Security Architect
Listed on 2026-08-07
-
IT/Tech
Cybersecurity, Systems Engineer, Cloud Computing: Infrastructure & Operations, Information Security & Data Protection
Security Architect
*** As required by our governmental client, this position requires being a U.S. Citizen AND an active TS/SCI clearance***
As our Security Architect, you'll guide the design and implementation of secure solutions and services in the cloud, driving the configuration of cloud-based security capabilities that reduce risk to an acceptable level. You'll make sure stakeholder security requirements are addressed in every aspect of the enterprise architecture - from reference models to segment and cloud solution architectures - and serve as the Information Assurance (IA) authority the program leans on for architecture policies, procedures, and ATO support.
While this role isn't Salesforce development, the platform you'll be securing includes Salesforce, so experience securing Salesforce or similar SaaS/PaaS environments is a strong plus.
Estimated Starting Salary Range for Security Architect $,000
Pay commensurate with experience.
Full time benefits include Medical, Dental, Vision, 401K, and other possible benefits as provided. Benefits are subject to change with or without notice.
Security ArchitectResponsibilities Include:
Guide the design and implementation of secure solutions and services within the cloud.
Drive the successful configuration and implementation of cloud-based security solutions to reduce risk to an acceptable level.
Ensure that stakeholder security requirements necessary to protect the organization's mission and business processes are adequately addressed in all aspects of enterprise architecture, including reference models, segment and cloud solution architectures, and the resulting systems supporting those missions and business processes.
Serve as an Information Assurance (IA) Subject Matter Expert (SME) with regards to IA Architecture policies and procedures.
Provide IA Management support to Program Management Offices (PMO) for emerging information systems through the acquisition lifecycle and, where applicable, into sustainment.
Provide technical support and guidance to facilitate the identification and integration of IA controls at the onset of the acquisition lifecycle for emerging cloud capabilities.
Serve as a principal liaison for Enterprise-level boundary defense initiatives to ensure consistent and sufficient identification and implementation of applicable IA controls in concert with the agency IA and cloud architecture and National Institute of Standards and Technology (NIST) security guidelines.
Provide oversight for the design and implementation of Enterprise-level IA solutions, providing standards for access control capabilities across the Enterprise.
Support Assessment and Authorization (A&A/ATO) activities, including control selection and implementation, security artifacts, POA&M management, and coordination with assessors and Authorizing Officials.
Partner with platform and development teams (including Salesforce) to embed security controls into platform configuration, integrations, and CI/CD pipelines.
Bachelor's degree and seven (7) years of experience in security / ATO (Assessment and Authorization) work.
An emerging authority who applies extensive technical experience, develops technical solutions to complex problems, and exercises considerable latitude in determining objectives and approaches to assignments.
Deep working knowledge of NIST security guidance (e.g., NIST SP 800-53, Risk Management Framework) and federal ATO processes.
Experience architecting security for cloud environments (e.g., AWS/AWS Gov Cloud, Azure Government) and FedRAMP-aligned platforms.
Experience securing SaaS/PaaS platforms; familiarity with the Salesforce security model (profiles/permission sets, sharing, Salesforce Shield, event monitoring) is a strong plus.
Strong communication skills, with the ability to translate security requirements for PMOs, engineers, and non-technical stakeholders.
Certifications such as CISSP, CISSP-ISSAP, CCSP, or CISM are preferred.
Must be a U.S. Citizen and hold an active TS/SCI clearance.
Must pass pre-employment qualifications of Cherokee Federal.
HESFP, LLC is a part of Cherokee Federal - the division of tribally owned federal contracting companies owned by Cherokee Nation Businesses. As a trusted partner for more than 60 federal clients, Cherokee Federal LLCs are focused on building a brighter future, solving complex challenges, and serving the government's mission with compassion and heart. To learn more about HESFP
, visit
Cherokee Federal is a military friendly employer. Veterans and active military transitioning to civilian status are encouraged to apply.
Similar searchable job titles:Security Architect
Cloud Security Architect
Information Assurance (IA) Architect
Cybersecurity Architect
ATO / RMF Security Lead
ATO
RMF
NIST 800-53
FedRAMP
TS/SCI
Legal Disclaimer: All qualified applicants will receive consideration for employment without…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).