Senior Cyber Tools Architect/Engineer

ASRC Federal

Quantico (VA)

Hybrid

USD 140,000 - 210,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health care
Dental
Vision
Life insurance
401(k)
Education assistance
Paid time off

Job summary

ASRC Federal is seeking a Senior Cybersecurity Tools Architect/Engineer to lead enterprise security tooling across hybrid, multi-cloud environments. The role demands selecting and integrating SIEM/SOAR platforms, EDR, firewalls, and cloud security controls to protect critical assets and support DoD federal programs.

Onsite presence is required two days a week at Quantico, VA, with Telework flexibility. Active Top-Secret clearance is required, with eligibility to upgrade to TS/SCI; Bachelor’s

Qualifications

  • Minimum of 10 years in cybersecurity architecture and engineering
  • Active Top-Secret Clearance REQUIRED, eligible for TS/SCI
  • Must meet 8570 IASAE III certification requirements (e.g., CISSP-ISSAP, CISSP-ISSEP)
  • Bachelor’s Degree in Cybersecurity/CS/ISM or related field; Master’s preferred
  • Experience with DoD or Federal Government environments is a plus

Responsibilities

  • Lead selection, evaluation, testing, and integration of enterprise security tools
  • Develop and maintain security tool roadmaps and governance frameworks
  • Architect security strategies for hybrid and multi-cloud environments
  • Ensure compliance with NIST RMF, FISMA, NIST 800-53, DoD STIGs
  • Oversee lifecycle of security architectures from acquisition to modernization
  • Collaborate with cross-functional teams to meet business objectives

Skills

Security architecture
SIEM/SOAR integration
EDR/XDR security
Cloud security architecture
DoD/Federal compliance
Scripting (Python)
DevSecOps

Education

Bachelor’s Degree in Cybersecurity or related field
Master’s Degree preferred

Tools

Splunk
IBM QRadar
Microsoft Defender for Endpoint
Palo Alto Cortex XSOAR
CrowdStrike
Kubernetes
Terraform
Nessus

Job description

ASRC Federal is a leading government contractor furthering missions in space, public health and defense. ASRC Federal is actively hiring a Senior Cybersecurity Tools Architect/Engineer in support of our DCSA program based out of Quantico, VA. This is primarily a Telework position with a requirement to be onsite at least two (2) days a week or as needed at Quantico Marine Corps Base, VA.

Position Description

We are seeking an exceptionally skilled and experienced Senior Cybersecurity Tools Architect/Engineer to lead our enterprise security architecture and tooling initiatives. The ideal candidate will serve as the technical authority for cybersecurity tools, platforms, and frameworks, responsible for defining, designing, and enhancing enterprise-wide security architectures that protect our organization's critical assets, data, and systems across complex, hybrid, and multi-cloud environments.

This senior-level role requires deep expertise in selecting, integrating, and optimizing advanced cybersecurity tools including SIEM/SOAR platforms, firewalls, endpoint detection and response (EDR) solutions, and other security technologies. The Senior Cybersecurity Tools Architect/Engineer will design and implement comprehensive incident response and threat analysis architectures, ensure compliance with federal regulations and industry frameworks, and oversee the complete lifecycle of security systems from acquisition through modernization.

The successful candidate will partner closely with Application, Data, Infrastructure, and Security Operations teams to architect scalable, resilient security solutions that align with business objectives while maintaining the highest standards of security posture and regulatory compliance.

