Cyber Architect

SGS_JOB_2250

Engineering
 Massachusetts
Secret Clearance
Cybersecurity
CDS
RMF
NIST
POA&M’s
AWS
Azure

Contract - 3 years

Location (mandatory): Lexington, MA We are seeking a highly skilled and experienced Cybersecurity Architect with a specialized focus on Cross Domain Solutions (CDS) and Cloud environments. The candidate will be a subject matter expert in the application of the Risk Management Framework (RMF) for cloud-based systems, ensuring compliance with NSA “Raise the Bar,” (RTB) requirements. This role demands a deep understanding of CDS architecture, cloud security principles, policy development, hands-on implementation, and the ability to develop and deliver effective policy, and training programs. Hybrid: 3-5days/wk onsite; candidate can expect to be onsite at a minimum of 3 days; they will be onsite up to 5 during training and test cycles. Must be local to MA at the start of the assignment

Job Responsibilities:

  • RMF Implementation & Compliance:
  • Lead and execute all phases of the RMF process (Categorization, Selection, Implementation, Assessment, Authorization, Monitoring) for CDS and Cloud systems, ensuring strict adherence to NIST SP 800-37, CNSSI 1253, ICD 503, and NSA RTB requirements.
  • Provide guidance for required RMF documentation, to successfully assess and authorize cloud technologies and CDS.
  • Conduct comprehensive security control assessments, vulnerability analyses, and risk assessments for CDS and cloud architectures.
  • Cross Domain Solution (CDS)

Skills:

  • Architect, design, and implement secure CDS solutions, ensuring compliance with NSA RTB requirements and best practices.
  • Provide expert guidance on CDS accreditation processes, and data flow security.
  • Evaluate and recommend CDS technologies and configurations to meet specific mission requirements while maintaining a high security posture.
  • Cloud Security Architecture & Engineering:
  • Design, implement, and secure cloud environments (e.g., AWS, Azure Government, DAF Cloud Works) in accordance with RMF, FedRAMP, DoD SRG, and NSA RTB guidelines.
  • Develop secure cloud network architectures, identity and access management (IAM) strategies, data encryption solutions, and security monitoring within cloud platforms.
  • Provide guidance on secure cloud migration strategies and container security.
  • Policy & Procedure Development:
  • Develop, write, and refine cybersecurity policies, standards, and procedures specifically tailored for CDS and cloud environments, ensuring alignment with NSA RTB and other relevant government regulations.
  • Translate complex security requirements into actionable policy and guidance for technical teams.
  • Implementation & Remediation:
  • Oversee and actively participate in the implementation of security controls and countermeasures for CDS and cloud systems.
  • Provide technical guidance and support to engineering teams to ensure secure system design and configuration.
  • Track and manage POA&Ms, working with stakeholders to ensure timely implementation of CSD and cloud technologies, Training
  • Design, develop, and deliver comprehensive training programs and materials on RMF, CDS security, cloud security best practices, and NSA RTB requirements.

Education/Experience:

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.
  • 8+ years of experience in cybersecurity, with at least 5 years directly focused on RMF implementation and accreditation.
  • 3+ years exp designing, architecting, and implementing Cross Domain Solutions (CDS).
  • 3+ years exp securing cloud environments (e.g., AWS GovCloud, Azure Government) at an enterprise level.
  • Proven experience in writing and implementing cybersecurity policies and procedures specific to CDS and cloud.
  • Experience in developing and delivering technical training programs.
  • In-depth understanding of NIST SP 800-37, CNSSI 1253, NIST SP 800-145, DoD Cloud Computing SRG, ICD 503, DoDI 8540.01, and other relevant government cybersecurity frameworks.
  • Hands-on experience with security tools for vulnerability scanning, penetration testing, and security monitoring in cloud environments.
  • Excellent written and verbal communication skills, with the ability to articulate complex technical concepts to diverse audiences.
  • Preferred Certifications:
  • CISSP (Certified Information Systems Security Professional)
  • CCSP (Certified Cloud Security Professional)
  • CASP+ (CompTIA Advanced Security Practitioner)
  • AWS Certified Security – Specialty
  • Azure Security Engineer Associate
  • Relevant vendor-specific CDS certifications

Related Jobs

Audio Software Engineer

Engineering
 Washington
6 Months

Location: Redmond, WA We are seeking a highly skilled and motivated Software Engineer to join our specialized engineering team. This role is centered on the development of sophisticated software for advanced hardware control and lab automation, with a primary focus on aero-acoustic wind tunnel systems. In this role, you will use Python to design, build, and enhance control mechanisms for both a classic recirculating wind tunnel and a novel modular fan-array wind tunnel. This position offers a unique and exciting opportunity to work at the intersection of software development, robotics, acoustics, and aerodynamics.

