Enter a job title or keyword

Cybersecurity Architect


Job Location:

Washington, DC - USA

Monthly Salary: Not provided by the employer
Posted: 17 July 2026 (30+ days ago)
Application Deadline: 14 October 2026
Vacancies: 1 Vacancy

Job Summary

Koniag Data Solutions LLC a Koniag Government Services company is seeking a Cybersecurity Architect to support KDS and our government customer in Washington DC. This position requires the candidate to be able to obtain a Public offer competitive compensation and an extraordinary benefits package including health dental and vision insurance 401K with company matching flexible spending accounts paid holidays three weeks paid time off and Data Solutions a Koniag Government Services company is seeking an experienced Cybersecurity Architect to support the U.S. Small Business Administration (SBA). The ideal candidate is a highly skilled cybersecurity professional with extensive experience in designing developing and implementing enterprise-level security architectures for complex federal IT environments. This individual will serve as a strategic and technical advisor to SBA stakeholders providing expert guidance on cybersecurity architecture risk management and the integration of security controls across SBAs technology landscape to protect the agencys systems data and mission-critical operations. The Cybersecurity Architect will serve as the senior technical expert responsible for designing developing and overseeing the implementation of comprehensive cybersecurity architectures and solutions that protect SBAs systems networks applications and data assets. This individual will provide authoritative architectural guidance across SBAs technology portfolio ensuring security is embedded into every layer of the agencys IT environment and that SBAs cybersecurity architecture evolves in response to the changing threat landscape emerging technologies and federal cybersecurity policy requirements. Principal responsibilities will include but are not limited to:Develop maintain and continuously evolve SBAs enterprise cybersecurity architecture ensuring alignment with federal cybersecurity policies industry best practices and SBAs mission requirements and providing authoritative architectural direction across all components of SBAs IT and oversee the implementation of security architectures for on-premises cloud and hybrid IT environments ensuring the consistent integration of security controls requirements and best practices throughout the system development lifecycle (SDLC) and across SBAs full technology as the primary trusted technical advisor to SBAs IT leadership system owners and key stakeholders on all matters related to cybersecurity architecture emerging threats technology investments and security capability development providing clear actionable recommendations to strengthen SBAs overall security the development and maintenance of comprehensive cybersecurity architecture documentation including enterprise reference architectures architecture decision records (ADRs) security design patterns data flow diagrams interface control documents and multi-year technical security roadmaps aligned with SBAs strategic IT and recommend cybersecurity technologies tools platforms and solutions to address identified capability gaps and emerging threats preparing detailed technical assessments and business cases to support informed SBA security technology investment and procurement with SBA IT architects system owners developers program offices and acquisition teams to integrate security requirements and architectural standards into the design development procurement and deployment of new and existing SBA systems and authoritative expert guidance on Zero Trust Architecture (ZTA) principles and lead SBAs efforts to design plan and implement a comprehensive Zero Trust framework across the agencys enterprise environment aligned with OMB M-22-09 and applicable CISA Zero Trust Maturity Model and support the NIST Risk Management Framework (RMF) and Authorization to Operate (ATO) process providing senior architectural expertise to support the development and review of System Security Plans (SSPs) security control assessments risk assessment documentation and Plan of Action and Milestones (POA&Ms) in accordance with NIST guidelines and SBAs RMF proceduresAssess and advise on the security architecture implications of emerging technologies including cloud services artificial intelligence and machine learning robotic process automation containerization and API-driven architectures as they relate to SBAs technology modernization strategy and security and oversee security architecture reviews and technical assessments of existing and proposed SBA systems and solutions identifying vulnerabilities architectural weaknesses security control gaps and areas of non-compliance with federal security requirements and developing detailed findings reports and remediation and maintain comprehensive threat models for SBAs systems and applications leveraging MITRE ATT&CK STRIDE PASTA and other industry-standard threat modeling frameworks to systematically identify assess and prioritize security risks across SBAs technology with SOC incident response threat hunting vulnerability management and privacy teams to ensure SBAs cybersecurity architecture supports and enhances effective threat detection incident response forensic investigation and privacy protection capabilities across the the development and enforcement of SBAs cybersecurity policies standards guidelines and technical baselines ensuring alignment with NIST SP 800-53 FISMA FedRAMP OMB directives and other applicable federal cybersecurity and deliver technical briefings architecture documentation white papers and executive presentations to SBA leadership OMB and other oversight bodies clearly articulating complex security architecture concepts strategic recommendations and program senior mentorship and technical guidance to mid-level security architects and other cybersecurity team members fostering professional development and continuously building SBAs internal cybersecurity architecture and Experience:Required:Bachelors degree in Cybersecurity Information Technology Computer Science Systems Engineering or a related field from an accredited college or university.10 years of progressive experience in cybersecurity with at least 5 years in a cybersecurity architecture or senior security engineering role with demonstrated responsibility for enterprise-level architecture design and experience designing and implementing cybersecurity architectures for complex federal government IT environments including experience with multi-system multi-domain and hybrid cloud or more of the following certifications:Certified Information Systems Security Professional (CISSP)CISSP Information Systems Security Architecture Professional (CISSP-ISSAP)Certified Information Security Manager (CISM)SABSA Chartered Security Architect (SCF/SCP)GIAC Defensible Security Architecture (GDSA)Desired:Masters degree in Cybersecurity Information Assurance Computer Science Systems Engineering or a related field.12 years of cybersecurity experience with a strong and demonstrated background supporting federal civilian agency cybersecurity architecture programs of comparable size and complexity to the serving as a lead or principal cybersecurity architect on a federal agency-wide cybersecurity program or enterprise architecture Skills and Competencies:Exceptional communication skills in English both written and oral with the ability to effectively present and defend complex cybersecurity architecture concepts strategic recommendations and technical findings to diverse audiences including SBA technical staff program managers senior executives and external oversight expertise in enterprise cybersecurity architecture frameworks and methodologies including SABSA TOGAF the NIST Cybersecurity Framework (CSF) and the DoD Architecture Framework (DoDAF) with demonstrated experience applying these frameworks to design and govern federal agency cybersecurity knowledge of federal cybersecurity policies frameworks and compliance requirements including NIST SP 800-53 NIST RMF FISMA FedRAMP OMB Circular A-130 and applicable CISA guidance and directives and their practical implications for cybersecurity architecture design and experience designing security architectures for cloud environments including AWS Microsoft Azure and/or Google Cloud Platform (GCP) with deep knowledge of cloud-native security services cloud security architecture patterns and the security implications of cloud service adoption within a federal expertise in Zero Trust Architecture (ZTA) principles design patterns and implementation strategies with experience leading or significantly contributing to Zero Trust planning and implementation initiatives within a federal or large enterprise environment aligned with OMB M-22-09 and CISAs Zero Trust Maturity leading and supporting the NIST Risk Management Framework (RMF) and ATO process at the enterprise level including the development and review of SSPs security control documentation risk assessments and POA&Ms for complex interconnected federal proficiency in network security architecture including the design of secure network segmentation strategies perimeter and interior defense architectures micro-segmentation frameworks encrypted communications architectures and secure remote access knowledge of identity and access management (IAM) architecture including the design of enterprise IAM frameworks incorporating multi-factor authentication (MFA) privileged access management (PAM) role-based and attribute-based access control (RBAC/ABAC) and federated identity and single sign-on (SSO) in developing comprehensive threat models using MITRE ATT&CK STRIDE PASTA and other industry-standard methodologies to systematically identify and prioritize architectural security risks and inform security design understanding of secure software development practices DevSecOps principles and the integration of security architecture requirements into DevSecOps pipelines CI/CD workflows and the full conducting enterprise-level security architecture reviews and assessments identifying gaps and risks and developing comprehensive prioritized remediation roadmaps aligned with agency risk tolerance and mission to obtain and maintain a Public Trust Skills and Competencies:Prior experience supporting SBA or other federal civilian agency cybersecurity architecture programs with demonstrated knowledge of SBAs IT environment system portfolio mission requirements and cybersecurity program implementing CDM (Continuous Diagnostics and Mitigation) program solutions and integrating CDM tools and data feeds into enterprise security architectures within federal civilian familiarity with FedRAMP authorized cloud environments FedRAMP authorization processes and the security architecture requirements and boundary considerations applicable to FedRAMP cloud service deployments within federal designing security architectures for containerized environments Kubernetes orchestration platforms microservices architectures and serverless computing environments within federal cloud of data security architecture including the design of enterprise data protection frameworks incorporating data classification data loss prevention (DLP) encryption at rest and in transit rights management and privacy by design with software-defined networking (SDN) software-defined wide area networking (SD-WAN) and secure access service edge (SASE) architectures including their application within federal enterprise network security modernization with AI and machine learning security architecture considerations including the security implications of AI/ML adoption model security data pipeline security and the integration of AI-enabled security capabilities into federal cybersecurity developing enterprise cybersecurity strategies multi-year capability roadmaps and technology investment plans aligned with federal agency mission requirements budget constraints and strategic IT Cloud Security Professional (CCSP) or AWS/Azure/GCP security specialty with industrial control systems (ICS) or operational technology (OT) security architecture and its relevance to federal agency mission systems and critical infrastructure with supply chain risk management (SCRM) principles and their application to federal cybersecurity architecture including the security implications of third-party components open-source software and vendor dependencies within SBAs technology Equal Employment Opportunity PolicyThe company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race color religion creed ethnicity sex sexual orientation gender or gender identity (except where gender is a bona fide occupational qualification) national origin or ancestry age disability citizenship military/veteran status marital status genetic information or any other characteristic protected by applicable federal state or local law. We are committed to equal employment opportunity in all decisions related to employment promotion wages benefits and all other privileges terms and conditions of company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website please get in touch with Heaven Wood via e-mail by calling to request Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical professional and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers employees and native communities. For more information please Opportunity Employer/Veterans/ Preference in accordance with Public Law 88-352

Required Experience:

Staff IC


About Company

Company Logo

What We Do Koniag Government Services (KGS) is an Alaska Native Corporation comprised of multiple wholly owned subsidiary companies that deliver Enterprise Solutions, Professional Services, and Operations Management to Federal Government agencies. With an agile employee and corporate ... View more

View Profile View Profile