AI Gateway Security Engineer, Lead

Booz Allen Hamilton

St. Augustine South (FL)

On-site

USD 113,000 - 257,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Booz Allen Hamilton is seeking an AI Gateway Security Engineer, Lead to design, deploy, and maintain enterprise AI gateway security across multi-cloud and federal environments. You will lead guardrails, policy enforcement, secure API integrations, and machine-to-machine authentication, while mentoring a team and driving governance across security workflows.

The role requires 10+ years in cloud security or security engineering, experience with AI security measures, APIs, and M2M auth.

Qualifications

  • 10+ years of cloud security, cybersecurity operations, security engineering, or vulnerability management.
  • Experience deploying AI security measures such as AI gateways and guardrails in multi-cloud environments.
  • Experience with API integrations and machine-to-machine authentication (OAuth, API keys).
  • Experience with AI applications/agent architectures (LLM inference, MCP, A2A).
  • Experience supporting security tooling in federal environments.
  • Experience building highly available enterprise-scale architectures.
  • Ability to implement and govern cloud security policies and governance controls.
  • Ability to automate tooling via APIs, Terraform, Kubernetes, or scripting.
  • Ability to obtain Public Trust or Suitability/Fitness determination.

Responsibilities

  • Designs, deploys, integrates, and maintains AI gateway capabilities across multi-cloud and federal environments.
  • Leads implementation of AI security controls, guardrails, policy enforcement, and secure API integrations.
  • Mentors team members and may supervise staff in security engineering efforts.
  • Automates policy-as-code, remediation workflows, and governance controls using Kubernetes, Terraform, CI/CD, APIs, scripting, and OPA.
  • Partners with cloud engineering, security operations, compliance, DevSecOps, and application teams to remediate findings.

Skills

Cloud security
Security engineering
Vulnerability management
AI security
API integrations
M2M authentication
Kubernetes
Terraform
CI/CD
OPA
Public Trust

Education

Bachelor's degree

Tools

Kong AI Gateway
Open Policy Agent (OPA)
Kubernetes
CI/CD tooling
OAuth / API keys

Job description

AI Gateway Security Engineer, Lead

The Opportunity:

Designs, deploys, integrates, and maintains enterprise AI gateway capabilities across complex, multi-cloud and federal environments. Leads implementation of AI security controls, including guardrails, policy enforcement, secure API integrations, and machine-to-machine authentication supporting LLM inference and agent-based architectures. Works without considerable direction and mentors and may supervise team members. Develops scalable, highly available security architectures and automates policy-as-code, remediation workflows, and governance controls using Kubernetes, Terraform, CI/CD, APIs, scripting, and OPA. Leads continuous improvement of security workflows, playbooks, escalation paths, service-level expectations, and governance processes supporting Wiz and cloud security tools. Partners with cloud engineering, security operations, compliance, DevSecOps, application, and system-owner teams to operationalize findings, drive remediation to closure, and mentor technical team members.

You Have:
  • 10+ years of experience in cloud security, cybersecurity operations, security engineering, or vulnerability management
  • Experience deploying, configuring, and administering AI security measures such as AI gateways and guardrails in large, complex, and multi-cloud environments
  • Experience with API integrations and machine to machine authentication and authorization such as API keys and OAuth
  • Experience with AI application and agent architectures or protocols, including LLM inference, MCP, and A2A
  • Experience supporting security tooling within federal environments
  • Experience building high availability architectures to support enterprise scale deployments
  • Ability to implement, operationalize, and maintain enterprise cloud security policies and governance controls
  • Ability to automate tooling and workflows via APIs, Terraform, Kubernetes, or scripting
  • Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements
  • Bachelor's degree
Nice If You Have:
  • Experience with Kong AI Gateway
  • Experience deploying and managing kubernetes infrastructure
  • Experience using CI/CD to manage and deploy policy as code
  • Experience with Open Policy Agent (OPA)
  • Experience coding custom plugins for AI Gateways
  • Kong Certifications such as Kong Gateway Certified Associate Certification
  • Cloud security Certification such as CISSP, CCSP, Security+, AWS Security Specialty, or Microsoft Azure Security Engineer
Vetting:

Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $112,800.00 to $257,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.

Work Model

Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.

  • Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
  • Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
  • Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.
Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AI Gateway Security Engineer, Lead
AI Gateway Security Engineer, Lead

Booz Allen Hamilton • Washington

On-site
USD 113,000 - 257,000
AI Gateway Security Engineer, Lead
AI Gateway Security Engineer, Lead

Booz Allen Hamilton • McLean (VA)

On-site
USD 113,000 - 257,000
AI Gateway Security Engineer, Lead
AI Gateway Security Engineer, Lead

Booz Allen Hamilton • North Dakota

On-site
USD 113,000 - 257,000
Health benefits
Retirement benefits
Tuition assistance
AI DevOps Technologist
AI DevOps Technologist

Booz Allen Hamilton • McLean (VA)

On-site
USD 99,000 - 225,000
AI Solution Architect
AI Solution Architect

Booz Allen Hamilton • United States

On-site
USD 113,000 - 257,000
AI Engineer
AI Engineer

Lehigh Heavy Forge Corporation • Washington

On-site
USD 99,000 - 225,000
AI Engineer
AI Engineer

Booz Allen Hamilton • Hamilton (AK)

On-site
USD 99,000 - 225,000
AI DevOps Analyst
AI DevOps Analyst

Booz Allen Hamilton • McLean (VA)

On-site
USD 78,000 - 176,000
AI Adoption Specialist
AI Adoption Specialist

Booz Allen Hamilton • Fort Meade (FL)

On-site
USD 99,000 - 225,000
Artificial Intelligence Solutions Architect
Artificial Intelligence Solutions Architect

Booz Allen Hamilton • United States

On-site
USD 69,000 - 158,000