Minimum Requirements
  • Experience: Minimum of 10 years of progressive experience in cybersecurity architecture and engineering, with at least 5 years of hands-on experience designing and implementing enterprise security tools and platforms in large-scale, complex environments
  • Security Clearance: Active Top-Secret Clearance REQUIRED, eligible to be upgraded to TS/SCI
  • Certification Requirements:
  • Must meet 8570 IASAE III certification requirements at the time of hire. (e.g., CISSP-ISSAP, CISSP-ISSEP certification).
  • Education: Bachelor’s Degree in Cybersecurity, Computer Science, Information Systems Management, or a related field; Master’s Degree preferred. An equivalent combination of military service and/or at least ten (10) years of significant, relevant work experience may be considered in lieu of degree requirement.
Required Technical Expertise
  • Security Architecture and Design: Deep expertise in enterprise security architecture frameworks (SABSA, TOGAF, Zachman); Proven experience designing and implementing Cyber Security architectures and principles; Advanced knowledge of defense-in-depth strategies and layered security controls; Experience with on-prem and cloud solutions security architectures; Expertise in secure network architecture, segmentation, and micro-segmentation strategies
  • Security Tools and Platforms: SIEM/SOAR Platforms: Extensive experience with enterprise SIEM solutions (Splunk, IBM QRadar, Microsoft Sentinel, LogRhythm, etc.) and SOAR platforms (Palo Alto Cortex XSOAR, Splunk Phantom, IBM Resilient); Endpoint Security: Deep knowledge of EDR/XDR solutions (CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, Carbon Black); Network Security: Next-generation firewalls (Palo Alto, Fortinet, Cisco Firepower), IDS/IPS, web application firewalls (WAF), and NAC; Vulnerability Management: Vulnerability scanning and management platforms (Tenable, Qualys, Rapid7); Cloud Security: Cloud-native security tools (AWS Security Hub, Azure Security Center, GCP Security Command Center) and CASB solutions; Identity and Access Management: IAM platforms, PAM solutions, and identity governance
  • Compliance and Risk Management: Federal cybersecurity frameworks and regulations (NIST CSF, RMF, NIST 800-53, FISMA, FedRAMP, CMMC, DFARS, ISO 27001/27002, DoD STIGs); Security assessment and authorization (SA&A) and ATO procedures; Risk assessment methodologies and tools
  • Technical Skills: Scripting and automation (Python, PowerShell, Bash); Infrastructure as Code (IaC) and security automation (Terraform, Ansible, CloudFormation); DevSecOps principles and CI/CD security; Containerization (Docker, Kubernetes); API security and microservices
Core Job Responsibilities
  • Tool Integration and Platform Management: Lead the selection, evaluation, testing, and integration of enterprise security software, SIEM/SOAR platforms, firewalls, endpoint defenses, and other cybersecurity tools; Design and implement integration strategies for interoperability; Architect data flows and correlation rules across security platforms
  • Lifecycle and Governance: Develop and maintain security tool roadmaps; Establish governance frameworks, change management and configuration standards
  • framework and Architecture: Build comprehensive security strategies for hybrid environments; Develop reference architectures for secure deployment; Create blueprints for cloud-native apps, IoT, edge computing
  • Risk Management and Compliance: Align security architectures with regulatory mandates (NIST RMF, FISMA, FedRAMP, CMMC, ISO 27001, DoD STIGs); Develop Security Risk Management Plan; Conduct assessments and audits; Lead threat modeling and remediation planning; Prepare security authorization packages and support ATO processes
  • Lifecycle Management: Oversee security architecture across acquisition, design, development, deployment, operations, and modernization; Plan tool upgrades and decommissioning for secure data disposal
  • Policy, Standards, and Governance: Establish security policies, standards, procedures, and guidelines; Security baselines and hardening guides; Define metrics (KPIs/KRIs); Governance processes
  • Technical Leadership and Innovation: Serve as SME for cybersecurity architecture and tools; Troubleshoot integrations; Lead POC initiatives; Mentor junior staff; Present to leadership
  • Training and Enablement: Develop and deliver training; Knowledge transfer during tool implementations
  • Work Environment and Travel: Telework with onsite requirement; occasional travel as needed
Preferred Qualifications
  • Experience in Department of Defense (DoD) or Federal Government environments
  • Experience supporting DCSA, DoD, or Intelligence Community programs
  • Advanced knowledge of DoD cybersecurity requirements, RMF processes, and authorization procedures
  • Experience with Continuous Diagnostics and Mitigation (CDM) program and tools
  • Background in penetration testing, red team operations, or offensive security
  • Experience with SOAR development and threat intelligence platforms (MITRE ATT&CK, STIX/TAXII)
  • Data loss prevention and insider threat detection solutions
  • SDN and NFV security
  • Leadership experience as principal/ chief architect
  • Published research or presentations on cybersecurity architecture
  • Active participation in cybersecurity professional organizations

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

EEO Statement: ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyber Tools Architect—Telework Ready
Senior Cyber Tools Architect—Telework Ready

ASRC Federal • Quantico (VA)

Hybrid
USD 140,000 - 210,000
Health care
Dental
Vision
+4
Information Security Engineer - Principal
Information Security Engineer - Principal

ASRC Federal • Town of Texas (WI), Northern (KY)

Hybrid
USD 140,000 - 170,000
Cyber Incident Responder (24x7 Days)
Cyber Incident Responder (24x7 Days)

ASRC Federal • Virginia (MN)

On-site
USD 110,000 - 150,000
Cyber Defense Incident Responder - Swing Shift
Cyber Defense Incident Responder - Swing Shift

ASRC Federal • Quantico (VA)

On-site
USD 90,000 - 120,000
Health care
401(k)
Education assistance
+1
Cyber Incident Responder (24x7 Days)
Cyber Incident Responder (24x7 Days)

ASRC Federal • Quantico (VA)

On-site
USD 120,000 - 170,000
Health insurance
Dental insurance
Vision insurance
+5
Sr Cyber Security Engineer
Sr Cyber Security Engineer

Scires • Huntsville (AL)

On-site
USD 120,000 - 180,000
Elastic SIEM Engineer
Elastic SIEM Engineer

ASRC Federal • Hanover (MD)

Hybrid
USD 150,000 - 166,000
Health care
Dental insurance
Vision insurance
+4
Enterprise Cybersecurity Principal
Enterprise Cybersecurity Principal

Applied Research Solutions • Colorado Springs (CO)

On-site
USD 165,000 - 175,000
Penetration Tester
Penetration Tester

ASRC Federal • Washington

Hybrid
USD 120,000 - 180,000
Health insurance
401(k) plan
Education assistance
+1
Information Security Engineer
Information Security Engineer

ASRC Federal • Huntsville (AL)

On-site
USD 90,000 - 140,000