Cyber Systems Architect III
Blackwatch International
Blackwatch International Corporation (Blackwatch) is a small business founded in 2010 and dedicated to supporting Federal business and national security objectives. Our headquarters are in McLean, VA, with satellite offices in Sacramento, CA.
Blackwatch invests in innovation and quality for our customers and staff, holding corporate-level ISO 9001:2015, ISO/IEC 27001:2013, and ISO/IEC 20000-1:2018 and CMMI Level 3 certifications. We are a leading provider of information technology (IT) infrastructure, cybersecurity, DevSecOps, data exploitation, and engineering services, specializing in large and complex projects. Blackwatch is dedicated to growth and offers a dynamic working environment with multiple opportunities for advancement.Position Description: Participates in design, development, and implementation of IT security architectures and solutions. Applies knowledge and expertise designing, deploying, and supporting systems in secure environments to provide oversight and management of system administrators, system engineers, developers, or other technical staff. Participates in discussions with government stakeholders to gather and validate requirements, conduct reviews, and identify process improvements. Provides implementation and technical advice for software engineering cyber security requirements. Supports projects and teams in the technical analysis of large complex mission critical systems in defining system security or software architecture. Participates in design, development, and implementation of IT security architectures and solutions. Applies knowledge and expertise designing, deploying, and supporting systems in secure environments to provide oversight and management of system administrators, system engineers, developers, or other technical staff. Participates in discussions with government stakeholders to gather and validate requirements, conduct reviews, and identify process improvements. Provides implementation and technical advice for software engineering cyber security requirements. Supports projects and teams in the technical analysis of large complex mission critical systems in defining system security or software architecture. Provides technical/management leadership on major tasks or technology assignments. Establishes goals and plans that meet project objectives. Has domain and expert technical knowledge. Directs and controls activities for a client, having overall responsibility for financial management, methods, and staffing to ensure that technical requirements are met. Interactions involve client negotiations and interfacing with senior management. Decision making and domain knowledge may have a critical impact on overall project implementation.
Position Title: Cyber Systems Architect III Position Location : On-site in Alexandria, VA; remote (if authorized) Position Type : Regular
Years of experience : 5 Security Clearance : Public Trust US Citizenship Required : Yes, must have Real ID Summary The scope of work for effort includes infrastructure Hosting (On-premise internal cloud only) - Compute support provides vital services in the provision and maintenance of those resources through a focus on the workflows and methodologies of how compute is created, maintained, and recaptured to deliver timely compute resources to customers, faster, and right sized while ensuring products stay secure and stable. Compute services provide engineering, and security and operations maintenances support for Server Operating Systems, as well as, requirements analysis and design, to ensure adherence to standards & policies for any USPTO Product or Component. Objectives: Security Operations Information Assurance, RMF A&A, and documentation
- Combined scope: Provide NIST-based IA governance, full RMF A&A lifecycle support (Categorize → Authorize → Monitor), and produce/update required artifacts (SSP, PTA/PIA, CAW, FIPS-199, PIAs, Contingency Plans, and associated A&A artifacts where applicable).
- Rationale: RMF activities and IA documentation are tightly coupled-same knowledge, same deliverables.
- Acceptance criteria / metrics: SSP and associated artifacts updated within 30 calendar days of change; A&A artifacts produced for all major systems within 5 business days when requested.
- Combined scope: Perform vulnerability/compliance scan analysis, false-positive validation, REGEX/signature tuning, root-cause analysis, prioritization (KEV-first), and feed findings into POA&Ms and remediation actions. Track vulnerability lifecycle to ensure vulnerability closure ≤180 days unless exception approved.
- Rationale: Scan analysis, signature tuning, and KEV remediation are one continuous remediation workflow.
- Acceptance criteria / metrics: Help ensure at least 50% of KEVs remediated by associated CISA deadlines; For non-KEVs help ensure vulnerabilities are closed within timeframes dictated in the Vulnerability Management Policies; false-positive suppression documented with expiry.
- Combined scope: Maintain and update security configuration baselines for OS/network/middleware/databases; align with CIS/STIG/DISA; perform impact analysis and coordinate deployment of baseline changes with the OCISO Enterprise Scan Team. Time to notify OCISO Enterprise Scan Team should be within 15 calendar days of security configuration baseline release.
- Rationale: Baseline creation, STIG/CIS adoption, and coordination with scanning are the same change management activity.
- Acceptance criteria / metrics: Security Configuration Baselines should be at least 90% compliant to the associated DISA or CIS benchmark; time-to-deploy new benchmark ≤ 45 calendar days from approved release to OCISO scan policy change.
- Combined scope: Implement and support IdAM (e.g., Okta), Privileged Access Management (CAPAM or equivalent), and CDM program technical integration; produce integration runbooks and control evidence.
- Rationale: IdAM, PAM, and CDM are identity/credential posture functions that share controls and evidence requirements.
- Acceptance criteria / metrics: Integration runbook delivered; % of high-risk privileged accounts under vaulting/policy; CDM dashboard metrics updated per schedule.
- Combined scope: Support RMF/FedRAMP-tailored A&A for cloud systems, produce cloud responsibility/control matrices, collect cloud-native evidence, and maintain continuous monitoring for cloud environments.
- Rationale: Cloud A&A and cloud control mapping are a single domain of work and require different deliverables but the same ownership.
- Acceptance criteria / metrics: Cloud A&A packages
- Combined scope: Operate and integrate scanners and security tools (Tenable/DBProtect/HP WebInspect, CSAM repo), maintain detection rules and regex for signatures, provide scripting support (Linux/Windows/Python/PowerShell), and integrate network devices (Cisco/Juniper) and IPv6 assessments.
- Rationale: Tool operations, automation, tunings, and scripting are continuous SOC/scan support functions.
- Acceptance criteria / metrics: Tools and scans run per schedule; automation scripts stored in repo with versioning; mean time to validate scan findings. Assist Product Teams to integrate with Reference Pipeline.
- Combined scope: Maintain POA&M lifecycle (intake→assign→remediate→verify→close), provide remediation planning and translation for technical leads, and deliver training and job aids for sustainment.
- Rationale: POA&M administration and knowledge transfer are part of remediation operations and change acceptance.
- Acceptance criteria / metrics: POA&M aging distribution; 60% POA&Ms closed on schedule; number of training sessions and job aids delivered.
- Combined scope: Provide incident triage, forensic collection guidance, containment/eradication support, and follow-up lessons learned that feed POA&Ms and baselines.
- Rationale: Incident response is discrete but tightly linked to remediation and baseline updates.
- Acceptance criteria / metrics: Rally artifact coverage for security work; sprint predictability and throughput metrics; At least 90% data call submission timeliness.
- Combined scope: Provide Scrum Master services, create Rally artifacts for POA&M and remediation work, manage sprints/epics/stories, and support USPTO data calls with timely, quality submissions and SME coordination.
- Rationale: Agile management, reporting, and data-call delivery are governance and transparency functions supporting technical work.
- Acceptance criteria / metrics: Rally artifact coverage for security work; sprint predictability and throughput metrics; At least 90% data call submission timeliness.
- Combined scope: Monitor and assess DHS/OMB memos, CISA BODs, and other directives; map to controls and operational actions; track and report compliance status and exceptions.
- Rationale: Agile management, reporting, and data-call delivery are governance and transparency functions supporting technical work.
- Acceptance criteria / metrics: New BOD/memo assessed within 15 calendar days; compliance register updated; exceptions documented and approved.
- Developing the Project Management plans and other contract documents
- Directing the day-to-day efforts of technical personnel.
- Ensuring the quality of deliverables: cyber documentation, software, engineering and testing plans, or network installations.
- Monitors activities under the contract to ensure that all activities are executed in accordance with contract requirements and the COR's direction.
