Principal Cyber Security Architect

Leidos LLC

Gaithersburg (MD)

Hybrid

USD 131,000 - 237,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Leidos LLC in Gaithersburg, MD is seeking a senior cybersecurity architect to define and maintain the security posture of the L-CAP platform. This hybrid role requires 3 days onsite and 2 days remote, with eligibility for federal-level program work and potential contingent offers based on funding.

You will lead FedRAMP and RMF activities, drive zero-trust design, and ensure secure software supply chains across cloud environments (AWS/Azure).

Qualifications

  • Bachelor's degree in cybersecurity or related field and 12+ years of cybersecurity experience.
  • Demonstrated cybersecurity architecture experience for enterprise platforms.
  • Deep knowledge of FedRAMP authorization processes and requirements.
  • Expertise in NIST 800-53 controls and RMF.
  • Experience leading ATO efforts for federal information systems.
  • Knowledge of zero trust architecture principles and implementation patterns.
  • Cloud security expertise across AWS and/or Azure.
  • Ability to obtain and maintain a Public Trust clearance; US citizenship required; subject to government background investigation.
  • Experience securing distributed real-time services and microservice communication patterns.
  • Knowledge of software supply chain security practices (SLSA, SBOM, artifact signing, dependency scanning).

Responsibilities

  • Define and maintain the cybersecurity architecture for the L-CAP platform
  • Develop and execute the FedRAMP compliance strategy across cloud environments
  • Lead Authority to Operate (ATO) planning and execution activities
  • Conduct threat modeling and vulnerability assessments across platform components
  • Design and implement zero trust architecture principles across the enterprise
  • Establish and govern the security controls framework aligned to NIST 800-53
  • Integrate security practices into DevSecOps pipelines and CI/CD workflows
  • Provide cybersecurity governance across four Agile Release Trains (ARTs)
  • Define security requirements for platform services and application teams
  • Perform risk assessments and recommend mitigations for emerging threats
  • Define security architecture for distributed real-time ATC services including inter-service communication protection and API gateway security
  • Establish software supply chain integrity controls including SBOM generation, artifact signing, and dependency vulnerability management
  • Design security patterns for cloud-native service communications protecting mission-critical ATC data flows
  • Champion an AI-first engineering culture by identifying and applying AI-assisted development capabilities, automation, and emerging software engineering practices that improve developer productivity, code quality, testing, and delivery.

Skills

Cybersecurity architecture
FedRAMP knowledge
NIST 800-53 RMF
Zero trust
DevSecOps
Threat modeling
Cloud security
Public Trust clearance

Education

Bachelor’s degree in cybersecurity or related field

Tools

AWS
Azure
CI/CD pipelines
SBOM tooling

Job description

This role is part of a growing program, and hiring will depend on available funding. We review applications on a rolling basis, but the timeline for interviews and offers may vary. In some cases, we may extend contingent offers that become active once funding is confirmed. This position is located in Gaithersburg, MD; Egg Harbor Township, NJ; or Eagan, MN. This is an opportunity to contribute to projects that impact millions of air travelers. This is a hybrid position requiring 3 days onsite and 2 days remote work. Candidates should reside a commutable distance to one of the above locations.

What You’ll Do
  • Define and maintain the cybersecurity architecture for the L-CAP platform
  • Develop and execute the FedRAMP compliance strategy across cloud environments
  • Lead Authority to Operate (ATO) planning and execution activities
  • Conduct threat modeling and vulnerability assessments across platform components
  • Design and implement zero trust architecture principles across the enterprise
  • Establish and govern the security controls framework aligned to NIST 800-53
  • Integrate security practices into DevSecOps pipelines and CI/CD workflows
  • Provide cybersecurity governance across four Agile Release Trains (ARTs)
  • Define security requirements for platform services and application teams
  • Perform risk assessments and recommend mitigations for emerging threats
  • Define security architecture for distributed real-time ATC services including inter-service communication protection and API gateway security
  • Establish software supply chain integrity controls including SBOM generation, artifact signing, and dependency vulnerability management
  • Design security patterns for cloud-native service communications protecting mission-critical ATC data flows
  • Champion an AI-first engineering culture by identifying and applying AI-assisted development capabilities, automation, and emerging software engineering practices that improve developer productivity, code quality, testing, and delivery.
Core Technical Qualifications
  • Bachelor’s degree with 12+ years of cybersecurity experience
  • Demonstrated cybersecurity architecture experience for enterprise platforms
  • Deep knowledge of FedRAMP authorization processes and requirements
  • Expertise in NIST 800-53 security controls and Risk Management Framework (RMF)
  • Experience leading ATO efforts for federal information systems
  • Knowledge of zero trust architecture principles and implementation patterns
  • Experience with safety-critical systems security requirements
  • Cloud security expertise across AWS and/or Azure environments
  • Understanding of distributed systems security challenges and solutions
  • Ability to obtain and maintain a Public Trust clearance; US citizenship required; subject to government background investigation
  • Experience securing distributed real-time services and microservice communication patterns
  • Knowledge of software supply chain security practices (SLSA, SBOM, artifact signing, dependency scanning)
  • Ability to obtain and maintain a Public Trust U.S. citizenship required
  • Successful completion of background investigations as required by the government customer
Preferred / Desired Qualifications
  • CISSP, CISM, or equivalent cybersecurity certifications
  • FAA or aviation-sector cybersecurity experience
  • Penetration testing and red team experience
  • SIEM architecture and security operations design
  • Mission assurance and continuity of operations experience
  • DoD or federal civilian agency cybersecurity programs
  • Experience securing real-time operational systems in aviation or air traffic control environments
Why Leidos?

We outthink, outbuild, and outpace the status quo because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 and moving faster than anyone else dares.

Original Posting: August 18, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range

Pay Range $131,300.00 - $237,350.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That’s why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available here.

Securing Your Data

Leidos will never ask you to provide payment-related information at any part of the employment application process. And Leidos will communicate with you only through emails that are sent from a Leidos.com email address. If you receive an email purporting to be from Leidos that asks for payment-related information or any other personal information, please report the email to spam.leidos@leidos.com.

Commitment and Diversity

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal Cyber Security Architect
Principal Cyber Security Architect

Leidos • Egg Harbor City (NJ)

Hybrid
USD 131,000 - 237,000
Hybrid work model
Principal Cloud Platform Architect
Principal Cloud Platform Architect

Leidos • Egg Harbor City (NJ)

Hybrid
USD 131,000 - 237,000
Enterprise Data Architect
Enterprise Data Architect

Leidos LLC • Egg Harbor Township (NJ)

Hybrid
USD 131,000 - 237,000
DevSecOps Security Engineer
DevSecOps Security Engineer

Leidos LLC • Gaithersburg (MD)

Hybrid
USD 87,000 - 157,000
Health benefits
Paid leave
Retirement plan
Principal Cloud Platform Architect
Principal Cloud Platform Architect

Leidos LLC • Gaithersburg (MD)

Hybrid
USD 131,000 - 237,000
Health and Wellness programs
Income Protection
Paid Leave and Retirement
DevSecOps Security Engineer
DevSecOps Security Engineer

Via Logic LLC • Egg Harbor Township (NJ)

On-site
USD 87,000 - 157,000
Enterprise Data Architect
Enterprise Data Architect

Leidos • United States

Hybrid
USD 131,000 - 237,000
Principal Cloud Platform Architect
Principal Cloud Platform Architect

Leidos • Gaithersburg (MD)

On-site
USD 131,000 - 237,000
Security Authorization Lead
Security Authorization Lead

Via Logic LLC • Eagan (MN)

On-site
USD 108,000 - 195,000
Lead DevSecOps Engineer
Lead DevSecOps Engineer

Leidos LLC • Gaithersburg (MD)

Hybrid
USD 87,000 - 157,000
Health and Wellness programs
Paid Leave
Retirement benefits