Influence and consult regarding federal architecture requirements.
Work closely with business stakeholders, solution architects, product leadership, and engineering/delivery teams to ensure product architecture meets applicable US government security and compliance requirements.
Provide technical leadership for the federal authorization process, including technical input into the development of System Security Plans (SSP), conducting security assessments, and working with third-party assessment organizations (3PAOs) to achieve authorization.
Develop and maintain a comprehensive security architecture that aligns with FedRAMP and DISA requirements, ensuring the confidentiality, integrity, and availability of systems and data.
Stay up to date with the latest FedRAMP, DISA and NIST guidelines and ensure that systems and processes adhere to these standards, addressing any compliance issues promptly.
Conduct regular risk assessments and vulnerability assessments to identify potential security threats and vulnerabilities.
Design, implement, and manage technical security controls to protect against data breaches, cyber threats, and unauthorized access.
Work collaboratively with internal and external stakeholders, including Dev Ops teams, engineering teams, compliance officers, public sector operations and auditors, to address security-related concerns and make recommendations for improvements.
Collaborates with product teams to understand functional and non-functional requirements.
Participate in the analysis, evaluation, and development of strategic plans to ensure the architecture objectives are consistent with long-term business objectives.
Act as trusted advisor for all matters related to cloud security across AWS, Azure, and GCP.
Requirements
Strong operating system, virtual machine, and container knowledge.
Cloud architecture expertise.
10+ years of experience architecting complex solutions on AWS to meet DoD and federal civilian requirements (Azure/GCP knowledge is a plus!)
Knowledge of and ability to evaluate DoD and federal civilian compliance i.e., NIST 800-53, NIST 800-63, FISMA, DFARS, DISA CC SRG, DISA STIGs etc.
Knowledge of federal product boundary protection requirements.
Demonstrated experience with the networking options and requirements for DoD IL4/5 and FedRAMP High cloud service offerings.
Knowledge of FIPs and other encryption methodologies needed to meet federal requirements.
Ability to design architectural diagrams and design documents.
Strong organizational and information management skills.
Benefits
Medical, dental and vision insurance
Home Office Setup reimbursement
Flexible Spending Accounts
Monthly Connectivity reimbursement
Employee Assistance Program (EAP)
Short- and Long-term Disability Insurance
Life & Accident Insurance
401(k) Retirement Savings Plan (with employer match)
Flexible paid time off + 11 paid holidays
Paid leave programs, including parental, pregnancy health, medical and bereavement leave
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
cloud architectureAWSAzureGCPNIST 800-53NIST 800-63FISMADFARSDISA CC SRGDISA STIGs