> Markdown version of [/jobs/ext/3073421-zero-trust-security-engineer](https://www.wearedevelopers.com/jobs/ext/3073421-zero-trust-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Zero Trust Security Engineer - **Company:** Kforce Inc. - **Location:** Washington, DC, United States - **Contract:** Permanent contract - **Skills:** Cyber Security, System Configuration, Information Leak Prevention, Identity and Access Management, Microsoft Security Essentials, Zero Trust Network Access, Security Information and Event Management, Okta, Cyberark, Software Security, Veracode, Microsoft InTune, Atlassian Tools, Splunk - **Published:** September 25, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9195150/zero-trust-security-engineer ## About the Role * Experience designing and implementing enterprise Zero Trust Architecture solutions. * Strong hands-on experience with Microsoft security technologies including Entra ID, Defender XDR, Sentinel, Purview, and Intune. * Experience with Okta Identity Governance and Administration (IGA). * Experience configuring and supporting Splunk security monitoring solutions. * Experience with CyberArk Privileged Access Management (PAM). * Knowledge of application security tools and practices, including Veracode. * Strong understanding of NIST 800-207, NIST 800-53 Rev. 5, RMF, and federal cybersecurity frameworks. * Ability to balance strategic architecture responsibilities with hands-on engineering execution. * Strong communication and stakeholder management skills. ## Description We are seeking a Zero Trust Architect / Security Engineer to support a federal cybersecurity modernization initiative focused on the implementation and maturation of a comprehensive Zero Trust Architecture (ZTA) program. This individual will lead strategy, architecture, engineering, and deployment efforts across identity, endpoint, data, application, and security operations domains while leveraging leading Microsoft and enterprise security platforms. The role combines high-level architectural leadership with hands-on engineering responsibilities and requires close collaboration with executive stakeholders, project teams, and security operations personnel., * Lead the design, planning, and execution of a multi-phased Zero Trust Architecture roadmap aligned to federal cybersecurity requirements. * Design, engineer, and implement secure architectures across all Zero Trust pillars using Microsoft security technologies including Entra ID, Defender XDR, Sentinel, Purview, and Intune. * Develop technical strategies that integrate Microsoft security solutions with enterprise platforms such as Okta, Splunk, CyberArk PAM, and Veracode. * Implement identity governance, privileged access management, endpoint protection, monitoring, security analytics, and data protection controls. * Configure and maintain security monitoring, detection, and response capabilities using SIEM and XDR technologies. * Deploy and manage data protection and data loss prevention capabilities in support of organizational security objectives. * Ensure all solutions adhere to NIST SP 800-207, NIST SP 800-53 Rev. 5, RMF, and applicable federal security mandates. * Translate technical requirements into actionable implementation plans and security recommendations for leadership and stakeholders. * Provide technical leadership and mentorship to engineering teams to ensure successful execution of Zero Trust initiatives. * Collaborate with both technical and non-technical stakeholders and communicate project status, security metrics, and implementation progress. * Support project planning, task management, and documentation activities utilizing Jira and Confluence. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Trust Issues: Because Zero-Trust Isn’t Optional Anymore](https://www.wearedevelopers.com/videos/100089-trust-issues-because-zero-trust-isn-t-optional-anymore) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)