Overview
Skills
Job Details
Job Title: Security Architect (Hybrid)
Location: Richmond, VA (Webcam Interview).
Duration: Long-Term Contract.
Note:In-depth knowledge of NIST 800-53 and other relevant security frameworks to ensure compliance with COV SEC530.
Job Overview:
We are seeking a highly experienced Security Architect to support the development of System Security Plans (SSPs) for enterprise applications and third-party suppliers. This role involves working closely with business units to assess current security postures, analyze compliance with established security frameworks, and ensure systems meet regulatory and organizational security requirements.
The ideal candidate will possess expert-level knowledge of NIST 800-53, risk management practices, and experience implementing and assessing security architectures in complex IT environments. Previous experience as a Security Control Assessor is highly desirable.
Key Responsibilities:
- Collaborate with business units and technical teams to gather system and process information for security documentation.
- Conduct structured interviews to assess system components, operations, and security controls.
- Draft, review, and finalize System Security Plans (SSPs) with a focus on completeness, accuracy, and compliance.
- Evaluate security control implementations and identify areas for improvement or remediation.
- Ensure system compliance with security frameworks, particularly NIST 800-53 and other related standards.
- Identify and assess risks, document mitigation strategies, and recommend security improvements.
- Support supplier and enterprise-level security evaluations and assessments.
Required Qualifications:
- Proven experience writing System Security Plans (SSPs) and performing formal security assessments.
- In-depth knowledge of NIST 800-53, risk management frameworks, and security compliance standards.
- Familiarity with enterprise security architectures, including design and implementation best practices.
- Strong understanding of compliance requirements, regulatory mandates, and security frameworks.
- Excellent verbal and written communication skills with the ability to translate complex security topics for non-technical audiences.
- Ability to work independently and prioritize multiple security documentation efforts simultaneously.
Required Skills Summary:
Skill | Years of Experience | Last Used |
Senior-level IT Security Experience | ||
Security Architecture Design & Implementation | ||
System Security Plan (SSP) Development | ||
Security Assessments & Risk Evaluation | ||
NIST 800-53, Compliance & Regulatory Standards | ||
Cross-functional Collaboration |