Senior Cybersecurity Architect
Leidos' Defense Sector is seeking a Senior Cybersecurity Architect to support a fast-paced program with the Air Force Life Cycle Management Center. This role provides comprehensive subject matter expertise and execution of cybersecurity engineering and architecture functions for a weapons system program. The Senior Cybersecurity Architect will ensure the security and integrity of program IT infrastructure, protect sensitive data, and mitigate cyber threats while collaborating on strategic initiatives and aligning with overall program goals.
About the role
Security and compliance in defense-sector classified networks face a structural paradox: processes designed to protect mission software often slow it down. This role focuses on building a better architecture—policy-as-code that enforces compliance at deployment, zero-trust integrated from day one, continuous evidence for auditors, and inheritable ATOs. The result is a security posture stronger than manual review, stricter, and more consistent. You will build the foundational cybersecurity architecture that the program can scale and replicate across multiple environments.
Responsibilities
- Develop and implement enterprise-level cybersecurity strategies aligned with DoD and Federal security guidelines.
- Ensure selected technologies and architecture designs are resilient to modern cyber threats.
- Architect and implement secure cloud infrastructure across platforms.
- Define and enforce cloud security policies, standards, and automation frameworks.
- Support timely completion of Authorization to Operate (ATO) activities across multiple environments at various classification levels.
- Integrate security into CI/CD pipelines and DevOps workflows.
- Support cloud identity and access management (ICAM), encryption, and key management systems.
- Configure, tune, and monitor enterprise security tools.
- Monitor network and system security to identify and respond to vulnerabilities and incidents.
- Conduct risk assessments and develop strategies to mitigate identified risks.
- Collaborate with IT teams to ensure the integration of security measures into all infrastructure projects.
- Develop and implement security policies, standards, and procedures to protect sensitive information.
- Provide technical support and guidance on cybersecurity tools and technologies.
- Stay updated on emerging cybersecurity threats and industry trends to enhance the organization's security posture.
- Develop and refine documentation to gain and maintain DoD accreditation for the systems on the program.
- Participate in the Change Control Board (CCB) process for supporting all major engineering milestones and decisions for the program.
Requirements
- Bachelor’s Degree with 12+ years of experience or Master’s Degree with 10+ years of experience. Additional equivalent industry experience in lieu of education will be considered.
- US Citizen with at least an active Top Secret clearance and the ability to obtain and maintain an SCI prior to your start date.
- Proven experience in cybersecurity engineering or related roles.
- Hands-on experience with configuring cybersecurity tools and software for enterprise use, with a specific focus on Splunk (Enterprise Security, SOAR, UBA), HBSS/ESS (Trellix ePO), ACAS (Tenable/Nessus), and SolarWinds Observability.
- Familiarity with DoD cybersecurity frameworks such as Risk Management Framework (RMF).
- Strong knowledge of network security, firewalls, intrusion detection/prevention systems, and encryption technologies.
- Excellent problem-solving skills and attention to detail.
- Strong communication skills for collaborating with technical and non-technical stakeholders.
- DoD 8140 advanced certifications (CISM, CISSP, ISSAP).
Preferred Qualifications
- Project Management Certifications (PMP, ISSMP, etc.).
- Microsoft Azure Certifications (AZ-500, AZ-305, etc.).
- Working knowledge of cloud security and securing cloud-based infrastructure.
- Experience with Azure Stack Hub/Azure Local family of products.
- Experience securing classified DoD networks, such as networks connected to SIPR or JWICS.
- Familiarity with incident response processes and tools.
- Experience with scripting or automation tools for security tasks.
- Ability to work in a dynamic environment and adapt to changing priorities.
- Experience with Agile framework and DevSecOps.
Pay
Pay Range: $131,300.00 - $237,350.00. The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Benefits
Pay and benefits are fundamental to any career decision. Leidos offers competitive compensation, Health and Wellness programs, Income Protection, Paid Leave, and Retirement. More details are available at www.leidos.com/careers/pay-benefits.