Cybersecurity Architect

cFocus Software Incorporated

Washington, DC

JOB DETAILS
JOB TYPE
Full-time
SKILLS
Amazon Web Services (AWS), Analysis Skills, Application Programming Interface (API), Architectural Analysis, Architectural Design, Architectural Services, Artificial Intelligence (AI), Automation, Automation Systems, Blueprints, Business Administration, Business Continuity Planning (BCP), CCSP - Cisco Certified Security Professional, CISA - Certified Information Systems Auditor, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Change Management, Cloud Architecture, Cloud Computing, Communication Skills, CompTIA - Computing Technology Industry Association, Computer Science, Computer Security, Continuous Deployment/Delivery, Continuous Integration, Cryptography, Defense in Depth, Design Patterns Programming Methodologies, Develop Methodologies, Documentation Plan, Emerging Technology, Enterprise Architecture, Enterprise Protection, FISMA - Federal Information Security Management Act, Firewalls, GIAC - Global Information Assurance Certification, GSE - GIAC Security Expert, Hunting, Hybrid Cloud, ISSAP - Information Systems Security Architecture Professional, Identity Data Management, Incident Response, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Security, Interpersonal Skills, Intrusion Detection Systems, Intrusion Prevention Systems, Leadership, Local Area Network (LAN), Mentoring, Microsoft Product Family, Microsoft Windows Azure, Network Administration/Management, Network Architecture/Engineering, Network Design, Network Integration, Operational Support, Presentation/Verbal Skills, Problem Solving Skills, Project/Program Management, Public Key Infrastructure (PKI), Risk, Risk Analysis, Risk Management, Salesforce.com, Scripting (Scripting Languages), Security Architecture, Security Information and Event Management (SIEM), Small Business, Software Development, Software Engineering, Software as a Service (SaaS), Strategic Planning, Systems Engineering, TOGAF - The Open Group Architecture Framework, Team Lead/Manager, Team Player, Technical Leadership, Technical Presentation, Technical Strategy, Technical Writing, Technology Analysis, Testing, Threat Modeling, Threat and risk analysis (TRA), Training/Teaching, U.S. National Institute of Standards and Technology (NIST), Wide Area Network (WAN), Wireless Communications
LOCATION
Washington, DC
POSTED
10 days ago

Cybersecurity Architect

Position: Cybersecurity Architect
Program: SBA Enterprise Cybersecurity Services (ECS)

Position Summary

The Cybersecurity Architect supports the Small Business Administration (SBA) Enterprise Cybersecurity Services (ECS) program by leading the design, integration, implementation, modernization, and governance of enterprise cybersecurity architectures and engineering initiatives.
The Cybersecurity Architect serves as a senior technical authority responsible for developing secure enterprise architecture strategies supporting on-premises, hybrid, cloud, and SaaS environments across the SBA enterprise. The role provides leadership for Zero Trust Architecture (ZTA), cybersecurity modernization, cloud security, security engineering, DevSecOps integration, identity and access management, security automation, and enterprise cyber defense initiatives aligned with federal cybersecurity mandates, NIST guidance, and SBA operational requirements.

