SECURITY ARCHITECT
Zermount, Inc.
Cybersecurity Architecture
Summary
Zermount Inc. is seeking a Cybersecurity Architect who can create government solutions that will withstand even the most complex of IT and Cyber threats. As a Lead in our project, you will lead the architecture and design of innovative solutions and services to secure federal networks. You will coordinate with a dynamic team of thought leaders and experts to determine the right tools and methods to translate your client's IT needs and future goals into a plan that delivers secure and efficient solutions. We need to find the best solution for you to explore new methods, break free from the outdated model and go where the industry is heading. You will guide the team through a critical approach to network design, suggesting alternatives and tweaking solutions to maintain a balance between security and mission needs. Your technical expertise will be vital as you help clients overcome their toughest challenges with cutting-edge technologies and cybersecurity domains. Join our team as we address cybersecurity challenges and build capabilities to deliver solutions and service offerings using investments and proven capabilities.
Duties and Responsibilities
Roadmap and Strategy
- Provide input to the Cybersecurity roadmap and strategy for key organization strategic initiatives for the following and related areas:
- Security Architecture: Develop and Recommend Security Architecture and Standards including Cloud Security for government approval.
- Cybersecurity Operations: Improve Cloud monitoring, detection, and response; Improve Security Operations (SOC) operations.
- Privacy & Continuous Monitoring: Improve Vulnerability Assessment program; Integrate security scanning in Cloud Pipeline; Improve Cloud vulnerability coverage and scanning.
- Cybersecurity Authorizations and Compliance: Reduce time to ATO through continuous ATO; Improve Cloud Compliance.
- Executive Order (EO) 14028 "Improving the Nation's Cybersecurity" in terms of: Implementing Zero Trust; Enhancing Supply Chain Risk Management (SCRM); Addressing critical software; and Developing secure Cloud adoption.
Security Architecture Reviews
- Develop, and integrate with other Cybersecurity workflow to include: ATO Intake, assessment, and Vulnerability Scanning process.
- Integrate with Enterprise Architecture (EA) review process.
- Perform security reviews based on RMF controls compliance, clients, and security best practices.
- Develop security architectural patterns to enable faster ATO or assessment process by creating architectural designs that already meet compliance controls.
- Develop Security Architecture Standards in Cybersecurity SharePoint site and cross-link with Cloud Operations (SSB) and Enterprise Architecture (EA) sites.
- Provide security input on Cloud Center of Excellence (CCOE) and Cloud Advisory Council (CAC) agenda items by participating in technical working groups, providing security analysis, and providing recommendations.
- Provide security architecture input for DevSecOps security strategy and roadmap including application and infrastructure vulnerability scanning, automated assessments, and security controls.
- Research, document, and publish a Cloud Security Codex to include security best practices based on security architecture patterns or Cloud services guidance's such as security configuration or use-cases and design.
- Recommends security requirements, architectural direction, and assists in pilot testing of key enterprise-wide initiatives to include:
- Zero Trust Architecture (ZTA),
- Secure Access Service Edge (SASE) including Cloud Access Security Broker (CASB),
- Zero Trust Network Access (ZTNA),
- Secure Web Gateway (SWG)
- Trusted Internet Connection (TIC) 3.0
- Identity, Credential, and Access Management (ICAM) - OKTA
- Configuration Management Database (CMDB).
- Evaluate a subset of the agency's High Value Asset (HVA) security posture to determine whether the agency has properly architected its cybersecurity solutions and provides agency leadership the risks inherent in the implemented cybersecurity solution.
- Performs architecture design reviews including configuration and log reviews and perform network traffic analyses.
- Produces a SAR Report to include HVAs architecture strengths and findings.
Cloud Security Engineering
- Drive the pilot and adoption of Cloud Security Posture Management (CSPM).
- Design and deploy native Cloud security services in AWS, Microsoft Azure, and Google Cloud.
