> Markdown version of [/jobs/ext/86706-cloud-network-security-architecture-manager-tic-3-0](https://www.wearedevelopers.com/jobs/ext/86706-cloud-network-security-architecture-manager-tic-3-0). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Network Security Architecture Manager (TIC 3.0) - **Company:** General Dynamics Information Technology - **Location:** Martinsburg, WV, United States - **Experience:** Experienced - **Salary:** $114,750.0 - $155,250.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing, Cyber Security, Databases, Continuous Integration, Network Address Translation, Domain Name System (DNS), Identity and Access Management, Intrusion Detection Systems, Virtual Private Networks (VPN), Key Management, Network Security, OpenShift, Performance Tuning, Ansible, Prometheus, Zero Trust Network Access, Security Information and Event Management, Single Sign-On, Wide Area Networks, Policy as Code, Cloud-native Network Functions (CNF), Transport Layer Security, Data Storage Management, Autoscaling, Istio, Grafana, Multi-Cloud, Firewalls (Computer Science), Amazon Virtual Private Cloud (VPC), Cloudformation, Kubernetes, Bicep, Hashicorp, Terraform, Vmware - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=b06b94b6c0f19bcd ## About the Role * Experience designing landing zones, secure network/identity patterns, and CI/CD/IaC pipelines. * Knowledge of NIST 800-53/RMF, Zero Trust, TIC 3.0, FedRAMP services, and continuous monitoring. * Experience delivering Kubernetes/OpenShift platforms with DR, RTO, and RPO requirements. * Leadership in multi-vendor/SIAM environments with cross-domain change coordination and incident response. Technical Skills: * Cloud Platforms: AWS, Azure, IAM/Entra ID, landing zones, cloud networking, security, monitoring. * Networking & Identity: VPC/VNet design, hub-and-spoke, SD-WAN, DNS, NAT, firewalls, service mesh, SSO, PIV/FIDO2. * Automation & Delivery: Terraform, CloudFormation/Bicep, Ansible, Packer, Helm, GitOps, policy as code. * Containers & Platforms: Kubernetes/OpenShift operations, lifecycle management, security. * Observability & SRE: OpenTelemetry, Prometheus/Grafana, SIEM/log analytics, SLOs/error budgets. * Data & Storage: Managed databases, backup/restore, immutability, replication. * Security & Compliance: CIS/STIGs, vulnerability orchestration, encryption, secrets management. * Cost & Performance: FinOps fundamentals, autoscaling, rightsizing, performance tuning. Preferred Certifications: * AWS Solutions Architect - Professional * Microsoft Azure Solutions Architect Expert * VMware Certified Professional / Advanced Professional * CKA/CKAD or OpenShift Administrator * HashiCorp Terraform Associate / Authoring and Operations Professional LOCATION: Hybrid, based out of Martinsburg, WV or Austin, TX. CLEARANCE: Must be able to obtain and maintain a Public Trust clearance., Years of Experience 10 + years of related experience * may vary based on technical training, certification(s), or degree ## Description GDIT has an opportunity for a Cloud Network Security Architecture Manager supporting the Department of Veterans Affairs (VA). This role leads secure network and cloud architecture design, TIC 3.0 modernization, and enterprise gateway operations. The manager partners with stakeholders, guides technology decisions, and ensures security, compliance, and performance across hybrid and multi-cloud environments. HOW YOU WILL MAKE AN IMPACT * Partner with internal teams and customer groups to define strategy, design solutions, and support implementation. * Collaborate with stakeholders and vendors to ensure solutions meet technical and business requirements. * Communicate technical status, risks, and impacts to leadership and customers. * Evaluate new technologies, perform pilots, assess vendors, and recommend solutions. * Resolve escalations by analyzing issues, providing guidance, and implementing fixes. * Mentor engineering staff on key technologies and processes. * Develop and execute test plans to validate solutions. * Establish timelines, coordinate delivery, and support budgeting decisions. * Write functional and technical requirements and solution documentation. * Stay current on cloud, security, and network technology trends. * Support selection, implementation, and operationalization of new technologies., * Bachelor's Degree or 4+ additional years of experience in lieu of a degree. * 10+ years in cloud, network, or platform engineering/architecture supporting enterprise-scale environments. * 3+ years leading AWS/Azure hybrid or multi-cloud environments in regulated or federal settings. * Experience supporting large federal agencies or customers. * Support 24×7×365 TIC operations, including critical incident bridge participation. * Lead TIC 3.0 policy enforcement, DNS filtering, SSL decryption, IPS/IDS signature deployment. * Manage DHS Cyber Hygiene, ED 19-01, BOD 18-01/19-02 compliance and remediation actions. * Oversee external connections (BPE/S2S VPN) approval, audits, and configuration lifecycle. * Deliver required weekly TIC reports, vulnerability rollups, and compliance status updates. * Lead TIC technical refresh, architecture redesign, and next-generation gateway modernization. ## Related Videos - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) - [Rate-limiting using eBPF and Istio: How to protect your SaaS customers from themselves](https://www.wearedevelopers.com/videos/100220-rate-limiting-using-ebpf-and-istio-how-to-protect-your-saas-customers-from-themselves) - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [Generating code with Angular schematics](https://www.wearedevelopers.com/videos/129-generating-code-with-angular-schematics) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) ## Related Articles - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Why Attend a Developer Event in 2026?](https://www.wearedevelopers.com/magazine/688-why-attend-a-developer-event-in-2026) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)