Genesis Consulting Partners, LLC

Cloud Security Architect

Genesis Consulting Partners, LLC · District of Columbia, United States

IT Services and IT Consulting · 51-200 employees

20 h ago
Remote Principal (10+ yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Cloud Security Architect will lead the design and implementation of secure cloud architectures for the GSA GO.gov program to ensure compliance with Federal security standards. This role involves managing ATO processes, conducting security assessments, and collaborating with cross-functional teams to embed security throughout the development lifecycle.

What they look for

Cloud Security Architecture AWS FedRAMP FISMA NIST RMF ATO Processes DevSecOps Identity Management System Security Plans Infrastructure-as-Code Encryption Vulnerability Assessment Continuous Monitoring API Security Enterprise SaaS Cybersecurity Engineering

Requirements

Candidates must have over 10 years of experience in cloud security architecture, including at least 5 years in Federal FedRAMP and FISMA environments. A Bachelor's degree in a related field and an ISSO/ISSM security certification are required, along with US citizenship and the ability to obtain a Public Trust clearance.

Full description

Job Title: Cloud Security Architect

Job Type:

Full-Time

Job Location:

Washington, DC (remote)

Job Summary:

Genesis Consulting is seeking an experienced Cloud Security Architect to support the GSA GO.gov travel modernization program by leading the design, assessment, and implementation of secure cloud architectures that comply with Federal security and risk management requirements. This role is responsible for ensuring cloud-hosted Travel & Expense solutions, integrations, and supporting services meet FedRAMP, FISMA, NIST, and GSA security standards while enabling secure, scalable, and resilient enterprise services.

The ideal candidate has extensive experience with AWS cloud security, FedRAMP/FISMA authorizations, ATO processes, DevSecOps, and cloud architecture in Federal environments. Experience securing SAP Concur, middleware platforms, identity management solutions, and enterprise SaaS integrations is highly desirable. The candidate should also have experience collaborating with executive stakeholders, security teams, cloud service providers, and implementation partners throughout the authorization lifecycle. This profile reflects extensive experience leading FedRAMP sponsorships, GSA security engineering, cloud architecture reviews, and securing GO.gov and SAP Concur integrations.

Duties, Responsibilities, & Skills:

· Lead the cloud security architecture for the GSA GO.gov program, ensuring compliance with Federal cybersecurity requirements.

· Design and review secure cloud architectures supporting SAP Concur, middleware, identity management, financial systems, and enterprise SaaS solutions.

· Lead security assessments, architecture reviews, and technical evaluations supporting Authority to Operate (ATO), FedRAMP sponsorship, and FISMA compliance.

· Evaluate cloud service providers, system architectures, security controls, encryption strategies, logging, monitoring, and identity management implementations.

· Develop and review System Security Plans (SSPs), Security Assessment Plans (SAPs), security architecture documentation, and supporting authorization artifacts.

· Ensure cloud environments comply with NIST SP 800-53, NIST Risk Management Framework (RMF), FedRAMP, and agency-specific security policies.

· Partner with architects, developers, DevSecOps engineers, and integration teams to embed security throughout the system development lifecycle.

· Support Continuous Monitoring (ConMon), POA&M management, major change reviews, and security assessments.

· Review API security, middleware architectures, data protection controls, encryption, and secure integration patterns.

· Implement security automation and Infrastructure-as-Code (IaC) best practices using cloud-native services and DevSecOps tooling.

· Provide technical guidance to executive leadership, ISSOs, security assessors, and program stakeholders regarding security risks and mitigation strategies.

· Participate in security audits, Independent Verification & Validation (IV&V), vulnerability assessments, and penetration testing activities.

Requirements

· 10+ years of experience in cloud security architecture, cybersecurity engineering, or enterprise security.

· 5+ years supporting Federal cloud security initiatives within FedRAMP and FISMA environments.

· Experience designing and securing AWS cloud environments.

· Experience leading security architecture reviews, risk assessments, and ATO activities.

· Strong knowledge of NIST SP 800-53, RMF, FedRAMP, FISMA, and Continuous Monitoring (ConMon).

· Experience developing or reviewing security documentation, including SSPs, SAPs, POA&Ms, and security engineering artifacts.

· Experience working with cloud-native security controls, encryption, identity management, logging, and monitoring.

· Excellent written and verbal communication skills with the ability to present technical concepts to executive leadership.

Preferred Qualifications:

· Experience supporting GSA, GO.gov, or other large Federal modernization initiatives.

· Experience securing SAP Concur or other enterprise SaaS platforms.

· Experience reviewing security architectures for MuleSoft, Keycloak, Snowflake, API Gateway, or enterprise integration platforms.

· Experience implementing DevSecOps practices and security automation.

· Familiarity with AI/LLM security, secure software development, and cloud-native application security.

Minimum Education:

· Bachelor’s Degree in Cybersecurity, Computer Science, Information Systems, Engineering, or another related field.

Required Certifications:

· ISSO / ISSM Security Certification

Other:

· Must be a US Citizen

· Must be able to obtain a Public Trust Clearance

· Must have a clean record and pass Criminal Background Check