Enterprise Architect
Role details
Job location
Tech stack
Job description
Everforth ECS Federal is seeking an Enterprise Architect to support the design, governance, and modernization of cloud, cybersecurity, and observability platforms within a federal healthcare environment supporting the U.S. Department of Veterans Affairs.
The Senior Cybersecurity Architect serves as a strategic technical leader responsible for designing, evaluating, and guiding the implementation of enterprise-wide security architectures for the Department of Veterans Affairs (VA). A core focus of this role is leading the VA's modernization efforts by architecting secure cloud environments (FedRAMP compliant) and driving the enterprise transition to a Zero Trust Architecture (ZTA) in accordance with federal mandates (e.g., Executive Order 14028, CISA Zero Trust Maturity Model). The architect will bridge the gap between high-level security policies and technical implementation, ensuring veteran data remains highly secure across hybrid and multi-cloud environments.
-
1 0 + years of enterprise architecture, cloud architecture, cybersecurity architecture, or infrastructure modernization experience , supporting Federal Government or highly regulated enterprise environments
-
Architect and drive the adoption of Zero Trust principles across the enterprise, focusing on the core pillars: Identity, Devices, Networks, Applications/Workloads, and Data
-
Translate mission and operational requirements into technical architecture requirements and implementation strategies
-
Design secure, resilient, and scalable architectures for VA workloads deployed in cloud environments (AWS, Microsoft Azure, Google Cloud) in alignment with FedRAMP and VA security standards
-
Design robust IAM frameworks that enforce continuous authentication, least privilege access, and dynamic risk-based access controls required for ZTA
-
Conduct comprehensive threat modeling and security architecture reviews for new and existing systems, identifying vulnerabilities and recommending mitigating controls
-
Develop strategies for network and workload micro-segmentation to limit lateral movement within VA data centers and cloud boundaries.
-
Evaluate operational and cybersecurity impacts associated with new technologies and architecture changes
-
Author technical security standards, reference architectures, and deployment blueprints to guide engineering teams in securely configuring enterprise solutions, e nsuring architecture alignment with FedRAMP High, NIST 800-53 Rev. 5, RMF
-
Lead Architecture Review Board (ARB) coordination, governance reviews, and technical alignment activities, as needed
-
Support ATO documentation, SSP contributions, and continuous monitoring initiatives
Salary Range: $180,000-220,000
Requirements
-
10 + years of experience with a Bachelor's degree in Cybersecurity, Engineering or C omputer Science, and/ or equivalent experience .
-
O ne or more related certifications preferred :
-
TOGAF Enterprise Architecture Practitioner
-
Elastic Certified Engineer or Elastic Certified Observability Engineer
-
AWS Certified Security or Microsoft Azure Security Engineer
-
CISSP
-
Equivalent cybersecurity or cloud certificates , such as CAP, CCSP, SABSA
Desired Skills
-
Demonstrated experience supporting FedRAMP High or equivalent regulated cloud environments
-
Experience supporting Zero Trust Architecture and Federal cybersecurity modernization initiatives
-
Experience designing and implementing secure cloud architectures (IaaS, PaaS, SaaS) and translating traditional perimeter-based security to cloud-native controls
-
Experience utilizing Identity, Credential, and Access Management (ICAM) protocols and applying them to Zero Trust models
-
Knowledge of cloud-based knowledge management technologies and concepts related to security, governance, and enterprise architectures
-
Knowledge of cyber architecture and system design principles, methodologies, and security integrations
-
Familiarity with enterprise observability modernization initiatives, including migration planning and architectural transition changes from Splunk to Elastic within large-scale federal or regulated environments
-
Ability to apply analytical reasoning to comprehend complex distributed systems, hybrid cloud topologies, and their associated attack surfaces
-
Excellent written, presentation, and stakeholder engagement skills
-
Ability to support 10- 15 % travel