Role: Senior Information Security Architect
Location: Reston, VA (Hybrid 3 Days Onsite)
Position Overview
We are seeking a highly experienced Senior Information Security Architect with deep AWS cloud expertise and strong enterprise security architecture experience. This role will support multiple initiatives across the organization, participating in architecture reviews and ensuring security controls are properly designed and implemented across cloud, network, data, and application environments.
This is a hands-on architecture role requiring both technical depth and strong stakeholder communication skills.
Core Responsibilities
- Design secure AWS architectures aligned with enterprise security standards and industry best practices
- Define and implement security controls across:
- Cloud environments
- Network infrastructure
- Data platforms
- Application and API layers
- Logging and monitoring frameworks
- Apply Zero Trust and least privilege principles across distributed systems
- Participate in Architecture Review Board processes
- Conduct security architecture reviews for applications and platforms
- Support 3 4 concurrent initiatives in a fast-paced environment
- Provide risk-based security guidance and influence technical stakeholders
Required Technical Qualifications
AWS Cloud Expertise (Hands-On, Senior Level)
- Advanced experience with IAM (roles, policies, SCPs, cross-account access)
- Multi-account AWS architecture design
- VPC architecture, Transit Gateway, PrivateLink, networking security controls
- AWS data stores and encryption strategies (S3, RDS, DynamoDB, KMS)
- Secure landing zone design and account governance models
- AWS security pillars and Well-Architected best practices
Security Architecture Experience
- Enterprise cloud security architecture design
- Threat modeling and risk assessment
- Security control frameworks (NIST, CIS, industry best practices)
- Network segmentation and Zero Trust implementation
- Logging, monitoring, and detection architecture
CI/CD & Platform Security (Strong Plus)
- Secure pipeline architecture
- Infrastructure-as-Code security (Terraform, CloudFormation)
- Container security concepts
- DevSecOps integration practices
Generative AI Awareness
- Understanding of Gen AI security risks
- Ability to design mitigating controls for AI-enabled applications
- Knowledge of data leakage, prompt injection, and API security concerns
Preferred Certifications
- AWS Solutions Architect Professional
- AWS Security Specialty
- CISSP or equivalent security certification
Required Soft Skills
- Strong communication and presentation skills
- Ability to influence and guide architectural decisions
- Comfortable working in Architecture Review Board settings
- Ability to multitask across multiple projects
- Adaptable in fast-moving enterprise environments
Experience Requirements
- 12+ years of overall IT experience
- 7+ years of AWS experience
- Demonstrated experience designing secure enterprise cloud architectures