- Perform proof of value of Cloud-native, COTS, 3rd party, or opensource security capabilities by hands-on deploying and evaluating against security requirements.
- Lead the development of scripts or code to perform Cloud Security assessments through Cloud native API or SDK.
- Lead the development of enterprise cloud security blueprints to include security in Infrastructure as Code (IaC templates).
- Research new and emerging security practices and capabilities such as AI/ML to address compliance and mitigate security risk.
System Security Engineering (SSE)
- Collaborate with the CyberOps Branch to improve Cloud Security monitoring to include ingestion of logs such as: API, application/database, and flow logs into SIEM; and improve Cloud SME on Cloud log analysis to analyze, create, and tune Cloud events to increase coverage and alerting in the Cloud.
- Collaborate with the Privacy and Continuous Monitoring Branch to increase Cloud vulnerability coverage in the areas of Operating System (OS), application code, and Infrastructure level; and develop architecture for integrating findings into a centralized dashboard that allows product owners direct access to team's specific systems or cloud account findings.
- Collaborate with the Cybersecurity Authorizations and Compliance Branch to provide input on designing compliance systems that perform continuous ATO process to decrease the processing lead times of current ATO process; provide responses on data calls; and participate in working groups in order to collaborate and share technical knowledge.
- Identify security vulnerabilities and minimizes or contains risks associated with these vulnerabilities spanning the Systems Development Life Cycle.
- Ensure the team provides system engineering and architectural design support services to include Studies and analysis of proposed operations modifications; End-to-end architecture tradeoff assessment; Development of strategic and tactical plans; Evaluation of new program requirements; and Investigation and development of new technologies for possible operations modifications.
Requirements
- High level of attention to detail, needs minimal guidance, effective verbal, and written communications.
- Equally adept at strategic planning and operational/technical level.
- Able to adapt to new and changing requirements or priorities and manage work and resources accordingly.
- At least 5 years (preferred 10 years) of network, systems, applications:
- LAN/WAN, WAF/CDN/DDOS, Network Firewalls, IDS/IPS.
- Virtualization, hypervisor security, container security.
- Application development, serverless security, microservices, CICD.
- At least 5 years of designing and/or implementing security in Cloud (AWS required, Azure or GCP optional):
- Multi-Cloud, Hybrid Cloud, IaaS, PaaS, SaaS, shared responsibility model.
- AWS IAM, KMS, S3, RDS, SNS/SQS, Organization, Guard Duty, Security Hub, Detective, Config, CloudTrail, CloudWatch, Lambda.
- Azure E3/E5, Active Directory, Blob, Azure Security Center, Key Vault, SSE, Monitor, Log Analytics, Policy.
- Experience with DevSecOps strategy and implementation and designing architecture in accordance to RMF, CSF, FISMA, and Fedramp.
- Familiarity with: ZTNA and SASE Framework, ICAM (OKTA), CWPP, SOC Operations, Vulnerability Threat Management, and Compliance.
- At least 2 years working in or managing Agile Devops, Scrum, Kanban.
Education
Candidate must have a Bachelor of Science (or higher) in one of the following:
- Computer engineering
- Computer science
- Information Technology (IT), or
- Cybersecurity
The resume may reference another major, so long as the resume is clear that the degree addressed at a minimum one of the following: cyber security engineering, systems administration, information systems security, software development security, systems engineering, information systems or IT.
Certifications
The candidate must have a:
- Certified Information Systems Security Professional (CISSP), and
At least one of the following, or equivalent:
- Certified Cloud Security Professional (CCSP),
- AWS Certified Solutions Architect Associate,
- AWS Certified Security Specialist,
- Microsoft Azure Solutions Architect,
- Google Professional Cloud Architect.
