Data Engineer

Booz Allen Hamilton

Fort Belvoir (VA)

On-site

USD 99,000 - 225,000

Full time

10 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Booz Allen Hamilton is seeking a systems security and network security engineer to design, implement, and optimize security solutions for DoD infrastructure. You will assess threats, implement controls, and lead data analysis across security pipelines while collaborating with diverse teams to ensure resilient operations.

You will work with Zero Trust concepts, ECS data schemas, and automation to strengthen threat detection, incident response, and overall security posture for critical national

Qualifications

  • 6+ years of experience in an ISSE, ISSO, or IT role.
  • Experience designing and managing end-to-end ingestion of new security data sources into the SIEM (e.g., Elasticsearch).
  • Experience with data parsing and normalization, breaking down unstructured logs into defined fields, and aligning data schemas like ECS.
  • Experience building automated processes to enrich security data with context (geo IP, threat intel, user roles).
  • Experience implementing monitoring/alerting to ensure health and timeliness of security data pipelines.

Responsibilities

  • Design, develop, and implement automated workflows and integrations.
  • Safeguard information systems and data against cyber threats with Zero Trust, data analytics, and automation.
  • Leverage analytics, visualization, and observability to improve threat detection and incident response.
  • Collaborate with cross-functional teams, develop security policies, and continuously evaluate security controls.
  • Automate security processes, integrate into CI/CD, and ensure compliance with DoD, Army, and IC standards.

Skills

ISSE/ISSO/IT
SIEM ingestion
Data parsing
Data normalization
Monitoring/Alerting
Data architecture
TS/SCI clearance
HS diploma
IASAE II Certification

Education

HS diploma or GED
IASAE II Certification (CASP+, CISSP, or CSSLP)

Tools

Elasticsearch
Elastic Common Schema (ECS)
CI/CD

Job description

Join a culture of empowerment and connectivity.

Develop your craft

Learn the skills you need to accelerate your career.

Discover benefits that support your life and work.

Innovate with intention

Build mission-ready tech that protects the nation.

Are you looking for an opportunity to share your experience in system security engineering to help our country and assist our clients with critical missions? As a systems security and network security engineer, you can identify the information system security engineering needed to assess vulnerabilities and recommend the best solution and security strategy. We need your experience to lead the development and implementation of security solutions that will protect our military.

On our team, you’ll troubleshoot and analyze complex challenges for customers using your knowledge of network and security devices, applications, and identifying tools. You’ll use your curiosity for technology and market trends to further research and develop security solutions. Using your knowledge and experience in cybersecurity, you’ll assess security threats and implement infrastructure controls.

In this role, you’ll closely impact the DoD by protecting their infrastructure. With mentoring, challenging hands‑on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers.

Work with us as we secure and protect critical AI or ML networks for the better.

What You’ll Work On:
  • Design, develop, and implement automated workflows and integrations.
  • Focus on safeguarding critical information systems and data against advanced cyber threats, with a primary emphasis on Zero Trust architecture, security data analytics, and robust automation.
  • Leverage data analytics, visualization, and observability techniques to enhance threat detection, incident response, and security posture.
  • Perform close collaboration with cross‑functional teams, assist with the development of security policies, and perform continuous evaluation of security controls to ensure confidentiality, integrity, and availability of sensitive information.
  • Automate security processes, integrate security into the CI/CD pipeline, and ensure compliance with DoD, Army, and Intelligence Community (IC) standards and regulations.

Join us. The world can’t wait.

