Careers

Join our team of high performers seeking to change the status quo.

 
 
 
Job Listings
Share with friends or Subscribe!

Current job opportunities are posted here as they become available.

 
 
 

 

 
 
 
 
 
 
 

Cloud Security Architect / Engineer

Location:
Job ID: 175
Clearance Type: Public Trust - T4
Employee Type : Regular Full Time
Citizenship: US Citizen Only

Triumph Enterprises is building the team for a Department of Veterans Affairs Office of Information and Technology / Office of Information Security (OIT/OIS) program covering enterprise cybersecurity architecture and engineering. We are seeking Cloud Security Architects / Engineers to carry the core engineering load of the effort.

Program: VA Cybersecurity Architecture and Engineering Services (COSE)
Location: Washington, DC (Remote) | Full-Time, Exempt | Contingent upon contract award

This is the largest engineering role on the program. You will own secure baseline configuration management as a sustained production discipline, work alongside the Chief Security Architect-Engineer on architecture reviews and threat modeling, and drive cybersecurity tool engineering and rationalization across the enterprise. The work runs on a weekly delivery rhythm that does not slip.

RESPONSIBILITIES

- Own secure enterprise baseline configuration management, producing Security Baseline Configuration and Assessment Reports every Friday.
- Conduct security architecture reviews, threat modeling, and security standards and requirements development alongside the Technical Lead.
- Perform secure engineering design and assessment, producing Security Engineering Consideration Plans and Security Requirements Needs Documents.
- Lead cybersecurity tool engineering and management, including the Tool Rationalization and Capability Coverage Report, the Cybersecurity Tool Strategic Roadmap, and the annual Tool Rationalization Decision Matrix.
- Support optimization and integration of enterprise security data and telemetry environments, including CDM/BETSIE data quality and integration work.
- Build automation that carries repetitive evidence collection, so engineering hours go to judgment rather than gathering.

REQUIRED QUALIFICATIONS

- Minimum 10 years of information security experience, of which at least 5 years are cybersecurity and cloud security experience at a large Government agency similar in size and scope to VA, DoD, GSA, or IRS. This is a firm requirement.
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Information Assurance, Information Security, Information Resource Management, Business Administration, Business Management, or a related field.
- Expertise integrating cybersecurity architecture and engineering requirements and authorizations (FedRAMP / RMF) into systems and applications.
- Expertise in IT and cloud security architecture design, security engineering, development, systems engineering, and implementation efforts.
- Expertise in cloud solutions in federal and/or commercial industry.
- Expertise with Federal Assessment and Authorization and Authority to Operate (ATO) activities.
- Expertise with security compliance requirements and regulatory standards, including NIST, FISMA, FedRAMP, CIS Controls, and HIPAA.
- Demonstrated ability to sustain a weekly deliverable cadence in a federal production environment.

CERTIFICATION (REQUIRED)

One or more of the following: Information Assurance Technician (IAT) III, Information Assurance Management (IAM) III, or Information Assurance System Architect and Engineer (IASAE) III. Commonly satisfied by CISSP, CASP+, CCSP, or CISM. Certification is verified before an offer is extended.

SUITABILITY

This position requires a Tier 4 / High Risk Public Trust background investigation. A Tier 4 investigation is adjudicated for suitability and fitness and is not a security clearance. Candidates must be U.S. citizens and able to obtain and maintain the investigation, VA systems access, and PIV credentialing. No work may begin until an interim determination is received.

PREFERRED

- FedRAMP authorization experience, on either the agency or the cloud service provider side.
- Continuous Diagnostics and Mitigation (CDM) program experience.
- Infrastructure-as-code and policy-as-code practice.
- Experience rationalizing and retiring redundant security tooling, not only adding to a stack.
- Prior VA program experience, particularly within OIT or OIS.

ADDITIONAL INFORMATION

Travel is expected to be 0-10%. This position is contingent upon contract award.

Triumph Enterprises, Inc. is an SBA-certified Service-Disabled Veteran-Owned Small Business and an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to any characteristic protected by law.

 

 
 
 
 
 
 
 

 

 
 
 
 
 
 
 

Applicant Tracking System Powered by ClearCompany HRM Applicant Tracking System