Virtual Desktop Infrastructure Engineer, Senior

Booz Allen Hamilton

  • McLean, VA Hamilton, VA
  • Permanent
  • Full-time
  • 1 month ago
Virtual Desktop Infrastructure Engineer, SeniorThe Challenge:

Everyone knows security needs to be “baked in” to a system architecture, but you actually know how to bake it in. You can identify and implement Cybersecurity solutions to protect the confidentiality, integrity, and availability of desktop and cloud-based systems in large enterprise and government environments. What if you could use your Cyber engineering skills to design and build Cybersecurity solutions in the Cloud to protect personal, financial, health, and other sensitive information for government agencies and global enterprises? We’re looking for an experienced virtual desktop infrastructure (VDI) engineer who can create advanced secure solutions in Azure that will stand up to even the most advanced Cyber threats.

As a VDI infrastructure engineer at Booz Allen, you’ll research, design, and implement secure virtual desktop solutions to protect our client's most sensitive information in Microsoft's Global and Government cloud regions. You’ll coordinate with investment teams, executives, clients, and industry leading vendors to identify the right mix of tools and techniques to translate your customer’s goals into a plan that will enable secure and effective Cloud hosted solutions. We need to come up with the best solution, so you’ll investigate new techniques, break free from the legacy model, and go where the industry is going. You’ll work with a team through a critical approach to design, providing alternatives and customizing solutions to maintain a balance of security and mission needs. This is a chance to make a difference in the security of our country's financial markets, warfighters, citizen services, and healthcare. Your technical expertise will be vital as you help customers overcome their most difficult challenges by integrating security best practices like DevSecOps, cross-zone and multi-region redundancy, Identity and Access Management, encryption, and security analytics. You’ll be able to broaden your skillset into Microsoft Azure's advanced security, networking, and desktop like ExpressRoute, Key Vault, Active Directory, Sentinel, Windows Virtual Desktop, and DDoS Protection to support dynamic and immutable cloud infrastructure. Join our team as we deliver innovative Cybersecurity solutions to protect our client's information in the Cloud.

Empower change with us.

You Have:

-7+ years of experience with administering production Windows-based desktop endpoints, infrastructure, and management systems for large commercial or government entities
-5+ years of experience with Virtual Desktop Infrastructure (VDI) and application virtualization environments on Citrix or VMware platforms
-3+ years of experience with Microsoft Azure
-Experience with planning, designing, implementing, and migrating enterprise VDI deployments and Thin/Zero clients, including developing technical engineering artifacts, including requirements traceability matrices, network diagrams, bills of materials, data flow diagrams, installation procedures, and operations manuals
-Experience with PowerShell scripting and developing automation scripts to deploy systems, configure infrastructure, and automate repetitive tasks
-Knowledge of Active Directory design and administration principles and storage administration in Windows environment
-Knowledge of networking concepts, including DNS, TCP/IP, and routing, and desktop and application cybersecurity concepts, including vulnerability management, encryption, endpoint detection and response, auditing, and anti-malware

-Ability to obtain a security clearance
-BS degree

-Security+ Certification

Nice If You Have:

-Experience with Windows Virtual Desktop on Microsoft Azure
-Experience with administering and configuring Microsoft 365 workloads, including Exchange Online, SharePoint online, and Teams with integration with Azure Active Directory
-Experience with Infrastructure as Code technologies and approaches, such as Azure Resource Manager (ARM) templates and Terraform
-Experience with Identity and Access Management (IdAM), Federation technologies, and PIV/CAC, including user provisioning, authentication and authorization
-Experience with administering mobile devices, including MDM, MAM, or EMM in an enterprise environment
-Experience with using Microsoft DevOps or other tools for continuous integration and continuous delivery (CI/CD)
-Knowledge of privileged identity management solutions such as CyberArk or Azure PIM
-Knowledge of how to apply native cloud security and monitoring services in Azure, such as Network Security Groups, Azure Key Vault, Azure Firewall, Azure Active Directory, Azure Monitor, Security Center, Azure Advanced Threat Protection, and Azure Policy
-Knowledge of federal IT and Cloud security policies, including FISMA, FedRAMP, NIST 800–53, and DoD Cloud SRG and applying them to the design and implementation of Cloud solutions to achieve an Authorization to Operate (ATO)
-Secret clearance
-CISSP Certification
-Intermediate-level Microsoft Azure certification


Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.

Build Your Career:

Rewarding work, fun challenges, and a ton of investment in our people—that’s Booz Allen Cyber. When you join Booz Allen, we’ll help you develop the career you want.

Competitions — From programming competitions at our PyNights (Python competition and learning events) to competing in CTFs, we’ve got plenty of chances for you to show off your skills.

Paid Research — Have an innovative idea to explore or hypothesis to test? You can participate in challenges via our crowdsourcing platform, the Garage, and other programs to be awarded dedicated time and/or funding to advance your skills.

Cyber University — CyberU has more than 5000 instructor-led and self-paced Cyber courses, a free online library that you can access from just about anywhere—including your phone—and certification exam prep guides that include practical assessments to prepare you for your exam.

Academic Partnerships — In addition to our tuition reimbursement benefit, we’ve partnered with University of Maryland University College to offer two graduate certificate programs in Cybersecurity—fully funded without a tuition cap.

Maker/Hackerspaces — Race drones, print 3D gadgets, drink coffee from our Wi-Fi coffee maker, and get hands-on training on tools and tech from in-house experts in our dedicated maker and hackerspaces.

We’re an EOE that empowers our people—no matter their race, color, religion, sex, gender identity, sexual orientation, national origin, disability, veteran status, or other protected characteristic—to fearlessly drive change.

Booz Allen Hamilton