Enterprise Cybersecurity Automation Engineer

Booz Allen HamiltonMcLean, VA

About The Position

Enterprise Cybersecurity Automation Engineer The Opportunity: Cyber threats are everywhere, and the adversary’s tradecraft is constantly evolving . Stopping attackers demands that we consume more data, act with greater speed, and take decisive action . Our cyber defenders need to be armed with the right tools at their disposal and have actionable information to be successful in carrying their mission . Every second counts when an attacker is actively targeting the company and its clients . How do we keep pace ? How do we scale ? How do we protect the company and its clients ? The answer is you, help us develop security automation solutions that provide immense scale and precision that enable us to rise to the challenge of countering threats and reducing risk. Play a key role as part of the Booz Allen corporate Enterprise Cybersecurity (ECS) division. Use established and new tools to integrate and automate tasks to improve the efficiency of the Enterprise Cybersecurity Teams. Manage and maintain existing integrations, automation, workflows, and documentation while working to expand into areas that have not been optimized. Use knowledge of Python scripting and Application Programming Interfaces (APIs) to integrate security systems into existing SOAR Platform. Will be responsible for feature requests and bug support. Provide technical engineering services in support of automating and orchestrating the company's security systems and solutions. Directly support the Cybersecurity Operations teams to capture requirements to design, develop, and support the company's automation solutions that will ensure maximized operational efficiency in support of the cyber mission. Join us. The world can't wait.

Requirements

  • 4+ years of experience with programming using Python, REST APIs, and SOAP APIs
  • 3+ years of experience with network and system management tools, including security management tools, such as Splunk, Carbon Black, CrowdStrike, Nitro, or ArcSight
  • 3+ years of experience with playbook development using Security Orchestration and Automated Response (SOAR) platforms, including Swimlane, Phantom, ServiceNow, Tines, or Demisto
  • Experience with security operations, incident response, threat management, or security engineering
  • Experience with using cloud provider services, including AWS, Azure, or Google Cloud
  • Ability to create and execute test plans for new integrations and automation
  • Ability to identify and address areas where automation can be improved by either refactoring, building, or adopting new tooling and technologies
  • Ability to develop innovative solutions to improve customer experience and rapidly prototype and test solutions with production-level quality
  • Ability to obtain a Secret clearance
  • Bachelor's degree

Nice To Haves

  • Experience in log management platforms experience, such as Splunk, Elasticsearch, Logstash, Kibana - ELK, and Elastic Stack
  • E xperience with container services, including Docker and Kubernetes
  • Experience with Linux administration
  • Clearance

Responsibilities

  • Manage and maintain existing integrations, automation, workflows, and documentation
  • Expand into areas that have not been optimized
  • Integrate security systems into existing SOAR Platform
  • Responsible for feature requests and bug support
  • Provide technical engineering services in support of automating and orchestrating the company's security systems and solutions
  • Directly support the Cybersecurity Operations teams to capture requirements to design, develop, and support the company's automation solutions

Benefits

  • health
  • life
  • disability
  • financial
  • retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service