- Support of Operations Security and Remediation Team's role providing technical advice and National Institute of Standards and Technology (NIST) based information assurance governance guidance.
- Strong Knowledge of the NIST Risk Management Framework (RMF) to perform technical support for annual Assessment and Authorization (A&A) security assessments performed by Office of the Chief Information Security Officer (OCISO).
- Strong Understanding of all the NIST RMF Assessment and Authorization (A&A) documents and how to use the following but not limited to: Privacy threshold analysis (PTA), Privacy Impact Assessment (PIA), Control Assessment Worksheet (CAW), E-Auth, FIPS 199.
- Transfer of Knowledge on managing Plans of Actions and Milestones (POA&Ms) for weakness remediation.
- Strong Knowledge of the Department of Homeland Security (DHS) and the Office of Management and Budget (OMB) memo/Binding Operational Directives (BODs) impact assessment.
- Group to develop, update, and manage, cybersecurity documentation: System Security Plans, Privacy Assessments, Contingency Plans, Federal Information Processing Standard Publication 199 (FIPS-199) categorization changes Security Impact Assessments, etc.
- Perform Technical support for Department of Homeland Security (DHS) initiatives that require implementation (such as Continuous Diagnostics and Mitigation (CDM) using Okta and Certificate Management-Privileged Access Management (CA-PAM).
- Analyze vulnerability and compliance scans for false positive identification and evaluate in terms of operational system data in coordination with Product Team Leads.
- Track and establish cause of vulnerabilities that are precise but no more than 180 days.
- Review/Update/Create system security configuration baselines - revise as necessary as the Center for Internet Security (CIS) and Security Technical Implementation Guides (STIG).
- benchmarks are updated and coordinate changes with associated OCISO Enterprise Scan Team's compliance configurations upon three days of release.
- Support teams to define and prioritize actionable timely recommendations for addressing compliance and vulnerability issues for network, operating systems, middleware, databases, and application. With experience leading remediation of Known Exploitable Vulnerabilities (KEVs).
- Strong Understanding of the Federal Information Security Modernization Act (FISMA) systems, and National Institute of Standards and Technology (NIST) controls and support on how to implement them - potentially how to automate them whether through process, NIST OSCAL programming or other common scripting languages (e.g. Python).
- In depth knowledge with networking, operating system, and middleware builds (config. baselines).
- In depth knowledge with CLOUD and Federal Information Security Management Act (FISMA) processes to include customer control metrics security tools and options.
- Provide support with the Regular Expression (REGEX) for understanding/editing scan signatures.
- Provide support, oversight, review, log data, network operation and security, and analysis for the following but not limited to: Scripting for Linux, Windows, Tenable, DBProtect, HP WebInspect, CSAM (the official cybersecurity repository), Juniper, CISCO, advance tools, IPv6.
- Cloud security: to manage Assessment and Authorization (A&A) work for those systems
- Use Rally to manage Epics, Features, and User Stories; provide Scrum Master services to create Rally artifacts and Agile documentation; translate Plan of Action and Milestones (POA&M) findings into clear, actionable guidance for technical leads and track remediation progress in Rally.
- Supporting USPTO Data Calls and ensuring timely and completed submission, collaborating with subject matter experts.
- Support incident response activities with Enterprise Operations Command Center.
- Support new tools as required.
- Experience with Rally and agile ceremonies.
