Skip to content

Open nowPosted 74 days ago

Senior Cyber Tools Architect/Engineer

asrcfh395 open roles

Where
Quantico, VA 22134, USA
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Cyber Tools Architect/Engineerasrcfh · Quantico, VA 22134, USA
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on asrcfh's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.4%3 days
  3. 7.8%7 days
  4. 14.3%14 days
  5. 33.7%30 days
This job: posted 74 days ago

The posting

ASRC Federal is actively hiring a Senior Cybersecurity Tools Architect/Engineer in support of our Defense Counterintelligence Security Agency (DCSA) program based out of Quantico, VA.   This is primarily a Telework position with a requirement to be onsite at least two (2) days a week or as needed at Quantico Marine Corps Base, VA.   Position Description: We are seeking an exceptionally skilled and experienced Senior Cybersecurity Tools Architect/Engineer to lead our enterprise security architecture and tooling initiatives. The ideal candidate will serve as the technical authority for cybersecurity tools, platforms, and frameworks, responsible for defining, designing, and enhancing enterprise-wide security architectures that protect our organization's critical assets, data, and systems across complex, hybrid, and multi-cloud environments. This senior-level role requires deep expertise in selecting, integrating, and optimizing advanced cybersecurity tools including SIEM/SOAR platforms, firewalls, endpoint detection and response (EDR) solutions, and other security technologies. The Senior Cybersecurity Tools Architect/Engineer will design and implement comprehensive incident response and threat analysis architectures, ensure compliance with federal regulations and industry frameworks, and oversee the complete lifecycle of security systems from acquisition through modernization. The successful candidate will partner closely with Application, Data, Infrastructure, and Security Operations teams to architect scalable, resilient security solutions that align with business objectives while maintaining the highest standards of security posture and regulatory compliance. Minimum Requirements: 

Experience: Minimum of 10 years of progressive experience in cybersecurity architecture and engineering, with at least 5 years of hands-on experience designing and implementing enterprise security tools and platforms in large-scale, complex environments Security Clearance: Active Top-Secret Clearance REQUIRED, eligible to be upgraded to TS/SCI Certification Requirements:   Must meet 8570 IASAE III certification requirements at the time of hire.  (e.g., CISSP-ISSAP, CISSP- ISSEP certification).  Education: Bachelor's Degree in Cybersecurity, Computer Science, Information Systems Management, or a related field; Master's Degree preferred. An equivalent combination of military service and/or at least ten (10) years of significant, relevant work experience may be considered in lieu of degree requirement.

  Required Technical Expertise

Security Architecture and Design:

Deep expertise in enterprise security architecture frameworks (SABSA, TOGAF, Zachman) Proven experience designing and implementing Cyber Security architectures and principles Advanced knowledge of defense-in-depth strategies and layered security controls Experience with on-prem and cloud solutions security architectures Expertise in secure network architecture, segmentation, and micro-segmentation strategies

 

Security Tools and Platforms:

SIEM/SOAR Platforms: Extensive experience with enterprise SIEM solutions (Splunk, IBM QRadar, Microsoft Sentinel, LogRhythm, etc.) and SOAR platforms (Palo Alto Cortex XSOAR, Splunk Phantom, IBM Resilient) Endpoint Security: Deep knowledge of EDR/XDR solutions (CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, Carbon Black) Network Security: Advanced experience with next-generation firewalls (Palo Alto, Fortinet, Cisco Firepower), IDS/IPS, web application firewalls (WAF), and network access control (NAC) Vulnerability Management: Expertise with vulnerability scanning and management platforms (Tenable, Qualys, Rapid7) Cloud Security: Experience with cloud-native security tools (AWS Security Hub, Azure Security Center, GCP Security Command Center) and CASB solutions Identity and Access Management: Strong understanding of IAM platforms, PAM solutions, and identity governance

 

Compliance and Risk Management:

Comprehensive understanding of federal cybersecurity frameworks and regulations:

NIST Cybersecurity Framework (CSF) NIST Risk Management Framework (RMF) and NIST 800-53 FISMA, FedRAMP, CMMC, DFARS ISO 27001/27002 DoD Security Technical Implementation Guides (STIGs)

Experience with security assessment and authorization (SA&A) processes and Authority to Operate (ATO) procedures Strong knowledge of risk assessment methodologies and tools

 

Technical Skills:

Proficiency in scripting and automation (Python, PowerShell, Bash) Experience with Infrastructure as Code (IaC) and security automation (Terraform, Ansible, CloudFormation) Strong understanding of DevSecOps principles and CI/CD security integration Knowledge of containerization and orchestration security (Docker, Kubernetes) Experience with API security and microservices architectures

