Enterprise Security Architect, Lead Overview
Security must be architected, not bolted on. You understand how to embed security into every layer of an enterprise system, from data pathways to identity flows, to network segmentation and cloud control planes. We are seeking an Enterprise Security Architect to design security solutions for clients with complex network, platform, and dataโprotection needs implementing solutions that withstand advanced cyber threats. In this role, you will help define, enhance, implement, and maintain security solutions for one or more networks and technology platforms while guiding adherence to information security policies and procedures.
In this role, you will apply risk modeling and secure design methodologies to develop tailored controls for client and industry exposures, then translate those designs into practical architectures for network and application deployments. You will advise on security technologies and communicate security complexities clearly to technical teams, stakeholders, and senior management. You will partner with engineering teams, cybersecurity SMEs, cloud or platform owners, and business stakeholders. Youโll assess currentโstate environments, identify architectural gaps, evaluate emerging technologies, and build roadmaps that advance enterprise security maturity. This is an opportunity to shape hardened systems that support the mission, and to learn from a team of experts while doing it.
Join us. The world can't wait.
You Have:
- 7+ years of experience in cybersecurity
- 3+ years of experience in security architecture or security design
- Experience designing enterpriseโscale secure cloud or hybrid architectures, and developing architecture documents such as diagrams, models, SSPs, and data flows
- Experience with network security appliances using technologies such as F5 or Palo Alto
- Experience with data security engineering, including DLP, encryption at rest and in transit, and tokenization
- Experience with security technologies such as HSMs, SASE, and cloud security platforms
- Knowledge of Zero Trust architectures, NIST SP 80053 or 800207, and secure engineering principles
- Knowledge of enterprise information security architecture, information assurance, and network security
- Secret clearance
- Bachelor's degree
Nice If You Have:
- Experience with cloud security platforms such as AWS, Azure, or Google Cloud
- Experience with enterprise logging, SIEM or SOAR integrations, and detection engineering alignment
- Experience supporting compliance or accreditation processes, including RMF, ATO, FedRAMP, and ICD 503
- Experience with Agile development methodologies and DevSecOps practices
- Experience with container or Kubernetes security and microโsegmentation
- Experience creating reusable secure architecture patterns or reference designs
- Experience working in a fastโpaced environment with multiple stakeholders and priorities
- Knowledge of cybersecurity frameworks and standards such as NIST, ISO 27001, and COBIT
- TS/SCI clearance
- Security Architecture Certification such as CISSPโISSAP or TOGAF Certification
Clearance
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Secret clearance is required.
Compensation
Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, workโlife programs, and dependent care. Fullโtime and partโtime employees working at least 20 hours a week are eligible to participate in Booz Allen's benefit programs. The projected compensation range for this position is $86,800.00 to $198,000.00 (annualized USD). This posting will close within 90 days from the Posting Date.
Commitment to NonโDiscrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.