Cloud Security Architect
Job Description
<div class="content-intro"><h3>About Us</h3> <div> <div>AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.</div> </div></div><p>The <strong>Cloud Security Architect</strong> provides specialized cybersecurity architecture and engineering guidance for modern, distributed, cloud, and cloud-native DoD environments. The position serves as a technical security consultant to Mission Partners, system owners, architects, developers, ISSMs, and ISSOs and helps ensure security is engineered into cloud solutions rather than addressed only after formal assessment.</p> <p><strong>Essential Duties and Responsibilities:</strong></p> <ul> <li>Design, review, and recommend secure architectures for cloud, hybrid, distributed, and cloud-native environments.</li> <li>Perform security architecture and design reviews to identify design-level weaknesses and recommend appropriate mitigations.</li> <li>Provide specialized security guidance for APIs, microservices, containerized workloads, Docker, Kubernetes, serverless functions, and software-defined networking.</li> <li>Analyze cloud architectures, system interfaces, trust boundaries, network segmentation, and data flows for cybersecurity risk.</li> <li>Translate RMF, NIST, DoD cybersecurity, and hardening requirements into actionable cloud engineering solutions.</li> <li>Collaborate with system owners, developers, and architects during requirements development, design reviews, modernization efforts, and implementation.</li> <li>Recommend practical technical controls such as multi-factor authentication, encryption, secure network zoning, access controls, and other security mechanisms.</li> <li>Support vulnerability remediation and development of technically sound mitigation strategies that reduce attack surface while maintaining mission capability.</li> <li>Provide technical recommendations to ISSMs/ISSOs and clearly communicate architectural risks and mitigation alternatives to Government stakeholders.</li> </ul> <p><strong>Required Skills, Qualifications and Experience:</strong></p> <ul> <li>Bachelor’s degree or additional equivalent professional experience.</li> <li>10+ years of related experience.</li> <li>DoD 8140 Work Role 652 – Security Architect Certification requirement (must have at least one of the following): Security X/CASP+CE, CCSP, Cloud+, CISSP, CSSLP, CISM, CISSP-ISSAP, CISSP-ISSIP, CSSLP, and GSEC.</li> <li>Must have and maintain a current DoD Top Secret clearance.</li> <li>Must reside within a commutable distance of Fort Meade, MD or Chambersburg, PA in order to work a hybrid onsite schedule (4 days onsite weekly).</li> <li>Demonstrated cloud and cloud-native security architecture experience.</li> <li>Demonstrated expertise securing APIs, microservices, containerized workloads, Kubernetes/Docker, serverless functions, and software-defined networking.</li> <li>Expert knowledge of RMF, NIST SP 800-37, and NIST SP 800-53.</li> <li>Practical knowledge of DoD STIGs, SRGs, and applicable DoD cybersecurity requirements.</li> <li>Ability to translate compliance requirements into concrete technical engineering solutions.</li> <li>Experience evaluating architectures, system relationships, interfaces, and data flows.</li> <li>Strong consulting, communication, and presentation skills.</li> <li&g