- Python coding
- Experience using the Cybersecurity Asset Management (CSAM) system for customer base.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cyber Systems Architect III in McLean, VA vacancy
$110.8k - $185.1k
...Information Systems Security Officer (ISSO), Mid (MCSES III) Location US-VA-McLean ID 2026-4378 Category IT / Cyber Security / Network Systems Position Type Full-Time Remote No Clearance Required Top...CyberFull timeFor contractorsRemote work- ...PenFed is hiring a (Hybrid) Cloud Engineer III at our Tysons, Virginia location. The... ...other development tools. Collaborate with Cyber Security team in periodic reviews of the cloud... ...of the infrastructure and information systems that support core functions of the business...CyberWork experience placementWork at officeLocal areaWorldwideRelocation
- ...We design, build, operate, and maintain cyber-physical solutions for the nation's most... ...automation and controls, audiovisual, and IT systems. Headquarters in Tysons, Virginia, M.C.... ...industries. We are seeking a IT Systems Architect 5 to join our Security and Electronic...CyberContract workLocal area
- ...Building Intelligence. We design, build, operate, and maintain cyber-physical solutions for the nation's most mission-critical facilities... ..., life safety, automation and controls, audiovisual, and IT systems. Headquarters in Tysons, Virginia, M.C. Dean delivers resilient,...CyberRemote work
$100k - $111.72k
...Data Architect III This is a remote position. Ad Hoc is a technology company that empowers organizations to deliver scalable, impactful... ..., and stakeholders Effectively communicates on existing systems, design decisions, past performance, and a major history of...SuggestedRemote workFlexible hours$138.37k - $180.03k
...Assessment, Penetration Testing, and Exploit Development Identity Management and Authentication Network Traffic Analysis Embedded Systems (IoT/OT) Security Next-Generation Endpoint Security and Incident Response/Recovery Secure Software Development (DevSecOps)...CyberContract work- ...Apply. Job Description: The Solutions Architect will be a critical driver for NDi's... ...degree in Computer Science, Information Systems, Engineering, or a related field (Master'... ...secure comms, DevSecOps, data management, cyber operations) with the customer's specific...CyberContract workFor contractorsWork at officeShift work
$99k - $225k
...New Product Development Solutions Architect The Opportunity: At a certain point, experience-based system design can start to look like clairvoyance. When you've developed... ...Community (IC) missions in tactical cyber operations environments Experience supporting...CyberFull timeContract workPart timeWork at officeLocal areaRemote work$99k - $225k
...R0239174 New Product Development Solutions Architect The Opportunity: At a certain point, experience-based system design can start to look like clairvoyance. When... ...Community (IC) missions in tactical cyber operations environments Experience supporting...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- ...accomplishing hard things, together. Solution Architect - Army At Appian, we support our... ...to connect mission processes, legacy systems, enterprise data, and operational workflows... ...related command, control, communications, cyber, intelligence, surveillance, and...CyberLocal area
- ...Merlin Group Merlin Group operates at the intersection of cyber innovation, national security, and technology-driven transformation... ...Merlin Cyber is seeking a Cybersecurity Solutions Architect - Senior Level to serve as a subject matter expert on Zero Trust...CyberWork at officeLocal areaRemote workFlexible hours
$86.9k - $198k
...Job Number: R0236865 Solution Architect The Opportunity: Be part of the development and design of technical solutions aligned with... ...and roadmaps that enhance mission capabilities in cyber, radar analysis in full spectrum DoW and IC environments, and other...CyberFull timeContract workPart timeWork at officeLocal areaRemote work$173.02k - $294.14k
...Job Description BAE Systems I&S Sector is seeking Solutions Architects across multiple technical domains. We're not looking for architects who draw boxes and... ...in everything we do—from intelligence analysis, cyber operations and IT expertise to systems development, systems...CyberFull timeContract workLocal area- ...of Openings 1 Category Cyber Clearance TS/SCI Company Overview... ...and federal agencies with technology and systems engineered to connect, protect, and... ...in lieu of a degree ~ DoD 8570 IAT Level III certification ~10+ years of cybersecurity...CyberWorldwide
- ...passionate about your future as we are, join our team. KPMG is currently seeking an Associate Director, Presales Solution Architect - Cyber to join our KPMG Delivery Network organization. Responsibilities: Lead KYC / AML Solution Architecture and Design for KDN...CyberH1bLocal area
