> Markdown version of [/jobs/ext/265167-senior-cloud-security-architect](https://www.wearedevelopers.com/jobs/ext/265167-senior-cloud-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cloud Security Architect - **Company:** General Dynamics Information Technology - **Location:** Indianapolis, IN, United States (Remote available) - **Experience:** Expert - **Salary:** $147,292.0 - $199,278.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Microsoft Azure, Bash Shell, Cloud Computing, Cloud Computing Security, Cloud Engineering, Encodings, Cyber Security, DevOps, Identity and Access Management, Information Security Management, Python (Programming Language), Network Segmentation, OpenID, Zero Trust Network Access, Security Assertion Markup Language (SAML), Wide Area Networks, Policy as Code, Google Cloud, Large Language Models, Multi-Cloud, Cyber Threat Analysis, Information Technology, Machine Learning Operations, CIS Benchmarks, Terraform, Devsecops, Static Application Security Testing, Dynamic Application Security Testing - **Published:** May 16, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=95a54e8960f16d20 ## About the Role Do you have experience in Identity & access management?, Do you have a Bachelor's degree?, * Bachelor's degree in computer science or a related field, preferred but not required. * NOTE: If resources do not have a relevant college degree, an additional 4 years of relevant work experience is required., * Experience: 12+ years in Cybersecurity, with at least 6 years focused on architecting secure cloud environments at scale. * Security Platforms: Mastery of cloud-native security suites (e.g., AWS Security Hub, Azure Defender, GCP Security Command Center). * Identity & Access: Expert knowledge of Identity-First Security, including CIEM, Just-In-Time (JIT) access, and complex OIDC/SAML flows. * Automation: Proficiency in Python, Go, or Bash to build custom security automations and integrate with SOAR platforms. * DevSecOps: Deep experience embedding automated security testing (SAST/DAST/SCA) directly into CI/CD pipelines. * Cloud Networking: Advanced understanding of secure connectivity, including SD-WAN, Cloud WAF, and Zero Trust Network Access (ZTNA). Preferred Experience * Certifications: Top-tier credentials. * Soft Skills: Strong ability to bridge the gap between "Speed of DevOps" and "Rigors of Security" while communicating clearly with executive leadership * Leadership: Proven ability to influence technical roadmaps and present security risks clearly to C-suite stakeholders., Years of Experience 10 + years of related experience * may vary based on technical training, certification(s), or degree ## Description Advance your career while impacting our national security as a Senior Cloud Security Architect. Here, technologists have many paths to grow a meaningful career supporting cyber missions and operations across the federal government. As a Senior Cloud Security Architect, you will lead the strategic vision for protecting our multi-cloud ecosystem. You are responsible for designing the security blueprints that govern our entire digital footprint-from identity perimeters to AI-driven threat detection. This role requires a "Security as Code" mindset, where you build automated guardrails that empower developers to move at speed without compromising the safety of our data or infrastructure. MEANINGFUL WORK AND PERSONAL IMPACT This position will support the United States Postal Service (USPS) though: * Security Architecture Vision: Lead the design of a global Zero Trust architecture, ensuring robust identity governance (IAM), network micro-segmentation, and data encryption across AWS, Azure, or GCP. * AI-Native Security Strategy: Architect specialized security frameworks for AI/ML pipelines, focusing on data privacy for training sets, model integrity, and securing LLM-integrated applications against emerging attack vectors. * Automated Guardrails (Policy as Code): Develop and enforce enterprise-wide security policies using Terraform, etc., ensuring that non-compliant infrastructure is automatically remediated or blocked from deployment. * Cloud Posture Management: Design and oversee the integration of CNAPP and CSPM tools to provide real-time visibility into misconfigurations, vulnerabilities, and excessive permissions. * Threat Modeling & Resilience: Conduct deep-dive threat modeling for complex cloud-native systems, simulating advanced persistent threats (APTs) and "blast radius" scenarios to strengthen system resilience. * Security Consultancy: Act as the lead security advisor for the Cloud Architecture team, bridging the gap between DevOps agility and rigorous regulatory compliance (SOC2)., Core Objectives * Zero Standing Privilege: Help Transition the organization to a "Zero Standing Privilege" model for all production environments. * Automated Compliance: Help Achieve automated auditing for core compliance frameworks (e.g., NIST, CIS Benchmarks). * Mean Time to Detect (MTTD): Utilize AI-driven monitoring to reduce the detection time of anomalous cloud activity to minimum Security Clearance Level: * Ability to obtain and maintain a Public Trust clearance and successfully pass a thorough Government background screening process requiring the completion of detailed forms and fingerprinting * This position has a U.S. residency requirement. The USPS security clearance process requires the selected candidate to have resided in the U.S. (including U.S. Territories) for the last five years as follows: U.S. Citizens cannot have left the U.S. (including U.S. Territories) for longer than 6 months consecutively in the last 3 years (unless they meet certain exceptions). Non-U.S. Citizens cannot have left the U.S. (including U.S. Territories) for longer than 90 days consecutively in the last 3 years. ## Related Videos - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [#90DaysOfDevOps - The DevOps Learning Journey](https://www.wearedevelopers.com/videos/548-90daysofdevops-the-devops-learning-journey) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence)