Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

SECURITY ARCHITECTURE & ENGINEERING SME

Zermount, Inc.

Zermount Inc. is seeking a Cybersecurity Architect & Engineer SME who can create government solutions that will withstand even the most complex of IT and Cyber threats. The SME will support a federal client's enterprise cybersecurity and Continuous Authorization to Operate (cATO) initiative(s). The SME provides technical expertise, architectural recommendations, and engineering oversight across hybrid environments (on‑prem, cloud, and Cloud). The role focuses on designing secure enterprise architectures, engineering automated control assessments and evidence pipelines, and operationalizing zero trust and cATO capabilities. You will coordinate with a dynamic team of thought leaders and experts to determine the right tools and methods to translate your client's IT needs and future goals into a plan that delivers secure and efficient solutions. You will assist the client through a critical approach to innovative solutions design, suggesting alternatives and tweaking capabilities to maintain a balance between security and mission needs. The candidate must have experience in delivering measurable improvements in security posture, automation, and compliance maturity. DUTIES AND RESPONSIBILITIES Develop, maintain, and evolve the Enterprise Security Reference Architecture (ESRA). Provide architectural input to the organization's Cybersecurity Roadmap and Strategy, addressing: o Continuous ATO (cATO) and automated control testing maturity. Cloud security standards, compliance, and improvements to ATO timelines. Cloud monitoring, detection, response, and security operations. Privacy, continuous monitoring, and vulnerability assessment modernization. Integration of security scanning into cloud pipelines. Implementation of EO 14028 (ZTA) and SCRM requirements. Architect and implement continuous monitoring pipelines for automated evidence collection (SIEM, XDR, scanners, cloud APIs, CI/CD). Develop and manage OSCAL profiles, inheritance models, and evidence data contracts. Integrate telemetry and evidence into AO‑grade dashboards. Support ATO intake, assessment workflows, and vulnerability scanning processes. Conduct RMF‑aligned security reviews for compliance and best practices. Develop security architectural patterns that expedite ATO by pre‑meeting control requirements. Collaborate with the Cybersecurity Authorizations & Compliance Branch to design systems supporting cATO, reduce ATO processing times, provide data‑call responses, and participate in working groups. Design and deploy native cloud security services across AWS, Azure, and Google Cloud. Lead the development of enterprise cloud security blueprints, including security in Infrastructure‑as‑Code (IaC) templates. Conduct proofs‑of‑value for cloud‑native, COTS, third‑party, or open‑source security tools. Provide security architecture input for DevSecOps strategy, including vulnerability scanning, automated assessments, and implementation of security controls. Conduct requirements‑gathering sessions and cATO current‑state assessments. Recommend security requirements, architectural direction, and support testing for enterprise initiatives such as: cATO, automated assessments, ZTA, SASE, CASB, SWG, TIC 3.0, ICAM, CMDB, etc. Collaborate with operational teams to improve cloud security monitoring, including ingestion and analysis of API, application, database, and flow logs into SIEM platforms. Support development of cloud event analysis and alert tuning to increase detection fidelity. Identify vulnerabilities across the SDLC and help contain, minimize, and remediate associated risks. Provide system engineering and architectural design support, including: Studies and analyses of operational changes; End‑to‑end architecture trade‑off assessments Development of strategic and tactical plans; Evaluation of new program requirements Research and assessment of new technologies for operational enhancement Conduct architectural risk assessments, threat modeling, and secure design reviews. Support backlog refinement, sprint planning, capacity planning, and retrospectives. Ensure teams deliver high‑value increments meeting the Definition of Done. Facilitate stakeholder collaboration as needed. REQUIREMENTS High level of attention to detail, needs minimal guidance, effective verbal, and written communications. Adept at both the strategic and operational/technical level. Able to adapt to new and changing requirements / priorities and manage work accordingly. At least 5 years (preferred 10 years) of network, systems, applications experience, in areas such as: LAN/WAN, WAF/CDN/DDOS, Network Firewalls, IDS/IPS, Virtualization, hypervisor security, container security, Application development, serverless security, microservices, CICD. At least 5 years of designing and/or implementing security in Cloud environments (AWS and Azure; GCP is also preferred but not required). Operational experience with the following is preferred. Multi-Cloud, Hybrid Cloud, IaaS, PaaS, SaaS, shared responsibility model. AWS Security Hub, Audit Manager, Config., Guard Duty, CloudTrail, CloudWatch, Lambda. Azure E3/E5, AD, Blob, Azure Security Center, Key Vault, SSE, Monitor, Log Analytics, Policy. Experience with DevSecOps strategy and implementation and designing architecture in accordance to RMF, CSF, FISMA, and Fedramp. Knowledge of ZTA and SASE Framework, ICAM (OKTA), CWPP, SOC Operations, Vulnerability Threat Management, and Compliance. EDUCATION Candidate must have a Bachelor of Science (or higher) in one of the following: Engineering, Computer Science, Information Technology (IT), Cybersecurity, or a similar technical field. The resume may reference another major, so long as the resume is clear that the degree addressed at a minimum one of the following: cyber security engineering, systems administration, information systems security, software development security, systems engineering, information systems or IT. CERTIFICATIONS The candidate must have a: Certified Information Systems Security Professional (CISSP), and At least one of the following, or equivalent: Certified Cloud Security Professional (CCSP), AWS Certified Solutions Architect Associate, AWS Certified Security Specialist, Microsoft Azure Solutions Architect,Google Professional Cloud Architect. CLEARANCE Minimum Background Investigation LOCATION Hybrid - Primary location is Alexandria, VA. Remote work is authorized. Occasional travel to the primary location may be required. #J-18808-Ljbffr

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the SECURITY ARCHITECTURE & ENGINEERING SME in Arlington, VA vacancy
  •  ...is seeking a Cybersecurity Architect & Engineer SME who can create government solutions that...  ...The SME provides technical expertise, architectural recommendations, and engineering oversight...  ...Cloud). The role focuses on designing secure enterprise architectures, engineering... 
    Suggested
    Remote work

    Zermount, Inc.

    Arlington, VA
    5 days ago
  •  ...VMware vDefend Security Engineer (SME) Location: Onsite – Alexandria, VA (occasional travel to Springfield, VA) Clearance: Top...  ...VMware best practices. Key Responsibilities: vDefend Architecture & Deployment Lead design and deployment of VMware... 
    Suggested
    Full time
    Temporary work
    Immediate start

    PGTEK

    Alexandria, VA
    5 days ago
  •  ...A cybersecurity firm is seeking a Cybersecurity Architect & Engineer SME to develop secure enterprise architectures and ensure compliance with federal cybersecurity initiatives. The role involves architecting continuous monitoring systems, providing security architectural... 
    Suggested
    Remote work

    Zermount, Inc.

    Arlington, VA
    1 day ago
  • $160k - $210k

     ...Cyber is a leading platform-enabled unified security operations company providing a...  ...is seeking a highly experienced Zscaler SME with a background in supporting large customers...  ...federal customer. The Principal Security Engineer is responsible for the oversight of deployments... 
    Suggested
    Temporary work
    3 days per week
    1 day per week

    UltraViolet Cyber

    Arlington, VA
    4 days ago
  •  ...interests. Requisition #: 1411 Job Tittle: Information System Security Engineer - SME Location: Washington, DC Clearance: TS/SCI Required...  ...deliverables. Serve as the senior technical authority for security architecture decisions, secure configurations, and remediation... 
    Suggested
    For contractors

    Agile Defense

    Washington DC
    1 day ago
  • $175k - $190k

     ...Information System Security Engineer SME Everforth ECS is seeking an Information System Security Engineer (ISSE) to work in our Washington...  ...will have a strong background in security engineering, architecture, and risk management, with a focus on protecting sensitive... 
    Contract work
    Work at office

    ECS Limited

    Washington DC
    4 days ago
  •  ...ECS is seeking an experienced Information Systems Security Engineer SME to support a mission-critical federal cybersecurity programs. The...  ...impact analysis for proposed technical changes, including architecture updates, system integrations, cloud services, network changes... 
    Contract work

