enterprise security baselines. * Stay ahead of evolving sof tware supply chain security requirements. * Recommend and implement improvements for develop er experience , security posture, and operational efficiency. * Mentor engineering teams on secure sof tware develop ment and delivery practices. ## Related Videos - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [Putting the Graph In GraphQL With The Neo4j GraphQL Library](https://www.wearedevelopers.com/videos/257-putting-the-graph-in-graphql-with-the-neo4j-graphql-library) - [Why segmenting your infrastructure into tiers makes your infrastructure design better](https://www.wearedevelopers.com/videos/1960-why-segmenting-your-infrastructure-into-tiers-makes-your-infrastructure-design-better) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Best Practices for Using GitHub Secrets](https://www.wearedevelopers.com/videos/1214-best-practices-for-using-github-secrets) - [Coffee With Developers - Kyle Daigle, COO of GitHub](https://www.wearedevelopers.com/videos/910-coffee-with-developers-kyle-daigle-coo-of-github) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [The Best Software Developer Blogs to Read](https://www.wearedevelopers.com/magazine/156-the-best-software-developer-blogs-to-read) - [4 reasons to start or update your GitHub profile](https://www.wearedevelopers.com/magazine/45-4-reasons-to-start-or-update-your-github-profile)