SOAR Engineer, Senior
Company: Booz Allen Hamilton
Location: Bethesda
Posted on: April 1, 2026
|
|
|
Job Description:
SOAR Engineer, Senior The Opportunity: Support a mature Security
Operations Center by engineering, automating, and optimizing
incident response capab ilities across the enterprise. Design,
implement, and maintain Splunk SOAR playbooks to streamline analyst
workflows, reduce manual effort, and improve response consistency.
Develop and maintain phishing automation pipelines using Cofense
Triage and Splunk SOAR, ensuring rapid triage, enrichment, and
dispo sit ion of email?based threats. Provide cybersecurity
architecture and engineering support across initiatives such as
Zero?T rus t, TIC 3.0, endpoint detection and response ( EDR ) ,
and secure access service edge ( SASE ) , contributing to the
design and enhancement of enterprise security controls. Collaborate
closely with SOC analysts, IR teams, and security architects to
strengthen detection, response, and automation capab ilities while
advancing the organization’s overall security posture. You Have: 6
years of experience in cybersecurity engineering, performing
orchestration, automation, and remediation via Splunk SOAR
Experience implementing and maintaining Splunk SOAR playbooks,
modern coding languages such as Python, and writing Splunk
Processing Language ( SPL ) queries Experience with enterprise
security technologies such as EDR, SIEM, firewalls, or identity
security platforms Knowledge of incident response processes,
including triage, enrichment, containment, and documentation
Knowledge of Zero T rus t principles, TIC 3.0 concepts, or modern
security architecture frameworks Ability to write clear technical
documentation, playbooks, and engineering procedures for SOC and IR
teams Ability to obtain and maintain a Public Trust or
Suitability/Fitness determination based on client requirements
Bachelor’s degree Nice If You Have: Experience with Splunk
Enterprise, including data onboarding, correlation searches, and
dashboard development Experience with SASE architecture, secure
remote access, or cloud-based security controls Experience with
automation scripting, including Python, PowerShell, or Bash, to
support SOAR or IR workflows Knowledge of threat intelligence
enrichment, indicator management, and automated response logic
Knowledge of NIST 800 61, MITRE ATT & CK, or other IR frameworks
Possession of excellent verbal and written communication skills for
collaborating with analysts, engineers, and leadership Splunk SOAR
Certified Automation Developer, Splunk Core Certified Power User or
Admin, CySA, GIAC Certified Incident Handler ( GCIH ) , CISSP, or
other equivalent industry certification Vetting: Applicants
selected will be subject to a government investigation and may need
to meet eligibility requirements of the U.S. government client .
Compensation At Booz Allen, we celebrate your contributions,
provide you with opportunities and choices, and support your total
well-being. Our offerings include health, life, disability,
financial, and retirement benefits, as well as paid leave,
professional development, tuition assistance, work-life programs,
and dependent care. Our recognition awards program acknowledges
employees for exceptional performance and superior demonstration of
our values. Full-time and part-time employees working at least 20
hours a week on a regular basis are eligible to participate in Booz
Allen’s benefit programs. Individuals that do not meet the
threshold are only eligible for select offerings, not inclusive of
health benefits. We encourage you to learn more about our total
benefits by visiting the Resource page on our Careers site and
reviewing Our Employee Benefits page. Salary at Booz Allen is
determined by various factors, including but not limited to
location, the individual’s particular combination of education,
knowledge, skills, competencies, and experience, as well as
contract-specific affordability and organizational requirements.
The projected compensation range for this position is $69,400.00 to
$158,000.00 (annualized USD). The estimate displayed represents the
typical salary range for this position and is just one component of
Booz Allen’s total compensation package for employees. This posting
will close within 90 days from the Posting Date. Identity Statement
As part of the hiring process, we will ask you to complete an
identity verification process that leverages advanced biometrics
and artificial intelligence to ensure authenticity and protect
against identity fraud. You are expected to be on camera during
interviews and assessments. We reserve the right to take your
picture to verify your identity and prevent fraud. Candidate AI
Usage Policy AI is a part of our daily work at Booz Allen, and we
are committed to the responsible and ethical use of AI tools.
However, we want to ensure a fair candidate process based on your
own skills and knowledge. As part of this commitment, the use of
artificial intelligence (AI) or other tools to assist with
responses during interviews (whether in-person or virtual) is
prohibited unless permission is explicitly provided . Work Model
Our people-first culture prioritizes the benefits of collaboration,
whether it occurs in person or virtually. To support engagement and
effective communication, employees working virtually are generally
expected to have their cameras on during meetings. Remote : If this
position is listed as remote, there may still be occasions when you
are required to work in person at a Booz Allen or customer
facility. Hybrid : If this position is listed as hybrid, you will
be expected to work from a Booz Allen facility frequently, in
alignment with leadership expectations and the needs of the role.
You may also be required to work from or visit a customer facility.
Onsite : If this position is listed as onsite, work will primarily
be performed at a Booz Allen office or customer facility, where
employees will collaborate directly with colleagues and customers
as required by the role. Commitment to Non-Discrimination All
qualified applicants will receive consideration for employment
without regard to disability, status as a protected veteran or any
other status protected by applicable federal, state, local, or
international law.
Keywords: Booz Allen Hamilton, Bethesda , SOAR Engineer, Senior, IT / Software / Systems , Bethesda, Maryland