Clearance
- Public Trust
LOCATION & Hours
- Hybrid - primarly Remote, however, there maybe occasional times that the team could be asked to report to the office.locations are as follows:
- USPTO HQ:
600 Dulany Street, Alexandria, Virginia 22314
- Zermount HQ:
2111 Wilson Blvd, Ste 200, Arlington, VA 22201
- Hours of Operation
- 8:00 am EDT - 4:30 pm EDT
$99k - $225k
Compliance ISSO and Enterprise Cybersecurity Security ArchitectThe Opportunity: Enterprise Cybersecurity (ECS) Governance, Risk and Compliance... ...implementation teams. You will partner directly with system architects and engineers to evaluate topologies, configurations, and...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- We Are:Accenture Security is one of the fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients prepare for, respond to, and recover from the most consequential cyber incidents...SuggestedFull timeLive inWork at officeLocal areaShift work
$86.8k - $198k
Enterprise Security Architect, LeadThe Opportunity: Security must be architected, not bolted on. You understand how to embed security into every layer of an enterprise system, from data pathways to identity flows, to network segmentation and cloud control planes. We are...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- ...PenFed is hiring a (Hybrid) Enterprise Security Architect at our Tysons, Virginia location. The Enterprise IT Security Architect is a senior security architecture partner to the First Line IT organization. This role ensures security requirements are effectively translated...SuggestedWork at office
$119.6k - $215.4k
...Do you love creatively solving problems for customers? Is Network and Infrastructure Security your passion? Join our Enterprise Security Architect Team Our team is a core part of the pre-sales solution engineering group. We collaborate across our global business...SuggestedWork experience placementWork at office$99k - $225k
Cyber Security ArchitectThe Opportunity:Everyone knows security needs to be “baked in” to a system architecture, but you actually know... ...secure systems for the U.S. Government? We’re looking for an architect who can create solutions for the government that will stand up...Full timeContract workPart timeWork at officeLocal areaRemote work- ...budgeting/financial flexibility by offering contingent labor as a variable cost.Job DescriptionDemonstrated experience enterprise security architecture design and implementation for a financial services organization or other organizations with similar information security...Immediate start
$112.8k - $257k
Security Architect, SeniorThe Opportunity: Everyone knows security needs to be “baked in” to a system architecture—you actually know how to bake it in. You can identify and implement ways to harden systems and reduce their attack surface. What if you could use your cybersecurity...Full timeContract workPart timeWork at officeLocal areaRemote work$156.5k - $230k
...Description:At Bank of America, cybersecurity is foundational to protecting the enterprise and our customers. The Principal Security Architect is a senior technical leader within the Cyber Security Technology (CST) organization and a member of the Cyber Security Product...Full timeWork at officeDay shift- ...global workforce solutions on behalf of its clients. Artech's deep heritage, proven expertise and insightful market intelligence has secured long-term partnerships with Fortune 500 and government clients seeking world-class professional resources.Artech employs over 7000...Work experience placementShift workNight shift
$112.8k - $257k
Network Security ArchitectThe Opportunity:Be part of the development and design of technical solutions aligned with sector-level Growth... ...in network security 5+ years of experience designing and architecting solutions tailored to mission requirementsExperience driving consensus...Full timeContract workPart timeWork at officeLocal areaRemote work- Job Title Formulates and defines designs and configurations across multiple systems or functional areas. Prepares detailed specifications from which system configuration can be done. Oversees the design and configuration work of other application specialists across ...Remote work
- ...that our employees are our number one resource. If you are a problem-solving people-person, apply today! Summary: The Senior Security Architect will support the Information Security program by overseeing the security of various information systems, ensuring alignment...For contractorsWork at officeLocal area
$135.2k - $278.5k
...Security Architect At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared purpose to pursue the limitless potential of technology...$163.9k - $235.55k
...succeeds together. Because at UKG, your work matters-and so do you. Job Description We are looking for a Principal AI Security Architect to join UKG's Application Security Architecture team. This is a high-impact, strategic position where you will serve as the leading...Work experience placementLocal areaRemote work- ...Role:- SAP Security Architect - GRC S/4HANA Location:- Washington DC( Onsite role) Work Permit:- Any JD Required Skills Experience 15+ years of hands-on experience in SAP Security Authorizations across ECC, S/4HANA, Fiori, and SAP Cloud components...
