Cloud Security Engineer

Booz Allen Hamilton

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Lexington, MAMcLean, VAArlington, VABethesda, MDAlexandria, VAWashington, DC
Salary
$61,900–$141,000 / yr
Employment
Full-time
Posted
1 day ago
Freshness
Confirmed live yesterday

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $170k
This role $101k
$43k $239k
below market most similar roles pay here above market

This role pays less than 98% of similar roles. Most pay $144,572–$194,535 — the blue band above. At the midpoint, this role pays about $101k versus about $170k for comparable roles.

Based on 240 similar postings.

Employer

About Booz Allen Hamilton

Booz Allen Hamilton is a management and technology consulting firm that provides analytics, digital, engineering, and cybersecurity solutions primarily to U.S. government agencies and commercial clients. Industry: Management & Technology Consulting

Booz Allen Hamilton currently has 1481 open roles on FindRole.

Listed pay typically runs $86,800–$198,000 across 897 roles with salary data.

Most-posted roles

View all roles at Booz Allen Hamilton

At a glance

TL;DR · Cloud Security Engineer

The Cloud Security Engineer will join the team to design and implement secure cloud-based, mission-critical systems for the Air Force. The role involves guiding the development of cloud-based security architectures, recommending tools based on research of on-premises and hybrid resources, and ensuring standards are met for information assurance. Key responsibilities include evaluating compliance using RMF or NIST, managing DevSecOps pipelines in GitLab, and performing automated security scanning with tools like SonarQube, OWASP ZAP, Trivy, KICS, or Checkmarx. The engineer will also handle system hardening, secrets management, and architecting network and data flow diagrams. Required technical skills include writing Infrastructure as Code using AWS CloudFormation or Terraform, and possessing a Secret clearance and DoD 8570/8140 IAT II certification.

What you'll do

  • Design and implement secure cloud-based architectures for mission-critical Air Force systems.
  • Recommend security tools and capabilities based on research of on-premises, cloud, and hybrid resources.
  • Ensure all systems meet Risk Management Framework (RMF) and information assurance requirements.
  • Manage DevSecOps pipelines using automated scanning tools for SAST, DAST, and infrastructure compliance.
  • Perform system hardening and secrets management to prevent credential exposure and secure container images.
  • Architect network and data flow diagrams and document Ports, Protocols, and Services (PPSM).
  • Write Infrastructure as Code (IaC) using tools like AWS CloudFormation or Terraform for automated provisioning.
  • Evaluate and recommend cloud services to improve efficiency and system capabilities for government organizations.

What we're looking for

  • 3+ years of experience evaluating system compliance using RMF or NIST and DevSecOps tools and methodologies.
  • Experience deploying, configuring, or maintaining a government-approved security suite of cybersecurity tools and methods.
  • Experience with Automated Security Scanning and Compliance, including managing GitLab pipelines and tools like SonarQube, OWASP ZAP, Trivy, KICS, or Checkmarx.
  • Experience with System Hardening and Secrets Management, including securing cloud-deployable systems and container images.
  • Experience architecting network and data flow diagrams, compiling evidence, and documenting Ports, Protocols, and Services (PPSM).
  • Experience evaluating and recommending cloud services, tools, and technologies to improve government system capabilities.
  • Experience writing in IaC tools such as AWS CloudFormation or Terraform.
  • Secret clearance, Bachelor's degree in Computer Science or Cybersecurity, and DoD 8570/8140 IAT II Certification (e.g., Security+).
  • Experience with containerization technologies such as Docker (preferred).
  • Experience using Confluence or Jira (preferred).
  • Intermediate-level Cloud Computing Certification such as CCSP, AWS Solutions Architect, or DevOps Engineer Certification (preferred).

More like this

Similar roles

Cloud Security Engineer

Booz Allen Hamilton

Washington, DC +1 2 days ago $99,000–$225,000
Cloud Security Risk Management Framework (RMF AWS Azure GCP Cloud Security Architecture SDLC Information Assurance multicloud governance Automation Security Architecture Evaluation Software Assurance DoD 8570 TS/SCI
5+ yrs exp

Cloud Security Engineer

Leidos

Seaside, CA 159 days ago $107,900–$195,050
Cloud Security RMF NIST SP 800-53 DevSecOps Zero Trust AWS Azure FedRAMP DISA SRG STIGs IAM eMASS Kubernetes Docker Fortify Sonatype Continuous Monitoring Vulnerability Management Encryption Code Scanning
10+ yrs exp

Cloud Security Engineer

Booz Allen Hamilton

McLean, VA +4 83 days ago $99,000–$225,000
Cloud Security Risk Management Framework (RMF Terraform CloudFormation Bicep Agile SDLC Security Architecture Information Assurance TS/SCI DoD 8570 SecurityX CASP+ CCNP Security CISA CISSP GCED GCIH CCSP CEH CySA+ GICSP SSCP CHFI CFR Cloud+ CND
3+ yrs exp

Cloud Security Engineer

Stripe

Remote 159 days ago $179,000–$268,400
AWS Azure GCP Kubernetes Linux IAM CSPM CNAAP Cloud Security Threat Modeling Security Monitoring Automation Tooling
Remote

Cloud Security Engineer

Stripe

Remote 159 days ago $179,000–$268,400
AWS Azure GCP Kubernetes Linux IAM CSPM CNAAP Cloud Security Threat Modeling Security Monitoring
Remote

Cloud Security Engineer

Booz Allen Hamilton

Chantilly, VA 42 days ago $86,800–$198,000
Cloud Security Risk Management Framework (RMF) Security Architecture Agile JIRA SDLC Information Assurance Security+ SSCP CCNA-Security GSEC