ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.
Lead Security Architect
Location
United States
Posted
14 days ago
Salary
Not specified
No structured requirement data.
Job Description
Role Description
We are seeking a Lead Security Architect who possesses deep technical mastery in designing resilient, enterprise-grade security frameworks. You will serve as the strategic visionary and technical anchor, ensuring our mission-critical systems are inherently secure by design and aligned with evolving federal defense standards. This role will bridge the gap between complex engineering requirements and executive risk management, orchestrating the transition to a robust Zero Trust environment.
- Lead the design and evaluation of enterprise security architectures, ensuring all systems align with Zero Trust Architecture (ZTA) principles and organizational cybersecurity guidelines.
- Serve as the primary technical liaison between enterprise architects and systems security engineers to ensure security controls are correctly allocated and implemented.
- Convert complex operational needs and stakeholder security interests into detailed technical requirements and functional specifications.
- Provide critical input to the Risk Management Framework (RMF) process, including the development of system life-cycle support plans and operational procedures.
- Manage security requirements throughout the acquisition life cycle, from drafting statements of work to evaluating vendor-proposed security designs for adequacy.
- Perform regular security reviews and design modeling to identify architecture gaps, developing comprehensive risk management plans to address vulnerabilities.
- Categorize systems and define clear security boundaries, documenting the protection needs for information systems and networks.
- Advise senior leadership and authorized officials on design concepts, project costs and the potential adverse effects of identified vulnerabilities.
Qualifications
- 10+ years of professional experience in cybersecurity, including 5+ years in security architecture or a senior technical role.
- One or more of the following certifications: (ISC)2 Certified Information Security Professional (CISSP), GIAC Security Enterprise Architect (GSEA) or GIAC Defensible Security Architecture (GDSA).
- Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
- Demonstrated experience architecting secure enterprise systems using Zero Trust Architecture (ZTA) principles.
- Applicants must be a U.S. citizen and eligible to obtain and maintain a security clearance, in compliance with federal contract requirements.
Requirements
- Deep proficiency in describing and documenting IT architectures using frameworks such as TOGAF, DoDAF or FEAF, with a focus on integrating security into the full system development life cycle.
- Mastery of Zero Trust Architecture (ZTA) principles, including identity management (PKI, Oauth, SAML), micro-segmentation and secure cloud/hybrid IT delivery models like DevOps and Agile.
- Comprehensive knowledge of NIST 800-series, FedRAMP and the Risk Management Framework (RMF) to ensure systems meet stringent federal and defense cybersecurity standards.
- Technical expertise in network security (TCP/IP, VPNs, firewalls), encryption algorithms and the ability to design countermeasures against complex cyber threats and vulnerabilities.
- Ability to translate operational requirements into technical protection needs and effectively communicate risk and design concepts to both technical experts and executive stakeholders.
Benefits
- 144 hours of PTO
- 11 holidays
- 85% of insurance premium covered
- 401k
- Continued education, certifications maintenance and reimbursement
- More benefits available
Company Description
ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data.
We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.
Job Requirements
- 10+ years of professional experience in cybersecurity, including 5+ years in security architecture or a senior technical role.
- One or more of the following certifications: (ISC)2 Certified Information Security Professional (CISSP), GIAC Security Enterprise Architect (GSEA) or GIAC Defensible Security Architecture (GDSA).
- Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
- Demonstrated experience architecting secure enterprise systems using Zero Trust Architecture (ZTA) principles.
- Applicants must be a U.S. citizen and eligible to obtain and maintain a security clearance, in compliance with federal contract requirements.
- Deep proficiency in describing and documenting IT architectures using frameworks such as TOGAF, DoDAF or FEAF, with a focus on integrating security into the full system development life cycle.
- Mastery of Zero Trust Architecture (ZTA) principles, including identity management (PKI, Oauth, SAML), micro-segmentation and secure cloud/hybrid IT delivery models like DevOps and Agile.
- Comprehensive knowledge of NIST 800-series, FedRAMP and the Risk Management Framework (RMF) to ensure systems meet stringent federal and defense cybersecurity standards.
- Technical expertise in network security (TCP/IP, VPNs, firewalls), encryption algorithms and the ability to design countermeasures against complex cyber threats and vulnerabilities.
- Ability to translate operational requirements into technical protection needs and effectively communicate risk and design concepts to both technical experts and executive stakeholders.
Benefits
- 144 hours of PTO
- 11 holidays
- 85% of insurance premium covered
- 401k
- Continued education, certifications maintenance and reimbursement
- More benefits available
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Security Engineer designing AI-powered cyber defense systems for corporate and government clients
Director, Privacy & Security, Legal
SentinelOneSecure your enterprise with the autonomous cybersecurity platform. Endpoint. Cloud. Identity. XDR. Now.
Director of Privacy & Security leading data protection and compliance at SentinelOne
Compliance SME assisting organizations with cybersecurity certification and compliance assessments
Business Security Partner, M&A
NetflixWhere you come to do the best work of your life. Follow @WeAreNetflix on Twitter, IG, Facebook, & Youtube for more
Security Partner at Netflix focusing on M&A due diligence and stakeholder management