Booz Allen Hamilton is seeking a Boundary Security Engineer to help design and implement secure networks for the Department of Defense. The role involves collaborating with various stakeholders to develop network requirements, testing new security capabilities, and ensuring the integrity of network security configurations.
Responsibilities:
- Collaborate with SMEs, customers, vendors, and users to learn the strategic goals and operational needs that shape the network requirements
- Share expertise during the planning of acquisition, installation, configuration, and maintenance of the network components
- Resolve interoperability issues across platforms, to support the acquisition of hardware
- Design and test new boundary security capabilities in a lab environment and implement newly tested boundary security capabilities into production environments
- Support implementation teams with remote network firewall and security appliance support
- Identify and support security requirements for switched and routed networks and implement network security best practice configuration and associated hardware and software
- Discover and assess complex client enterprise network deployments, apply leading-edge security principles, theories, and concepts, and contribute to the development of new principles and concepts
- Work on unusually complex problems, provide highly innovative solutions, operate with substantial latitude for unreviewed action or decision, and mentor or supervise employees in both firm and technical competencies
Requirements:
- 7+ years of experience with network security and the design of IT systems or networks for large commercial enterprises or government agencies
- 5+ years of experience with firewall and enterprise security design, including device hardening, intrusion detection systems and intrusion prevention systems, SIEM, firewalls, internet protocol security, vulnerability assessment, and intrusion detection
- Experience with Palo Alto firewalls, and Cisco or Juniper firewalls
- Experience with packet analysis tools, including Wireshark
- Experience with monitoring tools and log collectors to perform analysis of traffic
- Experience with boundary protection
- Secret clearance
- HS diploma or GED
- Ability to obtain a DoD 8570 IAT Level II Certification within 3 months of start date
- Experience designing and implementing Cloud-native and over the top networking in AWS, Azure, or GCP
- Knowledge of DoD IT and Cloud security policies, including STIGs and DoD Cloud SRG, and how to apply them to the design and implementation of Cloud solutions
- Possession of excellent verbal and written communication skills, including public speaking, prior publications, and speaking engagements in industry or vendor forums