JobTarget Logo

Cybersecurity Architect in Washington, District of Columbia at cFocus Software Incorporated

NewJob Function: DesignEmployment Type: Full-Time
cFocus Software Incorporated
Washington, District of Columbia, 20001, United States
Posted on
New job! Apply early to increase your chances of getting hired.

Explore Related Opportunities

Job Description

Cybersecurity Architect Position: Cybersecurity Architect
Program: SBA Enterprise Cybersecurity Services (ECS)Position SummaryThe Cybersecurity Architect supports the Small Business Administration (SBA) Enterprise Cybersecurity Services (ECS) program by leading the design, integration, implementation, modernization, and governance of enterprise cybersecurity architectures and engineering initiatives.
The Cybersecurity Architect serves as a senior technical authority responsible for developing secure enterprise architecture strategies supporting on-premises, hybrid, cloud, and SaaS environments across the SBA enterprise. The role provides leadership for Zero Trust Architecture (ZTA), cybersecurity modernization, cloud security, security engineering, DevSecOps integration, identity and access management, security automation, and enterprise cyber defense initiatives aligned with federal cybersecurity mandates, NIST guidance, and SBA operational requirements.Essential Duties and Responsibilities
  • Provide senior-level enterprise cybersecurity architecture and engineering support for the SBA ECS program.
  • Develop and maintain enterprise cybersecurity architecture frameworks, roadmaps, technical standards, reference architectures, and modernization strategies.
  • Lead the design and implementation of Zero Trust Architecture (ZTA) capabilities aligned with NIST SP 800-207 and OMB M-22-09 guidance.
  • Design secure architectures for cloud, hybrid, SaaS, and on-premises environments supporting Microsoft Azure, Microsoft 365, AWS, Salesforce, and enterprise systems.
  • Develop and maintain enterprise architecture diagrams, security blueprints, data flow diagrams, trust boundaries, and technical implementation documentation.
  • Provide cybersecurity engineering expertise for SIEM, SOAR, EDR, IDS/IPS, firewalls, DLP, PKI, IAM, NAC, MFA, and cloud-native security technologies.
  • Conduct cybersecurity architecture assessments, threat modeling, risk analysis, and technology evaluations to identify gaps and recommend improvements.
  • Support enterprise security engineering and architecture integration activities for network infrastructure, applications, APIs, databases, cloud services, and enterprise platforms.
  • Develop secure design patterns and architecture guidance supporting DevSecOps, CI/CD pipelines, container security, automation, and secure software development practices.
  • Support implementation of cybersecurity controls aligned with NIST SP 800-53 Rev. 5, FISMA, FedRAMP, RMF, CISA directives, and federal cybersecurity requirements.
  • Provide architectural guidance for cybersecurity modernization initiatives including AI governance, automation, post-quantum cryptography, and cloud transformation efforts.
  • Collaborate with SOC operations, incident response, vulnerability management, and threat hunting teams to improve enterprise cyber defense capabilities.
  • Evaluate emerging cybersecurity technologies, threat intelligence, and evolving adversary tactics to enhance the SBA security posture.
  • Support enterprise-wide risk management, continuous monitoring, and system authorization activities.
  • Provide technical leadership and mentorship to cybersecurity engineers, analysts, architects, and program stakeholders.
  • Participate in architecture review boards, change management activities, and technical governance meetings.
  • Develop executive briefings, technical reports, architecture recommendations, and strategic cybersecurity implementation plans.
  • Support continuity of operations, resiliency engineering, and secure enterprise integration across geographically dispersed environments.
  • Ensure cybersecurity architectures align with SBA operational objectives, federal mandates, and enterprise technology strategies.
Minimum Qualifications
  • Active CISSP-ISSAP (Information Systems Security Architecture Professional) Certification
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Systems Engineering, Information Assurance, or related field. Relevant experience may substitute for degree requirements.
  • At least 10 years' experience designing, building, testing, and implementing security systems within an organization IT Network.
  • Should have experience with Wireless Networks, Firewalls, IDS/IPS, LAN/WAN, SIEM’s and Cloud integration strategies.
  • At least five years of experience managing a team of Security Engineers. Excellent teaching, problem solving, communication, and interpersonal skills.
  • Experience in applying risk management techniques to develop and complete risk assessments based on NIST standards to ensure system design and implementation sufficiently addresses or mitigates IA risk.
  • Ability to interact with a broad cross-section of personnel to include senior management to explain and enforce security measures to protect agency assets.
  • Demonstrated experience designing and implementing enterprise security architectures across cloud, hybrid, and on-premises environments.
  • Strong expertise in Zero Trust Architecture (ZTA), cloud security architecture, identity and access management, and enterprise security engineering.
  • Hands-on experience with Microsoft Azure, Microsoft 365, AWS, Salesforce, and enterprise cloud security technologies.
  • Experience supporting cybersecurity operations, incident response, vulnerability management, and SOC environments.
  • Strong knowledge of NIST cybersecurity frameworks, RMF, FedRAMP, FISMA, and federal cybersecurity mandates.
  • Experience designing secure enterprise network architectures, segmentation strategies, and defense-in-depth solutions.
  • Knowledge of DevSecOps, CI/CD security integration, automation, scripting, and infrastructure-as-code concepts.
  • Experience developing architecture documentation, implementation plans, technical standards, and security engineering artifacts.
  • Strong analytical, communication, technical writing, and executive briefing skills.
  • Ability to work collaboratively with executive leadership, technical teams, program managers, and federal stakeholders.
Preferred Certifications
  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • Certified Cloud Security Professional (CCSP)
  • TOGAF Enterprise Architecture Certification
  • SABSA Chartered Security Architect
  • AWS Certified Security – Specialty
  • Microsoft Certified: Cybersecurity Architect Expert
  • GIAC Security Expert (GSE)
  • GIAC Defensible Security Architecture (GDSA)
  • CompTIA CASP+

Job Location

Washington, District of Columbia, 20001, United States

Frequently asked questions about this position

Similar Jobs In Washington, District of Columbia

Urgently Hiring

Senior Red Team Cyber Operator

Oak Grove Technologies LLC
Fort Belvoir, Virginia
Hot Job

SAP S/4 HANA Business Systems Analyst

Fairfax Water
Fairfax, Virginia
New

Software License Analyst

General Dynamics Information Technology
Aldie, Virginia

Associate Security Engineer

American Association of Motor Vehicles
Arlington, Virginia

HBSS/MDE Administrator SME

JCS Solutions LLC
Fort Belvoir, Virginia

Apply NowYour application goes straight to the hiring team