Cyber Systems Architect III
Blackwatch International
If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process. Cyber Systems Architect III Full Time Professional McLean, VA, US 30+ days ago Requisition ID: 1106 Blackwatch International Corporation (Blackwatch) is a small business founded in 2010 and dedicated to supporting Federal business and national security objectives. Our headquarters are in McLean, VA, with satellite offices in Sacramento, CA. Blackwatch invests in innovation and quality for our customers and staff, holding corporate-level ISO 9001:2015, ISO/IEC 27001:2013, and ISO/IEC 20000-1:2018 and CMMI Level 3 certifications. We are a leading provider of information technology (IT) infrastructure, cybersecurity, DevSecOps, data exploitation, and engineering services, specializing in large and complex projects. Blackwatch is dedicated to growth and offers a dynamic working environment with multiple opportunities for advancement. Position Description: Participates in design, development, and implementation of IT security architectures and solutions. Applies knowledge and expertise designing, deploying, and supporting systems in secure environments to provide oversight and management of system administrators, system engineers, developers, or other technical staff. Participates in discussions with government stakeholders to gather and validate requirements, conduct reviews, and identify process improvements. Provides implementation and technical advice for software engineering cyber security requirements. Supports projects and teams in the technical analysis of large complex mission critical systems in defining system security or software architecture. Participates in design, development, and implementation of IT security architectures and solutions. Applies knowledge and expertise designing, deploying, and supporting systems in secure environments to provide oversight and management of system administrators, system engineers, developers, or other technical staff. Participates in discussions with government stakeholders to gather and validate requirements, conduct reviews, and identify process improvements. Provides implementation and technical advice for software engineering cyber security requirements. Supports projects and teams in the technical analysis of large complex mission critical systems in defining system security or software architecture. Provides technical/management leadership on major tasks or technology assignments. Establishes goals and plans that meet project objectives. Has domain and expert technical knowledge. Directs and controls activities for a client, having overall responsibility for financial management, methods, and staffing to ensure that technical requirements are met. Interactions involve client negotiations and interfacing with senior management. Decision making and domain knowledge may have a critical impact on overall project implementation. Position Title: Cyber Systems Architect III Position Location: On-site in Alexandria, VA; remote (if authorized) Position Type: Regular Years of experience: 5 Security Clearance: Public Trust US Citizenship Required: Yes, must have Real ID Summary The scope of work for effort includes infrastructure Hosting (On-premise internal cloud only) – Compute support provides vital services in the provision and maintenance of those resources through a focus on the workflows and methodologies of how compute is created, maintained, and recaptured to deliver timely compute resources to customers, faster, and right sized while ensuring products stay secure and stable. Compute services provide engineering, and security and operations maintenances support for Server Operating Systems, as well as, requirements analysis and design, to ensure adherence to standards & policies for any USPTO Product or Component. Objectives: Security Operations Information Assurance, RMF A&A, and documentation Combined scope: Provide NIST-based IA governance, full RMF A&A lifecycle support (Categorize → Authorize → Monitor), and produce/update required artifacts (SSP, PTA/PIA, CAW, FIPS-199, PIAs, Contingency Plans, and associated A&A artifacts where applicable). Rationale: RMF activities and IA documentation are tightly coupled—same knowledge, same deliverables. Acceptance criteria / metrics: SSP and associated artifacts updated within 30 calendar days of change; A&A artifacts produced for all major systems within 5 business days when requested. Vulnerability & Configuration Management (KEV handling and scan tuning) Combined scope: Perform vulnerability/compliance scan analysis, false-positive validation, REGEX/signature tuning, root-cause analysis, prioritization (KEV-first), and feed findings into POA&Ms and remediation actions. Track vulnerability lifecycle to ensure