Technical Lead- Chief Cybersecurity Architect -Contingent Hire

GRAY, INC
Washington, DC, United States
10 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$250,000.0 - $275,000.0
Working hours
Regular working hours
Job source

Tech stack

Training Data Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Systems Engineering Microsoft Azure Software as a Service Cloud Computing Cloud Computing Security Configuration Management Cyber Security Information Systems
+30 more
Computer Engineering Information Leak Prevention Data Security Distributed Systems Infrastructure as a Service (IaaS) Identity and Access Management Intrusion Detection and Prevention Information Systems Security Architecture Professional Key Management Network Security Network Segmentation Platform as a Service (PAAS) Role-Based Access Control Zero Trust Network Access Sherwood Applied Business Security Architecture Security Information and Event Management Software Vulnerability Management Data Logging Data Classification Software Security Multi-Cloud Technical Debt HybridCloud Togaf Information Technology Cloud Migration CIS Benchmarks Devsecops Serverless Computing Security Orchestration, Automation & Response

Job description

Sage Tech Solutions SDVOSB-Woman Owned Small Business is seeking a highly qualified Chief Cybersecurity Architect / Engineer that will serve as the senior technical authority responsible for defining, governing, and implementing enterprise cybersecurity architecture across a large, complex federal government environment., The Chief Cybersecurity Architect / Engineer serves as the senior technical authority responsible for defining, governing, and implementing enterprise cybersecurity architecture across a large, complex federal government environment. The position provides strategic and hands-on technical leadership for cybersecurity architecture, Enterprise Cybersecurity Architecture Leadership: Serve as the organization’s Chief Cybersecurity Architecture technical authority for enterprise-wide security architecture and engineering; establish and maintain enterprise cybersecurity architecture strategy, standards, principles, patterns, reference architectures, and technical roadmaps; translate mission, business, operational, cybersecurity, privacy, and regulatory requirements into actionable architectures; lead architecture across large distributed environments; evaluate existing architecture and identify gaps, risks, technical debt, redundancies, and modernization opportunities; ensure security integration throughout architecture, engineering, acquisition, development, modernization, and operations; provide oversight for modernization and digital transformation initiatives; establish governance and participate in review boards and committees. SABSA and TOGAF Implementation:

Lead implementation and operationalization of SABSA and TOGAF; integrate SABSA business-driven methodology with TOGAF practices; develop architectures across SABSA Contextual, Conceptual, Logical, Physical, Component, and Operational layers; apply TOGAF ADM; develop traceability between requirements, risks, controls, components, and solutions; establish reusable patterns and templates; develop current-state and target-state architectures; conduct gap assessments and transition roadmaps; ensure architecture supports business objectives. Federal Cybersecurity Compliance and Risk Management:

Provide interpretation and implementation guidance for NIST CSF, RMF, SP 800-53/37/30/171, FISMA, FedRAMP, CIS Controls, HIPAA/HITECH, Zero Trust, OMB memoranda, CISA directives, federal ICAM, and applicable DoD requirements; ensure architecture supports authorization, continuous monitoring, vulnerability management, risk management, audit readiness, privacy, and compliance. Zero Trust Architecture: Lead development and implementation of enterprise ZTA; establish identity-centric and data-centric security; develop capabilities for identity, devices/endpoints, networks and environments, applications and workloads, data, visibility and analytics, automation and orchestration; incorporate least privilege, continuous verification, micro-segmentation, strong authentication, adaptive access, and continuous monitoring; develop maturity assessments and roadmaps. Cloud and Hybrid Enterprise Security: Develop architecture for federal cloud, multi-cloud, hybrid-cloud, on-premises, and edge; align with FedRAMP and NIST; guide IaaS, PaaS, SaaS, containerized, serverless, and cloud-native environments; define requirements for cloud identity, encryption, key management, logging, monitoring, workload protection, configuration management, and data security; evaluate solutions and integration. Security Engineering and Solution Evaluation: Lead evaluations of products, platforms, services, and emerging technologies; develop engineering requirements and specifications; review architectures for compliance; conduct assessments and design reviews; identify vulnerabilities and remediation strategies; ensure solutions are scalable, interoperable, resilient, supportable, and standards-aligned; support SOW/PWS, acquisition packages, and evaluation criteria. AI and Emerging Technology Security: Provide security architecture leadership for AI/ML and automation; evaluate AI cybersecurity risks; establish controls for models, training data, APIs, sensitive information, and infrastructure; evaluate AI use in monitoring, threat detection, vulnerability management, testing, and incident response. Architecture Governance and Documentation: Develop and maintain Enterprise Cybersecurity Architecture, Cybersecurity Architecture Framework, Current-State/Target-State/ Transition Architectures, Cybersecurity Architecture Roadmap, Security Reference Architectures, Security Architecture Patterns, Security Standards and Technical Specifications, Architecture Decision Records, Security Control Traceability Matrices, Architecture Gap Assessments, Zero Trust Architecture, Cloud Security Architecture, Data Security Architecture, ICAM Architecture, Network Security Architecture, and Application Security Architecture; maintain artifacts as living enterprise documents., Lead enterprise-wide cybersecurity architecture initiatives; influence senior technical and executive stakeholders; translate mission and business objectives into cybersecurity requirements; communicate complex architecture concepts to technical and nontechnical audiences; lead multidisciplinary teams; resolve architectural conflicts across programs

