Cybersecurity Architect

Idaho National LaboratoryIdaho Falls, ID
Hybrid

About The Position

This role involves conducting in-depth security assessments of high-risk applications, cloud-native services, and architectures, delivering actionable findings to leadership. The architect will continuously monitor and assess cloud environments (AWS/Azure) for misconfigurations and policy drift, identify and remediate exposures, and partner with engineering teams to embed security controls into CI/CD pipelines. Responsibilities include providing guidance to developers, developing and maintaining cloud security and DevSecOps standards, and reviewing cloud-native and application architectures for security-by-design principles. The role also involves assisting in the protection of critical cyber defense infrastructure, employing defense-in-depth principles, developing and maintaining cyber security technical controls, analyzing cyber defense policies for compliance, correlating threat assessment data, and performing technical and non-technical risk and vulnerability assessments. Implementation of Risk Management Framework (RMF)/Security Assessment and Authorization (SA&A) requirements is also a key function.

Requirements

  • Bachelor's degree in computer science, computer engineering, or related field.
  • Experience with Cloud Services such as AWS and Azure.
  • Experience with Cloud Security Posture Management.
  • Experience commensurate with level (Level 3: Bachelor’s and 5 years, Master’s and 2 years, PhD and 2 years; Level 4: Bachelor’s and 9 years, Master’s and 6 years, PhD and 4 years).
  • Must be a US Citizen.
  • Ability to obtain and maintain a DOE “L” or “Q” clearance.

Nice To Haves

  • Master's degree in a related technical field including computer science, computer engineering, etc.
  • Experience with Crowdstrike Falcon Cloud Security.

Responsibilities

  • Conduct in-depth security assessments of high-risk applications, cloud-native services, and architectures.
  • Deliver actionable, risk-prioritized findings directly to engineering leadership and business stakeholders.
  • Continuously monitor and assess cloud environments (AWS/Azure) for misconfigurations, excessive permissions, and policy drift.
  • Identify and remediate exposures such as open storage buckets, overly permissive IAM roles, unencrypted data stores, and insecure network configurations.
  • Partner with engineering teams to embed security controls directly into CI/CD pipelines.
  • Provide hands-on guidance to developers on remediating findings and tuning tools.
  • Develop and maintain cloud security and DevSecOps standards (secure coding baselines, container/IaC hardening guides, branch/deploy approval gates).
  • Map security standards to NIST compliance frameworks.
  • Review cloud-native and application architectures for security-by-design.
  • Advise on secrets management, network segmentation, least-privilege IAM, and secure API design.
  • Assist in identifying, prioritizing, and coordinating the protection of critical cyber defense infrastructure and key resources.
  • Employ approved defense-in-depth principles and practices.
  • Develop, implement, and maintain cyber security technical controls and operational systems.
  • Analyze organization's cyber defense policies and configurations and evaluate compliance with regulations and organizational directives.
  • Coordinate with intelligence analysts to correlate threat assessment data.
  • Perform technical and non-technical risk and vulnerability assessments.
  • Identify potential conflicts with implementation of any cyber defense tools.
  • Implement Risk Management Framework (RMF)/Security Assessment and Authorization (SA&A) requirements for dedicated cyber defense systems.
  • Document and maintain records for RMF/SA&A.
  • Other duties as assigned.

Benefits

  • 9x80 schedule with every other Friday off
  • Compensation decisions determined using factors such as education, relevant experience, and other credentials.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service