
Cloud Security Architect / Engineer
Posted 21 hours ago

Posted 21 hours ago
This is a fully remote position, open to applicants in District of Columbia, +1 more state.
• Take ownership of secure enterprise baseline configuration management.
• Generate Security Baseline Configuration and Assessment Reports each Friday.
• Execute security architecture reviews, threat modeling, and the development of security standards and requirements in collaboration with the Technical Lead.
• Conduct secure engineering design and assessments.
• Create Security Engineering Consideration Plans and Security Requirements Needs Documents.
• Lead the engineering and management of cybersecurity tools.
• Develop the Tool Rationalization and Capability Coverage Report, Cybersecurity Tool Strategic Roadmap, and the annual Tool Rationalization Decision Matrix.
• Assist in optimizing and integrating enterprise security data and telemetry environments, including CDM/BETSIE data quality and integration tasks.
• Implement automation for repetitive evidence collection.
• Collaborate with the Chief Security Architect-Engineer on architecture reviews and threat modeling.
• Spearhead cybersecurity tool engineering and rationalization efforts throughout the enterprise.
• Maintain a consistent weekly delivery rhythm in a federal production setting.
• At least 10 years of experience in information security, with a minimum of 5 years in cybersecurity and cloud security at a large government agency comparable to VA, DoD, GSA, or IRS.
• Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Information Assurance, Information Security, Information Resource Management, Business Administration, Business Management, or a related discipline.
• Proficiency in integrating cybersecurity architecture and engineering requirements and authorizations (FedRAMP / RMF) into systems and applications.
• Expertise in IT and cloud security architecture design, security engineering, development, systems engineering, and implementation initiatives.
• Familiarity with cloud solutions in both federal and commercial sectors.
• Knowledge of Federal Assessment and Authorization and Authority to Operate (ATO) processes.
• Understanding of security compliance requirements and regulatory standards, including NIST, FISMA, FedRAMP, CIS Controls, and HIPAA.
• Proven ability to consistently deliver weekly outputs in a federal production environment.
• One or more required certifications: Information Assurance Technician (IAT) III, Information Assurance Management (IAM) III, or Information Assurance System Architect and Engineer (IASAE) III.
• Commonly recognized certifications include CISSP, CASP+, CCSP, or CISM.
• Certification must be verified prior to extending an offer.
• U.S. citizenship is mandatory.
• Must be eligible to obtain and maintain a Tier 4 / High Risk Public Trust background investigation, VA systems access, and PIV credentialing.
• Work cannot commence until an interim determination is received.
• Preferred qualifications include experience with FedRAMP authorization, CDM program, infrastructure-as-code and policy-as-code practices, experience in rationalizing and retiring redundant security tools, and prior experience with VA programs, particularly within OIT or OIS.
• Regular full-time employment.
• Exempt status.
• Travel anticipated at 0–10%.
• Equal Opportunity Employer.
VAILEXA
EverCommerce
NatWest Group
Inviso
Get handpicked remote jobs straight to your inbox weekly.