and domains; balance risk, mission requirements, cost, schedule, usability, and operations; establish governance across decentralized environments; mentor architects and engineers; provide authoritative recommendations to CIO, CISO, CTO, program leadership, and government executives.

SECURITY CLEARANCE

Must be capable of obtaining and maintaining the federal background investigation, Public Trust

Send Resume and salary requirement to: Time@graymatterstech.com (No Phone calls)

Gray Matters Technology Services, Mentor to Sage Tech Solutions, will be conducting all interview session via zoom.

Pay: $250,000.00 - $275,000.00 per year

Requirements

Bachelor’s degree from an accredited institution in Cybersecurity, Computer Science, Information Technology, Information Systems, Computer Engineering, Systems Engineering, or a closely related technical discipline.

Master’s degree in Cybersecurity, Computer Science, Information Systems, Information Assurance, Engineering, Enterprise Architecture, or a related discipline (Preferred)., Network security and segmentation

Secure Access Service Edge (SASE)

Software-Defined Perimeter technologies

Endpoint Detection and Response

Extended Detection and Response

Security Information and Event Management

Security orchestration and automation

Data Loss Prevention

Data classification and protection

Encryption and enterprise key management

API security

Application security

DevSecOps

Software supply-chain security

Vulnerability and configuration management

Security monitoring and continuous diagnostics

Incident Detection and Response

Cybersecurity Risk Management

Continuous Monitoring

CERTIFICATIONS

SABSA Chartered Security Architect (SCF/SCP/SCM)

TOGAF Certification, GIAC Security Expert or Architect-level certification

AWS Certified Security - Specialty

Microsoft Azure Security / Cybersecurity Architect certification, engineering, Zero Trust, cloud security, data protection, identity, network security, application security, and enterprise risk management. The successful candidate must have 10-15+ years of progressive cybersecurity architecture and engineering experience, including demonstrated responsibility for designing and implementing security architectures across large-scale enterprises. Prior experience supporting GSA, Department of Defense (DoD), Department of Veterans Affairs (VA), another Cabinet-level federal agency, or a comparably large and complex organization is strongly preferred., Experience: 10-15+ years of progressive cybersecurity experience; 7-10 years designing or implementing enterprise cybersecurity architectures for large and complex organizations; demonstrated experience as Chief, Principal, Lead, or Enterprise Cybersecurity Architect/Engineer; demonstrated implementation or operationalization of SABSA and TOGAF; prior support to GSA, DoD, VA, another major federal agency, or comparably large enterprise; extensive knowledge of federal cybersecurity policy, governance, standards, and compliance; experience in large-scale hybrid enterprise architectures; support for modernization, cloud migration, Zero Trust, and cybersecurity transformation; ability to communicate architecture and risk to senior executives, CIO/CISO, engineering, program managers, and business stakeholders. Technical Expertise: Expert-level knowledge of SABSA, TOGAF, NIST CSF, NIST RMF, NIST SP 800-series, NIST SP 800-53, FISMA, FedRAMP, CIS Controls, HIPAA/HITECH, Zero Trust Architecture, enterprise/cloud security architecture, IAM, network/data/application security, DevSecOps, vulnerability management, security operations, continuous monitoring, incident detection and response, and cybersecurity risk management.

FEDERAL GOVERNMENT EXPERIENCE

Ideal candidate demonstrates experience within or supporting large federal environments including GSA, Department of Defense, Department of Veterans Affairs, DHS, HHS, CMS, Department of Justice, Department of Treasury, Department of State, or another large Cabinet-level agency. Comparable large commercial enterprise experience may be considered when demonstrating similar scale, regulatory complexity, cybersecurity maturity, and mission-critical operations.

Benefits & conditions

$250,000 - $275,000 a year - Contract, Pulled from the full job description

  • Tuition reimbursement
  • 401(k)
  • Health insurance
  • Paid time off
  • Vision insurance
  • Health savings account
  • Dental insurance, * 401(k)
  • Dental insurance
  • Employee assistance program
  • Health insurance
  • Health savings account
  • Life insurance
  • Paid time off
  • Tuition reimbursement
  • Vision insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

Videos

See all

Related articles

See all