ShorePoint Inc.

Lead Security Architect

ShorePoint Inc.$135K — $160K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years in cybersecurity, 5+ years in security architecture or senior technical role
  • Certifications like CISSP, GSEA, or GDSA required
  • Expertise in translating complex requirements into actionable tasks
  • Proven experience with Zero Trust Architecture principles
  • U.S. citizenship and security clearance eligibility mandatory

Responsibilities

  • Lead design and evaluation of security architectures aligned with Zero Trust principles
  • Act as the technical liaison between enterprise architects and systems security engineers
  • Convert operational needs into detailed technical requirements
  • Provide input to the Risk Management Framework (RMF) process
  • Manage security requirements throughout the acquisition life cycle
  • Conduct regular security reviews and identify architecture gaps
  • Advise senior leadership on design concepts and vulnerabilities

Benefits

  • Remote work opportunity based in Herndon, VA
  • Role in shaping a fast-growing cybersecurity culture
  • Opportunity to influence security strategy at an enterprise level
Full Job Description
Who we're looking for:

We are seeking a Lead Security Architect who possesses deep technical mastery in designing resilient, enterprise-grade security frameworks. You will serve as the strategic visionary and technical anchor, ensuring our mission-critical systems are inherently secure by design and aligned with evolving federal defense standards. In this role, the Lead Security Architect will bridge the gap between complex engineering requirements and executive risk management orchestrating the transition to a robust Zero Trust environment. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.

What you'll be doing:

  • Lead the design and evaluation of enterprise security architectures, ensuring all systems align with Zero Trust Architecture (ZTA) principles and organizational cybersecurity guidelines.
  • Serve as the primary technical liaison between enterprise architects and systems security engineers to ensure security controls are correctly allocated and implemented.
  • Convert complex operational needs and stakeholder security interests into detailed technical requirements and functional specifications.
  • Provide critical input to the Risk Management Framework (RMF) process, including the development of system life-cycle support plans and operational procedures.
  • Manage security requirements throughout the acquisition life cycle, from drafting statements of work to evaluating vendor-proposed security designs for adequacy.
  • Perform regular security reviews and design modeling to identify architecture gaps, developing comprehensive risk management plans to address vulnerabilities.
  • Categorize systems and define clear security boundaries, documenting the protection needs for information systems and networks.
  • Advise senior leadership and authorized officials on design concepts, project costs and the potential adverse effects of identified vulnerabilities.


What you need to know:

  • Deep proficiency in describing and documenting IT architectures using frameworks such as TOGAF, DoDAF or FEAF, with a focus on integrating security into the full system development life cycle.
  • Mastery of Zero Trust Architecture (ZTA) principles, including identity management (PKI, Oauth, SAML), micro-segmentation and secure cloud/hybrid IT delivery models like DevOps and Agile.
  • Comprehensive knowledge of NIST 800-series, FedRAMP and the Risk Management Framework (RMF) to ensure systems meet stringent federal and defense cybersecurity standards.
  • Technical expertise in network security (TCP/IP, VPNs, firewalls), encryption algorithms and the ability to design countermeasures against complex cyber threats and vulnerabilities.
  • Ability to translate operational requirements into technical protection needs and effectively communicate risk and design concepts to both technical experts and executive stakeholders.


Must have's:

  • 10+ years of professional experience in cybersecurity, including 5+ years in security architecture or a senior technical role
  • One or more of the following certifications: (ISC)2 Certified Information Security Professional (CISSP), GIAC Security Enterprise Architect (GSEA) or GIAC Defensible Security Architecture (GDSA).
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Demonstrated experience architecting secure enterprise systems using Zero Trust Architecture (ZTA) principles.
  • Applicants must be a U.S. citizen and eligible to obtain and maintain a security clearance, in compliance with federal contract requirements.


Beneficial to have:

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering or a related field.


Where it's done:

  • Remote (Herndon, VA).

About ShorePoint Inc.

ShorePoint Inc. is a cybersecurity and IT consulting firm that provides services to the federal government and commercial clients. The company's services include cybersecurity, cloud computing, data analytics, and software development. ShorePoint was founded in 2015 and is headquartered in Reston, Virginia. The company has additional offices in Washington, D.C. and Colorado Springs, Colorado.
Learn more about ShorePoint Inc.
Size
300 employees
Industry
Founded
2015

Similar Jobs

More Jobs at ShorePoint Inc.

More Information Technology Jobs

Find similar Lead Security Architect jobs: