AI Gateway Security Engineer, Lead

Booz Allen Hamilton

North Dakota

Hybrid

USD 113,000 - 257,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Health benefits
Retirement benefits
Tuition assistance

Job summary

Booz Allen Hamilton is seeking an AI Gateway Security Engineer, Lead to design, deploy, and maintain enterprise AI gateway capabilities across multi-cloud and federal environments. You will lead implementation of AI security controls, guardrails, and machine-to-machine authentication for LLM inference and agent-based architectures.

The role mentors teammates, develops scalable security architectures, automates policy-as-code with Kubernetes, Terraform, CI/CD, APIs, and Open Policy Agent, and

Qualifications

  • 10+ years of experience in cloud security and related fields.
  • Experience deploying AI security measures such as AI gateways and guardrails.
  • Experience with API integrations and machine-to-machine authentication (OAuth).
  • Experience with AI applications and agent architectures, including LLM inference.
  • Experience with security tooling in federal environments.
  • Ability to implement and maintain enterprise cloud security policies and governance.
  • Ability to automate tooling via APIs, Terraform, Kubernetes, or scripting.
  • Willingness to obtain Public Trust/Suitability determination.

Responsibilities

  • Design, deploy, and maintain enterprise AI gateway capabilities across multi-cloud and federal environments.
  • Lead AI security controls implementation including guardrails and secure API integrations.
  • Mentor team members and supervise when needed.
  • Develop scalable, highly available security architectures and automate policy-as-code, remediation workflows, and governance controls using Kubernetes, Terraform, CI/CD, APIs, scripting, and OPA.
  • Lead continuous improvement of security workflows, playbooks, escalation paths, SLAs, and governance processes with Wiz and cloud security tools.
  • Partner with cloud engineering, security operations, compliance, DevSecOps, and other teams to remediate findings.

Skills

Cloud security
Cybersecurity operations
Security engineering
Vulnerability management
AI security measures
LLM inference
API integrations
OAuth
Kubernetes
Terraform
CI/CD
Open Policy Agent (OPA)
Scripting
Public Trust eligibility
Mentoring

Education

Bachelor's degree

Tools

Kubernetes
Terraform
CI/CD
Open Policy Agent (OPA)

Job description

Join a culture of empowerment and connectivity.

Develop your craft

Learn the skills you need to accelerate your career.

Discover benefits that support your life and work.

Innovate with intention

Build mission-ready tech that protects the nation.

Designs, deploys, integrates, and maintains enterprise AI gateway capabilities across complex, multi-cloud and federal environments. Leads implementation of AI security controls, including guardrails, policy enforcement, secure API integrations, and machine-to-machine authentication supporting LLM inference and agent-based architectures. Works without considerable direction and mentors and may supervise team members. Develops scalable, highly available security architectures and automates policy-as-code, remediation workflows, and governance controls using Kubernetes, Terraform, CI/CD, APIs, scripting, and OPA. Leads continuous improvement of security workflows, playbooks, escalation paths, service-level expectations, and governance processes supporting Wiz and cloud security tools. Partners with cloud engineering, security operations, compliance, DevSecOps, application, and system-owner teams to operationalize findings, drive remediation to closure, and mentor technical team members.

Join us. The world can't wait.

You Have:

1 0+ years of experience in cloud security, cybersecurity operations, security engineering, or vulnerability management

Experience deploying, configuring, and administeringAI security measures such as AI gateways and guardrails in large, complex, and multi-cloud environments

Experience with API integrations and machine to machine authentication and authorization such as API keys and OAuth

Experience with AI application and agent architectures or protocols, including LLM inference, MCP, and A2A

Experience supporting security tooling withinfederal environments

Experience building high availability architectures to support enterprise scale deployments

Ability to implement, operationalize, and maintainenterprise cloud security policiesand governance controls

Ability to automate tooling and workflows via APIs, Terraform, Kubernetes, or scripting

Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements

Nice If You Have:

Experience with Kong AI Gateway

Experience deploying and managing kubernetes infrastructure

Experience using CI/CD to manage and deploy policy as code

Experience with Open Policy Agent (OPA)

Experience coding custom plugins for AI Gateways

Kong Certifications such as Kong Gateway Certified Associate Certification

Cloud security Certification such as CISSP, CCSP, Security+, AWS Security Specialty, or Microsoft Azure Security Engineer

Vetting:

Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $112,800.00 to $257,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

AI Gateway Security Engineer, Lead

The Opportunity:

Designs, deploys, integrates, and maintains enterprise AI gateway capabilities across complex, multi-cloud and federal environments. Leads implementation of AI security controls, including guardrails, policy enforcement, secure API integrations, and machine-to-machine authentication supporting LLM inference and agent-based architectures. Works without considerable direction and mentors and may supervise team members. Develops scalable, highly available security architectures and automates policy-as-code, remediation workflows, and governance controls using Kubernetes, Terraform, CI/CD, APIs, scripting, and OPA. Leads continuous improvement of security workflows, playbooks, escalation paths, service-level expectations, and governance processes supporting Wiz and cloud security tools. Partners with cloud engineering, security operations, compliance, DevSecOps, application, and system-owner teams to operationalize findings, drive remediation to closure, and mentor technical team members.

Join us. The world can't wait.

You Have:

  • 1 0+ years of experience in cloud security, cybersecurity operations, security engineering, or vulnerability management

  • Experience deploying, configuring, and administeringAI security measures such as AI gateways and guardrails in large, complex, and multi-cloud environments

  • Experience with API integrations and machine to machine authentication and authorization such as API keys and OAuth

  • Experience with AI application and agent architectures or protocols, including LLM inference, MCP, and A2A

  • Experience supporting security tooling withinfederal environments

  • Experience building high availability architectures to support enterprise scale deployments

  • Ability to implement, operationalize, and maintainenterprise cloud security policiesand governance controls

  • Ability to automate tooling and workflows via APIs, Terraform, Kubernetes, or scripting

  • Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements

  • Bachelor's degree

Nice If You Have:

  • Experience with Kong AI Gateway

  • Experience deploying and managing kubernetes infrastructure

  • Experience using CI/CD to manage and deploy policy as code

  • Experience with Open Policy Agent (OPA)

  • Experience coding custom plugins for AI Gateways

  • Kong Certifications such as Kong Gateway Certified Associate Certification

  • Cloud security Certification such as CISSP, CCSP, Security+, AWS Security Specialty, or Microsoft Azure Security Engineer

Vetting:

Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $112,800.00 to $257,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.

Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.

  • Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.

  • Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.

  • Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AI Gateway Security Engineer, Lead
AI Gateway Security Engineer, Lead

Booz Allen Hamilton • Washington

On-site
USD 113,000 - 257,000
AI Gateway Security Engineer, Lead
AI Gateway Security Engineer, Lead

Booz Allen Hamilton • McLean (VA)

On-site
USD 113,000 - 257,000
AI Gateway Security Engineer, Lead
AI Gateway Security Engineer, Lead

Booz Allen Hamilton • St. Augustine South (FL)

On-site
USD 113,000 - 257,000
AI/ML Engineer for Mission-Critical Production AI
AI/ML Engineer for Mission-Critical Production AI

Booz Allen Hamilton • Chantilly (VA)

On-site
USD 77,600 - 176,000
AI Engineer
AI Engineer

Booz Allen Hamilton • Washington

On-site
USD 99,000 - 225,000
AI Engineer
AI Engineer

Booz Allen Hamilton • McLean (VA)

On-site
USD 78,000 - 176,000
AI Software Developer, Senior
AI Software Developer, Senior

Booz Allen Hamilton • San Diego (CA)

On-site
USD 87,000 - 198,000
CloudOps Engineer: DevSecOps, Kubernetes & IaC
CloudOps Engineer: DevSecOps, Kubernetes & IaC

Art of Drawers San Antonio • San Antonio (TX)

On-site
USD 99,000 - 225,000
DevSecOps Platform Engineer
DevSecOps Platform Engineer

Booz Allen Hamilton • Fayetteville (NC)

On-site
USD 77,500 - 176,000
AI Engineer
AI Engineer

Booz Allen Hamilton • San Antonio (TX)

On-site
USD 99,000 - 225,000