vulnerability closure ≤180 days unless exception approved. Rationale: Scan analysis, signature tuning, and KEV remediation are one continuous remediation workflow. Acceptance criteria / metrics: Help ensure at least 50% of KEVs remediated by associated CISA deadlines; For non-KEVs help ensure vulnerabilities are closed within timeframes dictated in the Vulnerability Management Policies; false-positive suppression documented with expiry. Baseline Management and Hardening Combined scope: Maintain and update security configuration baselines for OS/network/middleware/databases; align with CIS/STIG/DISA; perform impact analysis and coordinate deployment of baseline changes with the OCISO Enterprise Scan Team. Time to notify OCISO Enterprise Scan Team should be within 15 calendar days of security configuration baseline release. Rationale: Baseline creation, STIG/CIS adoption, and coordination with scanning are the same change management activity. Acceptance criteria / metrics: Security Configuration Baselines should be at least 90% compliant to the associated DISA or CIS benchmark; time-to-deploy new benchmark ≤ 45 calendar days from approved release to OCISO scan policy change. Identity, Privileged Access, and DHS CDM Initiatives Combined scope: Implement and support IdAM (e.g., Okta), Privileged Access Management (CAPAM or equivalent), and CDM program technical integration; produce integration runbooks and control evidence. Rationale: IdAM, PAM, and CDM are identity/credential posture functions that share controls and evidence requirements. Acceptance criteria / metrics: Integration runbook delivered; % of high‑risk privileged accounts under vaulting/policy; CDM dashboard metrics updated per schedule. Cloud Security and Cloud A&A Combined scope: Support RMF/FedRAMP-tailored A&A for cloud systems, produce cloud responsibility/control matrices, collect cloud-native evidence, and maintain continuous monitoring for cloud environments. Rationale: Cloud A&A and cloud control mapping are a single domain of work and require different deliverables but the same ownership. Acceptance criteria / metrics: Cloud A&A packages Security Operations, Tooling, and Automation Combined scope: Operate and integrate scanners and security tools (Tenable/DBProtect/HP WebInspect, CSAM repo), maintain detection rules and regex for signatures, provide scripting support (Linux/Windows/Python/PowerShell), and integrate network devices (Cisco/Juniper) and IPv6 assessments. Rationale: Tool operations, automation, tunings, and scripting are continuous SOC/scan support functions. Acceptance criteria / metrics: Tools and scans run per schedule; automation scripts stored in repo with versioning; mean time to validate scan findings. Assist Product Teams to integrate with Reference Pipeline. POA&M Management, Remediation Coordination, and Knowledge Transfer Combined scope: Maintain POA&M lifecycle (intake→assign→remediate→verify→close), provide remediation planning and translation for technical leads, and deliver training and job aids for sustainment. Rationale: POA&M administration and knowledge transfer are part of remediation operations and change acceptance. Acceptance criteria / metrics: POA&M aging distribution; 60% POA&Ms closed on schedule; number of training sessions and job aids delivered. Incident Response Support and Enterprise Operations Command Center (EOCC) Coordination Combined scope: Provide incident triage, forensic collection guidance, containment/eradication support, and follow-up lessons learned that feed POA&Ms and baselines. Rationale: Incident response is discrete but tightly linked to remediation and baseline updates. Acceptance criteria / metrics: Rally artifact coverage for security work; sprint predictability and throughput metrics; At least 90% data call submission timeliness. Agile Delivery, Reporting, and Data Calls Combined scope: Provide Scrum Master services, create Rally artifacts for POA&M and remediation work, manage sprints/epics/stories, and support USPTO data calls with timely, quality submissions and SME coordination. Rationale: Agile management, reporting, and data-call delivery are governance and transparency functions supporting technical work. Acceptance criteria / metrics: Rally artifact coverage for security work; sprint predictability and throughput metrics; At least 90% data call submission timeliness. Compliance & External Directives Impact Assessment Combined scope: Monitor and assess DHS/OMB memos, CISA BODs, and other directives; map to controls and operational actions; track and report compliance status and exceptions. Rationale: Agile management, reporting, and data-call delivery are governance and transparency functions supporting technical work. Acceptance criteria / metrics: New BOD/memo assessed within 15 calendar