Essential Duties and Responsibilities

  • Provide senior-level enterprise cybersecurity architecture and engineering support for the SBA ECS program.
  • Develop and maintain enterprise cybersecurity architecture frameworks, roadmaps, technical standards, reference architectures, and modernization strategies.
  • Lead the design and implementation of Zero Trust Architecture (ZTA) capabilities aligned with NIST SP 800-207 and OMB M-22-09 guidance.
  • Design secure architectures for cloud, hybrid, SaaS, and on-premises environments supporting Microsoft Azure, Microsoft 365, AWS, Salesforce, and enterprise systems.
  • Develop and maintain enterprise architecture diagrams, security blueprints, data flow diagrams, trust boundaries, and technical implementation documentation.
  • Provide cybersecurity engineering expertise for SIEM, SOAR, EDR, IDS/IPS, firewalls, DLP, PKI, IAM, NAC, MFA, and cloud-native security technologies.
  • Conduct cybersecurity architecture assessments, threat modeling, risk analysis, and technology evaluations to identify gaps and recommend improvements.
  • Support enterprise security engineering and architecture integration activities for network infrastructure, applications, APIs, databases, cloud services, and enterprise platforms.
  • Develop secure design patterns and architecture guidance supporting DevSecOps, CI/CD pipelines, container security, automation, and secure software development practices.
  • Support implementation of cybersecurity controls aligned with NIST SP 800-53 Rev. 5, FISMA, FedRAMP, RMF, CISA directives, and federal cybersecurity requirements.
  • Provide architectural guidance for cybersecurity modernization initiatives including AI governance, automation, post-quantum cryptography, and cloud transformation efforts.
  • Collaborate with SOC operations, incident response, vulnerability management, and threat hunting teams to improve enterprise cyber defense capabilities.
  • Evaluate emerging cybersecurity technologies, threat intelligence, and evolving adversary tactics to enhance the SBA security posture.
  • Support enterprise-wide risk management, continuous monitoring, and system authorization activities.
  • Provide technical leadership and mentorship to cybersecurity engineers, analysts, architects, and program stakeholders.
  • Participate in architecture review boards, change management activities, and technical governance meetings.
  • Develop executive briefings, technical reports, architecture recommendations, and strategic cybersecurity implementation plans.
  • Support continuity of operations, resiliency engineering, and secure enterprise integration across geographically dispersed environments.
  • Ensure cybersecurity architectures align with SBA operational objectives, federal mandates, and enterprise technology strategies.

Minimum Qualifications

  • Active CISSP-ISSAP (Information Systems Security Architecture Professional) Certification
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Systems Engineering, Information Assurance, or related field. Relevant experience may substitute for degree requirements.
  • At least 10 years' experience designing, building, testing, and implementing security systems within an organization IT Network.
  • Should have experience with Wireless Networks, Firewalls, IDS/IPS, LAN/WAN, SIEM’s and Cloud integration strategies.
  • At least five years of experience managing a team of Security Engineers. Excellent teaching, problem solving, communication, and interpersonal skills.
  • Experience in applying risk management techniques to develop and complete risk assessments based on NIST standards to ensure system design and implementation sufficiently addresses or mitigates IA risk.
  • Ability to interact with a broad cross-section of personnel to include senior management to explain and enforce security measures to protect agency assets.
  • Demonstrated experience designing and implementing enterprise security architectures across cloud, hybrid, and on-premises environments.
  • Strong expertise in Zero Trust Architecture (ZTA), cloud security architecture, identity and access management, and enterprise security engineering.
  • Hands-on experience with Microsoft Azure, Microsoft 365, AWS, Salesforce, and enterprise cloud security technologies.
  • Experience supporting cybersecurity operations, incident response, vulnerability management, and SOC environments.
  • Strong knowledge of NIST cybersecurity frameworks, RMF, FedRAMP, FISMA, and federal cybersecurity mandates.
  • Experience designing secure enterprise network architectures, segmentation strategies, and defense-in-depth solutions.
  • Knowledge of DevSecOps, CI/CD security integration, automation, scripting, and infrastructure-as-code concepts.
  • Experience developing architecture documentation, implementation plans, technical standards, and security engineering artifacts.
  • Strong analytical, communication, technical writing, and executive briefing skills.
  • Ability to work collaboratively with executive leadership, technical teams, program managers, and federal stakeholders.

Preferred Certifications

  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • Certified Cloud Security Professional (CCSP)
  • TOGAF Enterprise Architecture Certification
  • SABSA Chartered Security Architect
  • AWS Certified Security – Specialty
  • Microsoft Certified: Cybersecurity Architect Expert
  • GIAC Security Expert (GSE)
  • GIAC Defensible Security Architecture (GDSA)
  • CompTIA CASP+

Powered by JazzHR

About the Company

c

cFocus Software Incorporated