- Salary
- $153k – $207k
- Location
- USA VA Home Office (VAHOME), United States of America
- Workplace
- Remote
- Type
- Full-time
- Department
- Engineering
- Clearance
- Required
- Source
- Workday
Description
Type of Requisition:
RegularClearance Level Must Currently Possess:
Top SecretClearance Level Must Be Able to Obtain:
Top Secret/SCIPublic Trust/Other Required:
NoneJob Family:
Cyber and IT Risk ManagementJob Qualifications:
Skills:
Compliance Risk Management, Customer Service, Cyber Security Architecture, Cyber Security Management, IT Operations SupportCertifications:
NoneExperience:
10 + years of related experienceUS Citizenship Required:
YesJob Description:
Cybersecurity Architect
We are GDIT. The people supporting and securing some of the most complex government, defense, and intelligence projects across the country. At GDIT, we ensure today is safe and tomorrow is smarter. Our work has meaning, making an impact on both the world around us and ourselves. This is your place to embrace autonomy, seize opportunity, and deliver your best every day.
GDIT has an opening for a Cybersecurity Architect. Join us on a pivotal IT Service Management contract that drives the modernization, expansion, and evolution of the program’s global IT services. The program focuses on IT infrastructure, WAN, authentication, directory services, cybersecurity, application hosting, and more, using the ITIL framework to deliver quality IT services.
MEANINGFUL WORK AND PERSONAL IMPACT
Cybersecurity Architecture & Strategy
Design and evolve enterprise cybersecurity architectures that protect mission-critical systems and data across global IT environments.
Develop reference architectures, security patterns, and technical roadmaps that align with federal cybersecurity requirements, DoW guidance, and industry best practices.
Partner with the Cybersecurity Manager and other stakeholders to translate mission, business, and compliance needs into secure, resilient architectural solutions.
Technical Design & Systems Integration
Architect end-to-end security solutions spanning network, endpoint, identity, cloud, and application layers, ensuring secure integration with existing infrastructure and services.
Lead the design and optimization of cybersecurity platforms and services such as SIEM solutions (e.g., Splunk, Elastic), log management, endpoint protection, and supporting data pipelines.
Define technical requirements, security controls, and implementation standards, ensuring solutions are scalable, maintainable, and aligned to Zero Trust principles and risk management frameworks.
Tooling, Configuration, and Operations Support
Provide architectural guidance for the configuration and operation of cybersecurity tools, including the design of logging strategies, detection use cases, dashboards, and alerting logic.
Collaborate with engineering and operations personnel to ensure that deployed tools adhere to architecture standards and deliver effective monitoring, detection, and response capabilities.
Recommend enhancements and modernization initiatives for existing security capabilities based on emerging threats, lessons learned, and evolving mission needs.
Compliance, Risk Management & Accreditation
Embed compliance and risk management requirements into cybersecurity architectures, ensuring alignment with RMF, DoW, and agency-specific standards.
Contribute to the development and maintenance of System Security Plans (SSPs) and other accreditation artifacts, ensuring architectural documentation accurately reflects control implementation and inheritance.
Utilize eMASS and implement DISA STIGs, SCAP/SCC scans, and related tools, integrating these requirements into solution designs and ongoing operational processes.
Documentation, Communication & Collaboration
Create and maintain architectural diagrams, technical standards, design documents, and decision records that are clear, accurate, and reusable.
Communicate complex cybersecurity concepts in a way that is accessible to leadership, stakeholders, and technical teams, supporting informed decision-making.
Engage in regular coordination with customer representatives, program leadership, and cross-functional IT teams to ensure security architectures remain aligned with evolving mission objectives.
Mentorship & Team Support
Provide guidance, leadership and mentorship to cybersecurity engineers and analysts, helping them understand and implement architectural principles, security design patterns, and best practices.
Support a collaborative, professional team culture by sharing expertise, reviewing designs and configurations, and offering constructive feedback on security solutions.
Help foster continuous improvement across the cybersecurity function by contributing to standards, playbooks, and knowledge-sharing efforts.
Customer-Focused Support
Serve as a key technical resource for customer-facing discussions regarding cybersecurity architecture, design decisions, and risk trade-offs.
Act as an escalation point for complex technical issues requiring architectural analysis and recommendations, helping ensure mission success and system resilience.
Support periodic after-hours activities when architectural input is needed for troubleshooting, critical changes, or incident response.
WHAT YOU’LL NEED TO SUCCEED
Education:
Bachelor’s degree in cybersecurity, computer science, information assurance, or a related field, or equivalent experience.
Experience:
10+ years in IT, cybersecurity, or information assurance roles, including experience designing and implementing security solutions and architectures in complex environments. Experience mentoring or guiding technical team members is desired.
Skills / Additional Requirements:
Server Administration: 2+ years of Red Hat Linux engineering and 2+ years of Windows Server administration.
SIEM Platforms: 2+ years working with SIEM platforms, preferably Splunk or Elastic Search, including design of data ingestion, correlation, and use cases.
Compliance / Accreditation: Experience applying DISA STIGs, using SCAP/SCC scanning tools, and working with CCRI and RMF processes.
Scripting: Proficiency with PowerShell, Python, or BASH scripting is highly preferred, especially for automating security control implementation and data workflows.
Certificates: Familiarity with TLS and SSL certificate management and integration into system and application architectures.
Virtualization / Storage: Knowledge or experience with VMware ESXi, NetApp, or SAN architectures and how security controls are applied in virtualized and storage environments.
Additional Technologies: Experience with Apache Kafka or Confluent is a plus, particularly for designing secure data streaming architectures.
Certification Requirements:
Must possess the appropriate baseline certification(s) to achieve a minimum of DoW 8570.01-M Information Assurance Technical (IAT) Level II (e.g., CompTIA Security+ CE) prior to start. Will need to obtain an additional computing environment certification within six months of hire based on position designation (e.g., CEH, CCNA-Security, CND). Candidate may have further discussions with the program’s Cybersecurity Manager for more details. When DoW 8140 requirements are implemented on the program/contract, employees will need to conform to 8140 certification standards.
Security Clearance Level:
Active TOP SECRET w/ SCI eligibility and must be maintained.
Work schedules are subject to change based on mission requirements from GDIT or USG leadership.
GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
Growth: AI-powered career tool that identifies career steps and learning opportunities
Support: An internal mobility team focused on helping you achieve your career goals
Rewards: Comprehensive benefits and wellness packages, 401K with company match, competitive pay and paid time off
Community: Award-winning culture of innovation and a military-friendly workplace
OWN YOUR OPPORTUNITY
Explore a career in program management at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your passion for the mission and delivering results.
#GDIT #GDITPriority
The likely salary range for this position is $153,000 - $207,000. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.Scheduled Weekly Hours:
40Travel Required:
Less than 10%Telecommuting Options:
RemoteWork Location:
Any Location / RemoteAdditional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee’s date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.
About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.Join our Talent Community to stay up to date on our career opportunities and events atEqual Opportunity Employer / Individuals with Disabilities / Protected Veterans