Cloud Security Architect
Washington D.C., DC - USA
Job Summary
Job Title: Cloud Security Architect
Job Type:
Full-Time
Job Location:
Washington DC (remote)
Job Summary:
Genesis Consulting is seeking an experienced Cloud Security Architect to support the GSA travel modernization program by leading the design assessment and implementation of secure cloud architectures that comply with Federal security and risk management requirements. This role is responsible for ensuring cloud-hosted Travel & Expense solutions integrations and supporting services meet FedRAMP FISMA NIST and GSA security standards while enabling secure scalable and resilient enterprise services.
The ideal candidate has extensive experience with AWS cloud security FedRAMP/FISMA authorizations ATO processes DevSecOps and cloud architecture in Federal environments. Experience securing SAP Concur middleware platforms identity management solutions and enterprise SaaS integrations is highly desirable. The candidate should also have experience collaborating with executive stakeholders security teams cloud service providers and implementation partners throughout the authorization lifecycle. This profile reflects extensive experience leading FedRAMP sponsorships GSA security engineering cloud architecture reviews and securing and SAP Concur integrations.
Duties Responsibilities & Skills:
Lead the cloud security architecture for the GSA program ensuring compliance with Federal cybersecurity requirements.
Design and review secure cloud architectures supporting SAP Concur middleware identity management financial systems and enterprise SaaS solutions.
Lead security assessments architecture reviews and technical evaluations supporting Authority to Operate (ATO) FedRAMP sponsorship and FISMA compliance.
Evaluate cloud service providers system architectures security controls encryption strategies logging monitoring and identity management implementations.
Develop and review System Security Plans (SSPs) Security Assessment Plans (SAPs) security architecture documentation and supporting authorization artifacts.
Ensure cloud environments comply with NIST SP 800-53 NIST Risk Management Framework (RMF) FedRAMP and agency-specific security policies.
Partner with architects developers DevSecOps engineers and integration teams to embed security throughout the system development lifecycle.
Support Continuous Monitoring (ConMon) POA&M management major change reviews and security assessments.
Review API security middleware architectures data protection controls encryption and secure integration patterns.
Implement security automation and Infrastructure-as-Code (IaC) best practices using cloud-native services and DevSecOps tooling.
Provide technical guidance to executive leadership ISSOs security assessors and program stakeholders regarding security risks and mitigation strategies.
Participate in security audits Independent Verification & Validation (IV&V) vulnerability assessments and penetration testing activities.
Requirements
10 years of experience in cloud security architecture cybersecurity engineering or enterprise security.
5 years supporting Federal cloud security initiatives within FedRAMP and FISMA environments.
Experience designing and securing AWS cloud environments.
Experience leading security architecture reviews risk assessments and ATO activities.
Strong knowledge of NIST SP 800-53 RMF FedRAMP FISMA and Continuous Monitoring (ConMon).
Experience developing or reviewing security documentation including SSPs SAPs POA&Ms and security engineering artifacts.
Experience working with cloud-native security controls encryption identity management logging and monitoring.
Excellent written and verbal communication skills with the ability to present technical concepts to executive leadership.
Preferred Qualifications:
Experience supporting GSA or other large Federal modernization initiatives.
Experience securing SAP Concur or other enterprise SaaS platforms.
Experience reviewing security architectures for MuleSoft Keycloak Snowflake API Gateway or enterprise integration platforms.
Experience implementing DevSecOps practices and security automation.
Familiarity with AI/LLM security secure software development and cloud-native application security.
Minimum Education:
Bachelors Degree in Cybersecurity Computer Science Information Systems Engineering or another related field.
Required Certifications:
ISSO / ISSM Security Certification
Other:
Must be a US Citizen
Must be able to obtain a Public Trust Clearance
Must have a clean record and pass Criminal Background Check
Required Skills:
10 years of experience in cloud security architecture cybersecurity engineering or enterprise security. 5 years supporting Federal cloud security initiatives within FedRAMP and FISMA environments. Experience designing and securing AWS cloud environments. Experience leading security architecture reviews risk assessments and ATO activities. Strong knowledge of NIST SP 800-53 RMF FedRAMP FISMA and Continuous Monitoring (ConMon). Experience developing or reviewing security documentation including SSPs SAPs POA&Ms and security engineering artifacts. Experience working with cloud-native security controls encryption identity management logging and monitoring. Excellent written and verbal communication skills with the ability to present technical concepts to executive leadership.