Cloud Security Architect
Listed on 2026-08-05
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Cloud Computing: Infrastructure & Operations
Full time | Genesis Consulting Partners ,LLC | United States
Genesis Consulting is seeking an experienced Cloud Security Architect to support the GSA GO.gov travel modernization program by leading the design, assessment, and implementation of secure cloud architectures that comply with Federal security and risk management requirements. This role is responsible for ensuring cloud-hosted Travel & Expense solutions, integrations, and supporting services meet FedRAMP, FISMA, NIST, and GSA security standards while enabling secure, scalable, and resilient enterprise services.
The ideal candidate has extensive experience with AWS cloud security, FedRAMP/FISMA authorizations, ATO processes, Dev Sec Ops , and cloud architecture in Federal environments. Experience securing SAP Concur, middleware platforms, identity management solutions, and enterprise SaaS integrations is highly desirable. The candidate should also have experience collaborating with executive stakeholders, security teams, cloud service providers, and implementation partners throughout the authorization lifecycle.
This profile reflects extensive experience leading FedRAMP sponsor ships, GSA security engineering, cloud architecture reviews, and securing GO.gov and SAP Concur integrations.
Skills:
- Lead the cloud security architecture for the GSA GO.gov program, ensuring compliance with Federal cybersecurity requirements.
- Design and review secure cloud architectures supporting SAP Concur, middleware, identity management, financial systems, and enterprise SaaS solutions.
- Lead security assessments, architecture reviews, and technical evaluations supporting Authority to Operate (ATO), FedRAMP sponsorship, and FISMA compliance.
- Evaluate cloud service providers, system architectures, security controls, encryption strategies, logging, monitoring, and identity management implementations.
- Develop and review System Security Plans (SSPs), Security Assessment Plans (SAPs), security architecture documentation, and supporting authorization artifacts.
- Ensure cloud environments comply with NIST SP 800-53, NIST Risk Management Framework (RMF), FedRAMP, and agency-specific security policies.
- Partner with architects, developers, Dev Sec Ops engineers, and integration teams to embed security throughout the system development lifecycle.
- Support Continuous Monitoring (Con Mon), POA&M management, major change reviews, and security assessments.
- Review API security, middleware architectures, data protection controls, encryption, and secure integration patterns.
- Implement security automation and Infrastructure-as-Code (IaC) best practices using cloud-native services and Dev Sec Ops tooling.
- Provide technical guidance to executive leadership, ISSOs, security assessors, and program stakeholders regarding security risks and mitigation strategies.
- Participate in security audits, Independent Verification & Validation (IV&V), vulnerability assessments, and penetration testing activities.
- 10+ years of experience in cloud security architecture, cybersecurity engineering, or enterprise security.
- 5+ years supporting Federal cloud security initiatives within FedRAMP and FISMA environments.
- Experience designing and securing AWS cloud environments.
- Experience leading security architecture reviews, risk assessments, and ATO activities.
- Strong knowledge of NIST SP 800-53, RMF, FedRAMP, FISMA, and Continuous Monitoring (Con Mon).
- Experience developing or reviewing security documentation, including SSPs, SAPs, POA&Ms, and security engineering artifacts.
- Experience working with cloud-native security controls, encryption, identity management, logging, and monitoring.
- Excellent written and verbal communication skills with the ability to present technical concepts to executive leadership.
- Experience supporting GSA, GO.gov, or other large Federal modernization initiatives.
- Experience securing SAP Concur or other enterprise SaaS platforms.
- Experience reviewing security architectures for Mule Soft, Keycloak, Snowflake, API Gateway, or enterprise integration platforms.
- Experience implementing Dev Sec Ops practices and security automation.
- Familiarity with AI/LLM security, secure software development, and cloud-native application security.
- Bachelor’s Degree in Cybersecurity, Computer Science, Information Systems, Engineering, or another related field.
- ISSO / ISSM Security Certification
- Must be a US Citizen
- Must be able to obtain a Public Trust Clearance
- Must have a clean record and pass Criminal Background Check
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).