About Us:
At RELI Group, our work is grounded in purpose. We partner with government agencies to solve complex challenges, improve public health, strengthen national security, and make government services more effective and efficient. Our team of over 500 professionals brings deep expertise and a shared commitment to delivering meaningful outcomes. Behind every solution is a group of experts who care deeply about impact—whether we’re supporting data-driven decisions, modernizing systems or safeguarding critical programs.
Position Summary
The Senior Cybersecurity Architect serves as a senior technical advisor responsible for advancing enterprise security and privacy initiatives across emerging technologies, Cyber Risk Management, Zero Trust architecture, and cybersecurity readiness. This role evaluates and integrates innovative security capabilities, conducts threat-informed risk analysis, and strengthens overall security posture through architecture review, attack surface management, and data-driven decision-making.
The architect provides subject matter expertise aligned with the CISA Zero Trust Maturity Model and federal security frameworks, supports Proofs of Concept, and translates complex risk findings into actionable enterprise recommendations. Leveraging SQL and scripting capabilities, the role analyzes cybersecurity data to identify trends, validate risk metrics, and inform strategic improvements.
This position requires extensive federal cybersecurity experience, strong knowledge of NIST frameworks, and the ability to balance strategic planning with operational execution in a dynamic, mission-driven environment.
Key Responsibilities
- Serve as a senior technical advisor supporting security and privacy initiatives across emerging technology, cyber risk management, Zero Trust, and cybersecurity readiness efforts
- Research, evaluate, and provide strategic recommendations on emerging technologies (e.g., AI/ML, advanced encryption, cloud-native security, automation) to improve the security and privacy posture of the Marketplace
- Assess potential risks, operational impacts, and innovation opportunities associated with new technologies, ensuring alignment with enterprise strategy and mission objectives
- Support Proofs of Concept (PoC) initiatives by incorporating threat intelligence and attack surface analysis, conducting risk assessments (threat, vulnerability, impact), and advising on integration with existing security capabilities
- Examine business, mission, and user practices that contribute to attack surface exposure and recommend holistic risk reduction strategies beyond technical tooling
- Analyze threat trends targeting the enterprise, contextualizing risks within business operations and mission impact
- Evaluate cybersecurity posture using enterprise data sources to identify trends in vulnerabilities, unsupported technologies, findings management, and attack surface risks
- Compare current cybersecurity capabilities against industry best practices and recommend improvements to strengthen overall risk posture
- Develop and execute SQL queries against enterprise cybersecurity data sources to extract, analyze, and validate risk data (e.g., vulnerabilities, unsupported software, findings management metrics), ensuring data-driven decision-making and accurate reporting
- Manage and support ongoing cyber operational activities, including attack surface analysis, cyber risk management processes, and coordination implementing new or enhanced capabilities
- Provide Zero Trust subject matter expertise aligned with enterprise strategy and the CISA Zero Trust Maturity Model, supporting maturation across identity, device, network, application, and data security domains
- Assess system architectures for risk and recommend integration of innovative security approaches throughout the system development lifecycle
- Collaborate with internal teams and stakeholders to advance Zero Trust implementation and ensure continuous monitoring aligns with organizational risk requirements
- Support cybersecurity readiness activities during high-risk operational periods, including tabletop exercise development, threat actor analysis, and stakeholder coordination
- Facilitate cross-organizational security forums and stakeholder engagements to enhance visibility, collaboration, and proactive risk mitigation across the Marketplace environment