> Markdown version of [/jobs/ext/3388323-technical-lead-and-chief-security-architect-federal-health-it](https://www.wearedevelopers.com/jobs/ext/3388323-technical-lead-and-chief-security-architect-federal-health-it). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Technical Lead and Chief Security Architect, Federal Health IT - **Company:** Greenbrier Government Solutions Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $113,432.0 - $149,237.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Cyber Security, Information Systems, Information Leak Prevention, Network Topologies, Identity and Access Management, Quantum Computing, Zero Trust Network Access, Sherwood Applied Business Security Architecture, Data Streaming, 5G NR, IT Architecture, Virtual Reality, Information Technology, CIS Benchmarks, Plan of Action and Milestones - **Published:** September 2, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=48eecad7c294b15b ## About the Role * At least 15 years of enterprise security architecture and information security experience at a large company or Government agency comparable in size or scope to GSA, IRS, DoD, or VA. * Deep experience in security architecture, security engineering, project leadership, and translating customer requirements for technical teams. * Experience advancing legacy and new health IT digital architectures across cloud, mobile, IoT, APIs, VR/XR, 5G, PQC, DLP, cryptography, quantum computing, and AI technologies. * Expertise in risk management, enterprise-architecture tools, architecture processes and products, and complex technical analysis. * Experience coordinating architecture reviews throughout the conceptual and solution-design lifecycle and performing detailed tradeoff analysis. * Ability to create complete architecture and network-topology diagrams and supporting documentation. * Working command of NIST guidance, FISMA, FedRAMP, CIS Controls, HIPAA, and related federal policies and standards. * Master's degree in cybersecurity, mathematics, engineering, computer science, information technology, information systems architecture, telecommunications systems design, architecture implementation, information systems integration, software-development methodologies, security engineering, network-systems communications management, or a closely related field. * One or more of the following: PMP, IAT III, IAM III, or IASAE III qualification/certification., * Federal health IT or VA architecture experience, including systems handling sensitive health information. * Experience with Zero Trust architecture, Trusted Internet Connections 3.0, cloud shared-responsibility models, and enterprise identity. * Experience linking architecture artifacts to SSP, SAR, POA&M, continuous-monitoring, and authorization decisions. ## Description This is the senior technical authority for the team. The Technical Lead will evaluate complex VA environments, set architecture direction, and connect security decisions to engineering work, controls, evidence, and authorization outcomes. The role calls for sound judgment, clear writing, and the ability to explain hard tradeoffs without hiding behind jargon. What you'll do * Lead enterprise and solution security architecture across trust boundaries, identity paths, data flows, workload interactions, external dependencies, and inherited controls. * Develop and review security reference architectures, solution architectures, reusable patterns, architecture risk and gap analyses, secure-design reviews, and decision records. * Set practical architecture direction for cloud, mobile, Internet of Things, medical and specialized devices, APIs, virtual and extended reality, 5G, data loss prevention, cryptography, post-quantum cryptography, quantum computing, and AI-enabled services. * Evaluate identity, access, data protection, network exposure, monitoring, resiliency, privacy, and authorization impacts for proposed designs. * Tie architecture decisions to control allocation, testing, evidence, continuous monitoring, the Risk Management Framework, and Authority to Operate outcomes. * Lead design reviews and tradeoff analyses that balance mission need, security risk, cost, schedule, performance, and operational supportability. * Create clear diagrams of system components, interfaces, network topology, security boundaries, and information flows. * Guide use of enterprise-architecture methods and tools, including SABSA or comparable methods, while adapting the method to the decision at hand. * Coach architects and engineers, resolve cross-domain technical issues, and present recommendations to technical and executive audiences., * VA leaders receive clear, defensible architecture decisions that can be acted on. * Teams reuse approved patterns instead of solving the same security problem differently each time. * Architecture, engineering, and authorization move together, reducing late security redesign and avoidable evidence gaps. Work arrangement and conditions * Full-time role; contingent upon contract award and customer approval. * U.S.-based remote work from a Greenbrier-approved work location. Routine onsite work is not expected. * Availability during VA core hours, 8:00 a.m. to 5:00 p.m. Eastern Time on normal federal workdays. * Occasional travel or onsite support for kickoff and other Government-directed events, with Washington, DC anticipated as the primary location. * Ability to obtain and maintain the Tier 4/High Risk background suitability determination and VA access required for the role. How we work * Communicate clearly and work comfortably across technical teams, program leaders, and senior government stakeholders. * Protect sensitive information and produce work that is complete, traceable, reviewable, and ready for customer use. ## Related Videos - [Building Sovereign AI: Lessons from Deploying Secure RAG Systems using Confidential Computing](https://www.wearedevelopers.com/videos/100108-building-sovereign-ai-lessons-from-deploying-secure-rag-systems-using-confidential-computing) - [A practical guide to writing secure Dockerfiles](https://www.wearedevelopers.com/videos/109-a-practical-guide-to-writing-secure-dockerfiles) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [OPA for the cloud natives](https://www.wearedevelopers.com/videos/713-opa-for-the-cloud-natives) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Architecting API Security](https://www.wearedevelopers.com/videos/377-architecting-api-security) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [ I Gave a Video Editor More Autonomy Than a Trading Bot. On Purpose.](https://www.wearedevelopers.com/magazine/773-i-gave-a-video-editor-more-autonomy-than-a-trading-bot-on-purpose) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [A Guide to Green Tech and Green IT Careers](https://www.wearedevelopers.com/magazine/374-a-guide-to-green-tech-and-green-it-careers)