You Have:
  • 6+ years of experience in an ISSE, ISSO, or IT role
  • Experience designing and managing the end‑to‑end process for ingesting new security data sources into the SIEM such as Elasticsearch, including log collection, shipping, parsing, normalization, and enrichment
  • Experience with data parsing and normalization, developing and maintaining robust parsing logic to break down raw, unstructured logs into well‑defined, queryable fields, owning data schema such as Elastic Common Schema (ECS), and ensuring consistency across all data sources
  • Experience building automated processes to enrich raw security data with critical context, including adding geolocation data to IP addresses, appending threat intelligence indicators, or adding user role information to account‑based events
  • Experience implementing monitoring and alerting to ensure the health and timeliness of security data pipelines, including identifying and fixing issues such as data loss, parsing errors, or delays that could blind the detection engineers
  • Ability to optimize data architecture for fast search and query performance, ensuring that complex detection rules can be executed efficiently against large volumes of data without impacting the stability of the platform
  • TS/SCI clearance
  • HS diploma or GED
  • IASAE II Certification such as CASP+, CISSP, or CSSLP Certification
Nice If You Have:
  • Experience integrating AI/ML capabilities to automate, enhance, and accelerate IT operations and security monitoring
  • Experience with automation tools and scripting languages such as Python and PowerShell
  • Experience designing, configuring, and managing unsupervised ML jobs to automatically model system, application, and network behavior to detect anomalies in real‑time, including identifying unusual patterns in log data, metrics, and APM traces
  • Experience developing and fine‑tuning sophisticated alerting rules based on Elastic's anomaly detection and forecasting features to reduce alert fatigue by moving beyond simple static thresholds and focusing on statistically significant deviations from the norm
  • Experience building and managing AIOps workflows that correlate anomalies and alerts to help automate the initial stages of root cause analysis, providing rich context to the SOC or operations teams
  • Experience applying AIOps principles to monitor the health and performance of the SIEM or data platform itself, using Elastic's forecasting capabilities to predict future resource needs such as disk space or memory, and prevent outages
  • Knowledge of Zero Trust principles and frameworks such as NIST 800-207
  • Ability to utilize AI/ML features to automatically categorize and identify patterns in unstructured log data, helping to quickly surface new or unusual event types that could indicate a security incident or operational problem
  • Offensive Security Certified Professional (OSCP), GIAC Certified Incident Handler (GCIH), or GIAC Vulnerability Assessment Professional (GVAP) Certification
Clearance:

Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well‑being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work‑life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full‑time and part‑time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract‑specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract‑specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

Data Engineer
The Opportunity:

Are you looking for an opportunity to share your experience in system security engineering to help our country and assist our clients with critical missions? As a systems security and network security engineer, you can identify the information system security engineering needed to assess vulnerabilities and recommend the best solution and security strategy. We need your experience to lead the development and implementation of security solutions that will protect our military.

On our team, you’ll troubleshoot and analyze complex challenges for customers using your knowledge of network and security devices, applications, and identifying tools. You’ll use your curiosity for technology and market trends to further research and develop security solutions. Using your knowledge and experience in cybersecurity, you’ll assess security threats and implement infrastructure controls.

In this role, you’ll closely impact the DoD by protecting their infrastructure. With mentoring, challenging hands‑on problem‑solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers.

Work with us as we secure and protect critical AI or ML networks for the better.

What You’ll Work On:
  • Design, develop, and implement automated workflows and integrations.
  • Focus on safeguarding critical information systems and data against advanced cyber threats, with a primary emphasis on Zero Trust architecture, security data analytics, and robust automation.
  • Leverage data analytics, visualization, and observability techniques to enhance threat detection, incident response, and security posture.
  • Perform close collaboration with cross‑functional teams, assist with the development of security policies, and perform continuous evaluation of security controls to ensure confidentiality, integrity, and availability of sensitive information.
  • Automate security processes, integrate security into the CI/CD pipeline, and ensure compliance with DoD, Army, and Intelligence Community (IC) standards and regulations.

Join us. The world can’t wait.