  Core Job Responsibilities

Tool Integration and Platform Management

Lead the selection, evaluation, testing, and integration of enterprise security software, SIEM/SOAR platforms, firewalls, endpoint defenses, and other cybersecurity tools Design and implement comprehensive integration strategies to ensure seamless interoperability between security tools and enterprise systems Architect data flows and correlation rules across security platforms to enable effective threat detection and response Develop and maintain security tool roadmaps aligned with organizational security strategy and emerging threats Optimize security tool configurations for maximum effectiveness, performance, and cost efficiency Establish and enforce security tool governance frameworks, including change management and configuration standards

 

Framework Design and Architecture

Build comprehensive security strategies that address hybrid environments and ensure consistent security posture across platforms Develop reference architectures and design patterns for secure application deployment, data protection, and infrastructure hardening Create security architecture blueprints for emerging technologies including cloud-native applications, IoT, and edge computing Design resilient security architectures that support business continuity, disaster recovery, and high availability requirements Establish security architecture principles, standards, and guidelines that align with industry best practices and organizational objectives

 

Risk Management and Compliance

Align security system blueprints and architectures with regulatory mandates and compliance frameworks including NIST RMF, FISMA, FedRAMP, CMMC, ISO 27001, and DoD STIGs Develop and maintain a comprehensive Security Risk Management Plan to support program and mission objectives Conduct thorough security assessments, architecture reviews, and audits to identify vulnerabilities, gaps, and compliance deficiencies Lead risk assessment activities including threat modeling, vulnerability analysis, and impact assessments Implement remediation plans and compensating controls to address identified security risks and compliance gaps Prepare security authorization packages and support Authority to Operate (ATO) processes Monitor and report on security posture, risk metrics, and compliance status to senior leadership

 

Lifecycle Management

Oversee security architecture across the complete system lifecycle: acquisition, design, development, deployment, operations, and modernization phases Develop security requirements and evaluation criteria for technology acquisitions and vendor selections Plan and execute security tool upgrades, migrations, and modernization initiatives with minimal operational impact Establish decommissioning procedures that ensure secure data disposal and system retirement Manage technical debt and develop strategies for legacy system security enhancement or replacement

 

Policy, Standards, and Governance

Establish, document, and oversee the implementation of comprehensive security policies, standards, procedures, and guidelines Develop security architecture standards for cloud adoption, application development, data protection, and infrastructure deployment Create and maintain security baselines and hardening guides for operating systems, databases, applications, and network devices Define security metrics, key performance indicators (KPIs), and key risk indicators (KRIs) to measure security effectiveness Establish security architecture governance processes including design reviews, exception management, and variance tracking Ensure security policies align with federal regulations, industry frameworks, and organizational risk tolerance

 

Technical Leadership and Innovation

Serve as the subject matter expert and technical authority for cybersecurity architecture and security tools Provide advanced troubleshooting and resolution for complex security tool integration and operational issues Lead proof-of-concept (POC) initiatives to evaluate emerging security technologies and innovative solutions Research and analyze emerging threats, attack vectors, and security trends to inform architecture decisions Drive continuous improvement initiatives to enhance security posture, operational efficiency, and cost optimization Mentor and provide technical guidance to junior security architects, engineers, and analysts Present complex security architectures and recommendations to senior leadership, technical teams, and business stakeholders

 

Training and Enablement

Develop and deliver training programs on security architecture principles, security tools, and best practices Provide mentorship and career development guidance to junior team members Lead knowledge transfer sessions during tool implementations and architecture transitions Stay current with the latest security technologies, threat landscape, compliance requirements, and industry best practices through continuous learning and professional development

 

Work Environment and Physical Demands

This is primarily a Telework position with a requirement to be onsite up to two (2) days a week at Quantico Marine Corps Base, VA If alternate worksite is other than DCSA facilities or corporate office space, must have the reliable ability to communicate over voice (cell phone preferred) and stable, capable internet connection Must be able to communicate complex technical architectures, security concepts, and risk assessments to diverse audiences, including senior leadership, both verbally and in written form May require occasional travel to other DCSA locations, vendor sites, or for training purposes (estimated <10%) Must be able to work flexible hours to support critical security incidents, maintenance windows, and emergency response activities as needed Ability to participate in on-call rotation for critical security architecture support

 

Preferred Qualifications

Experience in Department of Defense (DoD) or Federal Government environments Previous experience supporting DCSA, DoD, or Intelligence Community programs Advanced knowledge of DoD cybersecurity requirements, RMF processes, and authorization procedures Experience with Continuous Diagnostics and Mitigation (CDM) program and tools Background in penetration testing, red team operations, or offensive security Experience with security orchestration, automation, and response (SOAR) development Familiarity with threat intelligence platforms and frameworks (MITRE ATT&CK, STIX/TAXII) Experience with data loss prevention (DLP) and insider threat detection solutions Knowledge of software-defined networking (SDN) and network function virtualization (NFV) security Previous experience in a leadership, principal architect, or chief architect role Published research, white papers, or presentations on cybersecurity architecture topics Active participation in cybersecurity professional organizations and communities

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against asrcfh's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on asrcfh's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    asrcfh's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.