SITEC - PKI Architect - MacDill AFB
Listed on 2025-12-26
-
IT/Tech
Cybersecurity, Systems Engineer
Required Qualifications
- Min 6 years with HS degree, 4 years with AS/AA degree, 2 years with BS/BA
- DoD 8570 IAT II Certification
- TS/SCI clearance or higher is required
- Experience with architectural design and implementation
- Strong experience deploying, managing, and administrating certificate lifecycle management tools
- Familiarity with cloud security concepts and best practices, particularly in Gov AWS and Azure environments
- Excellent problem-solving skills and ability to analyze complex systems and architectures
- Strong communication and interpersonal skills, with the ability to effectively communicate technical concepts to non-technical stakeholders
- Strong knowledge of government security requirements and compliance standards.
- Exceptional troubleshooting and problem-solving skills, with experience in performing root cause analysis
- Experience in programming languages such as Java, Python, or C++ is advantageous, and familiarity with cloud-based PKI solutions and their integration
- Knowledge of Zero Trust principles, frameworks, and implementation strategies
- Knowledge of Agile, ITSM, Dev Sec Ops , and change management processes
- Knowledge of modern IT infrastructure and emerging technologies
- Experience in writing technical documentation
Peraton requires Systems Architects to support the Special Operation Command Information Technology Enterprise Contract (SITEC) – 3 EOM. This position islocatedat
MacDill AFBin Florida.
The purpose of the Special Operations Forces Information Technology Enterprise Contract (SITEC) 3 Enterprise Operations and Maintenance (EOM) Task Order (TO) is to provide USSOCOM, its Component Commands, its Theater Special Operations Commands (TSOCs), and its deployed forces with Operations and Maintenance (O&M) services to maintain Network Operations (Net Ops); maintain systems and network infrastructure; provide end user and common device support;
provide configuration, change, license, and asset management; conduct training, and perform Install, Move, Add, Change (IMACs) services. The responsibilities and tasks associated with each requirement play a pivotal role to USSOCOM, the CIO/J6 organization, and ultimately the end-user who operate around the globe 24x7x365.
SOF Integration Facility team is seeking a Security Architect to strengthen USSOCOM’s security posture by focusing on secure design reviews, threat modeling, and vulnerability remediation. This role is integral to ensuring our enterprise systems meet the highest security standards. The ideal candidate will be highly skilled in identifying, analyzing, and mitigating security risks, as well as collaborating with development teams to remediate vulnerabilities in design and code effectively.
Additionally, the position involves creating secure reference architectures informed by design reviews and industry best practices. Your expertise will help us achieve excellence in supporting the warfighter and enhancing national security.
- Design, deploy, and manage highly available PKI solutions ensuring secure and resilient operations across the organization, and establish integration of PKI with enterprise applications and systems to ensure secure communication and data protection
- Utilize and manage PKI tools such as Microsoft Active Directory Certificate Services, OpenSSL, Hashi Corp Vault, and AWS Certificate Manager for key management and distribution, and configure, deploy, and manage Hardware Security Modules (HSMs) to enhance the security of key storage and operations
- Develop and implement strategies and processes for effective key lifecycle management including creation, distribution, rotation, renewal, and revocation, and integrate PKI with Registration Authorities (RA) and Certificate Authorities (CA) to streamline key issuance and management processes
- Define target state architecture and target operating models for PKI infrastructure, ensuring alignment with organizational security strategies, and collaborate with cross-functional teams to support cryptographic protocols and security initiatives
- Monitor PKI infrastructure for security threats…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).