    ECS Limited

    Washington DC
    2 days ago
  •  ...Cybersecurity Systems Engineer/Information Systems Security Engineer (ISSE) Transform technology into opportunity as a Cybersecurity Systems Engineer...  ...Document and obtain a general understanding of the architecture being developed or that was developed for each project... 
    For contractors
    Interim role

    General Dynamics

    Washington DC
    4 days ago
  •  ...DecisionPoint Corporation is hiring a Zero Trust Security Engineer – Senior to lead integration of Zero Trust Architecture across federal systems. The role involves managing Microsoft Sentinel, optimizing security log ingestion, and addressing cybersecurity threats through... 
    Remote work

    Decision Point

    Washington DC
    1 day ago
  •  ...Title: Senior Security Engineer Location : Arlington, VA Duration: 12 months Enterprise Security Architecture and Innovation works to ensure that enterprise-wide technologies are secure, by design, to protect and enable the business. This team provides advisory... 

    Maintec Technologies

    Arlington, VA
    4 days ago
  • $127k - $155k

     ...Enforces application security in all phases of the software development life cycle. Works...  ...best practices, performs software architecture and design reviews, and supports the identification...  ...Bachelor's Degree in Computer Science, Engineering, or other Engineering or Technical... 
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Washington DC
    6 days ago
  • $106k - $126k

     ...Evaluates application security in all phases of the software development life cycle. Works...  ...best practices, performs software architecture and design reviews, and supports the identification...  ...Bachelor's Degree in Computer Science, Engineering, or other Engineering or Technical... 
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Washington DC
    6 days ago
  •  ...Modernization sector is seeking an experienced SME Cyber Incident Response Analyst to...  ...will work alongside government partners, engineers, and other industry teammates to translate...  ...delivering capabilities with real‑world national security outcomes. Primary Responsibilities... 

    Koitecc Solutions

    Alexandria, VA
    5 days ago
  •  ...Cybersecurity Architecture Zermount Inc. is seeking a Cybersecurity Architect...  ...solutions and services to secure federal networks. You will...  ...and findings. Cloud Security Engineering Drive the pilot and adoption...  ...into SIEM; and improve Cloud SME on Cloud log analysis to analyze... 
    Work at office
    Remote work

    Zermount, Inc.

    Alexandria, VA
    1 day ago
  • $131.3k - $237.35k

     ...Modernization sector is seeking an experienced SME Cybersecurity Engineer to support the delivery,...  ...with real-world national security outcomes. Primary Responsibilities...  ...analysis. Enforce security policies and architectures, and execute cybersecurity compliance... 
    Local area
    Immediate start

    Leidos

    Alexandria, VA
    6 days ago
  •  ...Cyber Security Engineering Sme Abacus Technology is seeking a Cyber Security Engineering Sme to provide security and test and evaluation support for the RDT&E Engineering and Technical Support (RETS) program. This is a full-time position. Responsibilities... 
    Full time

    Abacus Technology

    Washington DC
    3 days ago
  • $185k - $200k

     ...Purpose and Impact: As the Security Subject Matter Expert, you...  ...objectives by evaluating IT architectures, guiding development teams, and...  ...and IAVA compliance empowers engineers and developers to securely deliver...  ...subject matter expert (SME) and will manage the execution... 
    Hourly pay
    Contract work
    For contractors
    Local area
    Monday to Friday

    Amentum

    Springfield, VA
    3 days ago
  •  ...Qualifications Bachelor’s degree and 12 years of experience in secure design, analysis, and test of information security...  .... Peraton is seeking an Information Systems Security Engineer - Subject Matter Expert (SME)/Cloud-based to support its Federal Strategic Cyber programs... 
    For contractors
    Work at office

    Peraton

    Washington DC
    1 day ago
  • A technology firm in Virginia is seeking an experienced SME Cyber Incident Response Analyst to join its team. This role involves monitoring...  ...offers a competitive salary range and the opportunity to work on critical national security projects. #J-18808-Ljbffr Via Logic LLC

