Principal Cyber Security Architect
Vigna Solutions Inc.
- Job
- 28226
- Posted
- Location
- Laurel, MD
- Work type
- Full Time
- Tax terms
- W2, Yearly
- Experience
- Experience open
- Openings
- 1 opening
Opens your email app with a message to the employer, its subject naming this job. Attach your resume and send it from your own email.
Skills
- AWS
- Azure
- CI/CD
- SIEM
- NIST
- Agile
- Requirements
About the job
This is a hybrid position requiring 3 days onsite and 2 days remote work. Candidates should reside a commutable distance to one of the above locations.
We are looking for a Cyber Security Architect to join the Air Traffic Business Area within the Homeland Sector, supporting the development of the Virtusa’s Client Common Automation Platform (L-CAP). L-CAP is a mission-critical, future-ready automation platform built on a hybrid cloud data mesh architecture, enabling next-generation air traffic management capabilities. You will serve as a senior cybersecurity architect responsible for defining the security architecture across a large-scale hybrid cloud platform supporting national air traffic operations. We are building with an AI-first engineering mindset, embracing emerging AI capabilities and modern development practices to accelerate delivery, improve software quality, and continuously evolve how we design and build mission-critical systems. This position supports government programs and requires the ability to obtain and maintain a favorable Public Trust investigation.
What You'll Do
Define and maintain the cybersecurity architecture for the L-CAP platform
Develop and execute the FedRAMP compliance strategy across cloud environments
Lead Authority to Operate (ATO) planning and execution activities
Conduct threat modeling and vulnerability assessments across platform components
Design and implement zero trust architecture principles across the enterprise
Establish and govern the security controls framework aligned to NIST 800-53
Integrate security practices into DevSecOps pipelines and CI/CD workflows
Provide cybersecurity governance across four Agile Release Trains (ARTs)
Define security requirements for platform services and application teams
Perform risk assessments and recommend mitigations for emerging threats
Define security architecture for distributed real-time ATC services including inter-service communication protection and API gateway security
Establish software supply chain integrity controls including SBOM generation, artifact signing, and dependency vulnerability management
Design security patterns for cloud-native service communications protecting mission-critical ATC data flows
Champion an AI-first engineering culture by identifying and applying AI-assisted development capabilities, automation, and emerging software engineering practices that improve developer productivity, code quality, testing, and delivery.
Core Technical Qualifications:
Bachelor's degree with 12+ years of cybersecurity experience
Demonstrated cybersecurity architecture experience for enterprise platforms
Deep knowledge of FedRAMP authorization processes and requirements
Expertise in NIST 800-53 security controls and Risk Management Framework (RMF)
Experience leading ATO efforts for federal information systems
Knowledge of zero trust architecture principles and implementation patterns
Experience with safety-critical systems security requirements
Cloud security expertise across AWS and/or Azure environments
Understanding of distributed systems security challenges and solutions
Ability to obtain and maintain a Public Trust clearance; ship required; subject to government background investigation
Experience securing distributed real-time services and microservice communication patterns
Knowledge of software supply chain security practices (SLSA, SBOM, artifact signing, dependency scanning)
Ability to obtain and maintain a Public Trust
U.S. citizenship required
Successful completion of background investigations as required by the government customer
Preferred / Desired Qualifications
CISSP, CISM, or equivalent cybersecurity certifications
FAA or aviation-sector cybersecurity experience
Penetration testing and red team experience
SIEM architecture and security operations design
Mission assurance and continuity of operations experience
DoD or federal civilian agency cybersecurity programs
Experience securing real-time operational systems in aviation or air traffic control environments.