Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Identity Security Architect

Openkyber

Project Description:

The Client is seeking a Solution Architect for the Information Technology Cybersecurity unit to support the department's cybersecurity, firewall, network security, and compliance initiatives. This is a highly complex Information Technology (IT) environment supporting mission-critical systems that require senior-level cybersecurity expertise.

The successful candidate will be responsible for designing, assessing, hardening, and securing the Judicial Branch's infrastructure while ensuring compliance with CJIS Security Policy, NIST SP 800-53 Rev. 5, IRS Publication 1075, and other applicable cybersecurity standards.

The selected candidate will provide technical leadership for Palo Alto and Cisco security technologies, assist with the deployment of Palo Alto Prisma Access and ION appliances for the Client's Secure Access Service Edge (SASE) initiative, perform comprehensive security assessments, and develop remediation plans to strengthen the overall security posture of the Judicial Branch.

Scope of Services:
  • Expert-level design, implementation, administration, and optimization of Palo Alto Networks firewalls, Panorama, GlobalProtect, Prisma Access, and ION appliances.
  • Expert-level implementation, hardening of Cisco networking and security infrastructure.
  • Perform security hardening of Palo Alto and Cisco infrastructure in accordance with CJIS Security Policy, NIST SP 800-53 Rev. 5, IRS Publication 1075.
  • Perform security assessments of firewalls, Azure environments, network infrastructure, enterprise applications, and supporting systems.
  • Develop Plans of Action and Milestones (POA&Ms) based on assessment findings and provide remediation recommendations.
  • Review firewall rule bases, network segmentation, VPN configurations, routing, and remote access architectures to ensure security and compliance.
  • Assist with the design and deployment of Palo Alto Prisma Access and ION appliances supporting remote office connectivity and Secure Access Service Edge (SASE).
  • Evaluate Azure networking and security configurations to ensure secure integration with hybrid infrastructure.
  • Design, implement, and optimize Azure ExpressRoute, routing, and Palo Alto cloud firewall connectivity for secure hybrid environments.
  • Perform risk assessments and configuration reviews against CJIS Security Policy, NIST SP 800-53 Rev. 5, IRS Publication 1075, and Judicial Branch security standards.
  • Work closely with infrastructure, networking, cloud, and application teams to remediate security findings.
  • Assist with audit preparation and support for CJIS, IRS, and other regulatory compliance assessments.
  • Develop technical documentation, architecture diagrams, assessment reports, and executive summaries.
Minimum Qualifications:

In addition to the standard skills and experience for the job class, the ideal candidate should be prepared to discuss the following:

  • General Experience 8+ years of expert-level hands-on experience with Cisco networking and security technologies.
  • 6+ years of expert-level hands-on experience with Palo Alto Networks firewalls and security platforms.
  • Demonstrated experience implementing cybersecurity best practices within highly available enterprise environments.
Technical Competencies:
  • Expert knowledge of Palo Alto Networks NGFW, Panorama, GlobalProtect, Prisma Access, and ION appliances.
  • Expert knowledge of Cisco routing, switching, VPN, firewall, and network security technologies.
  • Experience hardening network infrastructure to CJIS Security Policy, NIST SP 800-53 Rev. 5, IRS Publication 1075, and security best practices.
  • Experience performing cybersecurity risk assessments and developing POA&Ms.
  • Experience performing firewall, network, Azure, and application security assessments.
  • Strong understanding of Zero Trust architecture, network segmentation, secure remote access, and Secure Access Service Edge (SASE).
  • Experience securing Microsoft Azure networking and cloud infrastructure.
  • Experience reviewing firewall policies, VPN configurations, routing, and network segmentation.
  • Excellent written and verbal communication skills.
  • Experience preparing technical documentation and presenting findings to technical and executive audiences.
  • Palo Alto Networks and Cisco security certifications are highly desirable.
  • CISSP, CISM, or equivalent cybersecurity certification is preferred.

For applications and inquiries, contact:View email address on us.fitly.work

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Identity Security Architect in Alaska vacancy
  • $140k

     ...( . Job Description : Job Description The Network Security Architect will design and build the network security architecture our...  ...religion, color, national origin, sex, sexual orientation, gender identity, age, status as a protected veteran, among other things, or... 
    Suggested
    Full time
    Work at office

    Ryder

    Juneau, AK
    1 day ago
  •  ...Cybersecurity Specialist / Cybersecurity Architect Location: Santa Ana, CA Duration: 12+...  ...design, implementation, and governance of secure, resilient, and highly available enterprise...  ...network architectures, implementing identity and access management solutions, and supporting... 
    Suggested
    Remote work

    Openkyber

    Alaska
    1 day ago
  •  ...Role: Cloud Security Architect Location: Remote Required Skills: ~ After-hours maintenance, incident escalation support...  ..., security platforms, operating systems, networks, identity services and integrations ~ Linux system deployment, configuration... 
    Suggested
    Remote work

    Openkyber

    Alaska
    1 day ago
  •  ...Job Description Primary Skill 8 -14 years of experience in Google Cloud Platform, Python, Terraform Security Secondary Skills Encryption / Decryption, Security Command Center, Data Protection, Data Sensitivity, Data Categorization, Key Management For applications... 
    Suggested

    Openkyber

    Alaska
    1 day ago
  • $122.6k

     ...CDM Smith is seeking a Senior Enterprise Architect to join our Corporate Business...  ...connect business capabilities with scalable, secure, and integrated technology solutions....  ...conditions, sexual orientation, gender identity or gender expression), national origin,... 
    Suggested
    Work experience placement
    H1b
    Remote work

    CDM Smith

    Anchorage, AK
    4 days ago
  • $112.5k - $202.5k

     ...Do you like building solutions to help improve the security of the company? Do you want to collaborate with industry-leading security...  ...will not be discriminated against on the basis of gender, gender identity, sexual orientation, race/ethnicity, protected veteran status,... 
    Work experience placement
    Work at office
    Worldwide

    Akamai

    Juneau, AK
    3 days ago
  • $106.3k - $234.6k

     ...of the world’s biggest challenges. As a Principal Hardware Security Engineer you will be involved in ensuring that the compute hardware...  ..., religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans’ status, or any other... 
    Temporary work
    Flexible hours

    Oracle

    Juneau, AK
    3 days ago
  • $102.7k

     ...access requirements)*** Highmark Health is seeking a Senior Security Engineer to join our Enterprise Application Security team and...  ...metrics. Automate & Optimize the Security Toolchain Architect and maintain the enterprise application security toolchain ,... 
    Full time
    For contractors
    Work at office
    Local area
    Shift work

    Highmark Health

    Alaska
    4 days ago
  • Enterprise Applications EngineerThis is an excellent opportunity to work with technologies that support the University of Alaska Southeast users and services. Do you have a positive attitude and an inclination toward exceptional customer service? Do you enjoy developing...
    Full time
    Internship
    Local area
    Remote work
    Relocation

    University of Alaska Fairbanks

    Juneau, AK
    1 day ago
  • $60k

     ...Maximus is a trusted federal partner supporting mission‑critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating, and improving essential government systems and services, with proven operational excellence... 
    Contract work
    Remote work

    MAXIMUS

    Juneau, AK
    2 days ago
  •  ...Job Description Job Description Overview CTG is seeking to fill a Cyber Security Engineer for our client in Anchorage, AK. Location: Anchorage, AK Duration: 15 months Duties: Service/Support Desk (managing tickets, working with users) experience... 

    Computer Task Group, Inc

    Anchorage, AK
    27 days ago
  • $80k - $100k

     ...Responsible for supporting the technical administration of information security tools and systems, including day-to-day configuration, patching...  ...supporting core infrastructure, vulnerability management, and Identity and Access Management (IAM) work, while monitoring threat... 
    Full time
    Work experience placement
    Work at office

    ScanSource

    Wade Hampton County, AK
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Identity Security Architect. Be the first to apply!