
Enterprise Security Architect – Senior
Posted 4 days ago

Posted 4 days ago
This is a fully remote position, open to applicants in United States.
• Design and sustain the enterprise security architecture for designated ICAM applications and services.
• Convert DHS security requirements into actionable architecture and technical controls.
• Contribute to or oversee secure application development and configuration processes.
• Embed security controls within applications, infrastructure, cloud environments, and DevSecOps practices.
• Lead or assist in conducting system security evaluations and validating technical controls.
• Create, update, or assist in the documentation necessary for Authorization to Operate activities.
• Identify and address vulnerabilities within the timeframes mandated by DHS.
• Develop and manage remediation actions and POA&M items for findings that cannot be resolved immediately.
• Collaborate with development and testing teams to ensure security requirements are integrated throughout the SDLC.
• Support development, integration, testing, and release processes within the assigned workstream.
• Review technical designs, code, configurations, security scan outcomes, and implementation evidence.
• Ensure that medium- and high-severity static and dynamic application vulnerabilities are resolved prior to production release.
• Assist in incident investigations, root-cause analyses, and corrective actions when security issues impact production systems.
• Maintain documentation related to architecture, security, assessments, and remediation activities.
• Proven experience in designing or maintaining enterprise application or system security architecture.
• Demonstrated experience in integrating cybersecurity controls into software, cloud, infrastructure, or DevSecOps environments.
• Background in supporting security assessments or authorization processes.
• Experience in identifying, documenting, and addressing technical vulnerabilities.
• Skilled in developing or managing POA&M remediation actions.
• Ability to collaborate with software engineering and testing teams throughout the SDLC.
• Capability to interpret security requirements and convert them into technical controls.
• Must be able to obtain and retain favorable DHS EOD, suitability, and necessary system access.
• Previous clearance or experience with DHS or federal civilian agencies is preferred.
• Familiarity with supporting federal ATO packages or NIST Risk Management Framework activities is preferred.
• Experience with ICAM, IAM, PIV, PKI, PAM, SSO, OAuth, OIDC, or access-control systems is preferred.
• Background with AWS, Azure, hybrid-cloud, or on-premises federal environments is preferred.
• Experience with secure CI/CD pipelines and automated security gates is preferred.
• Knowledge of SonarQube, Jenkins, GitHub Enterprise, Splunk, container security, STIGs, or hardened images is preferred.
• Relevant certifications such as CISSP, CSSLP, CCSP, AWS/Azure security certification, or comparable security credentials are preferred.
• Must be able to obtain and maintain required DHS access and suitability.
• 401(k)
• Dental insurance
• Health insurance
• Paid time off
• Vision insurance
• Military Spouse Employment Partnership (MSEP)
• Virginia Values Veterans (V3) Program
• Inclusive hiring practices
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.