> Markdown version of [/jobs/ext/608212-security-engineer](https://www.wearedevelopers.com/jobs/ext/608212-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Booz Allen Hamilton Holding Corporation - **Location:** Anne Arundel County, MD, United States - **Experience:** Expert - **Salary:** $112,800.0 - $257,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Software System Penetration Testing, Big Data, Digital Forensics, Elasticsearch, Cryptographic Protocols, Identity and Access Management, Intrusion Detection and Prevention, Intrusion Detection Systems, Python (Programming Language), Machine Learning, Parsing, Password Management, Logstash, Search Technologies, Security Information and Event Management, Data Streaming, Data Classification, Data Ingestion, Pytorch, Large Language Models, SC Clearance, Scikit Learn, Cybercrime, Cortex XSOAR Platform, Virtual Agents, Kibana, Vulnerability Analysis - **Published:** June 19, 2026 - **Apply:** https://find.jobs/jobs-near-me/security-engineer-anne-arundel-county-maryland/2828499919-2/ ## About the Role * 6+ years of experience administering Elastic Stack, including Elasticsearch, Kibana, Logstash, Beats, or Fleet * Experience managing Elasticsearch index lifecycle policies , index templates, and data streams at scale, and building Kibana dashboards, visualizations, and lens-based analytics for security operations * Experience with Elastic Security detection rules, alerts, and case management workflows * Experience with log ingestion pipeline design, including parsing, enrichment, and normalization across heterogeneous log sources such as network, endpoint, identity, and cloud * Experience with Elastic Common Schema ( ECS ) and mapping non-standard log sources into ECS-compliant fields * Experience with ES|QL or EQL for advanced threat hunting and detection-as-code workflows * Experience working in a DoD, IC, or federal cybersecurity environment such as SOC, SIEM operations, or defensive cyber * Secret clearance * HS diploma or GED Nice If You Have: * Experience building SOAR- related automation around Elastic, including webhook actions, connector integrations, or n8n / XSOAR orchestration * Experience with Elastic's transforms and runtime fields for creating enriched security datasets and risk scoring indices * Experience with RAG architectures or vector search in Elasticsearch for security knowledge retrieval, including TTP lookup and incident context enrichment * Experience with Elastic's ML jobs, including for User and Entity Behavior Analytics ( UEBA ) , rare process detection, or anomalous login patterns * Experience with Elastic AI Assistant or integration of LLMs into Elastic Security workflows such as natural language querying and alert triage assistance * Experience building or fine-tuning ML models outside Elastic, including Python, scikit-learn, and PyTorch, for security use cases such as threat detection or lateral movement scoring * Knowledge of AI / ML concepts applied to security analytics such as anomaly detection, behavioral baselining, or threat scoring * TS/SCI clearance ## Description We need a technical professional responsible for designing, building, and maintaining systems that protect an organization's data, networks, and IT infrastructure from cyber-attacks. In this position, you will focus on proactive defense by creating secure architectures and automated defenses. What You'll Work On: * Design and deploy firewalls, int rus ion detection systems or intrusion prevention systems ( IDS / IPS ) , and encryption protocols. * C ond uct regular penetration tests and security audits to identify and patch system weaknesses. * Perform Identity and Access Management ( IAM ) , including implementing policies to ensure only authorized users can access sensitive company data. * Lead or assist in the technical response to security breaches, including digital forensics and damage mitigation. * Create and enforce company-wide security standards such as password management and data classification. * Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. * Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. * Lead risk and vulnerability assessments in network, system, and application areas. * Leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Debug a Kubernetes Operator](https://www.wearedevelopers.com/videos/487-debug-a-kubernetes-operator) - [Photonic Computing: Programming a New Class of AI Accelerators (incl. Live Coding)](https://www.wearedevelopers.com/videos/100196-photonic-computing-programming-a-new-class-of-ai-accelerators-incl-live-coding) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Building a Compiler with C#](https://www.wearedevelopers.com/videos/116-building-a-compiler-with-c) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)