Cybersecurity Engineer

LMI Government Consulting

Tysons (VA)

On-site

USD 102,000 - 170,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

LMI Government Consulting in Tysons, VA seeks a Cybersecurity Engineer to design and guide secure system architectures that achieve federal cybersecurity authorization. You will translate complex frameworks (FedRAMP, RMF, CMMC) into concrete patterns and work with engineering, DevSecOps, and governance teams to ensure compliant platforms and applications.

The role requires TS clearance, senior federal cybersecurity experience, and deep cloud/containers expertise; target salary can reach up to

Qualifications

  • Top Secret clearance required.
  • Active CISSP, CISM, GSLC, C|CISO, or comparable senior cybersecurity certification.
  • 10+ years of federal cybersecurity experience in security engineering, architecture, or GRC with NIST SP 800-53/NIST RMF.
  • Experience supporting FedRAMP, DoD RMF, or CMMC authorization.
  • Experience implementing and managing security control programs including SSPs and POA&M management.
  • Strong understanding of modern cloud architectures (AWS/Azure) and hybrid environments.

Responsibilities

  • Architect systems to support authorization under FedRAMP, DoD RMF, and CMMC.
  • Translate requirements from NIST SP 800-53/171/172 into architecture patterns and implementation strategies.
  • Define secure reference architectures across identity, network segmentation, platform security, data protection, logging, monitoring, and system boundary design.
  • Collaborate with engineering and DevSecOps to embed security controls into CI/CD and operations.
  • Lead or support GRC activities including control implementation planning, risk assessments, and authorization readiness.
  • Prepare authorization artifacts like SSPs, control narratives, architecture documentation, and POA&Ms.

Skills

Security architecture
DevSecOps
GRC
Communication

Education

Master’s degree in a related field
Bachelor’s degree in related field

Tools

AWS
Azure
Docker

Job description

Overview

We are looking for a Cybersecurity Engineer to design and guide secure system architectures that can achieve and sustain federal cybersecurity authorization. This role focuses on translating complex regulatory frameworks into practical architecture patterns that enable platforms and applications to meet the rigorous expectations of federal security programs.

You will operate at the intersection of security architecture, DevSecOps, and Governance, Risk, and Compliance (GRC)–ensuring systems are architected for authorization success while also guiding the documentation, risk management, and programmatic processes required to achieve and maintain compliance.

This role is ideal for an experienced security architect or senior federal cybersecurity professional who understands both federal authorization frameworks and modern cloud/software architectures, and who can bridge engineering teams, security governance functions, and government stakeholders.

LMI is a new breed of digital solutions provider dedicated to accelerating government impact with innovation and speed. Investing in technology and prototypes ahead of need, LMI brings commercial‑grade platforms and mission‑ready AI to federal agencies at commercial speed.

Leveraging our mission‑ready technology and solutions, proven expertise in federal deployment, and strategic relationships, we enhance outcomes for the government, efficiently and effectively. With a focus on agility and collaboration, LMI serves the defense, space, healthcare, and energy sectors—helping agencies navigate complexity and outpace change. Headquartered in Tysons, Virginia, LMI is committed to delivering impactful results that strengthen missions and drive lasting value.

