Skip to content
All jobs

Principal Cyber Security Architect

Vigna Solutions Inc.

Job
28226
Posted
Location
Laurel, MD
Work type
Full Time
Tax terms
W2, Yearly
Experience
Experience open
Openings
1 opening

Opens your email app with a message to the employer, its subject naming this job. Attach your resume and send it from your own email.

Skills

  • AWS
  • Azure
  • CI/CD
  • SIEM
  • NIST
  • Agile
  • Requirements

About the job

This is a hybrid position requiring 3 days onsite and 2 days remote work. Candidates should reside a commutable distance to one of the above locations.

We are looking for a Cyber Security Architect to join the Air Traffic Business Area within the Homeland Sector, supporting the development of the Virtusa’s Client Common Automation Platform (L-CAP). L-CAP is a mission-critical, future-ready automation platform built on a hybrid cloud data mesh architecture, enabling next-generation air traffic management capabilities. You will serve as a senior cybersecurity architect responsible for defining the security architecture across a large-scale hybrid cloud platform supporting national air traffic operations. We are building with an AI-first engineering mindset, embracing emerging AI capabilities and modern development practices to accelerate delivery, improve software quality, and continuously evolve how we design and build mission-critical systems. This position supports government programs and requires the ability to obtain and maintain a favorable Public Trust investigation.

What You'll Do

Define and maintain the cybersecurity architecture for the L-CAP platform

Develop and execute the FedRAMP compliance strategy across cloud environments

Lead Authority to Operate (ATO) planning and execution activities

Conduct threat modeling and vulnerability assessments across platform components

Design and implement zero trust architecture principles across the enterprise

Establish and govern the security controls framework aligned to NIST 800-53

Integrate security practices into DevSecOps pipelines and CI/CD workflows

Provide cybersecurity governance across four Agile Release Trains (ARTs)

Define security requirements for platform services and application teams

Perform risk assessments and recommend mitigations for emerging threats

Define security architecture for distributed real-time ATC services including inter-service communication protection and API gateway security

Establish software supply chain integrity controls including SBOM generation, artifact signing, and dependency vulnerability management

Design security patterns for cloud-native service communications protecting mission-critical ATC data flows

Champion an AI-first engineering culture by identifying and applying AI-assisted development capabilities, automation, and emerging software engineering practices that improve developer productivity, code quality, testing, and delivery.

Core Technical Qualifications:

Bachelor's degree with 12+ years of cybersecurity experience

Demonstrated cybersecurity architecture experience for enterprise platforms

Deep knowledge of FedRAMP authorization processes and requirements

Expertise in NIST 800-53 security controls and Risk Management Framework (RMF)

Experience leading ATO efforts for federal information systems

Knowledge of zero trust architecture principles and implementation patterns

Experience with safety-critical systems security requirements

Cloud security expertise across AWS and/or Azure environments

Understanding of distributed systems security challenges and solutions

Ability to obtain and maintain a Public Trust clearance; ship required; subject to government background investigation

Experience securing distributed real-time services and microservice communication patterns

Knowledge of software supply chain security practices (SLSA, SBOM, artifact signing, dependency scanning)

Ability to obtain and maintain a Public Trust

U.S. citizenship required

Successful completion of background investigations as required by the government customer

Preferred / Desired Qualifications

CISSP, CISM, or equivalent cybersecurity certifications

FAA or aviation-sector cybersecurity experience

Penetration testing and red team experience

SIEM architecture and security operations design

Mission assurance and continuity of operations experience

DoD or federal civilian agency cybersecurity programs

Experience securing real-time operational systems in aviation or air traffic control environments.

Similar jobs

See all jobs