SECURITY ARCHITECTURE & ENGINEERING SME
Zermount, Inc.
Zermount Inc. is seeking a Cybersecurity Architect & Engineer SME who can create government solutions that will withstand even the most complex of IT and Cyber threats. The SME will support a federal client's enterprise cybersecurity and Continuous Authorization to Operate (cATO) initiative(s). The SME provides technical expertise, architectural recommendations, and engineering oversight across hybrid environments (on‑prem, cloud, and Cloud). The role focuses on designing secure enterprise architectures, engineering automated control assessments and evidence pipelines, and operationalizing zero trust and cATO capabilities. You will coordinate with a dynamic team of thought leaders and experts to determine the right tools and methods to translate your client's IT needs and future goals into a plan that delivers secure and efficient solutions. You will assist the client through a critical approach to innovative solutions design, suggesting alternatives and tweaking capabilities to maintain a balance between security and mission needs. The candidate must have experience in delivering measurable improvements in security posture, automation, and compliance maturity. DUTIES AND RESPONSIBILITIES Develop, maintain, and evolve the Enterprise Security Reference Architecture (ESRA). Provide architectural input to the organization's Cybersecurity Roadmap and Strategy, addressing: o Continuous ATO (cATO) and automated control testing maturity. Cloud security standards, compliance, and improvements to ATO timelines. Cloud monitoring, detection, response, and security operations. Privacy, continuous monitoring, and vulnerability assessment modernization. Integration of security scanning into cloud pipelines. Implementation of EO 14028 (ZTA) and SCRM requirements. Architect and implement continuous monitoring pipelines for automated evidence collection (SIEM, XDR, scanners, cloud APIs, CI/CD). Develop and manage OSCAL profiles, inheritance models, and evidence data contracts. Integrate telemetry and evidence into AO‑grade dashboards. Support ATO intake, assessment workflows, and vulnerability scanning processes. Conduct RMF‑aligned security reviews for compliance and best practices. Develop security architectural patterns that expedite ATO by pre‑meeting control requirements. Collaborate with the Cybersecurity Authorizations & Compliance Branch to design systems supporting cATO, reduce ATO processing times, provide data‑call responses, and participate in working groups. Design and deploy native cloud security services across AWS, Azure, and Google Cloud. Lead the development of enterprise cloud security blueprints, including security in Infrastructure‑as‑Code (IaC) templates. Conduct proofs‑of‑value for cloud‑native, COTS, third‑party, or open‑source security tools. Provide security architecture input for DevSecOps strategy, including vulnerability scanning, automated assessments, and implementation of security controls. Conduct requirements‑gathering sessions and cATO current‑state assessments. Recommend security requirements, architectural direction, and support testing for enterprise initiatives such as: cATO, automated assessments, ZTA, SASE, CASB, SWG, TIC 3.0, ICAM, CMDB, etc. Collaborate with operational teams to improve cloud security monitoring, including ingestion and analysis of API, application, database, and flow logs into SIEM platforms. Support development of cloud event analysis and alert tuning to increase detection fidelity. Identify vulnerabilities across the SDLC and help contain, minimize, and remediate associated risks. Provide system engineering and architectural design support, including: Studies and analyses of operational changes; End‑to‑end architecture trade‑off assessments Development of strategic and tactical plans; Evaluation of new program requirements Research and assessment of new technologies for operational enhancement Conduct architectural risk assessments, threat modeling, and secure design reviews. Support backlog refinement, sprint planning, capacity planning, and retrospectives. Ensure teams deliver high‑value increments meeting the Definition of Done. Facilitate stakeholder collaboration as needed. REQUIREMENTS High level of attention to detail, needs minimal guidance, effective verbal, and written communications. Adept at both the strategic and operational/technical level. Able to adapt to new and changing requirements / priorities and manage work accordingly. At least 5 years (preferred 10 years) of network, systems, applications experience, in areas such as: LAN/WAN, WAF/CDN/DDOS, Network Firewalls, IDS/IPS, Virtualization, hypervisor security, container security, Application development, serverless security, microservices, CICD. At least 5 years of designing and/or implementing security in Cloud environments (AWS and Azure; GCP is also preferred but not required). Operational experience with the following is preferred. Multi-Cloud, Hybrid Cloud, IaaS, PaaS, SaaS, shared responsibility model. AWS Security Hub, Audit Manager, Config., Guard Duty, CloudTrail, CloudWatch, Lambda. Azure E3/E5, AD, Blob, Azure Security Center, Key Vault, SSE, Monitor, Log Analytics, Policy. Experience with DevSecOps strategy and implementation and designing architecture in accordance to RMF, CSF, FISMA, and Fedramp. Knowledge of ZTA and SASE Framework, ICAM (OKTA), CWPP, SOC Operations, Vulnerability Threat Management, and Compliance. EDUCATION Candidate must have a Bachelor of Science (or higher) in one of the following: Engineering, Computer Science, Information Technology (IT), Cybersecurity, or a similar technical field. The resume may reference another major, so long as the resume is clear that the degree addressed at a minimum one of the following: cyber security engineering, systems administration, information systems security, software development security, systems engineering, information systems or IT. CERTIFICATIONS The candidate must have a: Certified Information Systems Security Professional (CISSP), and At least one of the following, or equivalent: Certified Cloud Security Professional (CCSP), AWS Certified Solutions Architect Associate, AWS Certified Security Specialist, Microsoft Azure Solutions Architect,Google Professional Cloud Architect. CLEARANCE Minimum Background Investigation LOCATION Hybrid - Primary location is Alexandria, VA. Remote work is authorized. Occasional travel to the primary location may be required. #J-18808-Ljbffr
- ...is seeking a Cybersecurity Architect & Engineer SME who can create government solutions that... ...The SME provides technical expertise, architectural recommendations, and engineering oversight... ...Cloud). The role focuses on designing secure enterprise architectures, engineering...SuggestedRemote work
- ...VMware vDefend Security Engineer (SME) Location: Onsite – Alexandria, VA (occasional travel to Springfield, VA) Clearance: Top... ...VMware best practices. Key Responsibilities: vDefend Architecture & Deployment Lead design and deployment of VMware...SuggestedFull timeTemporary workImmediate start
- ...A cybersecurity firm is seeking a Cybersecurity Architect & Engineer SME to develop secure enterprise architectures and ensure compliance with federal cybersecurity initiatives. The role involves architecting continuous monitoring systems, providing security architectural...SuggestedRemote work
$160k - $210k
...Cyber is a leading platform-enabled unified security operations company providing a... ...is seeking a highly experienced Zscaler SME with a background in supporting large customers... ...federal customer. The Principal Security Engineer is responsible for the oversight of deployments...SuggestedTemporary work3 days per week1 day per week- ...interests. Requisition #: 1411 Job Tittle: Information System Security Engineer - SME Location: Washington, DC Clearance: TS/SCI Required... ...deliverables. Serve as the senior technical authority for security architecture decisions, secure configurations, and remediation...SuggestedFor contractors
$175k - $190k
...Information System Security Engineer SME Everforth ECS is seeking an Information System Security Engineer (ISSE) to work in our Washington... ...will have a strong background in security engineering, architecture, and risk management, with a focus on protecting sensitive...Contract workWork at office- ...ECS is seeking an experienced Information Systems Security Engineer SME to support a mission-critical federal cybersecurity programs. The... ...impact analysis for proposed technical changes, including architecture updates, system integrations, cloud services, network changes...Contract work
- ...Cybersecurity Systems Engineer/Information Systems Security Engineer (ISSE) Transform technology into opportunity as a Cybersecurity Systems Engineer... ...Document and obtain a general understanding of the architecture being developed or that was developed for each project...For contractorsInterim role
- ...DecisionPoint Corporation is hiring a Zero Trust Security Engineer – Senior to lead integration of Zero Trust Architecture across federal systems. The role involves managing Microsoft Sentinel, optimizing security log ingestion, and addressing cybersecurity threats through...Remote work
- ...Title: Senior Security Engineer Location : Arlington, VA Duration: 12 months Enterprise Security Architecture and Innovation works to ensure that enterprise-wide technologies are secure, by design, to protect and enable the business. This team provides advisory...
$127k - $155k
...Enforces application security in all phases of the software development life cycle. Works... ...best practices, performs software architecture and design reviews, and supports the identification... ...Bachelor's Degree in Computer Science, Engineering, or other Engineering or Technical...Contract workWork at office$106k - $126k
...Evaluates application security in all phases of the software development life cycle. Works... ...best practices, performs software architecture and design reviews, and supports the identification... ...Bachelor's Degree in Computer Science, Engineering, or other Engineering or Technical...Contract workWork at office- ...Modernization sector is seeking an experienced SME Cyber Incident Response Analyst to... ...will work alongside government partners, engineers, and other industry teammates to translate... ...delivering capabilities with real‑world national security outcomes. Primary Responsibilities...
- ...Cybersecurity Architecture Zermount Inc. is seeking a Cybersecurity Architect... ...solutions and services to secure federal networks. You will... ...and findings. Cloud Security Engineering Drive the pilot and adoption... ...into SIEM; and improve Cloud SME on Cloud log analysis to analyze...Work at officeRemote work
$131.3k - $237.35k
...Modernization sector is seeking an experienced SME Cybersecurity Engineer to support the delivery,... ...with real-world national security outcomes. Primary Responsibilities... ...analysis. Enforce security policies and architectures, and execute cybersecurity compliance...Local areaImmediate start- ...Cyber Security Engineering Sme Abacus Technology is seeking a Cyber Security Engineering Sme to provide security and test and evaluation support for the RDT&E Engineering and Technical Support (RETS) program. This is a full-time position. Responsibilities...Full time
$185k - $200k
...Purpose and Impact: As the Security Subject Matter Expert, you... ...objectives by evaluating IT architectures, guiding development teams, and... ...and IAVA compliance empowers engineers and developers to securely deliver... ...subject matter expert (SME) and will manage the execution...Hourly payContract workFor contractorsLocal areaMonday to Friday- ...Qualifications Bachelor’s degree and 12 years of experience in secure design, analysis, and test of information security... .... Peraton is seeking an Information Systems Security Engineer - Subject Matter Expert (SME)/Cloud-based to support its Federal Strategic Cyber programs...For contractorsWork at office
- A technology firm in Virginia is seeking an experienced SME Cyber Incident Response Analyst to join its team. This role involves monitoring... ...offers a competitive salary range and the opportunity to work on critical national security projects. #J-18808-Ljbffr Via Logic LLC
- ...Technologies, Inc. (GST) provides engineering and information technology... ...certification of aviation security systems for the last 25... ...tradeoff studies, develop system architectures, and produce standards,... ...Cybersecurity subject matter expert (SME) support for vendor...Contract workFor contractorsLocal areaFlexible hours
- ...Leidos LLC, located in Alexandria, Virginia, is seeking an experienced SCRM Analyst SME to enhance data and analytics products critical for the Department of War. This role includes responsibilities such as conducting comprehensive Cyber Supply Chain Risk Assessments and...
$154.05k - $278.48k
...Description Leidos has an exciting opportunity for Information Systems Security Engineer (ISSE) SME in our Intel Security Sector's Analysis Solutions Business Area . Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO...Local areaImmediate startFlexible hours- ...you will be instrumental in securing complex systems, conducting... ...assessments, designing secure system architectures, and ensuring compliance... ...in systems security engineering and architecture. Key Responsibilities... ...Serve as the cybersecurity SME, providing guidance to...Full timeRemote work
- ...J1225-1901 - Permanent Full Time Title Information Systems Security Engineer (ISSE) - Sr Category Cyber Security City Washington, District... ...cybersecurity engineering expertise, guiding secure system architecture, integrating NIST security controls, and ensuring secure...Permanent employmentFull timeContract workLocal area
$80k - $128k
...Information Systems Security Engineer Peraton is seeking an Information Systems Security Engineer to support cybersecurity activities... ...assurance activities throughout the full system lifecyclefrom architecture and design through integration, assessment, authorization,...Contract workRemote workShift work$140.5k - $210.5k
...endpoint protection, data analysis platforms, security information and event management (SIEM)... ...an expert understanding of system architecture to identify security weaknesses,... ...assessments to support information security engineering decisions, ensuring Board information and...Work at officeRelocation$140.5k - $210k
...defense in depth solution with a central security information and event management (SIEM)... ...an expert understanding of system architecture and the ability to identify security weaknesses... ...to support information security engineering decisions to ensure Board information and...Full timeWork at office$86.8k - $198k
...Job Number: R0231043 Data Security Engineer Key Role: Architect, deploy, and configure data security solutions across various clients... ...for DoD, IC, and civilian federal clients. Create new architectures to meet client requirements adhering to Zero Trust best practices...Full timeContract workPart timeWork at officeLocal areaRemote work$120k - $155k
...agencies. We provide full-spectrum national security solutions that combine secure... ...capabilities ranging from secure cloud architectures and enterprise infrastructure to data center... ...Expertise : From veteran leadership to cleared engineers, our people understand both the...Work experience placementRelocationFlexible hoursWeekend workAfternoon shift$131.3k - $237.35k
...Modernization sector is seeking an experienced SME Zero Trust Cyber Security Analyst to support the delivery,... ...work alongside government partners, engineers, and other industry teammates to... ..., implement, and enhance Zero Trust architecture capabilities aligned to DoD Zero...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SECURITY ARCHITECTURE & ENGINEERING SME. Be the first to apply!
- security infrastructure engineer Arlington, VA
- senior cloud security engineer Arlington, VA
- senior application security engineer Arlington, VA
- physical security engineer Arlington, VA
- endpoint security engineer Arlington, VA
- sr information security engineer Arlington, VA
- senior security operations engineer Arlington, VA
- IT security engineer Arlington, VA
- information technology security engineer Arlington, VA
- security software engineer Arlington, VA

