- Home
- Jobs
- FSC Client Services
- Cleared On Site Chief Security Architect for Governance, Risk and Compliance (5030)

Cleared On Site Chief Security Architect for Governance, Risk and Compliance (5030) at SMX
Washington, DCFull-timeFSC Client ServicesPosted about 1 month ago
Apply with PipelineAbout the Role
<p>Law Enforcement Agency OCIO's organization is moving to Information Systems Security as a Service and requires a Chief Security Architect to serve as the program’s principal technical authority, providing strategic risk advisory to OCIO leadership, Authorizing Officials, and ISSO(E)(M)s while overseeing the security posture of 600+ information systems across all classification levels. This position will be on site in Washington, DC and requires a Top-Secret Clearance.</p>
<div class="now-form-field-label"><span id="form-field-label-end" class="now-form-field-label-end"></span></div>
<div class="now-textarea-container">
<div class="now-textarea-slot">The Chief Security Architect serves as the program’s principal technical authority, providing strategic risk advisory to OCIO leadership, Authorizing Officials, and ISSO(E)(M)s while overseeing the security posture of 600+ information systems across all classification levels.</div>
<div class="now-textarea-slot"> </div>
<div class="now-textarea-slot">
<div class="now-form-field-label"><span id="form-field-label-end" class="now-form-field-label-end"></span></div>
<div class="now-textarea-container">
<div class="now-textarea-slot">This role translates the Customer's security vision into actionable technical guidance, validates the system categorization methodology, reviews high-risk change requests, and enables innovation through evaluation of emerging technologies (AI/ML, zero trust, cloud-native security) within the Customer's governance constraints. The Chief Security Architect leads early lifecycle security advisory to embed security in system design rather than retrofit, resolves complex technical disputes between implementation and assessment teams, and drives enterprise-wide security architecture patterns that enable consistent, defensible authorization decisions. This strategic position elevates ISaaS from tactical compliance execution to mission-enabling security partnership, ensuring the Customer maintains robust cybersecurity posture while adopting cutting-edge capabilities to counter evolving threats. The role requires balancing deep technical expertise with executive communication skills, translating complex security risks into business impacts and strategic recommendations for senior Customer leadership.</div>
<div class="now-textarea-slot"> </div>
<div class="now-textarea-slot">
<div class="now-form-field-label"><span id="form-field-label-end" class="now-form-field-label-end"></span></div>
<div class="now-textarea-container">
<div class="now-textarea-slot">
<ul>
<li>Bachelors Degree</li>
<li>10+ years of experience</li>
<li>Deep expertise with NIST implementation at scale, 800-53 controls and assessment procedures</li>
<li>FISMA and Intelligence Community security frameworks</li>
<li>Proven ability to design security architectures for diverse environments (on-prem, cloud, hybrid, air-gapped)</li>
<li>Cloud security architecture</li>
<li>AWS/Azure security services, configurations, best practices</li>
<li>FedRAMP authorization process and cloud control inheritance <br>Some knowledge of IaC / DevSecOps principles (not sure this is a must)</li>
<li>Cloud-native security patterns: ZTA, container security, serverless, etc.,</li>
<li>Governance, Risk, and Compliance (must have, top skill, after the architecture/cloud)<br>Track record at providing technical risk assessments and recommendations <br>Articulate residual risk in business terms, enabling informed risk acceptance by non-technical executives</li>
<li>Experience with conditional ATO strategies and balancing operational urgency with security requirements</li>
<li>Experience leading or overseeing independent security assessments for diverse system types <br>Ability to validate assessment quality and consistency across multiple assessor teams</li>
<li>Strategic and Leadership Skills (must have)</li>
<li>Executive Communication – demonstrated ability to brief C-level executives and senior gov officials on complex security processes <br>Skill in translating technical vulnerabilities into business risk and strategic recommendations</li>
<li>Experience in developing security strategies, roadmaps, and business cases for executive approval (at least serve as an advisor for these)<br>Proven ability to build trust and credibility with diverse stakeholders, system owners, developers, operations trams, auditors</li>
<li>One of the following certifications -AWS Cloud Solutions Architect (Professional), CISSP-ISSEP</li>
<li>Active TS clearance with SCI Eligibility</li>
</ul>
</div>
</div>
</div>
</div>
</div>
<div class="now-textarea-slot">
<div class="now-textarea-container">
<div class="now-textarea-slot"> </div>
<div class="now-textarea-slot"><strong>Preferred Skills:</strong></div>
<div class="now-textarea-slot">
<ul>
<li>NSS and Intelligence Community Experience (nice to have)</li>
<li>IC-specific security requirements (ICD 503 for cloud, ICD 705 for SCI, etc.,)</li>
<li>Cross-domain solutions (CDS) and high-side/low-side data transfer security </li>
<li>Audit and Compliance (nice to have, more important that they were independent audits)</li>
<li>Experience in supporting FISMA audits, DOJ inspector general reviews, GAO assessments </li>
<li>Understanding of OMB, DOJ, and IC Cybersecurity reporting requirements and metrics </li>
<li>Ability to translate audit findings into actionable remediation paths and process improvements</li>
</ul>
</div>
<div class="now-textarea-slot"> </div>
<div class="now-textarea-slot">Application Deadline 6-26-2026</div>
<div class="now-textarea-slot"> </div>
<div class="now-textarea-slot">LI-SA1</div>
</div>
</div>
</div><div class="content-pay-transparency"><div class="pay-input"><div class="description"><p> </p>
<hr>
<p><span style="font-size: 16px;">The SMX salary determination process takes into account a number of factors, including but not limited to, geographic location, Federal Government contract labor categories, relevant prior work experience, specific skills, education and certifications. At SMX, one of our Core Values is to Invest in Our People so we offer a competitive mix of compensation, learning & development opportunities, and benefits. Some key components of our robust benefits include health insurance, paid leave, and retirement.</span></p></div><div class="title">The proposed salary for this position is:</div><div class="pay-range"><span>$137,600</span><span class="divider">—</span><span>$231,200 USD</span></div></div></div><div class="content-conclusion"><p> </p>
<p>At SMX®, we are a team of technical and domain experts dedicated to enabling your mission. From priority national security initiatives for the DoD to highly assured and compliant solutions for healthcare, we understand that digital transformation is key to your future success.</p>
<p>We share your vision for the future and strive to accelerate your impact on the world. We bring both cutting edge technology and an expansive view of what’s possible to every engagement. Our delivery model and unique approaches harness our deep technical and domain knowledge, providing forward-looking insights and practical solutions to power secure mission acceleration.</p>
<p>SMX is an Equal Opportunity employer including disabilities and veterans.</p>
<p><span data-teams="true"><span id="message-body-1758638857922" class="fui-ChatMyMessage__body rcngbzt ___eyw0iv0 f10pi13n ftqa4ok f2hkw1w f8hki3x f1d2448m f1bjia2o ffh67wi f1j6vpng f1pniga2 f987i1v f1ffjurs f15bsgw9 f14e48fq f18yb2kv fd6o370 ffwy5si f3znvyf f57olzd f4stah7 f480a47 fs1por5 fk6fouc figsok6 fkhj508 f19n0e5 f9ijwd5 fzqqayd f10ostut f1o0qvyv f9ggezi f1xp5gbu f150uoa4 ffyari3 fo7qwa0 f16xkysk fxowb0n f11ghf3q f13aoclr flypziy f10kwr27 fquw1qa fftr39l f13lathq f15hsm81 f2ss68y ffb60jq f8nuap2 f13nk4fk f7jacry fq08z5q fd9af6s fr74w9q fcl9uv6 f13sm7pj f1u6qqly f16wpxbl faim3u9 f6cs3qo fa2w2z3 fd39nx6 f10gn8j9 frcqmxy f1w9ws4k f1ddxkqj fd10euv fvuz61 f1nbc6gw"><span id="content-1758638857922" class="fui-Primitive ___16zla5h f1oy3dpc fqtknz5 fyvcxda"></span></span></span></p>
<div id="x_Signature"></div>
<p>Selected applicant may be subject to a background investigation and/or education verification.</p>
<p>SMX does not sponsor a new applicant for employment authorization or immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, E-2, E-3, L-1 and O-1, or any EADs or other forms of work authorization that require immigration support from an employer).</p></div>
Related Roles
Cleared On Site ISaaS Technical Lead & Program Manager (4984)
SMX
Washington, DCCleared On Site Information Systems Security Engineer - SME (5100)
SMX
Huntsville, ALASCNDI - Operations Analyst/ Software Tester (5341)
SMX
United StatesTraining Developer and Documentation Analyst (5351)
SMX
United StatesCleared Onsite Senior Data Engineer / Analyst (5348)
SMX
Hanover, MDProgram Financial Analysis - Supervisor
SMX
United States