Senior Cybersecurity Architect - Government Agency Modernization

hiring our heroes • United State
Remote Visa Sponsorship
Apply
AI Summary

Lead Zero Trust implementation, automate ATO process, and drive security posture modernization for a complex hybrid government environment. Bring deep cybersecurity architecture experience and hands-on engineering capability.

Key Highlights
Technical design authority for Zero Trust implementation
Lead development of Continuous Authorization to Operate (cATO) capabilities
Provide hands-on engineering leadership for network, cloud, and compliance
Key Responsibilities
Develop and maintain Enterprise Security Architecture (ESA) and cybersecurity roadmap
Design and lead implementation of Zero Trust Architecture (ZTA) across hybrid environment
Research and evaluate emerging security capabilities for potential service development
Lead architecture and implementation of cATO capability
Plan and conduct Proof of Concept (PoC) deployments
Collaborate with internal and external teams to ensure client and NIST compliance
Technical Skills Required
Zero Trust Architecture NIST RMF/FISMA/NIST SP 800-53 Cloud Security (AWS, Azure, GCP)
Benefits & Perks
Remote work
Visa sponsorship
Nice to Have
Certified Cloud Security Professional (CCSP)
AWS Certified Solutions Architect Associate
AWS Certified Security - Specialty

Job Description


Cybersecurity Architect

Military Friendly & Preferred - Hoh Sponsor

Zermount Inc. is seeking a highly talented, technical hands-on Cybersecurity Architect to help accelerate our Cybersecurity Program for a Government Agency. The Agency operates a complex hybrid environment spanning on-premises and cloud infrastructure and services, with a mandate to modernize its security posture in alignment with Executive Order 14028, NIST Zero Trust Architecture guidance, and the Federal Zero Trust Strategy.

This role is the technical design authority on the contract. The Cybersecurity Architect owns the architectural direction for Zero Trust implementation across the hybrid environment, leads the development of Continuous Authorization to Operate (cATO) capabilities to accelerate and automate the current ATO process, and provides hands-on engineering leadership supporting network security, cloud security, and compliance.

The right candidate brings deep cybersecurity architecture experience, hands-on engineering capability, and the credibility to operate across both technical working groups and executivelevel discussions with government leadership and authorizing officials.

Du es and Responsibilities

  • Develop and maintain Enterprise Security Architecture (ESA), cybersecurity roadmap in alignment with EO 14028 implementa on priori es: Zero Trust, Supply Chain Risk Management (SCRM), cri cal so ware security, and secure cloud adop on.
  • Design and lead implementa on of Zero Trust Architecture (ZTA) across the hybrid environment spanning on-premises infrastructure and cloud services, aligned with NIST SP 800-207 and the Federal Zero Trust Strategy (OMB M-22-09)
  • Research and evaluate emerging security capabili es - including AI/ML-assisted detec on and automa on for applicability to the agency requirements and poten al Zermount service development.
  • Lead architecture and implementa on of cATO capability replacing periodic assessment snapshots with automated, real- me security control monitoring and evidence collec on.
  • Plans & conducts Proof of Concept (PoC) deployments within the client enterprise and/or in external vendor environments.
  • Understands & evaluates business, technical & functional requirements, translating mission goals & operational directives into actionable recommendations.
  • Understand requirements, use cases, implementation challenges, client road maps & operational pain points.
  • Designs solutions for existing & ongoing implementations & supports implementation efforts. This includes tool evaluation, adoption, implementation & phase-out; system integration development and implementation; and feature/content development.
  • Assist in developing schedules, work breakdown structures (WBS's) & project schedules with the Technical Project Manager.
  • Collaborates with internal & external teams & ensures client & NIST compliance.
  • Serves as a technical leadership role and provides services as a cross functional team member supporting other Task Areas as required.

Qualifications

  • High level of attention to detail, needs minimal guidance, effective verbal, and written communications.
  • Equally adept at strategic planning and operational/technical level.
  • Able to adapt to new and changing requirements or priorities and manage work and resources accordingly.
  • At least 10 years of hands-on technical IT and cybersecurity experience. To include experience with:
    • LAN/WAN, WAF/CDN/DDoS, Network Firewalls, IDS/IPS, inline decryption. o Experience with NIST RMF, FedRAMP, FISMA, and NIST SP 800-53 control implementation. o Experience with SIEM platforms (Splunk preferred) - log architecture, ingestion design, detection tuning.
    • Virtualization, hypervisor, and container security. o Application development, serverless security, microservices, CI/CD.
    • Designing and/or implementing security in Cloud (AWS required, Azure or GCP optional): Multi-Cloud, Hybrid Cloud, IaaS, PaaS, SaaS, shared responsibility model. AWS IAM, KMS, S3, RDS, SNS/SQS, Organization, Guard Duty, Security Hub, Detective, Config, CloudTrail, CloudWatch, Lambda.
Education

  • A minimum of a Bachelor of Science in one of the following: Computer Science, Engineering, Information Technology, Cybersecurity or similar field. Years of experience will be taken into consideration, in place of a degree.

Certifications

  • One or more industry-recognized cybersecurity certifications aligned with DoD 8570/8140 IAM Level III or IAT Level III baseline requirements.

Ideal Candidate Would Also Have

  • Certified Cloud Security Professional (CCSP), AWS Certified Solutions Architect Associate, AWS Certified Security-Specialty.

Clearance

  • Must be able to obtain and maintain a Public Trust background investigation.

LOCATION:

  • This is a primarily remote position. Candidates must be able to travel occasionally to Zermount headquarters and customer sites based on program needs, meetings, workshops, and deployment activities.

Hours Of Operation

  • Business Hours: 7:00 am EST - 7:00 pm EST | Core Hours: 8:00 am - 4:00pm EST

Similar Jobs

Explore other opportunities that match your interests

AI Security Engineering Intern

Cyber Security
•
1h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

intel

United State

Cyber Security Engineer

Cyber Security
•
1h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

gray swan

United State

Senior Security Researcher

Cyber Security
•
2h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Palo Alto Networks

United State

Subscribe our newsletter

New Things Will Always Update Regularly