Principal System Architect / SME

Posted 4 Days Ago
Be an Early Applicant
Hiring Remotely in Herndon, VA, USA
In-Office or Remote
Expert/Leader
Artificial Intelligence • Information Technology • Software • Cybersecurity
The Role
Lead an enterprise post-quantum cryptography program for a federal agency. Direct senior architects and engineers, develop migration and crypto-agility strategies, conduct cryptographic inventories, design cybersecurity architectures, establish configuration baselines, validate implementations, and translate NIST and CISA guidance into policy and technical requirements. The role also coordinates stakeholders, advises on staffing, evaluates PQC algorithms, supports cloud and hybrid security architecture, and communicates risks, progress, and outcomes to technical and executive audiences.
Summary Generated by Built In

Who we are:

ShorePoint is a fast-growing, industry-recognized and award-winning cybersecurity services firm focused on high-profile, high-threat public and private sector customers who demand experience and proven security models to protect their data. We embrace a “work hard, play hard” mentality and celebrate individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers, while fostering an environment that supports creativity, accountability, mission success, critical thinking and a desire to give back to our community.  

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation’s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individual’s technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, major carriers for healthcare providers. Highlighted benefits include 144 hours of PTO, 11 holidays, 85% of insurance premiums covered, a 401(k), continuing education, certification maintenance and reimbursement and more.

Who we’re looking for:

We are seeking a Principal System Architect / subject matter expert (SME) to lead an enterprise Post-Quantum Cryptography (PQC) program for a federal agency and help establish the technical direction for transitioning from classical to quantum-resistant cryptography. This hands-on team lead role provides day-to-day direction to senior architects and engineers, supports workload coordination and partners with government stakeholders to advance PQC migration, crypto-agility and enterprise cybersecurity architecture. The Principal System Architect / SME position requires enterprise security architecture expertise, technical leadership and the ability to communicate complex program status, progress and value to technical teams and leadership. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.

What you’ll be doing:

  • Lead and technically supervise a team of senior systems architects and engineers, providing daily direction and mentorship.
  • Advise the project manager on workload distribution and staffing across the systems team.
  • Shape and support the agency’s PQC migration strategy in alignment with National Institute of Standards and Technology (NIST) post-quantum standards and Commercial National Security Algorithm (CNSA) 2.0 requirements.
  • Lead and conduct cryptographic inventory and discovery efforts to identify systems, protocols and data stores exposed to quantum decryption risk, including “harvest now, decrypt later” threats.
  • Establish crypto-agility standards to enable systems to transition between classical and post-quantum algorithms with minimal re-architecture.
  • Advise on hybrid classical/PQC implementation approaches to protect systems during the migration period.
  • Evaluate NIST-selected PQC algorithms, including ML-KEM, ML-DSA and SLH-DSA, for suitability across enterprise use cases, performance constraints and system requirements.
  • Gather and develop enterprise cybersecurity architecture requirements with federal stakeholders, building on analysis from information engineers.
  • Produce design architectures covering software, hardware and communications that meet current needs and anticipate future cross-functional requirements and interfaces.
  • Design, implement and baseline enterprise cybersecurity capability configurations.
  • Validate and verify capability implementations and ongoing configuration changes to confirm they meet intended security outcomes.
  • Develop policy aligned with Cybersecurity and Infrastructure Security Agency (CISA) maturity models, including the Zero Trust Maturity Model and NIST standards while ensuring architectures remain compatible and compliant with industry and federal standards.
  • Foster collaboration across government and contractor teams to identify clear paths forward across key task areas.
  • Develop briefings, presentations and written deliverables that communicate program status, risk reduction and value to technical teams and agency leadership.

What you need to know:

  • PQC standards, including NIST-selected ML-KEM (FIPS 203), ML-DSA (FIPS 204) and SLH-DSA (FIPS 205) algorithms and the CNSA 2.0 suite and transition timelines.
  • Crypto-agility principles, hybrid cryptographic implementation strategies, public-key infrastructure (PKI), key management and certificate lifecycle management in the context of cryptographic modernization.
  • Enterprise cybersecurity architecture across software, hardware and network communications, including configuration baselining, validation and verification practices.
  • Federal cybersecurity frameworks and guidance, including NIST Special Publication (SP) 800-series publications, the NIST Cybersecurity Framework and CISA maturity models and how to translate federal policy and mandates into technical requirements and architecture decisions.
  • Enterprise network architecture and cryptography across segmentation, routing, secure transport protocols and supporting infrastructure components, including identity and access management systems, directory services, load balancers, firewalls and hardware security modules (HSMs).
  • Cloud, hybrid and multi-cloud security architecture, including Infrastructure as a Service (IaaS), Platform as a Service (PaaS), Software as a Service (SaaS), cloud key management, shared responsibility models, Federal Risk and Authorization Management Program (FedRAMP) requirements and cryptographic dependencies across applications, operating systems, firmware and third-party products.

Must have’s:

  • 10+ years of experience in systems architecture, including providing technical supervision and direction to senior architects and staff.
  • Active Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) certification.
  • Experience designing and implementing enterprise cybersecurity architectures and capabilities.
  • Experience developing enterprise cybersecurity architecture requirements with customers and stakeholders.
  • Experience baselining enterprise cybersecurity capability configurations and validating and verifying implementations and ongoing configuration changes.
  • Experience creating policy that adheres to CISA maturity models and NIST standards.
  • Experience with PKI, key management and certificate lifecycle management.
  • Proven ability to lead teams, build collaboration across stakeholders and communicate complex technical topics to technical and executive audiences through briefings, presentations and written deliverables.
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Applicants must currently be a U.S. citizen in compliance with federal contract requirements.

