Lead Solutions & Security Architect
US Remote
Overview
Din Source is seeking a Lead Solutions & Security Architect to guide both the technical and cybersecurity architecture of the Defense Retired & Annuitant Pay System Modernization (DRAS-M). This role is pivotal in designing secure, scalable, and compliant system architecture while also leading the risk management, Zero Trust implementation, and compliance strategy needed to support ATO and FISMA readiness. The ideal candidate blends deep technical expertise in cloud-native architecture with authoritative knowledge of DoD cybersecurity frameworks and secure software development practices.
Responsibilities
- Lead end-to-end technical architecture for the DRAS-M platform, including application, data, API, and integration layers across the IL5 cloud environment
- Define and refine system blueprints aligned with modular microservices, the Strangler Pattern, and Oracle-backed operational data store design to support consolidation of eight disparate legacy subsystems
- Drive Zero Trust Architecture implementation including Identity, Credential, and Access Management (ICAM), role-based access control, encryption, and network segmentation
- Guide Agile development teams on technical direction, enforce DevSecOps controls, and ensure alignment with containerized delivery in GitLab CI / CD pipelines
Technical Responsibilities
Design secure, scalable, and compliant system architecture that meets the requirements for modernizing DRAS to serve 2.9 million military retirees and beneficiariesImplement cloud-native enterprise architecture solutions using Microsoft Azure and service-oriented design principlesOversee RMF and FISMA compliance efforts including generation and review of the System Security Plan (SSP), Business Impact Analysis (BIA), Contingency Plan (ISCP), and POA&MsConduct architecture and security risk assessments, design mitigation strategies, and lead security reviews during sprint closeoutsInterface with DFAS Cybersecurity teams, DISA, and system owners to support ATO submission and ongoing continuous monitoringOversee vulnerability management across development and production environments using Fortify, WebInspect, ACAS, and other approved toolsCollaborate with cross-functional teams including product owners, infrastructure teams, and application developers to validate architecture decisions that meet performance, scalability, and auditability requirementsOther duties as assigned.Qualifications
Education & Experience
Bachelor's degree in computer science, Information Systems, Cybersecurity, Engineering, or related technical field (Masters preferred)9+ years of experience in enterprise solution design and architecture5+ years of experience in cybersecurity leadership rolesDoD-approved 8140 / 8570 CISSP / IA System Architecture & Engineering baseline cybersecurity certificationPublic Trust / IT II Security clearance eligibility. Must be a US citizen.Technical Skills
Cloud & Enterprise Architecture
Expert-level proficiency in cloud-native enterprise architecture, with experience in major cloud platforms (AWS, Azure, GCP)Advanced understanding of service-oriented design and microservices architectureExperience with containerization and cloud-agnostic deployment strategiesProficiency in infrastructure-as-code tools such as TerraformSecurity & Compliance
Advanced understanding of Zero Trust Architecture principles and implementationExpert knowledge of NIST SP 800-53, 800-207, 800-218, and Risk Management Framework (RMF)Experience with FedRAMP, FISMA, and DoD cybersecurity directives including DoDI 8510.01, 8570.01-MWorking knowledge of ATO documentation, eMASS, audit logging, and system boundary definitionDevelopment & Integration
Proficiency in architecture tools such as CAST ImagingExperience with CI / CD security integration using tools like Fortify and GitLabFamiliarity with DevSecOps practices and automated security controlsUnderstanding of API design and integration patternsData Architecture
Familiarity with data architecture best practices and Oracle database systemsKnowledge of SFIS / SLOA compliance requirementsExperience with encryption at rest and in transit implementationUnderstanding of data retention policies per NARA requirementsSoft Skills
Strong leadership abilities with experience guiding technical teams and architecture decisionsExcellent communication skills for interfacing with government stakeholders, cybersecurity teams, and technical staffAbility to work effectively in fast-paced Agile environments while maintaining security and compliance standardsStrong analytical and problem-solving skills for complex enterprise architecture challengesAdaptability to evolving security requirements and emerging technologies in government environmentsPreferred Qualifications
Professional certifications such as CCSP, AWS / Azure Solutions Architect, and DoD 8140 / 8570.01 IASAE Level II or CSSLP Infrastructure Support baseline certificationAWS or Azure security-related certifications highly desirable (e.g., AWS Certified Security - Specialty, Azure Security Engineer Associate)Experience with DFAS systems or DoD financial management environmentsKnowledge of government pay systems and financial regulationsExperience with Strangler Pattern implementation for legacy system modernizationFamiliarity with Oracle database architecture and optimizationExperience working with DISA, DFAS Cybersecurity teams, or similar government cybersecurity organizationsKnowledge of continuous monitoring tools and vulnerability management in government environmentsExperience with GitLab CI / CD pipelines and automated security testing integrationUnderstanding of federal audit requirements and compliance frameworksExperience leading ATO processes and security documentation developmentEqual Opportunity Employer
Equal Opportunity Employer, including disability / protected veterans
#J-18808-Ljbffr