Senior Cloud Cyber Security Architect
- SmallArc, Inc
- Washington, District of Columbia
- Full Time
Job Description:
Senior Cloud Security Architect
Location: Washington, DC (Local candidates required - Local Remote allowed)
Experience Required: 12+ years
Work Authorization:
Clearance: Public Trust Clearance or higher preferred
LinkedIn Required with profile photo!
Required Experience & Skills
- 12+ years of experience in cybersecurity
6+ years of experience architecting secure cloud environments
Strong expertise in:
- AWS, Azure, and Google Cloud Platform security architecture
- Zero Trust Architecture (ZTA)
- IAM, CIEM, JIT (Just-in-Time) access models
- OIDC and SAML authentication flows
- Data encryption (at rest and in transit)
Core Technical Skills
- Cloud Security Platforms:
- AWS Security Hub
- Azure Defender
- Google Cloud Security Command Center
- Security Architecture:
- Zero Trust Network Access (ZTNA)
- SD-WAN security models
- Cloud WAF architecture
- Micro-segmentation strategies
- Automation & Engineering:
- Python, Go, or Bash scripting
- Security automation and SOAR integration
- Policy-as-Code (Terraform or equivalent)
- Automated guardrails and compliance enforcement
- DevSecOps:
- SAST / DAST / SCA integration in CI/CD pipelines
- Secure software delivery pipelines
- Container and cloud workload security
AI / Advanced Security Focus
- Security architecture for AI/ML pipelines
Securing LLM-based applications and data flows
AI-driven threat detection models
Protection of training data and model integrity
CNAPP and CSPM implementation for cloud posture management
Automation & Compliance
- Build automated security guardrails using Policy-as-Code
Ensure real-time enforcement of compliance controls
Enable automated remediation of misconfigurations
Support SOC2, NIST, and CIS compliance frameworks
Cloud Security Operations
- Integrate CNAPP and CSPM tools for continuous visibility
Monitor and reduce cloud misconfigurations and vulnerabilities
Strengthen detection and response capabilities (MTTD optimization)
Conduct threat modeling and blast radius analysis for cloud systems
Identity & Access Security
- Design and manage CIEM-based access control systems
Implement Just-In-Time access strategies
Secure complex authentication flows (OIDC/SAML)
Eliminate standing privileges across production systems
Leadership & Advisory
- Act as primary security advisor for cloud architecture teams
Bridge DevOps agility with enterprise security requirements
Present risk and security posture to executive leadership and C-suite
Influence technical roadmaps and enterprise security strategy
Core Objectives
- Achieve Zero Standing Privilege across production environments
Implement fully automated compliance and auditing systems
Reduce Mean Time to Detect (MTTD) using AI-driven monitoring
Strengthen resilience against advanced cloud threats
Preferred Qualifications
- Experience in enterprise/government cloud security environments
Advanced certifications (CISSP, CCSP, AWS Security, etc.) preferred
Strong executive communication and stakeholder management skills
Experience designing security for AI-driven platforms and modern cloud ecosystems