Bachelor's degree in Computer Science, Information Technology, or a related field., 15 years of experience in cloud technologies and technical architecture., 8+ years of cloud security experience with AWS, GCP, and/or Azure., Strong programming skills in Python, Go, or Java..
Key responsabilities:
Design secure cloud architectures and security control components for FedRAMP compliance.
Collaborate with engineering and development teams to implement security standards and monitoring.
Support incident response by analyzing threats and vulnerabilities within the FedRAMP boundary.
Develop documentation including Authorization Boundary and System Security Plans.
Report This Job
Help us maintain the quality of our job listings. If you find any issues with this job post, please let us know.
Select the reason you're reporting this job:
TGC is a practical, down to earth Human Resources Consulting and Coaching firm that focuses on increasing employee engagement levels, improving critical leadership capabilities and maximizing organizational performance. Since 1999, TGC has assisted service-oriented companies realize the full return on their current and future talent investments At TGC, our approach is grounded in understanding our client's Human Capital challenges and then tailoring solutions to meet those challenges.
Our holistic insights and real-world experiences allow us to ‘think outside the box’ and implement solutions that effectively attract, retain & develop top talent.
We work with clients in the US, Canada and the UK, specializing in:
Executive Search / Retained Search / Contingency Based Recruitment
Training and Development
Executive and Leadership Coaching
Outplacement & Career Transition Services
Strategic Organizational Planning/Organizational Change
Employee / Labor Relations / Grievance Management / Contract Negotiations
Mergers and Acquisitions
We value our clients’ time so we move straight to the heart of the issue and deliver measurable results with an intense focus on exceeding expectations.
Trisian-Global Consulting LLC is seeking a highly skilled Cloud Security Architect with a strong background in cloud security and architecture, as well as a deep understanding of industry best practices and emerging technologies. The Cloud Security Architect will be responsible for designing secure cloud architectures and security control plane components and interconnections. You'll define and document boundaries and recommend management plane and customer data plane configurations that meet stringent federal standards.
This is a 6 month Contract.
NO Sponsorship (H1B or OPT not eligible)
U.S. citizenship at the time of hire
Residence within the contiguous United States (i.e., the lower 48 states and the District of Columbia); and
Willingness to undergo a Single Source Background Investigation if required.
Key Responsibilities:
Partner with engineering teams to create secure cloud infrastructure design and deployment architectures utilizing threat models and risk analysis documentation specific to a FedRAMP and IL4+ environment.
Work with development teams, operations, governance, and other stakeholders to draft security standards and controls and implement monitoring, alerting and governance to adhere to those specifications
Support incident responders in analyzing applicable threats, vulnerabilities, controls and residual risks inside and out of the FedRAMP boundary
Analyze and harden existing applications, infrastructure, automation, and deployment processes partnering with multiple teams to design & implement solutions within the space
Execute Security impact Analysis reviews for all FedRAMP changes coming in to the change management process
Secure Architecture Leadership: Design and implement cloud security architectures (SaaS / application management, customer data, and security control planes) that meet FedRAMP and highly controlled Federal security requirements.
Collaborate with Compliance to design and implement controls, specify engineering standards and requirements, and ensure audit readiness with technical and regulatory expertise.
FedRAMP Technical Authority: Provide technical leadership on the authorization boundary, ensuring FedRAMP compliance.
Cloud Security Expertise: Recommend secure configurations for cloud services (e.g., AWS GovCloud, Azure Government), balancing FedRAMP and security best practices.
Translations: Educate cross functional partners (Engineering and IT) on how compliance drives architecture, detailing allowed encryption (e.g., FIPS 140-2), prohibited configurations, and optimal services.
Tool Guidance: Select security tools and microservices to meet federal requirements
FedRAMP-Specific Guidance: Advise on requirements like container scanning (e.g., runtime security, image integrity) and design of Infrastructure as Code
Documentation: Develop and review deliverables, including Authorization Boundary, Network, and data flow diagrams, Front Matter for the System Security Plan (SSPs), and provide input to Change Control Plan, Contingency Plan, and Incident Response Plan.
Qualifications:
Bachelors degree required; BS or MS in Computer Science, Information Technology, or a related field
15 years of experience including cloud technologies, technical architecture and application development
8+ years experience in cloud security, with experience across AWS, GCP and/or Azure infrastructure design
2+ years experience in VMWare and/or Network security modeling
Broad knowledge of private and public cloud attack vectors and exploits
Subject matter expertise in CI/CD, Cloud APIs and Identity management
Deep understanding of compute, network and storage technologies in AWS, GCP and/or Azure
Programming experience in Python, Go or Java
Deep security policy subject matter expertise in at least one major public cloud provider (AWS, GCP, Azure)
Experience with deploying and securing SaaS applications and cloud environments at scale
Working experience with CI/CD pipeline, containerization (Kubernetes, Docker, etc) and MicroServices
Knowledge of of IaC (Infrastructure as Code) concepts and implementing standards within them
Understanding of cloud security maturity model frameworks and how to apply them
Strong written and verbal communication skills
Required profile
Experience
Industry :
Human Resources, Staffing & Recruiting
Spoken language(s):
English
Check out the description to know which languages are mandatory.