    Via Logic LLC

    Alexandria, VA
    1 day ago
  •  ...Technologies, Inc. (GST) provides engineering and information technology...  ...certification of aviation security systems for the last 25...  ...tradeoff studies, develop system architectures, and produce standards,...  ...Cybersecurity subject matter expert (SME) support for vendor... 
    Contract work
    For contractors
    Local area
    Flexible hours

    Global Systems Technologies

    Arlington, VA
    2 days ago
  •  ...Leidos LLC, located in Alexandria, Virginia, is seeking an experienced SCRM Analyst SME to enhance data and analytics products critical for the Department of War. This role includes responsibilities such as conducting comprehensive Cyber Supply Chain Risk Assessments and... 

    Leidos

    Alexandria, VA
    2 days ago
  • $154.05k - $278.48k

     ...Description Leidos has an exciting opportunity for Information Systems Security Engineer (ISSE) SME in our Intel Security Sector's Analysis Solutions Business Area . Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO... 
    Local area
    Immediate start
    Flexible hours

    Leidos

    Bethesda, MD
    6 days ago
  •  ...you will be instrumental in securing complex systems, conducting...  ...assessments, designing secure system architectures, and ensuring compliance...  ...in systems security engineering and architecture. Key Responsibilities...  ...Serve as the cybersecurity SME, providing guidance to... 
    Full time
    Remote work

    Nationwide IT Services, Inc.

    Arlington, VA
    12 days ago
  •  ...J1225-1901 - Permanent Full Time Title Information Systems Security Engineer (ISSE) - Sr Category Cyber Security City Washington, District...  ...cybersecurity engineering expertise, guiding secure system architecture, integrating NIST security controls, and ensuring secure... 
    Permanent employment
    Full time
    Contract work
    Local area

    CGI Njoyn

    Washington DC
    1 day ago
  • $80k - $128k

     ...Information Systems Security Engineer Peraton is seeking an Information Systems Security Engineer to support cybersecurity activities...  ...assurance activities throughout the full system lifecyclefrom architecture and design through integration, assessment, authorization,... 
    Contract work
    Remote work
    Shift work

    Peraton

    Washington DC
    1 day ago
  • $140.5k - $210.5k

     ...endpoint protection, data analysis platforms, security information and event management (SIEM)...  ...an expert understanding of system architecture to identify security weaknesses,...  ...assessments to support information security engineering decisions, ensuring Board information and... 
    Work at office
    Relocation

    Federal Reserve System

    Washington DC
    1 day ago
  • $140.5k - $210k

     ...defense in depth solution with a central security information and event management (SIEM)...  ...an expert understanding of system architecture and the ability to identify security weaknesses...  ...to support information security engineering decisions to ensure Board information and... 
    Full time
    Work at office

    Federal Reserve Board

    Washington DC
    1 day ago
  • $86.8k - $198k

     ...Job Number: R0231043 Data Security Engineer Key Role: Architect, deploy, and configure data security solutions across various clients...  ...for DoD, IC, and civilian federal clients. Create new architectures to meet client requirements adhering to Zero Trust best practices... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    4 days ago
  • $120k - $155k

     ...agencies. We provide full-spectrum national security solutions that combine secure...  ...capabilities ranging from secure cloud architectures and enterprise infrastructure to data center...  ...Expertise : From veteran leadership to cleared engineers, our people understand both the... 
    Work experience placement
    Relocation
    Flexible hours
    Weekend work
    Afternoon shift

    Bridge Defense

    Washington DC
    1 day ago
  • $131.3k - $237.35k

     ...Modernization sector is seeking an experienced SME Zero Trust Cyber Security Analyst to support the delivery,...  ...work alongside government partners, engineers, and other industry teammates to...  ..., implement, and enhance Zero Trust architecture capabilities aligned to DoD Zero... 

    Koitecc Solutions

    Alexandria, VA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to SECURITY ARCHITECTURE & ENGINEERING SME. Be the first to apply!