Logo
Booz Allen Hamilton

Enterprise Cybersecurity AI Security Orchestration and Automation Engineer

Booz Allen Hamilton, Mc Lean, Virginia, us, 22107

Save Job

Job Number: R0222673

Enterprise Cybersecurity AI Security Orchestration and Automation Engineer The Opportunity: As an Enterprise Cybersecurity (ECS) Artificial Intelligence (AI) Security Orchestration and Automation Engineer, you'll collaborate with the automation and orchestration team and the ECS organization to understand requirements and analyze data-rich environments to identify automation opportunities. Your AI, machine learning (ML), and security operations expertise will be applied to enhance automation, orchestration, and efficiency.

Due to the nature of work within this facility, U.S. citizenship is required. What You'll Do: Develop and maintain automation and orchestration pipelines using security orchestration, automation, and response (SOAR) software. Analyze workflows and recommend improvements leveraging AI. Design and implement AI-based solutions for manual processes. Apply consulting skills to simplify technical requirements and trends. Enhance communication and technical skills by merging consulting with technology to create automated solutions. You Have: 4+ years of experience in cybersecurity engineering (network, infrastructure, applications, or systems security), security operations, SIEM, incident response, or threat intelligence. 4+ years of experience with Python. 3+ years of experience with automation tools, including tool integration, playbook design, troubleshooting, and support. 3+ years of experience with SOAR tools such as Splunk SOAR, Swimlane, XSOAR, or Tines. 3+ years of data analysis experience. 3+ years of experience working with APIs (e.g., Palo, Versa, Splunk, Elastic) and writing API integrations in Python. Ability to create new playbooks and automate security procedures based on team requirements. Ability to manage integration inventories and develop connectors for end-to-end automation. Self-starter with the ability to work independently and in teams. Bachelor's degree in Cybersecurity, Data Science, IT, or Mathematics, with 3+ years of relevant experience, or 5+ years of experience in lieu of a degree. Nice If You Have: Experience with threat intelligence tools (ThreatQ, Analyst1, ThreatConnect). Experience with log management platforms (Splunk, Elastic). Experience with cybersecurity tools (Splunk, Cisco ISE, Zscaler, Palo Alto, McAfee, Carbon Black, CrowdStrike, FireEye, vulnerability scanners, cloud security, ServiceNow). Experience with ML frameworks (TensorFlow, PyTorch, scikit-learn). Strong analytical, problem-solving, and communication skills. Master's degree in Cybersecurity, IT, Data Science, or related fields. Compensation: We offer comprehensive benefits including health, life, disability, financial, retirement, paid leave, professional development, tuition assistance, work-life programs, and dependent care. Salary ranges from $69,400 to $158,000 annually, depending on experience and location. This posting closes in 90 days. Identity Statement: Applicants must be on camera during interviews and assessments. We may take your picture for identity verification. Work Model: Remote or hybrid roles involve periodic work from a Booz Allen or client site. Onsite roles require in-person work with colleagues and clients. Non-Discrimination: All qualified applicants will receive consideration without regard to disability, veteran status, or other protected categories.

#J-18808-Ljbffr