Responsibilities
  • Architect systems to support authorization under FedRAMP, DoD RMF, CMMC, and related federal cybersecurity frameworks
  • Translate requirements from NIST SP 800-53, NIST SP 800-171/172, and DoD security guidance into concrete architecture patterns and engineering implementation strategies
  • Define secure reference architectures across identity, network segmentation, platform security, data protection, logging, monitoring, and system boundary design
  • Work directly with engineering and DevSecOps teams to embed security controls into platform architecture, CI/CD pipelines, and operational workflows
  • Conduct security architecture and design reviews for applications, platforms, and infrastructure supporting federal missions
  • Guide teams in structuring systems for authorization efficiency, including control inheritance strategies, system boundary definitions, and shared service architectures
  • Lead or support GRC program activities including control implementation planning, risk assessments, and authorization readiness
  • Support development of authorization artifacts including System Security Plans (SSPs), control narratives, architecture documentation, and POA&Ms
  • Provide expertise on DoD Cloud Computing environments (IL4/5/6), National Security Systems (NSS), and environments handling CUI and National Security Information
  • Conduct DISA STIG analysis and secure configuration reviews for operating systems, platforms, and infrastructure
  • Collaborate with DevSecOps teams to implement automated compliance validation, continuous monitoring, and security telemetry
  • Provide architecture guidance and security readiness briefings to engineering teams, leadership, and government stakeholders
  • Monitor evolving federal cybersecurity policy and translate emerging requirements into architecture and GRC program guidance
Qualifications
  • Top Secret clearance required.
  • Active CISSP, CISM, GSLC, C|CISO, or comparable senior cybersecurity certification
  • 10+ years of experience in federal cybersecurity supporting system security engineering, security architecture, or GRC programs aligned with NIST SP 800-53 and the NIST Risk Management Framework
  • Experience supporting systems pursuing FedRAMP, DoD RMF, or CMMC authorization
  • Experience implementing and managing security control programs and compliance activities including SSP development, POA&M management, and authorization readiness
  • Strong understanding of modern cloud architectures (AWS, Azure, or similar), hybrid infrastructure, and containerized platforms
  • Experience translating compliance frameworks into technical implementation guidance for engineering teams
  • Experience performing risk assessments related to architecture changes, vulnerabilities, new systems, and data governance
  • Strong communication skills and the ability to bridge security, engineering, and government stakeholders

Preferred Qualifications

  • Experience supporting DoD Cloud Computing SRG environments (IL4/5/6)
  • Experience working with National Security Systems (NSS) or classified‑adjacent architectures
  • Familiarity with DevSecOps platforms and compliance automation approaches
  • Experience using GRC platforms to manage controls, artifacts, and continuous monitoring
  • Experience participating in Architecture Review Boards (ARB), Change Advisory Boards (CAB), or security design reviews
  • Experience supporting environments that process or store Controlled Unclassified Information (CUI)
  • Experience working in federal consulting, defense, intelligence, or mission‑focused environments
  • Master’s degree or bachelor’s degree with equivalent experience

What Success Looks Like

  • Systems are architected from the start to meet federal security requirements, avoiding costly redesigns during authorization
  • Engineering teams understand how to implement security controls as part of system architecture

The salary range displayed represents the typical salary range for this position and is not a guarantee of compensation. Individual salaries are determined by various factors including, but not limited to location, internal equity, business considerations, client contract requirements, and candidate qualifications, such as education, experience, skills, and security clearances.

The target salary range for this posiiton is up to $170,000

Applicants must meet eligibility requirements for a U.S. Government security clearance. Only US Citizens are eligible for a security clearance. For this position, LMI will only consider applicants with security clearances or applicants who are eligible for security clearances, due to the nature of the work.

Job Locations

US-VA-Tysons

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer
Cybersecurity Engineer

LMI • Tysons (VA)

On-site
USD 140,000 - 170,000
Cybersecurity Engineer
Cybersecurity Engineer

LMI Consulting, LLC • Tysons (VA)

On-site
USD 102,000 - 170,000
IT Security Lead
IT Security Lead

LMI • United States

Hybrid
USD 134,000 - 233,000
Federal Security Architect & DevSecOps Lead
Federal Security Architect & DevSecOps Lead

LMI Government Consulting • Tysons (VA)

On-site
USD 102,000 - 170,000
Federal Security Architect & DevSecOps Lead
Federal Security Architect & DevSecOps Lead

LMI • Tysons (VA)

On-site
USD 140,000 - 170,000
Solutions Architect, Growth
Solutions Architect, Growth

LMI • Tysons (VA)

On-site
USD 153,000 - 218,000
Staff Security & Compliance Engineer, Secure Platforms - Clearance Required
Staff Security & Compliance Engineer, Secure Platforms - Clearance Required

LMI Consulting, LLC • Newport News (VA)

On-site
USD 121,000 - 194,000
Enterprise IT Architect w/ active Top Secret clearance
Enterprise IT Architect w/ active Top Secret clearance

LMI • Washington

On-site
USD 100,000 - 200,000
Cybersecurity Specialist
Cybersecurity Specialist

LMI Government Consulting • Frederick (MD)

On-site
USD 86,000 - 125,000
Lead Security Engineer
Lead Security Engineer

Dev Technology Group • Suitland (MD)

On-site
USD 120,000 - 190,000