Enterprise Security Architect III
Iquasar, LLC.
Sterling, VA, United States
7 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.careerjet.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$110,000.0 - $120,000.0
Working hours
Regular working hours
Job source
Tech stack
Kubernetes Security
Amazon Web Services
Microsoft Azure
Cloud Computing
Identity and Access Management
OAuth
OpenID
Public Key Infrastructure
Systems Development Life Cycle
Security Software
Single Sign-On
Software Engineering
+8 more
SonarQube
Enterprise Software Applications
HybridCloud
Github Enterprise
Splunk
Devsecops
Jenkins
Plan of Action and Milestones
Job description
Role Specific Duties/ Role Responsibilities:
- Design and maintain enterprise security architecture for assigned ICAM applications and services.
- Translate DHS asecurity requirements into implementable architecture and technical controls.
- Contribute to or oversee secure application and configuration development.
- Integrate security controls into application, infrastructure, cloud, and DevSecOps environments.
- Lead or support system security assessments and technical control validation.
- Develop, update, or support documentation required for Authorization to Operate activities.
- Identify and remediate vulnerabilities within DHS-required timeframes.
- Develop and manage remediation actions and POA&M items when findings cannot be immediately resolved.
- Work with development and testing teams to ensure security requirements are incorporated throughout the SDLC.
- Support development, integration, testing, and release activities within the assigned workstream.
- Review technical designs, code, configurations, security scan results, and implementation evidence.
- Help ensure medium- and high-severity static and dynamic application vulnerabilities are resolved before production release.
- Support incident investigation, root-cause analysis, and corrective action when security issues affect production systems.
- Maintain architecture, security, assessment, and remediation documentation
Requirements
- Experience designing or maintaining enterprise application or system security architecture.
- Experience integrating cybersecurity controls into software, cloud, infrastructure, or DevSecOps environments.
- Experience supporting security assessments or authorization activities.
- Experience identifying, documenting, and remediating technical vulnerabilities.
- Experience developing or managing POA&M remediation actions.
- Ability to work with software engineering and testing teams throughout the SDLC.
- Ability to interpret security requirements and translate them into technical controls.
- Ability to obtain and maintain favorable DHS EOD, suitability, and required system access.
Preferred Qualification:
- Prior DHS or federal civilian agency clearance or experience.
- Experience supporting federal ATO packages or NIST Risk Management Framework activities.
- Experience with ICAM, IAM, PIV, PKI, PAM, SSO, OAuth, OIDC, or access-control systems.
- Experience with AWS, Azure, hybrid-cloud, or on-premises federal environments.
- Experience with secure CI/CD pipelines and automated security gates.
- Experience with SonarQube, Jenkins, GitHub Enterprise, Splunk, container security, STIGs, or hardened images.
- CISSP, CSSLP, CCSP, AWS/Azure security certification, or comparable security credential.
Benefits & conditions
- 401(k)
- Dental insurance
- Health insurance
- Paid time off
- Vision insurance
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.careerjet.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
DC
Daniel Cranney
7 months ago
IK
Igor Khokhriakov
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
about 1 month ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
about 2 years ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago
BB
Benedikt Bischof
Walking Into The Era of Supply Chain Risks
about 4 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
over 2 years ago