Back to jobs

Cloud Security Architect - Senior

Washington, DC

Barbaricum is a rapidly growing government contractor providing leading-edge support to federal customers, with a particular focus on Defense and National Security mission sets. We leverage more than 17 years of support to stakeholders across the federal government, with established and growing capabilities across Intelligence, Analytics, Engineering, Mission Support, and Communications disciplines. Founded in 2008, our mission is to transform the way our customers approach constantly changing and complex problem sets by bringing to bear the latest in technology and the highest caliber of talent.

Headquartered in Washington, DC's historic Dupont Circle neighborhood, Barbaricum also has a corporate presence in Tampa, FL, Bedford, IN, and Dayton, OH, with team members across the United States and around the world. As a leader in our space, we partner with firms in the private sector, academic institutions, and industry associations with a goal of continually building our expertise and capabilities for the benefit of our employees and the customers we support. Through all of this, we have built a vibrant corporate culture diverse in expertise and perspectives with a focus on collaboration and innovation. Our teams are at the frontier of the Nation's most complex and rewarding challenges. Join our team.

Barbaricum is seeking an experienced Senior Cloud Security Architect to lead the design, governance, and implementation of secure cloud security architectures under the Military Community and Family Policy (MC&FP) Outreach and Digital Enterprise Services (MODES) contract. You will define DoD SRG- and FedRAMP-compliant cloud security patterns, establish Zero Trust architecture approaches, support DevSecOps integration, and ensure MC&FP cloud environments meet rigorous federal cybersecurity, compliance, and operational requirements.

Responsibilities:

  • Define and govern secure cloud security architectures by selecting and approving DoD SRG- and FedRAMP-compliant services for MC&FP cloud environments.
  • Develop security architectures, control frameworks, policy artifacts, and technical patterns aligned with DISA, DoD, FedRAMP, and applicable federal cybersecurity requirements.
  • Establish and mature Zero Trust security patterns across cloud environments, including identity, access, segmentation, monitoring, data protection, and compliance enforcement considerations.
  • Provide architectural direction for DevSecOps integration, vulnerability assessment scope, security compliance enforcement, and secure cloud deployment practices.
  • Collaborate with IT, cybersecurity, cloud engineering, and program teams to ensure cloud architectures follow strict security protocols and mission requirements.
  • Develop, implement, and maintain cloud security policies, protocols, procedures, standards, and governance artifacts.
  • Assess existing security measures, cloud configurations, network security controls, and application security practices, and recommend enhancements to reduce cyber risk.
  • Monitor security vulnerabilities, cyber threats, network traffic, and unusual activity affecting cloud infrastructure, data, and mission systems.
  • Conduct security audits, risk assessments, control reviews, and compliance assessments, and prepare audit reports and leadership-level findings.
  • Support incident response activities, including investigation, containment support, root cause analysis, and post-event analysis of cybersecurity incidents.
  • Update security measures as necessary to protect data, systems, applications, infrastructure, and sensitive information from unauthorized access or compromise.
  • Provide security training, technical guidance, and architectural recommendations to colleagues, stakeholders, and leadership.

Required Skills:

  • Expert knowledge of cloud security architecture, secure cloud design patterns, cybersecurity frameworks, compliance controls, and federal cloud security requirements.
  • In-depth knowledge of cloud service providers such as AWS, Microsoft Azure, and Google Cloud, including secure service selection, configuration, and governance considerations.
  • Strong understanding of DoD SRG, FedRAMP, DISA requirements, Zero Trust principles, and security control implementation in Government or secure IT environments.
  • Expertise in information security technologies, countermeasures, network security policies, vulnerability management, incident response, and risk assessment practices.
  • Strong understanding of network architecture, network protocols, application development methodologies, data privacy, and cloud infrastructure security.
  • Ability to analyze security systems, identify weaknesses, assess threats, and continuously recommend improvements to security posture.
  • Ability to think adversarially, anticipate attack paths, and design practical controls that reduce exploitability and operational risk.
  • Strong problem-solving, analytical, and technical judgment skills in complex cloud, cybersecurity, and compliance environments.
  • Excellent written and verbal communication skills, with the ability to explain complex security, architecture, and compliance concepts in an understandable manner.
  • Ability to collaborate across technical, cybersecurity, program management, and Government stakeholder terms to align architecture decisions with mission objectives.

Required Qualifications:

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Cloud Computing, Engineering, or a related field; Master's degree preferred.
  • Cloud architecture or security certifications preferred, such as AWS Certified Solutions Architect, Google Cloud Professional Cloud Architect, Microsoft Azure Solutions Architect Expert, Certified Cloud Security Professional (CCSP), or similar.
  • 10+ years of experience developing, implementing, securing, or managing cloud environments, particularly in a government, federal, defense, or secure IT setting.
  • Demonstrated experience developing cloud security architectures, security policies, control frameworks, compliance artifacts, or secure deployment patterns.
  • Experience supporting cybersecurity compliance, security audits, vulnerability management, incident response, risk assessments, and continuous monitoring activities.
  • Experience working with cloud engineering, DevSecOps, application, infrastructure, cybersecurity, and Government stakeholder teams preferred.
  • DoD Secret Security Clearance.

EEO Commitment

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law.

Create a Job Alert

Interested in building your career at Barbaricum? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Phone
Resume/CV

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
What clearance do you have? *
Select...
Please indicate whether you currently hold any of the following certifications: *
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Barbaricum’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.