days; compliance register updated; exceptions documented and approved. Responsibilities: Lead a small team, focused on security services and solutions in support of the ten objectives listed above. The manager will take responsibility for: Developing the Project Management plans and other contract documents Directing the day-to-day efforts of technical personnel. Ensuring the quality of deliverables: cyber documentation, software, engineering and testing plans, or network installations. Monitors activities under the contract to ensure that all activities are executed in accordance with contract requirements and the COR’s direction. Minimum Qualifications: Possesses and applies expertise on multiple complex work assignments. Assignments may be broad in nature, requiring originality and innovation in determining how to accomplish tasks. Operates with appreciable latitude in developing methodology and presenting solutions to problems. Contributes to deliverables and performance metrics where applicable. Experience across the following is required: Support of Operations Security and Remediation Team’s role providing technical advice and National Institute of Standards and Technology (NIST) based information assurance governance guidance. Strong Knowledge of the NIST Risk Management Framework (RMF) to perform technical support for annual Assessment and Authorization (A&A) security assessments performed by Office of the Chief Information Security Officer (OCISO). Strong Understanding of all the NIST RMF Assessment and Authorization (A&A) documents and how to use the following but not limited to: Privacy threshold analysis (PTA), Privacy Impact Assessment (PIA), Control Assessment Worksheet (CAW), E-Auth, FIPS 199. Transfer of Knowledge on managing Plans of Actions and Milestones (POA&Ms) for weakness remediation. Strong Knowledge of the Department of Homeland Security (DHS) and the Office of Management and Budget (OMB) memo/Binding Operational Directives (BODs) impact assessment. Group to develop, update, and manage, cybersecurity documentation: System Security Plans, Privacy Assessments, Contingency Plans, Federal Information Processing Standard Publication 199 (FIPS-199) categorization changes Security Impact Assessments, etc. Perform Technical support for Department of Homeland Security (DHS) initiatives that require implementation (such as Continuous Diagnostics and Mitigation (CDM) using Okta and Certificate Management-Privileged Access Management (CA-PAM). Analyze vulnerability and compliance scans for false positive identification and evaluate in terms of operational system data in coordination with Product Team Leads. Track and establish cause of vulnerabilities that are precise but no more than 180 days. Review/Update/Create system security configuration baselines – revise as necessary as the Center for Internet Security (CIS) and Security Technical Implementation Guides (STIG). benchmarks are updated and coordinate changes with associated OCISO Enterprise Scan Team’s compliance configurations upon three days of release. Support teams to define and prioritize actionable timely recommendations for addressing compliance and vulnerability issues for network, operating systems, middleware, databases, and application. With experience leading remediation of Known Exploitable Vulnerabilities (KEVs). Strong Understanding of the Federal Information Security Modernization Act (FISMA) systems, and National Institute of Standards and Technology (NIST) controls and support on how to implement them – potentially how to automate them whether through process, NIST OSCAL programming or other common scripting languages (e.g. Python). In depth knowledge with networking, operating system, and middleware builds (config. baselines). In depth knowledge with CLOUD and Federal Information Security Management Act (FISMA) processes to include customer control metrics security tools and options. Provide support with the Regular Expression (REGEX) for understanding/editing scan signatures. Provide support, oversight, review, log data, network operation and security, and analysis for the following but not limited to: Scripting for Linux, Windows, Tenable, DBProtect, HP WebInspect, CSAM (the official cybersecurity repository), Juniper, CISCO, advance tools, IPv6. Cloud security: to manage Assessment and Authorization (A&A) work for those systems Use Rally to manage Epics, Features, and User Stories; provide Scrum Master services to create Rally artifacts and Agile documentation; translate Plan of Action and Milestones (POA&M) findings into clear, actionable guidance for technical leads and track remediation progress in Rally. Supporting USPTO Data Calls and ensuring timely and completed submission, collaborating with subject matter experts. Support incident response activities with Enterprise Operations Command Center. Support new tools as required. Desired Qualifications (not required, but a huge plus): Experience with Rally and agile ceremonies. Python coding Experience using the Cybersecurity Asset Management (CSAM) system for customer base. #J-18808-Ljbffr Blackwatch International
