> Markdown version of [/jobs/ext/2638610-zero-trust-information-systems-security-engineer](https://www.wearedevelopers.com/jobs/ext/2638610-zero-trust-information-systems-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Zero Trust Information Systems Security Engineer - **Company:** Booz Allen Hamilton Inc. - **Location:** Honolulu, HI, United States - **Experience:** Experienced - **Salary:** $99,000.0 - $225,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Artificial Intelligence, Cyber Security, Information Systems, Computer Programming, Dynamic Host Configuration Protocol, Linux, Domain Name System (DNS), Multi-Factor Authentication, Hypertext Transfer Protocols (HTTP), Identity and Access Management, Information Technology Operations, Intrusion Detection and Prevention, Intrusion Detection Systems, Python (Programming Language), Network Security, Lightweight Directory Access Protocols (LDAP), Machine Learning, Network Protocols, OAuth, OpenID, Ping (Networking Utility), Windows PowerShell, Openid Connect, Logstash, Ansible, Zero Trust Network Access, Security Assertion Markup Language (SAML), Security Software, Security Information and Event Management, Systems Architecture, Systems Integration, Transmission Control Protocol (TCP), Scripting, In-Plane Switching (IPS), Firewalls (Computer Science), Cybercrime, Data Analytics, Puppet, SailPoint, Kibana, Terraform, Operating System Security, Splunk, Confluent, Vulnerability Analysis - **Published:** August 10, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/87998503/1 ## About the Role * 3+ years of experience in an ISSE, ISSO, or IT role * 3+ years of experience with ICAM principles and technologies such as multi-factor authentication, privileged access management, security operations, and security architecture leveraging ICAM solutions such as SailPoint, Radiant Logic, Ping Federate, and Delinea * 3+ years of experience with administration and integration of directory services, including LDAP compliant directories such as Active Directory * 3+ years of experience with SAML, OAuth 2.0, and OpenID Connect (OIDC) integrations and troubleshooting protocol exchanges and resolving complex identity and federation issues * 3+ years of experience with DoD architecture, strategic planning, concept of operations, performance attributes, system architecture and design, evolving methodologies, and statutory and regulatory requirements * Knowledge of Zero Trust principles and frameworks such as NIST 800-207 * Ability to resolve complex identity and federation issues * TS/SCI clearance * Bachelor's degree * IASAE II Certification such as CASP+, CISSP, or CSSLP Certification, * Experience with cybersecurity tools and technologies such as IDS, IPS, firewalls, and host-based security * Experience with Security Information and Event Management (SIEM) systems such as Splunk, Elastic, Logstash, and Kibana * Experience with data broker technologies such as Cribl or Confluent, operating systems security events such as Windows or Linux, and networking protocols such as TCP, IP, DNS, DHCP, HTTP, or HTTPS * Experience with programming or scripting, including with PowerShell, Ansible, Python, and automation frameworks such as Ansible, Terraform, Puppet, or Chef * Experience integrating AI/ML capabilities to automate, enhance, and accelerate IT operations and security monitoring * Experience supporting enterprise PAM solution delivery project * Experience troubleshooting processes and standards for PAM * Offensive Security Certified Professional (OSCP), GIAC Certified Incident Handler (GCIH), or GIAC Vulnerability Assessment Professional (GVAP) Certification ## Description Are you looking for an opportunity to share your experience in system security engineering to help our country and assist our clients with critical missions? As a systems security and network security engineer, you can identify the information system security engineering needed to assess vulnerabilities and recommend the best solution and security strategy. We need your experience to lead the development and implementation of security solutions that will protect our military. On our team, you'll troubleshoot and analyze complex challenges for customers using your knowledge of network and security devices, applications, and identifying tools. You'll use your curiosity for technology and market trends to further research and develop security solutions. Using your knowledge and experience in cybersecurity, you'll assess security threats and implement infrastructure controls. In this role, you'll closely impact the DoD by protecting their infrastructure. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect critical AI or ML networks for the better. What You'll Work On: Design, develop, and implement Identity, Credential, and Access Management (ICAM) and Privileged Access Management (PAM) solutions. This position focuses on Delinea PAM solution to safeguard critical information systems and data against advanced cyber threats, with a primary emphasis on zero trust architecture. The engineer will leverage data analytics, visualization, and observability techniques to enhance threat detection, incident response, and security posture. This requires close collaboration with cross-functional teams, development of security policies, and continuous evaluation of security controls to ensure confidentiality, integrity, and availability of sensitive information. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship)