Network Security Automation Engineer

Posted 8 Days Ago
Be an Early Applicant
McLean, VA, USA
In-Office
99K-225K Annually
Senior level
Information Technology
We use the most advanced technologies to build what nobody else can. Making America stronger, safer, faster. Learn more!
The Role
Design and automate secure cloud-based cyber range networks using IaC and scripting. Translate security requirements into reusable infrastructure components (routing, firewalls, VPNs, traffic inspection, logging). Automate deployment, integration, validation, and teardown; troubleshoot routing, firewall, and interoperability issues; collaborate with cybersecurity SMEs, platform engineers, vendors, and operators to ensure isolated, repeatable, and defensible DoD cyber environments.
Summary Generated by Built In
Network Security Automation Engineer

The Opportunity: 

Secure cyber training environments require more than well-designed networks. They must also be repeatable, testable, isolated, and capable of being deployed and removed through automation. We need a Network Security Automation Engineer who can combine network security expertise with cloud engineering and infrastructure-as-code practices to support critical Department of Defense missions. 

On our team, you’ll design and automate secure, cloud-based cyber range networks. You’ll translate operational and security requirements into reusable infrastructure components that deploy virtual networks, routing, firewalls, VPN services, traffic inspection, logging, and monitoring capabilities. You’ll work with technologies such as AWS Transit Gateway, Gateway Load Balancer, Palo Alto VM-Series firewalls, AWS Network Firewall, VPC endpoints, and centralized logging. Using infrastructure as code, scripting, APIs, and CI/CD pipelines, you’ll automate network deployment, firewall integration, configuration validation, and environment teardown. 

You’ll collaborate with cybersecurity SMEs, platform engineers, vendors, and range operators to develop secure and reliable network architectures. You’ll troubleshoot routing, traffic inspection, firewall, and interoperability issues while ensuring each environment remains isolated from corporate networks, other ranges, and unauthorized external systems.

This is an opportunity to apply your network security experience while advancing your skills in cloud automation, software-defined networking, and secure infrastructure engineering. 

Work with us to build automated, repeatable, and defensible cyber environments for the DoD. 

Join us. The world can’t wait.

You Have:    

  • 5+ years of experience with network security or designing IT systems and networks for large commercial enterprises or government agencies

  • 3+ years of experience with firewalls, intrusion detection and prevention systems, network segmentation, boundary protection, or vulnerability assessment 

  • Experience designing and securing cloud or enterprise network architectures 

  • Experience with Palo Alto, Cisco, or Juniper firewalls

  • Experience automating infrastructure using an infrastructure-as-code framework such as AWS CDK, CloudFormation, or Terraform

  • Experience developing automation with TypeScript, Python, PowerShell, Bash, APIs, or orchestration tools 

  • Experience with routing, switching, VPNs, security groups, network access controls, and traffic inspection

  • Experience using network monitoring, flow logs, and centralized logging to analyze traffic and troubleshoot connectivity and using Git, CI/CD workflows, and packet analysis tools such as Wireshark

  • HS diploma or GED

  • Ability to obtain a DoD 8570 IAT Level II Certification within 3 months of start date 

Nice If You Have:    

  • Experience with AWS networking services, including VPC, Transit Gateway, Gateway Load Balancer, Network Firewall, Client VPN, NAT Gateway, or VPC endpoints, and developing AWS Lambda functions or custom infrastructure integrations

  • Experience deploying or automating Palo Alto VM-Series firewalls in AWS 

  • Experience with AWS CDK and TypeScript 

  • Experience creating automated infrastructure tests, configuration validation, or policy-as-code controls

  • Experience with multi-VPC inspection architectures and centralized firewall services

  • Experience with Ansible or Python-based network automation 

  • Experience integrating network telemetry with Elastic, Splunk, or another SIEM platform

  • Experience building cyber ranges, test environments, or other disposable cloud infrastructure 

  • Knowledge of DoD cybersecurity requirements, including STIGs and the DoD Cloud Computing Security Requirements Guide 

  • Ability to communicate technical architecture and automation concepts to engineers, operators, and mission stakeholders

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.

Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.

  • Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.

  • Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.

  • Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Skills Required

  • 5+ years of experience with network security or designing IT systems and networks for large commercial enterprises or government agencies
  • 3+ years of experience with firewalls, intrusion detection and prevention systems, network segmentation, boundary protection, or vulnerability assessment
  • Experience designing and securing cloud or enterprise network architectures
  • Experience with Palo Alto, Cisco, or Juniper firewalls
  • Experience automating infrastructure using an infrastructure-as-code framework such as AWS CDK, CloudFormation, or Terraform
  • Experience developing automation with TypeScript, Python, PowerShell, Bash, APIs, or orchestration tools
  • Experience with routing, switching, VPNs, security groups, network access controls, and traffic inspection
  • Experience using network monitoring, flow logs, and centralized logging to analyze traffic and troubleshoot connectivity
  • Experience using Git and CI/CD workflows
  • Experience with packet analysis tools such as Wireshark
  • HS diploma or GED
  • Ability to obtain a DoD 8570 IAT Level II Certification within 3 months of start date
  • Experience with AWS networking services (VPC, Transit Gateway, Gateway Load Balancer, Network Firewall, Client VPN, NAT Gateway, or VPC endpoints)
  • Experience deploying or automating Palo Alto VM-Series firewalls in AWS
  • Experience with AWS CDK and TypeScript
  • Experience creating automated infrastructure tests, configuration validation, or policy-as-code controls
  • Experience with multi-VPC inspection architectures and centralized firewall services
  • Experience with Ansible or Python-based network automation
  • Experience integrating network telemetry with Elastic, Splunk, or another SIEM platform
  • Experience building cyber ranges, test environments, or other disposable cloud infrastructure
  • Knowledge of DoD cybersecurity requirements, including STIGs and the DoD Cloud Computing Security Requirements Guide
  • Ability to communicate technical architecture and automation concepts to engineers, operators, and mission stakeholders

Booz Allen Hamilton Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Booz Allen Hamilton and has not been reviewed or approved by Booz Allen Hamilton.

  • Retirement Support Retirement benefits are anchored by a dollar‑for‑dollar 401(k) match with immediate vesting and complemented by an employee stock purchase plan. Feedback suggests these features strengthen long‑term financial security beyond base pay.
  • Healthcare Strength Health coverage spans medical, dental, vision, life, disability, mental health, and wellness incentives, with multiple plan options. Tax‑advantaged accounts and wellness contributions further enhance the breadth of coverage.
  • Leave & Time Off Breadth Time‑off benefits include paid holidays, PTO that grows with tenure, and paid parental leave with additional unpaid time available. Flexible scheduling and remote options support work‑life balance alongside formal leave.

Booz Allen Hamilton Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: McLean, VA
Year Founded: 1914

What We Do

Booz Allen is an advanced technology company delivering outcomes with speed for America’s most critical defense, civil, and national security priorities. We build technology solutions using AI, cyber, and other cutting-edge technologies to advance and protect the nation and its citizens. By focusing on outcomes, we enable our people, clients, and their missions to succeed—accelerating the nation to realize our purpose: Empower People to Change the World®.

Why Work With Us

At Booz Allen, our culture of heart and performance will fuel your growth and empower you to succeed, both inside and outside of the workplace. Discover your future career and join us. The world can't wait.

Similar Jobs

PwC Logo PwC

Procurement Strategy and Strategic Sourcing - Value Capture - Senior Associate

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
56 Locations
370000 Employees
77K-202K Annually

Shield AI Logo Shield AI

Technical Recruiter

Aerospace • Artificial Intelligence • Machine Learning • Robotics • Software
Remote or Hybrid
2 Locations
144K-216K Annually

SoFi Logo SoFi

Staff Credit Policy Analyst

Fintech • Mobile • Software • Financial Services
Easy Apply
Remote or Hybrid
United States
4500 Employees
115K-216K Annually

Zscaler Logo Zscaler

Sales Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
14 Locations
8697 Employees
176K-251K Annually

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account