Enterprise Security Architect III
Boost your chances before you apply.
IQUASAR LLC
US
Summary
The Enterprise Security Architect III will design and maintain security architecture for ICAM applications while integrating security controls into cloud and DevSecOps environments. The role involves leading system security assessments, managing vulnerability remediation, and ensuring compliance with federal security requirements.
Job Description
Benefits:
- 401(k)
- Dental insurance
- Health insurance
- Paid time off
- Vision insurance
iQuasar LLC has an exciting opportunity for a Enterprise Security Architect III to join our growing team. The Enterprise Security Architect III will design, develop, and maintain security architecture and application components supporting an assigned ICAM workstream. The role combines enterprise security architecture with practical delivery responsibilities, including integration of security controls, security assessment support, Authorization to Operate activities, vulnerability remediation, POA&M management, and participation in application development, integration, and testing. This position is best suited to a hands-on security architect who can work directly with software engineers, testers, DevSecOps personnel, system owners, and federal security stakeholders. It is not a governance-only or policy-only architecture role.
We are seeking a Enterprise Security Architect III for a contract position.
- Position: Enterprise Security Architect III
- Position Type: Full-time-Remote
Role Specific Duties/ Role Responsibilities:
- Design and maintain enterprise security architecture for assigned ICAM applications and services.
- Translate DHS asecurity requirements into implementable architecture and technical controls.
- Contribute to or oversee secure application and configuration development.
- Integrate security controls into application, infrastructure, cloud, and DevSecOps environments.
- Lead or support system security assessments and technical control validation.
- Develop, update, or support documentation required for Authorization to Operate activities.
- Identify and remediate vulnerabilities within DHS-required timeframes.
- Develop and manage remediation actions and POA&M items when findings cannot be immediately resolved.
- Work with development and testing teams to ensure security requirements are incorporated throughout the SDLC.
- Support development, integration, testing, and release activities within the assigned workstream.
- Review technical designs, code, configurations, security scan results, and implementation evidence.
- Help ensure medium- and high-severity static and dynamic application vulnerabilities are resolved before production release.
- Support incident investigation, root-cause analysis, and corrective action when security issues affect production systems.
- Maintain architecture, security, assessment, and remediation documentation
Required Qualifications:
- Experience designing or maintaining enterprise application or system security architecture.
- Experience integrating cybersecurity controls into software, cloud, infrastructure, or DevSecOps environments.
- Experience supporting security assessments or authorization activities.
- Experience identifying, documenting, and remediating technical vulnerabilities.
- Experience developing or managing POA&M remediation actions.
- Ability to work with software engineering and testing teams throughout the SDLC.
- Ability to interpret security requirements and translate them into technical controls.
- Ability to obtain and maintain favorable DHS EOD, suitability, and required system access.
Preferred Qualification:
- Prior DHS or federal civilian agency clearance or experience.
- Experience supporting federal ATO packages or NIST Risk Management Framework activities.
- Experience with ICAM, IAM, PIV, PKI, PAM, SSO, OAuth, OIDC, or access-control systems.
- Experience with AWS, Azure, hybrid-cloud, or on-premises federal environments.
- Experience with secure CI/CD pipelines and automated security gates.
- Experience with SonarQube, Jenkins, GitHub Enterprise, Splunk, container security, STIGs, or hardened images.
- CISSP, CSSLP, CCSP, AWS/Azure security certification, or comparable security credential.
iQuasar LLC is a proud partner of the Military Spouse Employment Partnership (MSEP) and the Virginia Values Veterans (V3) Program, reflecting our strong commitment to supporting military spouses, veterans, and inclusive hiring practices. We are an Equal Opportunity Employer and do not discriminate based on race, religion, color, national origin, political affiliation, sex, sexual orientation, gender identity, age, marital/parental/veteran status, disability, genetic information, membership in an employee organization, retaliation, military service, non-merit factors, or any other characteristics protected by applicable law.
This is a remote position.
Based in Sterling, Virginia, iQuasar LLC, with over 20 years of experience, we help small and medium businesses grow in the federal marketplace through Proposal Development, Cleared Staffing, GSA MAS Consulting, Certifications and Registrations, Consulting Services, CMMC Level 1 & 2 Compliance Assistance, and more.
Backed by a 97% D&B-verified customer satisfaction rate and an A+ BBB rating, we serve industries such as Government, Construction, IT, Telecom, Finance, and Healthcare. As your one-stop-shop GovCon partner, we are also CMMC and ISO compliant.
Our other capabilities include Custom Software Development, AI Integration, Cybersecurity Services, Software Team Augmentation, and Microsoft Solutions.
Founded
2004
Company size
201-500 employees
Industry
Information Technology & Services
Org type
Privately Held
Headquarters
Sterling, Virginia
Based in Sterling, Virginia, iQuasar LLC, with over 20 years of experience, we help small and medium businesses grow in the federal marketplace through Proposal Development, Cleared Staffing, GSA MAS Consulting, Certifications and Registrations, Consulting Services, CMMC Level 1 & 2 Compliance Assistance, and more.
Backed by a 97% D&B-verified customer satisfaction rate and an A+ BBB rating, we serve industries such as Government, Construction, IT, Telecom, Finance, and Healthcare. As your one-stop-shop GovCon partner, we are also CMMC and ISO compliant.
Our other capabilities include Custom Software Development, AI Integration, Cybersecurity Services, Software Team Augmentation, and Microsoft Solutions.
Founded
2004
Company size
201-500 employees
Industry
Information Technology & Services
Org type
Privately Held
Headquarters
Sterling, Virginia