Cloud Network Security Architecture Manager (TIC 3.0)

General Dynamics Information Technology

Martinsburg (WV)

Hybrid

USD 115,000 - 155,000

Full time

8 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Competitive benefits
401K with company match

Job summary

General Dynamics Information Technology seeks a Cloud Network Security Architecture Manager to lead TIC 3.0‑aligned, Zero‑Trust security across VA’s hybrid and multi‑cloud environments. Transform legacy perimeter models into risk‑based trust zones with PEP enforcement and cloud‑native controls.

Lead architecture across AWS, Azure, and on‑prem networks, coordinating with cross‑functional teams while communicating risks and modernization plans to VA leadership.

Qualifications

  • Bachelor’s degree or equivalent experience.
  • Hands-on experience designing or supporting federal‑grade, Zero‑Trust‑aligned architectures (identity‑centric access, micro‑segmentation, encrypted traffic inspection, cloud boundary protections).
  • Experience with TIC 3.0 concepts, trust zones, distributed enforcement, and cloud/mobility use cases is required.
  • Background in cloud, network, or security architecture (AWS, Azure, hybrid networking, segmentation).
  • Hands‑on familiarity with firewalls, cloud gateways, DNS, IAM, API security, logging pipelines, and SIEM integrations.
  • Strong understanding of NIST Cybersecurity Framework, NIST SP 800‑207 (ZTA), NIST SP 800‑53, and broader federal cybersecurity standards.
  • Experience with automation, scripting, or IaC (Terraform, Ansible, CloudFormation, ARM templates).
  • Effective communicator able to coordinate across multiple teams.
  • Ability to support emergency incidents, escalations, and critical events.

Responsibilities

  • Lead TIC 3.0 modernization, shifting security from centralized gateways to distributed trust‑zone enforcement across AWS, Azure, and enterprise networks.
  • Architect Zero‑Trust‑aligned identity‑centric controls, segmentation, dynamic policy enforcement, and continuous validation.
  • Design and manage trust‑zone mappings, cloud boundary protections, secure interconnects, and mission‑aligned risk‑based traffic flows.
  • Guide implementation of policy enforcement points for cloud, on‑prem, remote, and mobile use cases.
  • Integrate solutions with CDM, EINSTEIN, SIEM platforms, and continuous monitoring pipelines.
  • Partner with engineering, cyber, SOC, network, and operations groups to embed security across distributed systems.
  • Oversee gateway transformation, including redesign, scaling, load distribution, and modernization aligned with TIC 3.0.
  • Communicate architectural decisions, risks, and modernization strategies to VA leadership.
  • Evaluate emerging technologies, lead pilots/proofs of concept, and recommend mission‑aligned adoption strategies.
  • Support escalations and critical events involving cloud networks, identity systems, boundary controls, and PEP operations.
  • Produce architecture diagrams, trust‑zone definitions, PEP mappings, documentation, and compliance artifacts.
  • Mentor engineers and promote security best practices across cloud and network architecture teams.

Skills

Cloud Platform
IT Service Management
Network Architecture

Education

Bachelor’s degree or equivalent experience

Job description

Job Description:
Type of Requisition:
Regular
Clearance Level Must Currently Possess:
None
Clearance Level Must Be Able To Obtain:
None
Public Trust/Other Required:
MBI (T2)
Job Family:
IT Infrastructure and Operations
Skills:
Job Qualifications:
Cloud Platform, IT Service Management (ITSM), Network Architecture
Certifications:
None
Experience:
10 + years of related experience
US Citizenship Required:
No
Job Description:
Join GDIT in modernizing the Department of Veterans Affairs’ network security posture under the NEDIIS program. As the Cloud Network Security Architecture Manager, you will lead the design and implementation of TIC 3.0‑aligned, Zero‑Trust‑enabled, distributed security architectures across VA’s hybrid and multi‑cloud environments.
This role transforms legacy perimeter models into risk‑based trust zones, policy enforcement points (PEPs), cloud‑native security controls, and continuous monitoring‑integrated architectures, consistent with evolving federal cybersecurity guidance.
How You Will Make An Impact

