631 Booz Allen Hamilton_United States · McLean, VA

Enterprise Cybersecurity Automation Engineer at 631 Booz Allen Hamilton_United States — McLean, VA

Full-timeMcLean, VA$86,800–$198,000/yearPosted 2026-07-10Apply on Workday

Full job description

Enterprise Cybersecurity Automation EngineerThe Opportunity:

Cyber threats are everywhere, and the adversary’s tradecraft is constantly evolving. Stopping attackers demands that we consume more data, act with greater speed, and take decisive action. Our cyber defenders need to be armed with the right tools at their disposal and have actionable information to be successful in carrying their mission. Every second counts when an attacker is actively targeting the company and its clients. How do we keep pace? How do we scale? How do we protect the company and its clients? The answer is you, help us develop security automation solutions that provide immense scale and precision that enable us to rise to the challenge of countering threats and reducing risk.

Play a key role as part of the Booz Allen corporate Enterprise Cybersecurity (ECS) division. Use established and new tools to integrate and automate tasks to improve the efficiency of ECS teams. You’ll manage and maintain existing integrations, automation, workflows, and documentation while working to expand into areas that have not been optimized. You’ll use knowledge of Python scripting and Application Programming Interfaces (APIs) to integrate security systems into the existing SOAR Platform. You’ll be responsible for feature requests, bug support, and provide technical engineering services in support of automating and orchestrating the company's security systems and solutions. Directly support the cybersecurity operations teams to capture requirements to design, develop, and support the company's automation solutions that will ensure maximized operational efficiency in support of the cyber mission.

Join us. The world can't wait.

You Have:

  • 4+ years of experience with programming using Python, REST APIs, and SOAP APIs
  • 3+ years of experience with network and system management tools, including security management tools such as Splunk, Carbon Black, CrowdStrike, Nitro, or ArcSight
  • 3+ years of experience with playbook development using Security Orchestration and Automated Response (SOAR) platforms, including Swimlane, Phantom, ServiceNow, Tines, or Demisto
  • Experience with security operations, incident response, threat management, or security engineering
  • Experience using cloud provider services, including AWS, Azure, or Google Cloud
  • Ability to create and execute test plans for new integrations and automation
  • Ability to identify and address areas where automation can be improved by either refactoring, building, or adopting new tooling and technologies
  • Ability to develop innovative solutions to improve customer experiences and rapidly prototype and test solutions with production-level quality
  • Ability to obtain a Secret clearance
  • Bachelor's degree

Nice If You Have:

  • Experience with log management platforms such as Splunk, Elasticsearch, Logstash, Kibana - ELK, and Elastic Stack
  • Experience with container services, including Docker and Kubernetes
  • Experience with Linux administration

Clearance:

Compensation

Identity Statement

Candidate AI Usage Policy

  • Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
  • Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
  • Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.

Commitment to Non-Discrimination