Senior Cyber Tools Architect/Engineer
Listed on 2026-07-25
-
IT/Tech
Cybersecurity, Systems Engineer, Network Security
ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are at the top of veteran employer and Certified Great Place to Work
ASRC Federal is actively hiring a Senior Cybersecurity Tools Architect/Engineer in support of our Defense Counterintelligence Security Agency (DCSA) program based out of Quantico, VA.
This is primarily a Telework position with a requirement to be onsite at least two (2) days a week or as needed at Quantico Marine Corps Base, VA.
Position DescriptionWe are seeking an exceptionally skilled and experienced Senior Cybersecurity Tools Architect/Engineer to lead our enterprise security architecture and tooling initiatives. The ideal candidate will serve as the technical authority for cybersecurity tools, platforms, and frameworks, responsible for defining, designing, and enhancing enterprise-wide security architectures that protect our organization's critical assets, data, and systems across complex, hybrid, and multi-cloud environments.
This senior-level role requires deep expertise in selecting, integrating, and optimizing advanced cybersecurity tools including SIEM/SOAR platforms, firewalls, endpoint detection and response (EDR) solutions, and other security technologies. The Senior Cybersecurity Tools Architect/Engineer will design and implement comprehensive incident response and threat analysis architectures, ensure compliance with federal regulations and industry frameworks, and oversee the complete lifecycle of security systems from acquisition through modernization.
The successful candidate will partner closely with Application, Data, Infrastructure, and Security Operations teams to architect scalable, resilient security solutions that align with business objectives while maintaining the highest standards of security posture and regulatory compliance.
- Experience: Minimum of 10 years of progressive experience in cybersecurity architecture and engineering, with at least 5 years of hands‑on experience designing and implementing enterprise security tools and platforms in large‑scale, complex environments
- Security Clearance: Active Top‑Secret Clearance REQUIRED, eligible to be upgraded to TS/SCI
- Certification Requirements:
- Must meet 8570 IASAE III certification requirements at the time of hire. (e.g., CISSP‑ISSAP, CISSP‑ISSEP certification).
- Education: Bachelor's Degree in Cybersecurity, Computer Science, Information Systems Management, or a related field;
Master's Degree preferred. An equivalent combination of military service and/or at least ten (10) years of significant, relevant work experience may be considered in lieu of degree requirement.
- Security Architecture and Design:
- Deep expertise in enterprise security architecture frameworks (SABSA, TOGAF, Zachman)
- Proven experience designing and implementing Cyber Security architectures and principles
- Advanced knowledge of defense‑in‑depth strategies and layered security controls
- Experience with on‑prem and cloud solutions security architectures
- Expertise in secure network architecture, segmentation, and micro‑segmentation strategies
- Security Tools and Platforms:
- SIEM/SOAR Platforms:
Extensive experience with enterprise SIEM solutions (Splunk, IBM QRadar, Microsoft Sentinel, Log Rhythm, etc.) and SOAR platforms (Palo Alto Cortex XSOAR, Splunk Phantom, IBM Resilient) - Endpoint Security:
Deep knowledge of EDR/XDR solutions (Crowd Strike, Microsoft Defender for Endpoint, Sentinel One, Carbon Black) - Network Security:
Advanced experience with next‑generation firewalls (Palo Alto, Fortinet, Cisco Firepower), IDS/IPS, web application firewalls (WAF), and network access control (NAC) - Vulnerability Management:
Expertise with vulnerability scanning and management platforms (Tenable, Qualys, Rapid7) - Cloud Security:
Experience with cloud‑native security tools (AWS Security Hub, Azure Security Center, GCP Security Command Center) and CASB solutions - Identity and Access Management:
Strong understanding of IAM platforms, PAM solutions, and identity…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).