- ...entities. Our services improve Information System networking performance and compliance... ...excellence. Demonstrated experience in architecting, designing, and developing large scale... ...protecting organizations from evolving cyber threats. With 18+ years of success in government...CyberFor contractorsLocal areaWorldwide
- ...Overview We’re looking for a Cyber Engineer to help deploy,... ...platform that connects knowledge, systems, and agentic workflows to... ...of deployed systems with Cloud Architects Ensure that developed systems... ...equivalent DoD 8140 IAM Level III certification ~ Expertise in...CyberWork experience placementLocal area
- ...This opportunity resides with Warfare Systems (WS) , a business group within HII's Mission... ...Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5... ...interns. Week 16: Finalize DoD IAT II/III prep; build career roadmap; reflect with...CyberPermanent employmentFull timeTemporary workWork experience placementInternshipLocal areaWorldwide
- ...Data Scientist III The Data Scientist III provides comprehensive Data Engineering support for the Product Manager Biometrics (PM... ...support, enabling interoperability between key government biometric systems to facilitate rapid data sharing among DoW and interagency...Temporary workImmediate startFlexible hours
$156k - $193k
...Sr. Information Systems Security Engineer Tysons Corner, VA We are seeking a skilled and motivated Sr. Information Systems Security... ...and non-technical stakeholders. ~ CISSP or equivalent IAT III certification to support DoD 8140 requirements. ~ Active TS//SCI...Full timeWork experience placementLocal areaFlexible hours$86.8k - $198k
...Job Number: R0240643 Missile Defense Systems Architect, Senior The Opportunity: At a certain point, software design can start to look like clairvoyance. You've developed so many organization-wide software architectures that you can not only orchestrate the best...Full timeContract workPart timeWork at officeLocal areaRemote work$99k - $225k
...Job Number: R0239398 Mission System Data Architect The Opportunity: For an organization to transform in today's digital world, it needs to properly collect, store, and organize its data. Effective data management can enable more efficient operations, yielding more...Full timeContract workPart timeWork at officeLocal areaRemote work- ...SME – Data Services / System Architect DCCA is a veteran-owned IT business specializing in providing innovative solutions to a variety of government agencies and commercial enterprises since 1982. DCCA is proud to offer career growth opportunities and a competitive...Flexible hours
- ...Lead Cyber Risk Manager (Splunk Engineer) Why choose between doing meaningful work and... ...technical support and engineering for a computing system's technical posture operating in an... ...audiences. Must meet DoD 8570.01M IAM Level III requirements. Active Top Secret...CyberWork experience placement
$3,000 per month
...may be eligible for up to a $25K sign on bonus for you to join the team. WHAT WE’RE DOING Lockheed Martin, Rotary Mission Systems Cyber & Intelligence invites you to step up to one of today’s most daunting challenges: the use of advanced electronics to undermine our...CyberRelocation package- ...Cyber Security Engineer Duration: 12+ months Location: Plano, TX / McLean, VA / Richmond... ...PM work might be there not too much • Architect knowledge of application and ability to... ...degree in computer science, Information Systems, Engineering or similar fields • 10+...CyberImmediate start
- ...Information Systems Security Manager (ISSM) Location: McLean, VA Clearance: TS/SCI w/ Poly Position Overview... ...Systems Security Manager, you will safeguard critical systems, manage cyber risks, and ensure compliance to protect national security operations...Cyber
$100k - $180k
...comprehensive IT services tailored to meet the needs of federal agencies. Our capabilities include IT Infrastructure & Cloud Services, Cyber Security, Software Integration & Development, Data Solution & AI, and Enterprise Applications. These capabilities are backed by...CyberFull timePart timeWork experience placement- ...innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies... ...has an immediate need for a Data Architect to lead the design, integration, and documentation... ...architecture diagrams illustrating system components, interactions, infrastructure,...CyberTemporary workImmediate startWorldwide
- ...Computer Security Systems Specialist Job Locations US-VA-McLean ID... ...of Openings 1 Category Cyber Clearance TS/SCI Company Overview... ...personnel or teams ~ Meets DoD 8570 IAT Level III certification requirements Preferred...CyberWorldwide
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Systems Architect III. Be the first to apply!