Python
Audio
Robotics
Data Acquisition
Signal Processing

Software Engineer II

Engineering
 Washington
04 Months

This role sits at the center of our team's expansion and will have a direct impact on documentation, processes, and customer relationships. Work will vary from tool evaluation and integration to day-to-day hands-on lab and infrastructure support. In addition to core engineering responsibilities, this role requires a strong grasp of AI technologies and hands-on proficiency with AI-assisted development tools such as Claude Code. As AI reshapes how engineering work gets done, this engineer will be expected to leverage AI tooling in their own workflows and help drive adoption across the team. This role will operate as a point of contact for assigned projects, coordinate internal resources, and be supported by supervisors and technical resources. This person must be willing to take direction from leadership while also providing guidance and driving task ownership across team members. Our goal is to build and maintain strong, long-lasting customer relationships.

AI Assisted Development Tool – Claude Code
Python
LinuxOS
System Administration

Systems Engineer III

Engineering
Remote
12 Months

The main function of a systems engineer is to apply the principles of computer science and mathematical analysis to the design, development, testing, and evaluation of the software and systems that make computers work. A typical systems engineer analyzes user needs, and then designs, tests, and develops software to meet those needs.

Systems Engineering
Server Lifecycle
Troubleshooting
Test
TCP/IP Network
Linux
Server Management.

Data Engineer IV – Marketing & Ads

Engineering
Remote
08 Months

Location - Remote

SQL
Python
ETL
Marketing
Ads
Large Data Sets

Linguist III - German and Turkish Both

Engineering
Remote
09 Months

Location - Remote

Linguistics
Phonetics
Phonology
Regex
SQL
Python
Native Speaker of German or Turkish

Network Engineer II

Engineering
 California
$67 - $75/Hr. on W2
06 Months

Contract - 06 Months Pay Rate : $67 - $75/Hr. on W2 The Network/System Lab Engineer will support the our team by bringing up and maintaining the network lab environment. Responsibilities include integrating and troubleshooting new network equipment, coordinating delivery and installation of new products, testing switch testbeds for software validation, and maintaining accurate lab inventory records. The ideal candidate will have hands-on experience with network devices, strong problem-solving skills, and the ability to work in a fast-paced lab setting. Must be detail-oriented, organized, and able to communicate effectively with cross-functional team

IP
Cisco IOS
JunOS
Python
Power Supply
Network Device Bring-Up
Lab Work

Application Engineer – Rockwell

Engineering
 South Carolina
6 Months

Location (mandatory): Saint George, SC Seeking a skilled engineer to deliver high-quality designs and testing in accordance with project specifications, standards, budgets, and timelines. This role involves providing centralized software support for critical BMS applications. The successful candidate will collaborate with a team to design, install, commission, and service building automation and facility management systems.

SCADA
PLC
Rockwell
BMS

Analyzing Technician

Engineering
 Illinois
3 Months

Location (mandatory): Elgin, IL We are seeking a highly skilled Analysis Technician to join our dedicated team for the 1st shift. Based at our state-of-the-art facility, you'll be responsible for board-level analysis of failed 2-way subscriber products (both mobile and portable 2-way radios). This is an exciting opportunity to leverage your technical expertise in testing, diagnosing, and repairing electronic assemblies to identify the root causes of failures.

Electrical Engineer
RF

IT Manager

Engineering
British Columbia
4 Months

Location (mandatory): Vancouver, BC Maintain the lab infrastructure, network infrastructure, and asset/equipment inventory. Maintain and troubleshoot hardware, including: Cameras Workstations Servers Switches

System Administration
Camera Installation and Troubleshooting
logo

At SGS Consulting, we go beyond resume-job matches, creating meaningful connections and pathways for individuals to thrive in defining careers.


© 2026 All rights reserved.
logologologologo