Cybersecurity Architect - Top Secret Clearance Required

Clearance Level
Top Secret
Category
Cyber and IT Risk Management
Location
Remote, Working from the USA
Key Skills For Success

Compliance Risk Management

Customer Service

Cyber Security Architecture

Cyber Security Management

IT Operations Support

REQ#: RQ226275
Public Trust: None
Requisition Type: Regular
Your Impact

Own your opportunity to support our nation's defense. Make an impact by connecting and securing critical operations across the globe, keeping our country safe and secure.

Job Description

Cybersecurity Architect

We are GDIT. The people supporting and securing some of the most complex government, defense, and intelligence projects across the country. At GDIT, we ensure today is safe and tomorrow is smarter. Our work has meaning, making an impact on both the world around us and ourselves. This is your place to embrace autonomy, seize opportunity, and deliver your best every day.

GDIT has an opening for a Cybersecurity Architect. Join us on a pivotal IT Service Management contract that drives the modernization, expansion, and evolution of the program’s global IT services. The program focuses on IT infrastructure, WAN, authentication, directory services, cybersecurity, application hosting, and more, using the ITIL framework to deliver quality IT services.

MEANINGFUL WORK AND PERSONAL IMPACT

Cybersecurity Architecture & Strategy

  • Design and evolve enterprise cybersecurity architectures that protect mission-critical systems and data across global IT environments.

  • Develop reference architectures, security patterns, and technical roadmaps that align with federal cybersecurity requirements, DoW guidance, and industry best practices.

  • Partner with the Cybersecurity Manager and other stakeholders to translate mission, business, and compliance needs into secure, resilient architectural solutions.

Technical Design & Systems Integration

  • Architect end-to-end security solutions spanning network, endpoint, identity, cloud, and application layers, ensuring secure integration with existing infrastructure and services.

  • Lead the design and optimization of cybersecurity platforms and services such as SIEM solutions (e.g., Splunk, Elastic), log management, endpoint protection, and supporting data pipelines.

  • Define technical requirements, security controls, and implementation standards, ensuring solutions are scalable, maintainable, and aligned to Zero Trust principles and risk management frameworks.

Tooling, Configuration, and Operations Support

  • Provide architectural guidance for the configuration and operation of cybersecurity tools, including the design of logging strategies, detection use cases, dashboards, and alerting logic.

  • Collaborate with engineering and operations personnel to ensure that deployed tools adhere to architecture standards and deliver effective monitoring, detection, and response capabilities.

  • Recommend enhancements and modernization initiatives for existing security capabilities based on emerging threats, lessons learned, and evolving mission needs.

Compliance, Risk Management & Accreditation

  • Embed compliance and risk management requirements into cybersecurity architectures, ensuring alignment with RMF, DoW, and agency-specific standards.

  • Contribute to the development and maintenance of System Security Plans (SSPs) and other accreditation artifacts, ensuring architectural documentation accurately reflects control implementation and inheritance.

  • Utilize eMASS and implement DISA STIGs, SCAP/SCC scans, and related tools, integrating these requirements into solution designs and ongoing operational processes.

Documentation, Communication & Collaboration

  • Create and maintain architectural diagrams, technical standards, design documents, and decision records that are clear, accurate, and reusable.

  • Communicate complex cybersecurity concepts in a way that is accessible to leadership, stakeholders, and technical teams, supporting informed decision-making.

  • Engage in regular coordination with customer representatives, program leadership, and cross-functional IT teams to ensure security architectures remain aligned with evolving mission objectives.

Mentorship & Team Support

  • Provide guidance, leadership and mentorship to cybersecurity engineers and analysts, helping them understand and implement architectural principles, security design patterns, and best practices.

  • Support a collaborative, professional team culture by sharing expertise, reviewing designs and configurations, and offering constructive feedback on security solutions.

  • Help foster continuous improvement across the cybersecurity function by contributing to standards, playbooks, and knowledge-sharing efforts.

Customer-Focused Support

  • Serve as a key technical resource for customer-facing discussions regarding cybersecurity architecture, design decisions, and risk trade-offs.

  • Act as an escalation point for complex technical issues requiring architectural analysis and recommendations, helping ensure mission success and system resilience.

  • Support periodic after-hours activities when architectural input is needed for troubleshooting, critical changes, or incident response.

WHAT YOU’LL NEED TO SUCCEED

Education:
Bachelor’s degree in cybersecurity, computer science, information assurance, or a related field, or equivalent experience.

Experience:
10+ years in IT, cybersecurity, or information assurance roles, including experience designing and implementing security solutions and architectures in complex environments. Experience mentoring or guiding technical team members is desired.

Skills / Additional Requirements:

  • Server Administration: 2+ years of Red Hat Linux engineering and 2+ years of Windows Server administration.

  • SIEM Platforms: 2+ years working with SIEM platforms, preferably Splunk or Elastic Search, including design of data ingestion, correlation, and use cases.

  • Compliance / Accreditation: Experience applying DISA STIGs, using SCAP/SCC scanning tools, and working with CCRI and RMF processes.

  • Scripting: Proficiency with PowerShell, Python, or BASH scripting is highly preferred, especially for automating security control implementation and data workflows.

  • Certificates: Familiarity with TLS and SSL certificate management and integration into system and application architectures.

  • Virtualization / Storage: Knowledge or experience with VMware ESXi, NetApp, or SAN architectures and how security controls are applied in virtualized and storage environments.

  • Additional Technologies: Experience with Apache Kafka or Confluent is a plus, particularly for designing secure data streaming architectures.

Certification Requirements:
Must possess the appropriate baseline certification(s) to achieve a minimum of DoW 8570.01-M Information Assurance Technical (IAT) Level II (e.g., CompTIA Security+ CE) prior to start. Will need to obtain an additional computing environment certification within six months of hire based on position designation (e.g., CEH, CCNA-Security, CND). Candidate may have further discussions with the program’s Cybersecurity Manager for more details. When DoW 8140 requirements are implemented on the program/contract, employees will need to conform to 8140 certification standards.

Security Clearance Level:
Active TOP SECRET w/ SCI eligibility and must be maintained.

Work schedules are subject to change based on mission requirements from GDIT or USG leadership.

GDIT IS YOUR PLACE

At GDIT, the mission is our purpose, and our people are at the center of everything we do.

  • Growth: AI-powered career tool that identifies career steps and learning opportunities

  • Support: An internal mobility team focused on helping you achieve your career goals

  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, competitive pay and paid time off

  • Community: Award-winning culture of innovation and a military-friendly workplace

OWN YOUR OPPORTUNITY
Explore a career in program management at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your passion for the mission and delivering results.

#GDIT #GDITPriority

Work Requirements

Years of Experience

10 + years of related experience

* may vary based on technical training, certification(s), or degree

Certification

CompTIA Security+ CE | CompTIA - CompTIA

Travel Required

Less than 10%

Citizenship

U.S. Citizenship Required

Salary and Benefit Information

The likely salary range for this position is $153,000 - $207,000. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
View information about benefits and our total rewards program.

Our Identity Verification Process

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans