Logo
rockITdata

Security Solutions Architect

rockITdata, Washington, District of Columbia, us, 20022


rockITdata, a veteran, minority, and woman-owned small business certified by the NWBOC, is a full-service consulting provider that specializes in providing management and IT services. We help companies build efficiencies, decrease cost, and drive better outcomes by leveraging industry-leading cloud-based artificial intelligence and machine learning technologies.We bring four distinct offerings to Commercial; Federal; and State, Local, and Education clients:Consulting Services: Our strategy, management, and IT advisors bring deep industry and domain expertise to help clients empower their workforce and build improvement-capable organizations.

Application Development and Sustainment: Our technologists define, design, prototype, and continuously improve digital solutions to meet clients’ needs and enhance customer experience.

Mission Support: We provide high-quality staffing solutions to help our clients meet their mission, reduce operating costs, and improve operations.

Contact Center Solutions: Fueled by cloud-based artificial intelligence and machine learning, we implement next-generation contact center solutions, purpose-built for each client. Our contact center solutions range from current state assessments, roadmap development, technology implementation and sustainment, and full outsourced operations.

Job DescriptionrockITdata seeks a Security Solutions Architect for a project in Washington, DC.Key ResponsibilitiesPlan, design, and implement secure cloud strategies and policies that meet client, program, and federal guidelines.

Interface with clients, stakeholders, and project leads to overlay and ensure security/compliance requirements are built alongside functional requirements.

Create, contribute, and maintain secure design patterns for existing and future projects.

Manage several simultaneous projects from conception through implementation.

Expertise in threat modeling and ability to articulate architectural and technology decisions rationale through compliance and risk-based assessments.

Interface with multiple teams to identify, correct, and implement compensating controls within focus areas of the enterprise.

Align business objectives to security and compliance requirements across multiple internal and external teams.

Utilize 7+ years of experience in creating secure cloud environments, 3+ years in defending enterprise environments, and 2+ years in threat modeling to guide decision-making processes.

Evaluate new technologies and recommend those security solutions that align with business needs.

Work independently with minimal supervision, demonstrating a self-starter attitude.

Mentor and train other members on the team.

Required QualificationsBS or MS in Computer Science, Computer Engineering, Information Security, or related field.

Strong understanding of IaaS, PaaS, SaaS.

Strong knowledge of security frameworks such as NIST 800-53, ISO 27001, and CIS Controls.

Strong knowledge of cyber security principles, technologies, and best practices.

7+ years of experience in creating secure cloud environments following federal standards across multiple cloud service providers (AWS, Azure, GCP).

3+ years of experience defending enterprise environments.

Expertise in threat modeling and risk assessment methodologies.

Strong understanding of compliance frameworks and ability to make decisions based on both compliance and risk considerations.

Excellent communication skills to interface with multiple teams, stakeholders, and senior leadership.

Ability to serve as a security subject matter expert who can explain complex topics to both technical and non-technical stakeholders.

High-level scripting language (Python, JavaScript, Go, Java).

Self-starter with the ability to work independently and take ownership of projects.

Strong understanding of the NIST 800-53 framework and control families.

Preferred QualificationsCertifications such as Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), or Certified Information Security Manager (CISM).

Experience with a variety of cloud service providers (e.g., AWS, Azure, Google Cloud Platform) and expert with industry-specific compliance requirements.

Knowledge of emerging cybersecurity trends and technologies.

#LIremote

#J-18808-Ljbffr