Network Security Automation Engineer
Booz Allen Hamilton
- Location
- McLean, VA
- Work model
- On-Site
- Level
- Mid
- H-1B history
- 9 approvals (FY2023)
- Posted
- Aug 11, 2026
Skills
About this role
Network Security Automation Engineer The Opportunity: Secure cyber training environments require more than well-designed networks. They must also be repeatable, testable, isolated, and capable of being deployed and removed through automation. We need a Network Security Automation Engineer who can combine network security expertise with cloud engineering and infrastructure-as-code practices to support critical Department of Defense missions. On our team, you’ll design and automate secure, cloud-based cyber range networks. You’ll translate operational and security requirements into reusable infrastructure components that deploy virtual networks, routing, firewalls, VPN services, traffic inspection, logging, and monitoring capabilities. You’ll work with technologies such as AWS Transit Gateway, Gateway Load Balancer, Palo Alto VM-Series firewalls, AWS Network Firewall, VPC endpoints, and centralized logging. Using infrastructure as code, scripting, APIs, and CI / CD pipelines, you’ll automate network deployment, firewall integration, configuration validation, and environment teardown. You’ll collaborate with cybersecurity SMEs, platform engineers, vendors, and range operators to develop secure and reliable network architectures. You’ll troubleshoot routing, traffic inspection, firewall, and interoperability issues while ensuring each environment remains isolated from corporate networks, other ranges, and unauthorized external systems. This is an opportunity to apply your network security experience while advancing your skills in cloud automation, sof tware-defined networking, and secure infrastructure engineering. Work with us to build automated, repeatable, and defensible cyber environments for the DoD. Join us. The world can’t wait. You Have: 5+ years of experience with network security or designing IT systems and networks for large commer cia l enterprises or government agencies 3+ years of experience with firewalls, int rus ion detection and prevention systems, network segmentation, boundary protection, or vulnerability assessment Experience designing and securing cloud or enterprise network architectures Experience with Palo Alto, Cisco, or Juniper firewalls Experience automating infrastructure using an infrastructure-as-code framework such as AWS CDK, CloudFormation, or Terraform Experience developing automation with TypeScript, Python, PowerShell, Bash, APIs, or orchestration tools Experience with routing, switching, VPNs, security groups, network access controls, and traffic inspection Experience using network monitoring, flow logs, and centralized logging to analyze traffic and troubleshoot connectivity and using Git, CI / CD workflows, and packet analysis tools such as Wireshark HS diploma or GED Ability to obtain a DoD 8570 IAT Level II Certification within 3 months of start date Nice If You Have: Experience with AWS networking services, including VPC, Transit Gateway, Gateway Load Balancer, Network Firewall, Client VPN, NAT Gateway, or VPC endpoints, and developing AWS Lambda functions or custom infrastructure integrations Experience deploying or automating Palo Alto VM-Series firewalls in AWS Experience with AWS CDK and TypeScript Experience creating automated infrastructure tests, configuration validation, or policy -as-code controls Experience with multi-VPC inspection architectures and centralized firewall services Experience with Ansible or Python-based network automation Experience integrating network tele met ry with Elastic, Splunk, or another SIEM platform Experience building cyber ranges, test environments, or other disposable cloud infrastructure Knowledge of DoD cybersecurity requirements, including STIGs and the DoD Cloud Computing Security Requirements Guide Ability to communicate technical architecture and automation concepts to engineers, operators, and mission stakeholders Compensation At Booz Allen, we