Posted in

Zero Trust Information Systems Security Architect

Zero Trust Information Systems Security Architect

CompanyBooz Allen
LocationFort Belvoir, VA, USA
Salary$77600 – $176000
TypeFull-Time
DegreesBachelor’s, Master’s
Experience LevelExpert or higher

Requirements

  • 10+ years of experience in information security with a focus on security architecture
  • Experience with zero trust principles and frameworks such as NIST 800-207
  • Experience with ICAM principles and technologies such as multi-factor authentication or privileged access management
  • Experience with Security Information and Event Management (SIEM) systems, including Splunk, Elastic, Logstash, or Kibana
  • Knowledge of data broker technologies such as Cribl, Confluent, Operating Systems Security Events, including Windows or Linux, and networking protocols, including TCP/IP, DNS, DHCP, or HTTP/HTTPS
  • Knowledge of cybersecurity tools and technologies such as IDS/IPS, firewalls, host-based security, Identity & Access Management (IDAM), or DevSecOps tools and practices, including CI/CD pipelines such as GitLab CI/CD or Azure DevOps
  • Knowledge of programming or scripting, including PowerShell, Ansible, or Python, and automation frameworks, including Ansible, Terraform, Puppet, or Chef
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • Bachelor’s degree
  • DoD 8140 IASAE II Certification, including CISSP, CSSLP, or CASP+ Certification

Responsibilities

  • Help the client design and integrate Zero Trust (ZT) Architecture secure solutions to support mission-critical operations
  • Coordinate work with CSPs and internal R&D and delivery teams to identify the right mix of tools and techniques
  • Translate customer’s IT needs and goals into a plan that will enable secure and effective solutions
  • Advise on new techniques, break free from the legacy model, and go where the industry is going
  • Guide the team through a critical approach to network design, providing alternatives and customizing solutions to maintain a balance of security and mission needs
  • Align efforts to help customers overcome their most difficult challenges by integrating zero-trust solutions into client deliveries
  • Identify new opportunities to use cybersecurity solutions to help customers meet their toughest challenges

Preferred Qualifications

  • Experience with SIEM solutions and SOAR integration
  • Knowledge of cybersecurity principles, practices, and technologies
  • Knowledge of DevSecOps practices and tools, including CI/CD integration and containerization
  • Knowledge of IC policies and standards, INSCOM guidelines, and ZT or ICAM compliance frameworks
  • Ability to analyze security data to identify trends and improve security posture
  • Ability to design, develop, and implement automated workflows and integrations
  • Ability to meticulously document and report vulnerabilities, ensuring compliance and audit readiness
  • TS/SCI clearance with a polygraph
  • Master’s degree in CS, IT, Cybersecurity, or a related field
  • Offensive Security Certified Professional (OSCP), GIAC Certified Incident Handler (GCIH), or GIAC Vulnerability Assessment Professional (GVAP) Certification