  • Lead TIC 3.0 modernization, shifting security from centralized gateways to distributed trust‑zone and PEP‑based enforcement across AWS, Azure, and enterprise networks.
  • Architect Zero‑Trust‑aligned identity‑centric controls, segmentation, dynamic policy enforcement, and continuous validation.
  • Design and manage trust‑zone mappings, cloud boundary protections, secure interconnects, and mission‑aligned risk‑based traffic flows.
  • Guide implementation of policy enforcement points for cloud, on‑prem, remote, and mobile use cases.
  • Integrate solutions with CDM, EINSTEIN, SIEM platforms, and continuous monitoring pipelines.
  • Partner with engineering, cyber, SOC, network, and operations groups to embed security across distributed systems.
  • Oversee gateway transformation, including redesign, scaling, load distribution, and modernization aligned with TIC 3.0.
  • Communicate architectural decisions, risks, and modernization strategies to VA leadership.
  • Evaluate emerging technologies, lead pilots/proofs of concept, and recommend mission‑aligned adoption strategies.
  • Support escalations and critical events involving cloud networks, identity systems, boundary controls, and PEP operations.
  • Produce architecture diagrams, trust‑zone definitions, PEP mappings, documentation, and compliance artifacts.
  • Mentor engineers and promote security best practices across cloud and network architecture teams.
What You’ll Need To Succeed
  • Bachelor’s degree or equivalent experience.
  • Hands‑on experience designing or supporting federal‑grade, Zero‑Trust‑aligned architectures (identity‑centric access, micro‑segmentation, encrypted traffic inspection, cloud boundary protections).
  • Experience with TIC 3.0 concepts, trust zones, distributed enforcement, and cloud/mobility use cases is required.
  • Background in cloud, network, or security architecture (AWS, Azure, hybrid networking, segmentation).
  • Hands‑on familiarity with firewalls, cloud gateways, DNS, IAM, API security, logging pipelines, and SIEM integrations.
  • Strong understanding of NIST Cybersecurity Framework, NIST SP 800‑207 (ZTA), NIST SP 800‑53, and broader federal cybersecurity standards.
  • Experience with automation, scripting, or IaC (Terraform, Ansible, CloudFormation, ARM templates).
  • Effective communicator able to coordinate across multiple teams.
  • Ability to support emergency incidents, escalations, and critical events.
Preferred (Not Required)
  • AWS Solutions Architect – Professional
  • Azure Solutions Architect Expert
  • Kubernetes / OpenShift (CKA / CKAD)
  • VMware certifications
  • Terraform Associate
Visa sponsorship will not be provided for this position.
This role will require you to obtain and maintain Public Trust Suitability and will require you to provide onsite fingerprinting at a designated facility. This investigation may review personal and criminal behavior, financial conduct, foreign influence, as well as other adjudications.
Security & Location
Public Trust clearance required.
Hybrid position in Martinsburg, WV or Austin, TX – must work a regular weekly schedule with 2 to 3 days onsite as needed.
Visa sponsorship will not be provided for this position.
GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
  • Growth: AI-powered career tool that identifies career steps and learning opportunities
  • Support: An internal mobility team focused on helping you achieve your career goals
  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
  • Community: Award-winning culture of innovation and a military-friendly workplace
OWN YOUR OPPORTUNITY
Explore an enterprise IT career at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your desire to drive operations forward.
The likely salary range for this position is $114,750 - $155,250. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
Less than 10%
Telecommuting Options:
Hybrid
Work Location:
USA WV Martinsburg
Additional Work Locations:
Total Rewards At GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Identity Verification Process
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.
About Our Work
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.
Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Principal Cloud Engineer
Senior Principal Cloud Engineer

General Dynamics Information Technology, Inc. • Virginia (MN)

On-site
USD 149,000 - 196,000
401K with company match
Comprehensive health and wellness
Professional growth opportunities
+1
Network Architect
Network Architect

General Dynamics Information Technology, Inc. • Washington

On-site
USD 170,000 - 229,000
Flex work weeks
Paid time off
401(k) with company match
+2
Cybersecurity Architect
Cybersecurity Architect

General Dynamics Information Technology (GDIT) • Fairfax (VA)

On-site
USD 149,000 - 184,000
401k match
Health benefits
Education support
+1
Lead Enterprise IT Systems Architect - TS
Lead Enterprise IT Systems Architect - TS

General Dynamics Information Technology • Chantilly (VA)

On-site
USD 173,000 - 233,000
401K with company match
Comprehensive health and wellness
Internal mobility team
+2
Principal Network Engineer - Cloud
Principal Network Engineer - Cloud

General Dynamics Corporation • Springfield (VA)

On-site
USD 128,000 - 173,000
Principal Network Engineer - Cloud
Principal Network Engineer - Cloud

General Dynamics Information Technology, Inc. • Town of Springfield (WI)

On-site
USD 128,000 - 173,000
Network Architect
Network Architect

General Dynamics Information Technology • Washington

On-site
USD 170,000 - 229,000
401K with company match
Paid time off
Health benefits
Cloud Architect
Cloud Architect

General Dynamics Information Technology, Inc. • Washington

Hybrid
USD 170,000 - 229,000
Cloud Senior System Administrator / Integrator
Cloud Senior System Administrator / Integrator

General Dynamics Corporation • Springfield (VA)

On-site
USD 120,000 - 160,000
Solutions Architect
Solutions Architect

General Dynamics Information Technology • Virginia (MN)

On-site
USD 170,000 - 219,000