Beneficial to have:

  • Experience designing and implementing enterprise cybersecurity architectures that include PQC.
  • Hands-on experience with PQC standards, including ML-KEM, ML-DSA, SLH-DSA and CNSA 2.0 requirements.
  • Experience conducting cryptographic inventories and assessing “harvest now, decrypt later” risk exposure.
  • Hands-on experience piloting PQC or hybrid key exchange in TLS, VPN/IPsec, SSH or code-signing environments.
  • Experience with automated cryptographic and network discovery tools, including mapping cryptographic dependencies across large environments and building Cryptographic Bills of Materials (CBOMs).
  • Familiarity with FIPS 140-3 validation, HSMs and vendor PQC readiness roadmaps.
  • Familiarity with federal PQC policy drivers such as National Security Memorandum 10 (NSM-10), Office of Management and Budget (OMB) Memorandum M-23-02 and CISA PQC guidance.
  • Experience supporting cybersecurity work for federal government customers, including developing enterprise cybersecurity architecture requirements.
  • Experience implementing Zero Trust architecture in a federal environment.
  • Experience with major federal cloud platforms such as Amazon Web Services (AWS) GovCloud, Azure Government or Google Cloud for Government.
  • Project Management Professional (PMP) certification.
  • Cloud security certifications such as AWS Certified Security - Specialty, Azure Security Engineer or Certified Cloud Security Professional (CCSP).
  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, Mathematics, Engineering or a related field.

it’s done:

  • Remote (Herndon, VA).

Skills Required

  • 10+ years of systems architecture experience, including technical supervision and direction of senior architects and staff
  • Active CISSP or CISM certification
  • Experience designing and implementing enterprise cybersecurity architectures and capabilities
  • Experience developing enterprise cybersecurity architecture requirements with customers and stakeholders
  • Experience baselining cybersecurity capability configurations and validating implementations and configuration changes
  • Experience creating policy aligned with CISA maturity models and NIST standards
  • Experience with PKI, key management, and certificate lifecycle management
  • Ability to lead teams, collaborate across stakeholders, and communicate complex technical topics to technical and executive audiences
  • Ability to analyze complex requirements and translate them into actionable tasks and processes
  • Current U.S. citizenship
  • Experience designing and implementing enterprise cybersecurity architectures incorporating PQC
  • Hands-on experience with ML-KEM, ML-DSA, SLH-DSA, and CNSA 2.0
  • Experience conducting cryptographic inventories and assessing harvest-now-decrypt-later risk
  • Experience piloting PQC or hybrid key exchange in TLS, VPN/IPsec, SSH, or code-signing environments
  • Experience with cryptographic and network discovery tools, dependency mapping, and CBOMs
  • Familiarity with FIPS 140-3, HSMs, and vendor PQC readiness roadmaps
  • Familiarity with NSM-10, OMB M-23-02, and CISA PQC guidance
  • Federal government cybersecurity experience
  • Experience implementing Zero Trust architecture in a federal environment
  • Experience with AWS GovCloud, Azure Government, or Google Cloud for Government
  • PMP certification
  • AWS Certified Security Specialty, Azure Security Engineer, or CCSP certification
  • Bachelor’s or master’s degree in computer science, cybersecurity, mathematics, engineering, or a related field
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Washington, DC
102 Employees

What We Do

ShorePoint recognizes that cybersecurity is the challenge of our generation. Our vision is to be the premier provider of cybersecurity services, delivering a security model capable of keeping pace with today’s rapidly changing landscape. ShorePoint is a privately-held cybersecurity services company with the experience and capabilities needed to help public and private sector clients protect their most critical assets from cyber threats. Founded by cybersecurity veterans Matt Brown and Scott Ackerman and amplified by executives Ryan McCullough and Rob Palmer, ShorePoint offers a focus on establishing meaningful cyber defense strategies across the full cyber lifecycle. We bring a deep expertise in the Department of Homeland Security (DHS) Continuous Diagnostics and Mitigation (CDM) program, a technology and vendor agnostic mindset, and small firm agility, ingenuity and responsiveness. The ShorePoint team has designed, implemented and managed proven cyber programs for critical missions within the federal civilian, defense, and intelligence community, and has extensive commercial experience supporting high technology, financial services, critical infrastructure, and healthcare. Beyond excelling in our craft, what sets ShorePoint apart is our culture: a high energy and flexible work environment that enables our team to creatively tackle the cyber challenges of today. We empower and support our employees in outreach programs with a corporate culture focused on being an active member in improving our community.

Similar Jobs

Runpod Logo Runpod

Security Engineer

Artificial Intelligence • Cloud • Software • Infrastructure as a Service (IaaS)
Remote
USA
120 Employees
152K-175K Annually

Headway Logo Headway

Director, Provider Growth Marketing

Consumer Web • Healthtech • Professional Services • Social Impact • Software
Remote
USA
819 Employees
212K-265K Annually

ClassWallet Logo ClassWallet

Operations Specialist

Edtech • Fintech • Payments • Social Impact • Financial Services • Big Data Analytics
Remote
United States
89 Employees

Sprinter Health Logo Sprinter Health

Patient Engagement Specialist I (Temporary) | $1,000 Bonus

Artificial Intelligence • Healthtech • Logistics • Social Impact • Software • Telehealth
Remote or Hybrid
United States
500 Employees

Similar Companies Hiring

Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees
Vega Thumbnail
Artificial Intelligence • Automotive • Insurance • Transportation
US
43 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account