Cybersecurity Architect - Linux & Zero Trust
CACI International IncAbout the role
The Opportunity:
You will be a highly skilled Senior System Engineer in Data Security supporting our engineering client. Be part of a department with an expanding range of programs focusing on Cyber Operations, where you get to grow on and between programs with peers who are dedicated to advancing national security. Participate in fun team outings and team building events where you get to engage with your co-workers and expand your career network. We are a fun, engaging environment with a management team focused on growing your career and making you a part of our future. We offer bonus compensation plans that demonstrate you being appreciated for working on the program and being a part of our team. You'll get paid for cyber events and training, such as our Capture the Flag Events, Internal Research and Development opportunities as well as prepaid courses to nationally recognized certification courses to grow your career. Learn more about our program by reviewing the landing page: VORPAL Jobs (caci.com)
Responsibilities:
- Lead and manage data security strategies, ensuring the implementation of robust Zero Trust principles within government data environments.
- Apply sound engineering practices, good judgement and technical skills to achieve both short and long-term goals as established by client management.
- Provide support for the internal systems and networks used by the client to support mission.
- Designing, engineering, and implementation of complex data protection beyond data encryption; and provide expert guidance on Identity and Access Management (IAM) principles and standard methodologies.
- Lead the development and implementation of Zero Trust data protection strategies, including encryption, tokenization, and data masking techniques to secure sensitive data across networks; design and manage identity-centric access controls, defining granular permissions and enforcing least privilege access to government data, aligning with Zero Trust principles; implement and manage encryption methodologies for data at rest, in transit, and during processing, ensuring compliance and adherence to Zero Trust standards; implement and manage security monitoring tools and analytic platforms, leveraging data-centric insights to identify anomalous behavior, potential threats, and vulnerabilities within government data systems.
Qualifications:
Required:
An active TS/SCI with Poly clearance
Bachelor's degree in computer science, Engineering, Information Technology, or equivalent experience
10+ years of demonstrated experience as a System Engineer/Data Security focusing on Zero Trust technology
Experience building and deploying infrastructure using Automation tools such as Linux scripting, Python and PowerShell
Expertise in defining and enforcing data retention policies aligned with government regulations, ensuring data availability and compliance with Zero Trust security measures
Knowledge of strong authentication methods such as multi-factor authentication (MFA), biometric authentication, and smart card authentication for robust identity verification
Extensive experience in implementing encryption solutions for data at rest, in transit and in use, leveraging cryptographic algorithms and key management aligned with Zero Trust principles
Proficiency in data security technologies, including encryption tools, access control mechanisms, and other data-centric security tools
Understanding of encryption in transit, function and design
Ability to create and manage TLS certificates both through Windows certificate services and the creation and management of self-signed certificates
Deep-level understanding of Windows Active Directory, as well as the ability to configure/edit Windows Active Directory and Domain Services
Ability to effectively use and manage Splunk to find vulnerabilities, security incidents, and understand how security rules are written across infrastructure
Expertise implementing system logging to include network device, Windows, and Linux logging
Effectively manage and operate Privilege Access Management (PAM) s
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s