You Have:
  • 6+ years of experience in an ISSE, ISSO, or IT role
  • Experience designing and managing the end‑to‑end process for ingesting new security data sources into the SIEM such as Elasticsearch, including log collection, shipping, parsing, normalization, and enrichment
  • Experience with data parsing and normalization, developing and maintaining robust parsing logic to break down raw, unstructured logs into well‑defined, queryable fields, owning data schema such as Elastic Common Schema (ECS), and ensuring consistency across all data sources
  • Experience building automated processes to enrich raw security data with critical context, including adding geolocation data to IP addresses, appending threat intelligence indicators, or adding user role information to account‑based events
  • Experience implementing monitoring and alerting to ensure the health and timeliness of security data pipelines, including identifying and fixing issues such as data loss, parsing errors, or delays that could blind the detection engineers
  • Ability to optimize data architecture for fast search and query performance, ensuring that complex detection rules can be executed efficiently against large volumes of data without impacting the stability of the platform
  • TS/SCI clearance
  • HS diploma or GED
  • IASAE II Certification such as CASP+, CISSP, or CSSLP Certification
Nice If You Have:
  • Experience integrating AI/ML capabilities to automate, enhance, and accelerate IT operations and security monitoring
  • Experience with automation tools and scripting languages such as Python and PowerShell
  • Experience designing, configuring, and managing unsupervised ML jobs to automatically model system, application, and network behavior to detect anomalies in real‑time, including identifying unusual patterns in log data, metrics, and APM traces
  • Experience developing and fine‑tuning sophisticated alerting rules based on Elastic's anomaly detection and forecasting features to reduce alert fatigue by moving beyond simple static thresholds and focusing on statistically significant deviations from the norm
  • Experience building and managing AIOps workflows that correlate anomalies and alerts to help automate the initial stages of root cause analysis, providing rich context to the SOC or operations teams
  • Experience applying AIOps principles to monitor the health and performance of the SIEM or data platform itself, using Elastic's forecasting capabilities to predict future resource needs such as disk space or memory, and prevent outages
  • Knowledge of Zero Trust principles and frameworks such as NIST 800-207
  • Ability to utilize AI/ML features to automatically categorize and identify patterns in unstructured log data, helping to quickly surface new or unusual event types that could indicate a security incident or operational problem
  • Offensive Security Certified Professional (OSCP), GIAC Certified Incident Handler (GCIH), or GIAC Vulnerability Assessment Professional (GVAP) Certification
Clearance:

Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well‑being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work‑life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full‑time and part‑time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract‑specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in‑person or virtual) is prohibited unless permission is explicitly provided.

Work Model

Our people‑first culture prioritizes the benefits of collaboration. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.

  • Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
  • Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen or customer facility, in alignment with your leadership's expectations and the needs of the role.
  • Onsite: If this position is listed as onsite, work will primarily be performed full‑time at a customer facility, where employees will collaborate directly with colleagues and customers as required by the role.
Commitment to Non‑Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, and international law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Software Engineer
Cybersecurity Software Engineer

Booz Allen Hamilton • Warner Robins (GA)

On-site
USD 99,000 - 225,000
Cyber Warfare Engineer
Cyber Warfare Engineer

Booz Allen Hamilton • North Dakota

Hybrid
USD 87,000 - 198,000
Cybersecurity Systems Engineer
Cybersecurity Systems Engineer

Booz Allen Hamilton • San Diego (CA)

On-site
USD 69,000 - 158,000
Systems Security Engineer
Systems Security Engineer

Booz Allen Hamilton • California (MD)

On-site
USD 69,000 - 158,000
Data Engineer
Data Engineer

Booz Allen Hamilton • Washington

On-site
USD 78,000 - 176,000
Data Engineer
Data Engineer

Booz Allen Hamilton • Springfield (VA)

On-site
USD 99,000 - 225,000
AI/ML Engineer and Data Scientist
AI/ML Engineer and Data Scientist

Booz Allen Hamilton • Riverdale Park (MD)

On-site
USD 78,000 - 176,000
Cyber Automation Engineer
Cyber Automation Engineer

Booz Allen Hamilton • North Dakota

On-site
USD 87,000 - 198,000
Cybersecurity Engineer
Cybersecurity Engineer

Booz Allen Hamilton • Charleston (SC)

On-site
USD 69,000 - 158,000
Zero Trust Information Systems Security Engineer
Zero Trust Information Systems Security Engineer

Booz Allen Hamilton • Honolulu (HI)

On-site
USD 99,000 - 225,000