AnaVation

Cybersecurity Architect/Engineer

AnaVation San Antonio, Texas, United States

IT Services and IT Consulting · 51-200 employees

19 h ago
security Principal (10+ yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Cybersecurity Architect/Engineer will lead the design, implementation, and integration of secure cloud-native and software factory environments. They are responsible for maintaining compliance with RMF and cATO requirements while coordinating security activities across Agile delivery workflows.

What they look for

Cybersecurity architecture Cloud security Risk Management Framework DevSecOps Kubernetes OpenShift Zero Trust Vulnerability management STIG implementation Infrastructure as Code DoD cybersecurity policy Continuous Authority to Operate Technical leadership Security control validation Agile methodology Body of Evidence development

Requirements

Candidates must possess a Bachelor's degree and at least nine years of experience in DoD cybersecurity or cloud security missions. A TS/SCI clearance with a CI Polygraph is required, along with relevant certifications such as CISSP, CCSP, or AWS Security Specialty.

Benefits

Medical insurance Dental insurance Vision insurance Long-term disability insurance Short-term disability insurance 401k plan Paid leave Holiday package Tuition reimbursement Training reimbursement Life insurance AD&D insurance

Full description

Be Challenged and Make a Difference

In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture.

Description of Task to be Performed:

AnaVation is seeking a highly experienced Cyber Security Architect/Engineer who will support the mission by providing technical leadership for our mission critical customer in San Antonio, TX. As our Cybersecurity Architect/Engineer you will provide support to monitor, analyze, and detect Cyber events and incidents within information systems and networks under general supervision. The Cybersecurity Architect is responsible for the design, development, implementation, and integration of DoD IA architectures, systems, or system components for use within computing, network, and enclave environments. You will assist with integrated dynamic Cyber defense: coordinating and maintaining security toolsets to support organizations’ continuous monitoring and ongoing authorization programs and establish a framework by which cyber risk can be measured. The Cybersecurity Architect/Engineer will determine security requirements and prepare cost estimates by evaluating business strategies and requirements, researching information security standards, conducting system security vulnerability analyses and risk assessments, studying architecture/platform, and identifying integration issues. Other duties include implementing security systems by specifying intrusion detection methodologies and equipment, directing equipment and software installation and calibration, preparing preventive and reactive measures, creating, transmitting, and maintaining keys, completing documentation, and verifying security systems by developing and implementing test scripts.

Position Responsibilities: This position establishes the technical quality standard for cybersecurity engineering and Body of Evidence (BOE) development while ensuring cloud security controls remain continuously validated, compliant, and audit-ready throughout the software lifecycle.

Responsibilities include:

  • Serve as the technical lead for cyber security architect & Engineering activities for mission critical software factory and cloud-native environments.
  • Coordinate with the appropriate technical, security, and Government points of contacts to synchronize cloud security activities across Value Stream sprint cadences and Agile delivery schedules.
  • Collaborate with Government stakeholders, software developers, DevSecOps engineers, ISSMs, ISSEs, ISSOs, Cyber Operations Teams (COT), and Cyber Penetration Teams (CPT) to integrate cybersecurity throughout the software development lifecycle.
  • Implement, document, test, validate, and continuously maintain technical, operational, and management security controls supporting RMF and Continuous Authority to Operate (cATO).
  • Apply cyber security methodology by integrating RMF requirements, Department of Defense cybersecurity policy, Zero Trust principles, and cATO objectives directly into SAFe Agile and DevSecOps workflows.
  • Establish and maintain the quality of the Body of Evidence (BOE) supporting initial ATOs, continuous monitoring, and long-term continuous authorization.
  • Coordinate continuous assessment of authorization artifacts, inherited controls, configuration baselines, automated security scan results, vulnerability remediation activities, and compliance evidence.
  • Design and implement cloud security solutions supporting Kubernetes, OpenShift, containerized applications, Infrastructure as Code (IaC), and enterprise DevSecOps pipelines.
  • Support vulnerability management, STIG implementation, security control validation, and cybersecurity automation across development, testing, staging, production, and classified environments.
  • Evaluate cybersecurity risks and recommend technical solutions that improve security posture while maintaining mission velocity.
  • Develop executive-level technical briefings, architecture recommendations, cybersecurity metrics, and risk assessments supporting Government decision-making.

\n

Required Qualifications:

  • Clearance: U.S. Citizen, TS/SCI cleared within last 2 years; CI Polygraph within last 5 years
  • Education: Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Software Engineering, Cloud Computing, or related technical field.
  • Certification: One or more of the following: CISSP, CCSP, AWS Security Specialty or Equivalent DoD 8140 certification
  • Location: Full-time on-site in San Antonio, TX.
  • Experience and knowledge:
  • Nine or more years supporting Department of Defense cybersecurity or cloud security missions.
  • Nine or more years implementing cloud security solutions within AWS, Kubernetes, OpenShift, or containerized environments.
  • Experience supporting Risk Management Framework (RMF), Authority to Operate (ATO), and Continuous Authority to Operate (cATO).
  • Experience integrating cybersecurity into Agile, SAFe, and DevSecOps software delivery environments.
  • Experience developing and maintaining authorization artifacts and supporting Bodies of Evidence (BOE).
  • Experience implementing Zero Trust security architectures and cloud-native security controls.
  • Experience supporting vulnerability management, STIG implementation, security automation, and continuous monitoring.
  • Working knowledge of NIST SP 800-53, CNSSI guidance, DoD cybersecurity policy, and enterprise cloud security principles.
  • Strong written and verbal communication skills with experience briefing senior Government leadership.

Preferred Qualifications:

  • Clearance: TS/SCI w/CI Poly
  • Education: Advanced degree in Cybersecurity, Computer Science, Cloud Computing, Software Engineering, Information Assurance, or related field.
  • Certification: One or more of the following: CCSP, AWS Advanced Networking, Certified Kubernetes Security Specialist (CKS), Certified Kubernetes Administrator (CKA)
  • Experience an Knowledge:
  • Nine or more years supporting Department of Defense cybersecurity engineering or enterprise cloud environments.
  • Experience supporting software factories and enterprise DevSecOps ecosystems.
  • Experience implementing Continuous Authority to Operate (cATO).
  • Experience supporting Kubernetes, OpenShift, Iron Bank, and hardened container environments.
  • Experience implementing Infrastructure as Code (Terraform, Helm, GitOps, Kustomize).
  • Experience supporting IL4, IL5, or IL6 cloud environments.
  • Experience supporting Cyber Operations Teams (COT), Cyber Penetration Teams (CPT), or Security Control Assessors.
  • Familiarity with mission architecture and secure software supply chain initiatives.
  • Experience supporting multiple Combatant Commands, military services, or Intelligence Community organizations.

\nBenefits

  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short-term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance

About AnaVation

AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team.

If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you!

AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.

Similar roles