- ...Lead Cryptography & Next-Gen Infrastructure Security Architect Genesys is launching a critical, top-priority security modernization initiative. We are seeking a visionary Lead Cryptography & Next-Gen Infrastructure Security Architect to shield our cloud-native platforms...
$160k - $190k
...Job Description Security Architect ***As required by our governmental client, this position requires being a U.S. Citizen AND an active TS/SCI clearance*** As our Security Architect, you'll guide the design and implementation of secure solutions and services...Full timeContract workLocal area$750 per month
...technology-related architecture guidance delivered in the form of PowerPoint briefings, email, or white papers addressing information security architecture vulnerabilities, risks, mitigation response, and emerging opportunities. Support will also be technology related...16 hoursTemporary workWork at office- ...Network Security Architect Join a dynamic team at the pulse of global markets, where we deliver innovative software and service solutions for essential financial reporting and capital markets transactions. At DFIN, we are a values-driven organization that empowers...Flexible hours
- ...Information Security Architect, Washington, DC We have an opening for an Information Security Architect to join the organization. The Information Security Architect will directly report to the CISO and will play a pivotal role in shaping the firm's security architecture...Temporary workFlexible hours
$62 - $69 per hour
...Network Specialist 16+ years of experience. Analyzes, designs, and implements networks to withstand security intrusions. Employment Type: Contract W2/1099/C2C The role involves supporting the replacement, lifecycle management, and upgrade of networking equipment...Hourly payContract workRemote work$158.05k - $193.33k
...systems? Are you passionate about helping engineering teams ship secure, high-quality software? Do you get energy from solving... ...security problems at scale and partnering closely with developers, architects, and product teams? If so, we'd love to talk to you. Alarm.com...Work experience placementCasual workWork at officeImmediate start$120k - $175k
Technology Cyber Security Architect Cooley is seeking a Cyber Security Architect to join the technology team. Position summary: Cooley Technology embraces a culture of customer service excellence, and all members of the department are expected to move this agenda forward...Full timeTemporary workWork at officeFlexible hoursWeekend work$153.6k - $207.8k
Are you passionate about helping Government Customers secure their mission data using AWS cloud computing services with a special focus... ...?Amazon Web Services (AWS) is seeking a security solutions architect to work with some of our largest Public Sector customers. At AWS...Flexible hours$125k - $175k
Celestar Corporation seeks a Program Security Representative to support the DARPA PSS task order. The role requires active TS/SCI clearance and work in Arlington, VA, with salary $125,000-$175,000 per year, contingent on contract award. Responsibilities include developing...Contract work- ...Security Solution Architect Location: Washington, DC Schedule: Onsite 5 days per week Employment Type: Direct Hire Clearance Requirement: Active TS clearance required at time of application; must be willing and able to obtain SCI access and pass a CI...
$141.2k - $278.3k
Position Summary Google Infrastructure and Security Lead ArchitectJoin our AI & Engineering team in transforming technology platforms... ...’ll do:As a Google Cloud (GCP) Infrastructure & Security Lead Architect, you will serve as a strategic technical leader and trusted...Local areaVisa sponsorshipFlexible hours- Kastle Systems, a leading managed security services provider, is seeking a Security Systems Solution Architect to lead technical discovery and solution validation for complex projects in a customer-facing role. You will design integrated security across access control,...
$78.6k - $160.2k
The Security Architecture Specialists will work in the Security Architecture, Engineering and Risk Tower in the CISO organization. The Specialist will work directly on the AFS IT Enterprise Security Engineering Team (ESE team) within the Security Architecture and Engineering...Work experience placementH1bLive inWork at officeLocal areaWork visa
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SECURITY ARCHITECT. Be the first to apply!

