Jobs · Virginia

CYBERSECURITY ARCHITECT

Hiring Our Heroes · Arlington, VA · 3 wk ago
Full-time

Zermount Inc. is seeking a highly talented, technical hands-on Cybersecurity Architect to help accelerate our Cybersecurity Program for a Government Agency. The Agency operates a complex hybrid environment spanning on-premises and cloud infrastructure and services, with a mandate to modernize its security posture in alignment with Executive Order 14028, NIST Zero Trust Architecture guidance, and the Federal Zero Trust Strategy. This role is the technical design authority on the contract.

Responsibilities

  • Develop and maintain Enterprise Security Architecture (ESA) and cybersecurity roadmap in alignment with EO 14028 implementation priorities: Zero Trust, Supply Chain Risk Management (SCRM), critical software security, and secure cloud adoption.
  • Design and lead implementation of Zero Trust Architecture (ZTA) across the hybrid environment spanning on-premises infrastructure and cloud services, aligned with NIST SP 800-207 and the Federal Zero Trust Strategy (OMB M-22-09).
  • Research and evaluate emerging security capabilities—including AI/ML-assisted detection and automation—for applicability to the agency requirements and potential Zermount service development.
  • Lead architecture and implementation of Continuous Authorization to Operate (cATO) capability, replacing periodic assessment snapshots with automated, real-time security control monitoring and evidence collection.
  • Plan and conduct Proof of Concept (PoC) deployments within the client enterprise and/or in external vendor environments.
  • Understand and evaluate business, technical, and functional requirements, translating mission goals and operational directives into actionable recommendations.
  • Design solutions for existing and ongoing implementations and support implementation efforts, including tool evaluation, adoption, implementation, and phase-out; system integration development and implementation; and feature/content development.
  • Assist in developing schedules, work breakdown structures (WBS's), and project schedules with the Technical Project Manager.
  • Collaborate with internal and external teams and ensure client and NIST compliance.
  • Serve as a technical leadership role and provide services as a cross-functional team member supporting other Task Areas as required.

Requirements

  • High level of attention to detail, needs minimal guidance, effective verbal and written communications.
  • Equally adept at strategic planning and operational/technical level.
  • Able to adapt to new and changing requirements or priorities and manage work and resources accordingly.
  • At least 10 years of hands-on technical IT and cybersecurity experience, including:
    • LAN/WAN, WAF/CDN/DDoS, Network Firewalls, IDS/IPS, inline decryption.
    • Experience with NIST RMF, FedRAMP, FISMA, and NIST SP 800-53 control implementation.
    • Experience with SIEM platforms (Splunk preferred)—log architecture, ingestion design, detection tuning.
    • Virtualization, hypervisor, and container security.
    • Application development, serverless security, microservices, CI/CD.
    • Designing and/or implementing security in Cloud (AWS required, Azure or GCP optional): Multi-Cloud, Hybrid Cloud, IaaS, PaaS, SaaS, shared responsibility model. AWS IAM, KMS, S3, RDS, SNS/SQS, Organization, Guard Duty, Security Hub, Detective, Config, CloudTrail, CloudWatch, Lambda.

Qualifications

  • A minimum of a Bachelor of Science in one of the following: Computer Science, Engineering, Information Technology, Cybersecurity, or similar field. Years of experience will be taken into consideration in place of a degree.
  • One or more industry-recognized cybersecurity certifications aligned with DoD 8570/8140 IAM Level III or IAT Level III baseline requirements. Ideal certifications include Certified Cloud Security Professional (CCSP), AWS Certified Solutions Architect Associate, or AWS Certified Security-Specialty.

Clearance

Must be able to obtain and maintain a Public Trust background investigation.

Schedule

Business Hours: 7:00 am EST - 7:00 pm EST | Core Hours: 8:00 am - 4:00 pm EST

Location

This is a primarily remote position. Candidates must be able to travel occasionally to Zermount headquarters and customer sites based on program needs, meetings, workshops, and deployment activities.

Similar jobs

Cybersecurity Architect

JobgetherUnited States· 6 days ago
RemoteInformation Technology$149k–$184k/yrapply on jobs.lever.co

Cybersecurity Architect

Eli Lilly and CompanyIndiana, United States· 2 mo ago
RemoteEngineering$126k–$224k/yrapply on careers.lilly.com

Cybersecurity Architect

Envision Technology SolutionsArizona, United States· 3 mo ago
Engineeringapply on ajax.googleapis.com