- Blackwatch International located in McLean, VA is seeking a Cyber Systems Architect III to engage in design and implementation of cybersecurity architectures and solutions. The ideal candidate will provide leadership and technical guidance to teams, manage system security...CyberFull time
- ...Sr. Solutions Architect III - Cyber Washington, DC Type: Permanent Category: Architecture Industry: Government Reference ID... ...JWICS. Strong understanding of network protocols, operating systems, and infrastructure components. Expert proficiency in...CyberHourly payPermanent employmentFull timeLocal area
$86.8k - $198k
Job Number: R0234794 Intelligence Systems Cyber Analytics Platform Architect The Opportunity For an organization to transform in today's digital world, it needs to properly collect, store, and organize its data. Effective data management can enable more efficient operations...CyberLocal area- A technology firm specializing in cybersecurity is seeking a Cyber SME III in Arlington, VA. The candidate should have extensive technical expertise in cyber engineering, with at least 15 years of experience and 10 years in project management. Key qualifications include...Cyber
- ...Dev Ops Engineer III BAM is a dynamic, multi-disciplinary firm with leading-edge skills... ...operations teams to automate workflows, improve system reliability, and ensure scalability. The... ..., performance, and security. Work with Cyber Analysts and Engineers to monitor and respond...CyberFull timeRemote workFlexible hours
$99k - $225k
## Mission System Data ArchitectApplylocations: McLean, VA: Chantilly, VAtime type: Full... ...requisition id: R0239398Mission System Data Architect**The Opportunity:**For an organization to... ...We build technology solutions using AI, cyber, and other cutting-edge technologies to...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- Elevate Ventures in Washington is seeking a Cyber Security Specialist II/III to support cybersecurity engineering and compliance in a NAVSEA Program... ...security posture, and fixing vulnerabilities across systems. Candidates should have 3+ years of cybersecurity experience...CyberWork at office
- Description The Cyber Security Specialist II/III supports cybersecurity engineering and compliance execution in a NAVSEA Program Office Support role... ...posture, and remediate vulnerabilities across supported systems. This position is contingent upon award. Award is expected...CyberWork at office
- ...Solutions (NAIS) is seeking a Senior Business Process Analyst III to support the Joint Cyber Defense Collaborative (JCDC) within the Cybersecurity and... ...-through. Provide expertise in business process and system analysis, design, improvement, and implementation efforts....CyberFull time
$100k - $125k
Incident Response Expert III (Cyber Eviction Analysts) Location: Washington DC Metro Area (On-Site) Citizenship: US only Clearance: Active... ...TS/SCI (DHS EOD Suitability required) Company: Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small Business (SDVOSB)...CyberLocal areaImmediate start- This position requires a minimum of a USG Top Secret Security Clearance! Host Based Systems Analyst - III - HBA03 - Full Performance Argo Cyber Systems provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate...CyberImmediate startRemote work
$107.93k - $188.9k
Security Engineer III, Cyber Threat Hunter Deloitte is seeking a Threat Hunter, Cyber Defense & Resilience to support proactive cyber threat detection, analysis, and response in complex client environments. This role focuses on identifying adversary behavior, investigating...Cyber$140k - $180k
...cutting-edge research and technology in the cyber arena, CPMG focuses on using business... ...support services. Summary: The Project Manager III serves as a senior project management lead... ...essential to the Military Health System (MHS). Responsibilities Essential Job Functions...CyberContract workFor contractorsFlexible hours- ...contract award *** Overview SOSi is seeking a Data Scientist III to support cybersecurity data science and enrichment activities... ...behavior analytics, and data correlation services supporting cyber defense operations. Responsibilities • Develop and apply data...CyberContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
$140k - $175k
