Apply Now

Please mention DailyRemote when applying

AI Summary

The Cloud Security Architect will lead the design and implementation of secure cloud architectures for the GSA GO.gov program to ensure compliance with Federal security standards. This role involves managing ATO processes, conducting security assessments, and collaborating with cross-functional teams to embed security throughout the development lifecycle.

Job Title: Cloud Security Architect

Job Type:

 

Full-Time

 

Job Location:

 

Washington, DC (remote)

 

Job Summary:

 

Genesis Consulting is seeking an experienced Cloud Security Architect to support the GSA GO.gov travel modernization program by leading the design, assessment, and implementation of secure cloud architectures that comply with Federal security and risk management requirements. This role is responsible for ensuring cloud-hosted Travel & Expense solutions, integrations, and supporting services meet FedRAMP, FISMA, NIST, and GSA security standards while enabling secure, scalable, and resilient enterprise services.

 

The ideal candidate has extensive experience with AWS cloud security, FedRAMP/FISMA authorizations, ATO processes, DevSecOps, and cloud architecture in Federal environments. Experience securing SAP Concur, middleware platforms, identity management solutions, and enterprise SaaS integrations is highly desirable. The candidate should also have experience collaborating with executive stakeholders, security teams, cloud service providers, and implementation partners throughout the authorization lifecycle. This profile reflects extensive experience leading FedRAMP sponsorships, GSA security engineering, cloud architecture reviews, and securing GO.gov and SAP Concur integrations.

 

Duties, Responsibilities, & Skills:

 

·        Lead the cloud security architecture for the GSA GO.gov program, ensuring compliance with Federal cybersecurity requirements.

·        Design and review secure cloud architectures supporting SAP Concur, middleware, identity management, financial systems, and enterprise SaaS solutions.

·        Lead security assessments, architecture reviews, and technical evaluations supporting Authority to Operate (ATO), FedRAMP sponsorship, and FISMA compliance.

·        Evaluate cloud service providers, system architectures, security controls, encryption strategies, logging, monitoring, and identity management implementations.

·        Develop and review System Security Plans (SSPs), Security Assessment Plans (SAPs), security architecture documentation, and supporting authorization artifacts.

·        Ensure cloud environments comply with NIST SP 800-53, NIST Risk Management Framework (RMF), FedRAMP, and agency-specific security policies.

·        Partner with architects, developers, DevSecOps engineers, and integration teams to embed security throughout the system development lifecycle.

·        Support Continuous Monitoring (ConMon), POA&M management, major change reviews, and security assessments.

·        Review API security, middleware architectures, data protection controls, encryption, and secure integration patterns.

·        Implement security automation and Infrastructure-as-Code (IaC) best practices using cloud-native services and DevSecOps tooling.

·        Provide technical guidance to executive leadership, ISSOs, security assessors, and program stakeholders regarding security risks and mitigation strategies.

·        Participate in security audits, Independent Verification & Validation (IV&V), vulnerability assessments, and penetration testing activities.



Requirements

·        10+ years of experience in cloud security architecture, cybersecurity engineering, or enterprise security.

·        5+ years supporting Federal cloud security initiatives within FedRAMP and FISMA environments.

·        Experience designing and securing AWS cloud environments.

·        Experience leading security architecture reviews, risk assessments, and ATO activities.

·        Strong knowledge of NIST SP 800-53, RMF, FedRAMP, FISMA, and Continuous Monitoring (ConMon).

·        Experience developing or reviewing security documentation, including SSPs, SAPs, POA&Ms, and security engineering artifacts.

·        Experience working with cloud-native security controls, encryption, identity management, logging, and monitoring.

·        Excellent written and verbal communication skills with the ability to present technical concepts to executive leadership.

 

Preferred Qualifications:

·        Experience supporting GSA, GO.gov, or other large Federal modernization initiatives.

·        Experience securing SAP Concur or other enterprise SaaS platforms.

·        Experience reviewing security architectures for MuleSoft, Keycloak, Snowflake, API Gateway, or enterprise integration platforms.

·        Experience implementing DevSecOps practices and security automation.

·        Familiarity with AI/LLM security, secure software development, and cloud-native application security.

 

Minimum Education:

 

·        Bachelor’s Degree in Cybersecurity, Computer Science, Information Systems, Engineering, or another related field.

 

Required Certifications:

 

·        ISSO / ISSM Security Certification

 

Other:

 

·        Must be a US Citizen

·        Must be able to obtain a Public Trust Clearance

·        Must have a clean record and pass Criminal Background Check



Similar Jobs

See all Remote Software Development jobs →

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Cloud Security Architect

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified