Booz Allen Hamilton

Baseline Security Engineer, Lead

Join Booz Allen Hamilton as a Lead Baseline Security Engineer in Washington, DC. Leverage ServiceNow skills to develop security solutions and mentor teams. 5+ years in IT, security baselines, and NIST guidance required. Benefits include health, tuition assistance, and professional development.

ServiceNow Role Type:
Department - JobBoardly X Webflow Template
Application Developer
ServiceNow Modules:
Department - JobBoardly X Webflow Template
Governance, Risk, and Compliance
Department - JobBoardly X Webflow Template
Incident Management
ServiceNow Certifications (nice to have):
Department - JobBoardly X Webflow Template
Certified System Administrator

Job description

Date - JobBoardly X Webflow Template
Posted on:
 
April 23, 2025

Develop and implement security solutions in alignment with security strategy, maintaining awareness of market and technology trends. Operate with substantial latitude for unreviewed action or decision and mentor or supervise employees in both company and technical competencies.

Requirements

  • 5+ years of experience providing support to Information Technology (IT) operations
  • Experience creating security baselines using CIS and STIG benchmarks
  • Experience creating security baselines from scratch using vendor documentation
  • Experience with modifying CIS and STIG benchmarks to meet organizational requirements
  • Experience working with the NIST 800 Special Publication series guidance for risk management and security control implementation, including 800-30,800-37, 800-53, 800-60, 800-63, 800-115, or 800-137
  • Experience reviewing, developing, or customizing general security configuration baselines
  • Knowledge of the National Vulnerability Database (NVD) and Common Vulnerability Enumeration (CVE)
  • Ability to translate the low-level security baseline requirements into high-level FISMA and NIST requirements and client-specific security
  • Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements
  • HS diploma or GED
  • Experience with networking, including CISCO, Juniper, or Palo Alto, operating systems, including Windows Server, Red Hat, or Linux, cloud services, including AWS, Azure, Salesforce, Okta, O365, or ServiceNow, or Mobile Technologies, including iOS or Xen Mobile
  • Experience designing, building, and implementing automation tools, including Ansible, Chef, or Puppet
  • Experience with Infrastructure as Code tools, including Cloud Formations or Terraform
  • Experience with container platforms, including OpenShift
  • Experience with chaos engineering and blue or green deployments
  • Experience with Serverless, including Lambda, API Gateway, Step Functions, and SAM
  • Experience with application performance analysis and monitoring, including ELK
  • Experience with JSON or YMAL programming
  • Bachelor's degree
  • AWS Certified Solutions Architect, AWS Certified Developer, CCNA, MSCE, RHCSA, EBSA, or ECSS Certification

Benefits

  • health, life, disability, financial, and retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program
  • employee benefits

Requirements Summary

5+ years of experience in IT operations, creating security baselines, and knowledge of NVD and CVE