×
Register Here to Apply for Jobs or Post Jobs. X

Enterprise Information Security Architect

Job in Virginia Beach, Virginia, 23450, USA
Listing for: Navy Exchange Service Command
Full Time position
Listed on 2026-07-23
Job specializations:
  • IT/Tech
    Cybersecurity, IT Consultant, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 80893 - 102677 USD Yearly USD 80893.00 102677.00 YEAR
Job Description & How to Apply Below
Position: ENTERPRISE INFORMATION SECURITY ARCHITECT

Job Description - ENTERPRISE INFORMATION SECURITY ARCHITECT (260002IH)

Job Number

260002IH

Organization

NEXCOMHQ Pay Range: $80,893 to $102,677 Based Upon experience

Job Summary

Serve as Information Security Architect with responsibility of developing and maintaining the enterprise architecture of NEXCOM’s Security and BC DR programs. Includes working with stakeholders both leadership and subject matter experts to build a holistic view of NEXCOM’s strategy, processes, information, and information technology assets. Coordinates the NEX business need with DOD security and business continuity requirements to form a full roadmap for the future.

Defines the configurations necessary for fail over to remote disaster recovery site.

Duties and Responsibilities
  • Responsible for the design, development, implementation, and/or integration of a DoD IA (Information Assurance) architecture, system, or system component for use within the NEXCOM enterprise.
  • Performs risk analyses for functional areas to identify points of vulnerability, single points of failure and identifies risk avoidance and mitigation strategies.
  • Advises NEXCOM on the specific data technologies that support or enhance the organization for the long-term strategic responsibilities of NEXCOM IT systems.
  • Designs, develops, reviews and implements system security measures that provide confidentiality, integrity, availability, authentication, and non-repudiation.
  • Designs, develops, reviews and implements security designs for new or existing technology system(s). Ensures that the design of hardware, operating systems, and software applications adequately address IA security requirements for the computing environment.
  • Provides system related input on IA security requirements to be included in statements of work and other procurement documents.
  • Ensures security deficiencies identified during security/certification testing have been mitigated, corrected, or a risk acceptance has been obtained by the appropriate authorized representative.
  • Ensures that the implementation of security designs properly mitigate identified threats.
  • Develops and maintains the organization’s enterprise architecture; aligns IT security strategy with NEXCOM’s business goals.
  • Ensures compliance of artifacts to NEXCOM enterprise Information Assurance and BC/DR standards.
  • Familiar with regulatory requirements such as DIACAP, PCI, PII, SOX.
  • Participates in enterprise strategy development, including environmental analysis, opportunity identification, value cases, and business innovation portfolio development regarding all areas of IT security and BC/DR functions.
  • Documents system security design features and provides input to implementation plans and standard operating procedures.
  • Conducts advanced technical research, including market research of solutions based on vendor supplied documents.
  • Based on current and future business requirements, defines configurations necessary for a disaster recovery site.
  • Installs, configures, and maintains Governance Risk and Compliance toolset.
  • Plans for future growth and resource needs by consulting with system administrators and other computing technical professionals, recommending and providing security principle guidance and direction.
  • Investigates and understands the IT threat potentials and provides insight on specific IA threat concerns to NEX components, and recommends mitigation or prevention best practices.
  • Ensures/implements the rigorous application of Information Security/Information Assurance policies, principles, and practices in the delivery of Systems, Applications and/or Services (Hardware & Software).
  • Performs other related duties as assigned.
Certifications Required
  • GIAC Security Leadership Certification (GSLC)
  • Certified Information Security Manager (CISM)
  • Certified Information Systems Security Professional (CISSP)

Preferred certification is GIAC Security Leadership Certification (GSLC).

Candidate without the required certification may be placed into this position, but must obtain the required certification within 6 months of appointment; failure to obtain this requirement will result in termination of employment.

General Experience
  • Three years experience in…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary