Security Engineering Architect Lead

RPMGlobal

Bethesda, Northern (MD, KY)

Hybrid

USD 150,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Base-2 Solutions is seeking a TS/SCI Security Engineer Architect to lead security engineering across cloud and on-prem environments for the DOMEX Technology Platform at Bethesda, MD. The role steers RMF+ authorization to operate and interfaces with DoD/IC stakeholders.

The candidate will guide security policy, OS hardening, incident analysis, and agile security practices while serving as Product Owner for the Security Engineering Team, ensuring timely, compliant outcomes.

Qualifications

  • Bachelor's or Master's degree with substantial relevant experience per DoD RMF+ requirements.
  • Familiarity with NIST SP 800-27/30/37/53/60.
  • Experience supporting DoD/IC systems through RMF+ authorization.
  • Experience with incident response, risk management, and PM/PO activities.
  • Ability to lead security engineering and privacy controls in complex systems.
  • Experience with Tenable Security Center and security tooling.
  • Experience with Linux, Windows, firewalls, PKI, and cloud/on-prem environments.

Responsibilities

  • Provide management oversight of the security team across multiple tasks.
  • Offer technical guidance and security solutions to the team.
  • Interact with DIA CIO and NDOC Security Points of Contact.
  • Create and maintain security policies and procedures.
  • Guide OS hardening and patching per DISA STIGs and NIST.
  • Analyze security incidents and recommend fixes.
  • Apply security knowledge in Agile/SAFe development contexts.
  • Serve as Product Owner for the Security Engineering Team.
  • Prioritize projects, deliverables, and deadlines.
  • Foster collaboration to deliver high-quality security products.

Skills

Security engineering
RMF+/A&A
DoD/IC experience
Incident response
Agile/SAFe
Linux/Windows
PKI
Tenable Security Center
Jira/Confluence
Cloud & on-prem security
Active Directory
SQL/NoSQL
PowerShell

Education

Bachelor's degree + 15+ yrs
Master's degree + 12+ yrs

Tools

Tenable Security Center
Jira
Confluence
Kubernetes
Elasticsearch
Active Directory

Job description

Base-2 Solutions is seeking a TS/SCI Security Engineer Architect to provide technical security expertise across cloud and on-premises infrastructure supporting National Digital Exploitation & OSINT Center systems under the DOMEX Technology Platform contract. This role leads teams through the Risk Management Framework to system authorizations to operate across multiple domains and coordinates security engineering activities in a hybrid work environment based primarily at the client location in Bethesda, MD.

Essential Duties and Responsibilities
  • Provide management oversight and coordination of the DTP Security Team across multiple task orders, with a focus on streamlining authorization to operate management processes through engineering solutions and best-practice efficiencies.
  • Provide technical guidance to team members while employing effective security solutions.
  • Directly interact with DIA CIO and NDOC Security Points of Contact.
  • Create, improve, and maintain security policies and procedures.
  • Provide operating system hardening and system patching guidance based on DISA STIGs and NIST publications.
  • Analyze security incidents and provide recommendations for resolution.
  • Apply strong knowledge and experience in software development in an Agile or SAFe environment.
  • Serve as Product Owner for the Security Engineering Team.
  • Manage individual project priorities, deliverables, and deadlines.
  • Foster collaboration among team members to provide quality service and products to the customer.
Required Qualifications
  • Relevant experience meeting one of the applicable education and experience pathways in the equivalency section.
  • Familiarity with NIST Special Publications, including NIST SP 800-27, 800-30, 800-37, 800-53, and 800-60.
  • Experience with CNSS publication CNSSI 1253.
  • Experience supporting DoD and Intelligence Community systems through the entire Risk Management Framework Plus process to authorization to operate.
  • Experience with incident response plans, plans of actions and milestones, risk management plans, and vulnerability management plans.
  • Experience establishing and maintaining a System Security Engineering management process to integrate security and privacy controls into complex hardware and software systems.
  • Experience managing a team of Cyber Security Engineers and Information System Security Officers.
  • Experience using Tenable Security Center and all components.
  • Experience with Linux, Windows, firewalls, gateways, proxies, virtual private clouds, and public key infrastructure.
  • Strong analytical, communication, problem-solving, and interpersonal skills.
Preferred Qualifications
  • Certified Scrum Master (CSM) or SAFe Scrum Master (SSM) certification.
  • Experience with SAFe methodology.
  • Successfully achieved authorization to operate under RMF+ across multiple domains.
  • Experience working in Agile and DevOpsSec environments.
  • Experience with big data applications.
  • Experience with Jira and Confluence.
  • Experience with OIDC or OAuth2.
  • Experience with Kubernetes, Rancher, or Cloudera containerization technologies.
  • Experience with continuous integration and continuous delivery tools such as Jenkins or GitLab.
  • Experience with Elasticsearch.
  • Experience with Active Directory.
  • Experience with SQL and NoSQL databases.
  • Experience with scripting languages such as Bash, Python, or PowerShell.
Required Education and Experience Equivalency
  • Bachelor's degree with 15+ years of prior relevant experience.
  • Master's degree with 12+ years of prior relevant experience.
Required Certifications
  • Meet DoD 8570.01-M IASAE Level II certification requirements with at least one of the following: CISSP, CISSP-ISSAP, CISSP-ISSEP, CSSLP, or CASP+ CE. The CISSP Associate is not acceptable.
Required Security Clearance
  • Active Top Secret/SCI
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Architect
Security Architect

Leidos • Bethesda (MD)

On-site
USD 100,000 - 140,000
Flexible schedule
Professional development opportunities
Senior Security Engineer
Senior Security Engineer

Talentify • Bethesda (MD)

On-site
USD 120,000 - 180,000
Cyber Security Engineer 2
Cyber Security Engineer 2

Base-2 Solutions, LLC • Bethesda (MD)

On-site
USD 120,000 - 160,000
Senior Security Engineer
Senior Security Engineer

RPMGlobal • Bethesda (MD), Northern (KY)

Hybrid
USD 140,000 - 190,000
Cyber Security Engineer 4
Cyber Security Engineer 4

RPMGlobal • Bethesda (MD)

On-site
USD 120,000 - 150,000
Lead Security Architect (TS/SCI)
Lead Security Architect (TS/SCI)

RPMGlobal • Bethesda (MD), Northern (KY)

Hybrid
USD 150,000 - 190,000
Cyber Security Engineer 4
Cyber Security Engineer 4

Base-2 Solutions, LLC • Bethesda (MD)

On-site
USD 140,000 - 180,000
Cyber Security Engineer 3
Cyber Security Engineer 3

Base-2 Solutions, LLC • Bethesda (MD)

On-site
USD 110,000 - 150,000
Cloud Security Engineer 2
Cloud Security Engineer 2

Base-2 Solutions, LLC • Bethesda (MD)

On-site
USD 120,000 - 150,000
Security Engineer Architect - TS/SCI
Security Engineer Architect - TS/SCI

Xcelerate Solutions • Bethesda (MD)

Hybrid
USD 150,000 - 210,000