Security / IAM Architect

North Point Technology, LLC
Washington, DC, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Cyber Security Federated Identity Management Federal Information Processing Standards (FIPS) Identity and Access Management Key Management Network Security Amazon Virtual Private Cloud (VPC) Opsworks Plan of Action and Milestones

Job description

This position centers on architecting and implementing identity and access management across AWS GovCloud and ADC (C2S/SC2S) environments, including IAM policies, roles, and permission boundaries. The architect will design identity federation, CAC/PIV authentication, and least-privilege access models, and stand up security guardrails using Service Control Policies, AWS Config, and Security Hub within isolated regions. Additional work includes designing encryption and data-protection strategies, architecting network security for classified environments, and supporting ATO processes - preparing SSP documentation, remediating POA&M items, and activating continuous monitoring - to maintain a strong security and compliance posture.

Requirements

North Point Technology is looking to hire a Security / IAM Architect to design and implement identity and security architecture across AWS GovCloud and ADC (C2S/SC2S) environments. The qualified candidate must have an active TS/SCI security clearance and will build least-privilege access models, encryption strategies, and security guardrails that meet federal and Intelligence Community standards in air-gapped, classified environments. The ideal candidate combines deep AWS security expertise with hands-on experience navigating ATO and accreditation processes in a DoD/IC setting., * AM policy, role, and permission boundary design in AWS GovCloud and ADC (C2S/SC2S) environments

  • Identity federation, CAC/PIV authentication, and least-privilege access models aligned with NIST 800-53 and ICD 503
  • Security guardrails using Service Control Policies (SCPs), AWS Config, and Security Hub in air-gapped/isolated regions
  • Encryption strategy using AWS KMS with FIPS 140-2/3 validated modules, secrets management, and data-at-rest and in-transit protection
  • ATO processes, including SSP documentation, POA&M remediation, and continuous monitoring
  • Network security in classified environments, including VPC segmentation, cross-domain solutions, PrivateLink, and security groups, * Active Top Secret/SCI security clearance

About the company

North Point Technology is THE BEST place to work for curious-minded engineers motivated to support our country’s most crucial missions! We focus on long term projects, leveraging the latest technology in support of innovative solutions to solve our customer’s most difficult problems.

At North Point Technology, EMPLOYEES come first! We value our employees by providing excellent compensation, benefits, and a flexible work-life balance. We strive for a close-knit and open atmosphere where the owners are always directly available to our team members.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · WWC 2023

1:41 min

Protecting etcd databases using Key Management System plugins

Alex Soto Alex Soto · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:57 min

Securing sensitive defense infrastructure with dual-vendor cloud strategies

Boris Hecker Boris Hecker +3 · WWC 2025

3:03 min

Balancing robust code verification with user liability paradigms

John Woods John Woods · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all