Enterprise Cybersecurity Product Analyst

Booz Allen HamiltonMcLean, VA
$86,800 - $198,000Onsite

About The Position

As an Enterprise Cybersecurity Product Analyst, you will support Booz Allen's Enterprise Cybersecurity (ECS) Product Security function by helping scale a structured, repeatable, and trackable security review model for Market Products. This role partners with Product, Engineering, BISO, and broader Enterprise Cybersecurity stakeholders to operationalize secure-by-design guidance across the product lifecycle. You will help build and run core program capabilities, including architecture review support, threat modeling workflows, intake and gate tracking dashboards, and reusable guidance artifacts for delivery teams. You will translate security requirements into practical guidance that product teams can use, while improving consistency in how products are assessed, documented, and approved. You will work closely with Product Security leadership to identify gaps in current workflows, propose improvements, and operationalize repeatable processes that produce defensible security outcomes. This position contributes directly to maturing Booz Allen's ECS Product Security operating model by driving clarity, measurable progress, and consistent security review quality across a growing portfolio. The ideal candidate for our Enterprise Cybersecurity team is technically inclined, intellectually curious, and adaptable, with a strong cyber-defense mindset. They thrive in a fast-paced, dynamic environment and are continuous learners who actively seek to understand complex challenges, ask thoughtful questions, and look beyond the obvious to identify innovative and effective ways of working. They bring a security-first perspective, analytical problem-solving skills, and the curiosity and aptitude to continuously evolve as threats, technologies, and mission needs change.

Requirements

  • 3+ years of experience in product security, application security, cybersecurity engineering, or security architecture support roles
  • Experience supporting architecture or design reviews for software, platform, or cloud-enabled products
  • Knowledge of secure-by-design principles, threat modeling methods, and modern cybersecurity control frameworks
  • Knowledge of product lifecycle security practices, including requirements, design, implementation, and operational risk management
  • Ability to synthesize technical findings into clear, actionable guidance for engineering and non-engineering stakeholders
  • Ability to build and maintain structured tracking mechanisms for security review workflows and decisions
  • Ability to influence technical and non-technical stakeholders
  • Ability to obtain a Secret clearance
  • Bachelor's degree

Nice To Haves

  • Experience supporting security review workflows for product portfolios or enterprise-scale delivery organizations
  • Experience creating reusable artifacts, such as standards, playbooks, templates, and decision records
  • Knowledge of cloud and hybrid security fundamentals across identity, networking, logging, and platform controls
  • Knowledge of automation-friendly governance approaches and tooling for workflow visibility and reporting
  • Experience working with product engineering or platform teams in a security advisory or partnership capacity
  • Possession of strong written and verbal communication skills
  • Security certifications such as Security+, CISSP, CSSLP, CCSP, or cloud security certifications

Responsibilities

  • Support product security architecture and design reviews for Market Product and related Product initiatives, partnering with Product Security leadership, BISO, and product engineering teams.
  • Apply secure-by-design and threat modeling practices across product reviews and help product teams adopt these patterns in their own design workflows.
  • Maintain and improve product security gates, intake workflows, and dashboard-based tracking of review status, decisions, and outcomes.
  • Develop reusable guidance, templates, standards, and decision records for product teams, including architecture documentation patterns and control documentation expectations.
  • Track product security risks and mitigation actions, and communicate status, decisions, and outstanding items clearly to product, engineering, and ECS stakeholders.
  • Help define and operationalize repeatable Product Security processes that improve speed, quality, and governance alignment across the product portfolio.
  • Contribute to policy and standards development for product-facing cybersecurity practices, supporting the emerging Product Security operating model.

Benefits

  • health, life, disability, financial, and retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service