ECS is seeking a Sr. Cyber Security Architect to work in our Suitland, MD office.
ECS Federal, a rapidly expanding information security and information technology company in Fairfax, VA. We are looking to hire a Senior Security Architect to support a full range of cyber security services on a long-term contract in Washington DC. The position is full time / permanent and will support a US Government civilian agency. The position is available immediately upon finding a qualified candidate with the appropriate background clearance.
Position Responsibilities :
- Conduct security analysis of reference models, segment and solution architectures, and the resulting systems supporting missions and business processes;
- Provides expert recommendations in support of 'Analysis of Alternatives' (AoA) to inform agency technology roadmap;
- Designs enterprise and systems security throughout the SDLC; translates technology and law and regulation into security designs and processes;
- Capture and develop security requirements based on information system architecture, operational environments, and type of technology
- Update the Secure Configurations Working Group (SCWG) Enterprise Secure Configuration Benchmark and Enterprise Secure Configuration Baseline to the latest version of the industry benchmark for the requested platforms;
- Provide consultation on development of the cybersecurity architecture
- Maintain an in-depth awareness of the Agency IT Enterprise Cybersecurity Architecture
- Identify opportunities for leveraging standards and cybersecurity architecture in support of the Agency Enterprise IT Architecture
- Recommend requirements and integration design of enterprise technologies in the Agency environment
- Prepare documentation on Security Architect Report consisting of SOP, Trend Analysis, Status, Metrics Report, CONOPS, Charters, and other requested documentation as identified
- Ensure that acquired or developed system(s) and architecture(s) are consistent with organization's cybersecurity architecture guidelines.
- Identify and prioritize critical business functions in collaboration with organizational stakeholders.
- Provide advice on project costs, design concepts, or design changes.
Salary Range : $160,000 - $175,000
General Description of Benefits
Strong written and verbal communication skills.Knowledge of network hardware devices and functions.Knowledge of Cloud environments and technologies such as AWS. Cloud topologies and cloud security.Knowledge of operating systems and new and emerging information technology (IT) and cybersecurity technologies.Experience working with traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]).Understanding of parallel and distributed computing concepts and remote access technology concepts.Understanding of key concepts in security management (e.g., Release Management, Patch Management).Extensive software engineering experienceKnowledge of systems testing and evaluation methods.Experience working with critical infrastructure systems with information communication technology that were designed without system security considerations.Knowledge of network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools.Knowledge of current and emerging data encryption (e.g., Column and Tablespace Encryption, file and disk encryption) security features in databases (e.g. built-in cryptographic key management features).Knowledge of N-tiered typologies (e.g. including server and client operating systems).Experience with organization's information classification programs and procedures for information compromise.Knowledge of the enterprise information technology (IT) architectural concepts and patterns (e.g., baseline, validated design, and target architectures.)Certifications / Licenses :
Bachelor's degree or higher8+ years' experience in supporting large scale security architectureCertifications addressing security and risk management, asset security, security engineering, communications and network security, identity and access management, security assessment and testing, security operations, software development security, systems security engineering, C&A / RMF, technical management, U.S. government information assurance-related policies and issuances, access control systems and methodology, communications and network security, cryptography, security architecture analysis, technology-related BCP and DRP, physical security considerationsActive Secret clearance or eligible to obtain a Secret clearance