Security Architect

Cherokee Federal
Washington, DC, United States
8 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$160,000.0 - $190,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Software as a Service Cloud Computing Security Cloud Engineering Information Systems System Configuration Continuous Integration Information Systems Security Architecture Professional Platform as a Service (PAAS) Salesforce.Com Systems Integration
+2 more
Cloud Platform System Plan of Action and Milestones

Job description

As our Security Architect, you’ll guide the design and implementation of secure solutions and services in the cloud, driving the configuration of cloud-based security capabilities that reduce risk to an acceptable level. You’ll make sure stakeholder security requirements are addressed in every aspect of the enterprise architecture - from reference models to segment and cloud solution architectures - and serve as the Information Assurance (IA) authority the program leans on for architecture policies, procedures, and ATO support. While this role isn’t Salesforce development, the platform you’ll be securing includes Salesforce, so experience securing Salesforce or similar SaaS/PaaS environments is a strong plus., * Guide the design and implementation of secure solutions and services within the cloud.

  • Drive the successful configuration and implementation of cloud-based security solutions to reduce risk to an acceptable level.
  • Ensure that stakeholder security requirements necessary to protect the organization’s mission and business processes are adequately addressed in all aspects of enterprise architecture, including reference models, segment and cloud solution architectures, and the resulting systems supporting those missions and business processes.
  • Serve as an Information Assurance (IA) Subject Matter Expert (SME) with regards to IA Architecture policies and procedures.
  • Provide IA Management support to Program Management Offices (PMO) for emerging information systems through the acquisition lifecycle and, where applicable, into sustainment.
  • Provide technical support and guidance to facilitate the identification and integration of IA controls at the onset of the acquisition lifecycle for emerging cloud capabilities.
  • Serve as a principal liaison for Enterprise-level boundary defense initiatives to ensure consistent and sufficient identification and implementation of applicable IA controls in concert with the agency IA and cloud architecture and National Institute of Standards and Technology (NIST) security guidelines.
  • Provide oversight for the design and implementation of Enterprise-level IA solutions, providing standards for access control capabilities across the Enterprise.
  • Support Assessment and Authorization (A&A/ATO) activities, including control selection and implementation, security artifacts, POA&M management, and coordination with assessors and Authorizing Officials.
  • Partner with platform and development teams (including Salesforce) to embed security controls into platform configuration, integrations, and CI/CD pipelines.

Requirements

  • Bachelor’s degree and seven (7) years of experience in security / ATO (Assessment and Authorization) work.
  • An emerging authority who applies extensive technical experience, develops technical solutions to complex problems, and exercises considerable latitude in determining objectives and approaches to assignments.
  • Deep working knowledge of NIST security guidance (e.g., NIST SP 800-53, Risk Management Framework) and federal ATO processes.
  • Experience architecting security for cloud environments (e.g., AWS/AWS GovCloud, Azure Government) and FedRAMP-aligned platforms.
  • Experience securing SaaS/PaaS platforms; familiarity with the Salesforce security model (profiles/permission sets, sharing, Salesforce Shield, event monitoring) is a strong plus.
  • Strong communication skills, with the ability to translate security requirements for PMOs, engineers, and non-technical stakeholders.
  • Certifications such as CISSP, CISSP-ISSAP, CCSP, or CISM are preferred.
  • Must be a U.S. Citizen and hold an active TS/SCI clearance.
  • Must pass pre-employment qualifications of Cherokee Federal.

Benefits & conditions

Estimated Starting Salary Range for Security Architect $160,000-190,000

Pay commensurate with experience.

Full time benefits include Medical, Dental, Vision, 401K, and other possible benefits as provided. Benefits are subject to change with or without notice.

Please Note: This position is pending a contract award. If you are interested in a future with Cherokee Federal, APPLY TODAY! We are accepting applications for this future anticipated need.

About the company

HESFP, LLC is a part of Cherokee Federal - the division of tribally owned federal contracting companies owned by Cherokee Nation Businesses. As a trusted partner for more than 60 federal clients, Cherokee Federal LLCs are focused on building a brighter future, solving complex challenges, and serving the government’s mission with compassion and heart. To learn more about HESFP, visit cherokee-federal.com.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:46 min

Defining the security champion role in software teams

Tanya Janca · World Congress 2021

1:23 min

Closing thoughts and educational resources for edge network engineering

Austin Gil · LIVE

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:29 min

Recommended community resources for cloud engineers

Piet Van Dongen · LIVE

5:01 min

Container hosting options available on Microsoft Azure

Federico Fregosi · World Congress 2022

Videos

See all

Related articles

See all