...remediate exposures across code, cloud, and AI systems. Through solutions like bug bounty,... ...delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders,... ...accountability. Infrastructure Engineer III Remote Location: Boston, MA; Austin,...CyberApprenticeshipLocal areaRemote workFlexible hoursShift work- Cybersecurity Vulnerability Analyst (Incident Manager III) Description Supporting our prime... ...analysis summaries, and other cyber intelligence reports Required Skills Experience... ...of attacks and attack stages Knowledge of system and application security threats and vulnerabilities...CyberFor contractors
- Exigent Services LLC is seeking an International Partnership Support Subject Matter Expert (SME) III to support the U.S. Cyber Command. This role involves developing strategic partnerships with various governmental entities while supporting international engagements. Candidates...Cyber
$127.5k - $276.2k
...Security Engineer III Category: Software Development/ Engineering Main location... ...controls, and strengthen Treasury's cyber resilience. This position is located in... ...Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or related field. 9+...CyberFull timeWork at officeLocal area- Systems/Staff Engineer III - Senior Level Location: Cedar Springs, MI / Washington, D.C. / Quantico, VA Travel: Minimal / As needed Clearance: Top... ..., network mapping, exploitation, and mission‑driven cyber operations. This role is ideal for a senior engineer with...CyberLocal area
- ...Advance your career while impacting our national security in cyber as Solution Architect at GDIT. Here, technologists have many paths to grow a... ...mission requirements into scalable, secure, and interoperable system designs. Develops architecture diagrams, interface...CyberWork at office
- ...*Position Title:**Infrastructure Engineer III**Department:**Cybersecurity & Program Management... ..., confirm security compliance, ensure systems align with IT strategies, test and deploy... ...and report security vulnerabilities to Cyber Security* Create and document network / security...CyberFull timeRemote work
- ...RT | System Architect, Rail Transportation | Accepting Candidates | P1 | Software Development | _Job #1103636 | Open ONLY LOCALS Period... ..., Data Analytics Infrastructure & Cloud Solutions, Cyber Security Services, etc. We make reasonable accommodations for...CyberLocal areaRemote work
- Cyntel Technologies, LLC in Washington, DC is seeking a Technologies Capabilities SME III with at least 15 years of technical expertise in cyber engineering and project management. The ideal candidate will have extensive experience supporting cybersecurity analysis and...CyberFull time
- Booz Allen Hamilton is seeking a Pre‑Sales Solutions Engineer based in McLean, Virginia, to lead engagements for cyber defense products. You will serve as the primary technical authority, delivering impactful demos and supporting enterprise sales. The ideal candidate has...CyberFull timePart time
- ...Solutions Architect Our partner is supporting a U.S. Government customer... ...asset owners who experience cyber-attacks, providing immediate... ...between initiatives, systems, and teams Develop end-to-end... ...Certifications DoD 8140 IAT Level III Certified Systems...CyberContract workImmediate start
- ...Technical Architect Job Locations US-VA Job ID 2026-3713 Category... ...Architect to join our talented team to support Systems Development and Modernization Initiatives... ..., DevSecOps, Data and Analytics, and Cyber Security for the Federal Government. ACCESSIBILITY...CyberFull timeLocal areaImmediate start
- ...provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission... .... Nightwing is seeking a Solutions Architect to support this critical customer... ...Certifications: - DoD 8140 IAT Level III - Certified Systems...CyberContract workImmediate start
- ...MANTECH seeks a motivated, career and customer-oriented Systems Architect to join our team. The System Architect will leverage their... ...Defense environments ~ Experience with the Sponsor's primary cyber risk and compliance automation tools. ~ Familiarity with DoD...CyberWork at officeLocal area
$162.8k - $303k
A leading cybersecurity firm in McLean, Virginia is seeking a senior solution architect to lead the visioning and implementation of cybersecurity solutions. The ideal candidate will have over 15 years of experience in federal environments, extensive knowledge of enterprise...Cyber$111.16k - $150.39k
...Operations Job Qualifications: Skills: Complex Systems, Complex Systems Design, System Designs Certifications:... ...your career while impacting our national security in cyber as Solution Architect at GDIT. Here, technologists have many paths to grow a meaningful...CyberTemporary workWork at officeImmediate startRemote workWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Systems Architect III. Be the first to apply!

