Mid-Level Applied Security Architect

Koniag Information Security Services, LLC

Washington (District of Columbia)

Hybrid

USD 95,000 - 130,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical, dental, and vision insurance
401(k) retirement plan
Paid time off
Paid parental leave
Life and disability insurance
Flexible spending accounts
Commuter benefits
Tuition reimbursement

Job summary

Koniag Advisory and Business Solutions, LLC seeks a Mid-Level Applied Security Architect to support SBIR/STTR programs for a DOE-related initiative in a hybrid environment requiring 3 onsite days. The role emphasizes hands-on security architecture, control implementation, and compliance activities, including risk assessments and incident readiness.

The ideal candidate brings 4–6 years in federal or regulated settings, strong IAM, encryption, and SIEM experience, and the ability to translate

Qualifications

  • Bachelor's degree in computer science, information security, engineering, or a related field.
  • 4–6 years of experience in cybersecurity engineering/architecture, security operations, or compliance in federal or regulated environments.
  • Practical experience implementing controls for cloud and hybrid systems (identity, encryption, logging, least privilege, hardening).
  • Hands-on familiarity with SIEM/monitoring tools, vulnerability scanners, endpoint protection, and configuration management.
  • Strong understanding of protecting sensitive data (e.g., proposal content, PII) and operationalizing privacy/security requirements.
  • Clear written and verbal communication skills for technical documentation, diagrams, and leadership briefings.
  • Demonstrated ability to collaborate with cross-functional teams and deliver secure solutions on schedule.
  • U.S. citizenship and ability to meet federal suitability requirements if needed.

Responsibilities

  • Design, document, and implement security controls across SBIR/STTR systems (cloud, onprem, and hybrid), aligned with program requirements.
  • Support development of secure architectures for applicant portals, proposal review workflows, data pipelines, and reporting dashboards.
  • Configure and maintain identity and access management (IAM), rolebased access, leastprivilege settings, and privileged access management.
  • Implement data protection safeguards (encryption at rest/in transit, key management, DLP policies, secure file transfer, tokenization where needed).
  • Contribute to vulnerability management and secure configuration baselines; perform assessments, track remediation, and update POA&Ms.
  • Assist with logging/telemetry design and SIEM use cases; tune alerts, create dashboards, and support continuous monitoring.
  • Participate in risk assessments and threat modeling for new features, integrations, and vendor tools supporting SBIR operations.
  • Draft and maintain technical procedures, configuration standards, and build/run books that codify secure operational practices.
  • Support compliance documentation (control narratives, diagrams, evidence collection) and ATO package preparation under senior guidance.
  • Coordinate with stakeholders to ensure security requirements are embedded early (secure-by-design) and do not impede mission delivery.
  • Contribute to incident response readiness (playbooks, tabletop exercises, post incident reviews) and implement corrective actions.
  • Recommend pragmatic process improvements that strengthen security posture and user experience across the program.

Skills

Hands-on security architecture
Controls implementation
Compliance support
IAM / least privilege
SIEM / monitoring
Vulnerability assessment
Threat modeling
Secure-by-design principles
Cross-functional collaboration
Documentation & diagrams

Education

Bachelor's degree in computer science, information security, engineering, or related field

Tools

SIEM
EDR
Vulnerability scanners
Configuration management
IAM tools

Job description

Koniag Advisory and Business Solutions, LLC, a Koniag Government Services company, is seeking a Mid-Level Applied Security Architect to support KABS and our government customer in Washington, DC. This position will start mid to late September 2026. This is a fully funded contract. The position is hybrid, will require 3 days onsite. This position requires the candidate to be able to obtain a Public Trust.

Benefits include medical, dental, and vision insurance, 401(k) retirement plan, paid time off, paid parental leave, life and disability insurance, flexible spending accounts, commuter benefits and tuition reimbursement.


The Mid-Level Applied Security Architect provides hands-on cybersecurity architecture, control implementation, and compliance support for systems and workflows that enable the DOE Office of Technology Commercialization's SBIR/STTR programs. This role helps design secure solutions for proposal intake/review platforms, data repositories, analytics/reporting tools, and collaboration environments; implements technical safeguards for sensitive information; and contributes to continuous monitoring activities. The architect partners with senior security leadership, program managers, IT teams, reviewers, and contractors to translate requirements into practical, auditable controls that advance DOE's mission while protecting program data.

Key Responsibilities
  • Design, document, and implement security controls across SBIR/STTR systems (cloud, onprem, and hybrid), aligned with program requirements.
  • Support development of secure architectures for applicant portals, proposal review workflows, data pipelines, and reporting dashboards.
  • Configure and maintain identity and access management (IAM), rolebased access, leastprivilege settings, and privileged access management.
  • Implement data protection safeguards (encryption at rest/in transit, key management, DLP policies, secure file transfer, tokenization where needed).
  • Contribute to vulnerability management and secure configuration baselines; perform assessments, track remediation, and update POA&Ms.
  • Assist with logging/telemetry design and SIEM use cases; tune alerts, create dashboards, and support continuous monitoring.
  • Participate in risk assessments and threat modeling for new features, integrations, and vendor tools supporting SBIR operations.
  • Draft and maintain technical procedures, configuration standards, and build/run books that codify secure operational practices.
  • Support compliance documentation (control narratives, diagrams, evidence collection) and ATO package preparation under senior guidance.
  • Coordinate with stakeholders to ensure security requirements are embedded early (secure-by-design) and do not impede mission delivery.
  • Contribute to incident response readiness (playbooks, tabletop exercises, post incident reviews) and implement corrective actions.
  • Recommend pragmatic process improvements that strengthen security posture and user experience across the program.
Required Qualifications
  • Bachelor's degree in computer science, information security, engineering, or a related field.
  • 4–6 years of experience in cybersecurity engineering/architecture, security operations, or compliance in federal or regulated environments.
  • Practical experience implementing controls for cloud and hybrid systems (identity, encryption, logging, least privilege, hardening).
  • Handson familiarity with SIEM/monitoring tools, vulnerability scanners, endpoint protection, and configuration management.
  • Strong understanding of protecting sensitive data (e.g., proposal content, PII) and operationalizing privacy/security requirements.
  • Clear written and verbal communication skills for technical documentation, diagrams, and leadership briefings.
  • Demonstrated ability to collaborate with cross-functional teams and deliver secure solutions on schedule.
  • U.S. citizenship and ability to meet federal suitability requirements if needed.
Security Requirement
  • Ability to obtain a Public Trust
Preferred Qualifications
  • Experience supporting DOE SBIR/STTR or other federal research/innovation programs.
  • Working knowledge of federal cybersecurity frameworks and standards (e.g., NIST SP 800 series, FISMA), zero trust principles, and control baselines.
  • Exposure to FedRAMP aligned cloud environments and securing SaaS platforms used for collaboration, workflow, and data analytics.
  • Certifications such as Security+, SSCP, CySA+, CCSP, or GIAC (e.g., GSEC, GCSA); progress toward CISSP or CISM is a plus.
  • Familiarity with secure DevSecOps practices, automation, infrastructure as code, and compliance as code concepts.
  • Background or interest in energy technologies or scientific R&D environments.
Key Competencies
  • Security Architecture & Control Implementation
  • Risk Identification and Mitigation
  • Data Protection and Access Governance
  • Continuous Monitoring and Incident Readiness
  • Stakeholder Collaboration and Communication
  • Process and Workflow Improvement
  • Analytical and Critical Thinking
  • Technical Documentation and Standards
Knowledge, Skills, and Abilities (KSAs)
Knowledge
  • Understanding of federal cybersecurity requirements, control frameworks, and DOE mission context for research programs.
  • Knowledge of secure cloud/hybrid architectures, IAM models, encryption methods, logging/telemetry, and vulnerability management.
Skills
  • Designing diagrams and control mappings; implementing technical safeguards across program workflows.
  • Performing risk assessments, threat modeling, configuration hardening, and remediation tracking
  • Building monitoring dashboards, alert logic, and concise security reports for leadership and auditors.
  • Using security tools (SIEM, EDR, scanners, CM baselines) and integrating them with operational processes.
Abilities
  • Ability to translate requirements into actionable, auditable designs that balance security with usability and performance.
  • Ability to collaborate with technical and nontechnical stakeholders and drive consensus on security priorities.
  • Ability to manage multiple tasks, deadlines, and change requests in a dynamic program environment.
  • Ability to contribute to a mission driven team and take ownership of deliverables from design through implementation.
Work Environment

This is a hybrid position requiring periodic onsite participation at DOE headquarters or designated facilities. Remote work is supported for routine responsibilities. Travel may be required for meetings, workshops, security assessments, or program coordination.

Our Equal Employment Opportunity Policy

The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristicprotected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.

Equal Opportunity Employer/Veterans/Disabled.Shareholder Preference in accordance with Public Law 88-352

Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Koniag, Inc. • Smyrna (GA), Northern (KY)

On-site
USD 120,000 - 160,000
Health, dental and vision insurance
401K with company matching
Paid holidays and PTO
Cyber Defense Analysts – Senior
Cyber Defense Analysts – Senior

Koniag Government Services • Washington

On-site
USD 140,000 - 190,000
Medical, dental, vision insurance
401(k) retirement plan
Paid time off
Architect/DevOps Engineer (REMOTE)
Architect/DevOps Engineer (REMOTE)

Koniag Services, Inc. • United States

Remote
USD 150,000 - 190,000
Medical insurance
Dental insurance
Vision insurance
+8
Cloud Architect – Services (REMOTE)
Cloud Architect – Services (REMOTE)

Koniag Services, Inc. • Washington, Northern (KY)

Remote
USD 140,000 - 200,000
Medical insurance
Dental insurance
Vision insurance
+8
Deputy Program Manager
Deputy Program Manager

Koniag Government Services • Washington

On-site
USD 120,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+8
Security Control Accessor
Security Control Accessor

Koniag Government Services • Washington

Hybrid
USD 110,000 - 170,000
medical insurance
dental insurance
vision insurance
+7
Security Operations Center Analyst - Low
Security Operations Center Analyst - Low

Koniag Government Services • Washington

On-site
USD 60,000 - 85,000
Medical insurance
Dental insurance
Vision insurance
+7
Senior Security Manager
Senior Security Manager

Koniag Services, Inc. • Smyrna (GA), Northern (KY)

On-site
USD 120,000 - 180,000
Health, dental and vision insurance
401K with company matching
Flexible spending accounts
+1
Senior Acquisition Analyst (Cyber Security) (TS/SCI)
Senior Acquisition Analyst (Cyber Security) (TS/SCI)

Koniag Government Services • Arlington (VA)

On-site
USD 115,000 - 170,000
Medical insurance
Dental insurance
Vision insurance
+8
Cloud Engineer (REMOTE)
Cloud Engineer (REMOTE)

Koniag Services, Inc. • Northern (KY)

Hybrid
USD 110,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+7