Responsibilities
Peraton is seeking an experienced Enterprise Cybersecurity Architect to define and lead the cybersecurity architecture strategy across the BNATCS program where cybersecurity is inseparable from safety. In this environment, a security failure is not merely a data breach — it can directly endanger human life, disrupt the national airspace, and compromise public safety. This role demands an architect who understands that every security design decision carries safety implications and who can embed that mindset across the entire integrated enterprise.Â
In Peraton's role as a systems integrator, you will be responsible for securing the full spectrum of integrated systems — custom-developed, COTS, GOTS, and third-party vendor components — ensuring that cybersecurity controls are consistent, enforceable, and verifiable across organizational and technical boundaries. You will serve as the principal authority on enterprise cybersecurity architecture, guiding engineering teams, subcontractors, and program leadership through the unique challenge of protecting safety-critical systems in an evolving threat landscape.Â
This role is based in Herndon, VA.
Responsibilities:
Security Architecture & StrategyÂ
- Define and maintain the enterprise cybersecurity architecture vision, encompassing network security, application security, data protection, identity and access management, and endpoint security across all integrated systemsÂ
- Develop and govern cybersecurity reference architectures, standards, and design patterns that ensure consistent security posture across internal teams, subcontractors, and vendor-delivered componentsÂ
- Drive the enterprise-wide adoption of Zero Trust Architecture (ZTA), defining segmentation strategies, identity verification models, and least-privilege access controls appropriate for safety-critical environmentsÂ
- Lead cybersecurity technology roadmap development, identifying strategic investments, capability gaps, and modernization priorities across the security portfolioÂ
Â
Safety-Critical CybersecurityÂ
- Architect cybersecurity controls that account for the safety-of-life implications inherent in aviation systems — ensuring that security mechanisms do not introduce latency, single points of failure, or operational disruptions that could compromise airspace safetyÂ
- Integrate cybersecurity requirements with safety engineering and system assurance processes, ensuring that security risk assessments are conducted alongside safety hazard analysesÂ
- Design resilience and continuity architectures — failover, graceful degradation, and recovery strategies — that maintain both security and safety posture during cyber incidentsÂ
- Develop security architectures for real-time, low-latency, and high-availability systems where traditional security controls must be adapted to meet stringent operational performance requirementsÂ
Â
Integration Security & GovernanceÂ
- Conduct security architecture assessments across the integrated system portfolio, identifying vulnerabilities, trust boundary gaps, and inconsistencies in security controls between vendor and custom componentsÂ
- Define and manage security interface requirements and security-relevant interface control documents (ICDs) for all system-to-system data exchanges across the integrated enterpriseÂ
- Conduct technical security reviews of vendor and subcontractor deliverables to ensure alignment with enterprise cybersecurity standards, secure coding practices, and compliance requirementsÂ
- Establish and chair security architecture review boards to evaluate proposed designs, adjudicate security trade-offs, and enforce architectural standards across all integrated systemsÂ
Â
Compliance & RiskÂ
- Ensure enterprise-wide compliance with FedRAMP, RMF, NIST 800-53, FISMA, FAA cybersecurity directives, and agency-specific security policiesÂ
- Lead threat modeling, risk assessments, and attack surface analyses across the integrated enterprise, with particular attention to safety-critical system boundariesÂ
- Collaborate with cybersecurity operations, incident response, and security monitoring teams to ensure that architectural designs support effective detection, response, and recovery capabilitiesÂ
- Architect security solutions for hybrid and multi-cloud environments (AWS GovCloud, Azure Government) that meet federal compliance requirements while supporting mission performanceÂ
Â
Leadership & CommunicationÂ
- Translate complex cybersecurity risks, architectural trade-offs, and safety-security interdependencies into clear, actionable guidance for executive stakeholders, program managers, and government customersÂ
- Mentor and guide security engineers, solution architects, and development teams to ensure cybersecurity and safety intent is preserved from design through implementation and integrationÂ
- Drive cross-functional alignment across cybersecurity, software engineering, data architecture, infrastructure, and operations teamsÂ
Qualifications
Required QualificationsÂ
- 15+ years of experience in cybersecurity architecture, security engineering, or enterprise IT security within large-scale programsÂ
- Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Computer Engineering, or a related field (or 4 additional years of relevant experience in lieu of degree)Â
- US Citizenship
- Public Trust Clearance - Ability to Obtain and MaintainÂ
- Demonstrated experience serving as a cybersecurity architect within a systems integrator environment, securing multi-vendor, multi-technology solutions across complex trust boundariesÂ
- Deep expertise in Zero Trust Architecture, network security design, identity and access management (IAM), and data protection strategies at enterprise scaleÂ
- Proven experience securing safety-critical or mission-critical systems where cybersecurity failures carry operational or life-safety consequencesÂ
- Mastery of FedRAMP, RMF, NIST 800-53, FISMA, and federal cybersecurity governance frameworksÂ
- Hands-on experience with security technologies including SIEM, SOAR, EDR, CSPM, IAM platforms, PKI, and network segmentation toolsÂ
- Strong understanding of cloud security architecture on AWS and/or Azure, including cloud-native security services, landing zone security, and workload protectionÂ
- Experience conducting threat modeling, risk assessments, and security architecture reviews across heterogeneous integrated environmentsÂ
- Familiarity with safety engineering principles (e.g., system safety, hazard analysis, fault tolerance) and their intersection with cybersecurityÂ
- ITIL certification and experience integrating cybersecurity governance with ITSM processesÂ
- Proven ability to lead cross-functional teams and drive security alignment across engineering, operations, and subcontractor organizationsÂ
Â
Preferred QualificationsÂ
- Experience securing FAA, aviation, or national airspace systems and familiarity with aviation-specific cybersecurity requirements and safety standardsÂ
- Background in securing real-time systems, low-latency architectures, and edge computing environments where traditional security controls require adaptationÂ
- Experience with network security architecture (SD-WAN, secure transport, micro-segmentation) within large-scale integrated environmentsÂ
- Familiarity with AIOps, security observability platforms, automated threat detection, and security orchestration at enterprise scaleÂ
- Experience with DevSecOps pipeline security — static/dynamic analysis, container security, software supply chain security, and secure CI/CD practicesÂ
- Hands-on experience with model-based systems engineering (MBSE) or architecture modeling tools for security architecture documentationÂ
- Relevant certifications such as CISSP, CCSP, CISM, or GICSP (Global Industrial Cyber Security Professional)Â
- Experience with EO 14028 (Improving the Nation's Cybersecurity) complianceÂ
- OMB M-22-09 Zero Trust implementation experienceÂ
- HSPD-12 identity managementÂ
- ICS/OT security assessment experience of FAA safety case development experience
Â
#BNATCSÂ
Peraton Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.
Target Salary Range
$135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEO
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Learn more about this Employer on their Career Site
