1

Zero Trust Architect Jobs (NOW HIRING)

Zero Trust Architect

Mclean, VA ยท On-site

$150 - $200/hr

Zero Trust Architect Location: Bethesda, MD (Hybrid; On-site as Required) Clearance: Tier 2 Public Trust (Required) Employment Type: Full-Time Position Summary Digital Global Connectors (DGC) is ...

$150 - $200/hr

Zero Trust Architecture & Strategy * Serve as the program's subject matter expert and technical authority for Zero Trust Architecture, providing authoritative guidance, engineering leadership, and ...

Zero Trust Engineer

Washington, DC ยท On-site

$120K - $160K/yr

Zero Trust Architecture & Strategy * Serve as the program's subject matter expert and technical authority for Zero Trust Architecture, providing authoritative guidance, engineering leadership, and ...

Zero Trust Architecture & Strategy * Serve as the program's subject matter expert and technical authority for Zero Trust Architecture, providing authoritative guidance, engineering leadership, and ...

Zero Trust Engineer

Washington, DC ยท On-site

$150 - $200/hr

Zero Trust Architecture & Strategy * Serve as the program's subject matter expert and technical authority for Zero Trust Architecture, providing authoritative guidance, engineering leadership, and ...

next page

Showing results 1-20

Zero Trust Architect information

See salary details

$46.5K

$128.8K

$201.5K

How much do zero trust architect jobs pay per year?

As of Sep 9, 2026, the average yearly pay for zero trust architect in the United States is $128,756.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,000.00 and $166,000.00 per year, depending on experience, location, and employer.

What are the main responsibilities of a Zero Trust Architect?

A Zero Trust Architect is primarily responsible for assessing existing network and security frameworks, designing comprehensive Zero Trust strategies, and collaborating with IT and security teams to implement secure access controls. They work closely with various departments to gather requirements, perform risk assessments, and ensure adherence to strict authentication and authorization policies. On a typical project, you may be guiding security teams, conducting technical workshops, and continuously monitoring systems for compliance and improvement opportunities. This dynamic, collaborative role often makes you a key advisor for both technical and business stakeholders throughout the organization.

What are the key skills and qualifications needed to thrive as a Zero Trust Architect?

To thrive as a Zero Trust Architect, you need in-depth knowledge of cybersecurity frameworks, network architecture, identity and access management, and experience designing Zero Trust environments, usually supported by degrees in computer science or related fields. Familiarity with security tools such as firewalls, SIEM platforms, cloud security solutions, and certifications like CISSP, CISM, or specific vendor Zero Trust certifications are highly valued. Strong communication, problem-solving skills, and the ability to work collaboratively with cross-functional teams set top candidates apart. These capabilities ensure the architect can design, advocate for, and implement robust Zero Trust strategies that effectively protect organizational assets.

More about Zero Trust Architect jobs

What cities are hiring for Zero Trust Architect jobs?

Cities with the most Zero Trust Architect job openings:

What are the most commonly searched types of Zero Trust Architect jobs?

The most popular types of Zero Trust Architect jobs are:

What states have the most Zero Trust Architect jobs?

States with the most job openings for Zero Trust Architect jobs include:

What are popular job titles related to Zero Trust Architect jobs?

For Zero Trust Architect jobs, the most frequently searched job titles are:

Infographic showing various Zero Trust Architect job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 85% Full Time, 10% Part Time, and 4% Contract. Highlights an 81% Physical, 2% Hybrid, and 17% Remote job distribution, with an average salary of $128,756 per year, or $61.9 per hour.

Zero Trust Architect

Mclean, VA โ€ข On-site

$150 - $200/hr

Other

Posted 7 days ago


Job description

Zero Trust Architect

Location: Bethesda, MD (Hybrid; On-site as Required)

Clearance: Tier 2 Public Trust (Required)

Employment Type: Full-Time

Position Summary

Digital Global Connectors (DGC) is seeking an experienced Zero Trust Architect to support a Federal information security program. The Zero Trust Architect is responsible for designing, implementing, and maturing enterprise Zero Trust Architecture (ZTA) strategies that strengthen organizational cybersecurity through identity-centric, risk-based security principles.

This position provides technical leadership for Zero Trust initiatives across identity, devices, networks, applications, workloads, data, automation, and visibility. The Zero Trust Architect collaborates with Security Architects, Cloud Engineers, Security Engineers, ISSOs, Network Engineers, System Owners, and program leadership to integrate Zero Trust principles into enterprise technology modernization efforts.

The successful candidate will possess extensive experience implementing Zero Trust concepts, cloud security architectures, identity governance, and modern cybersecurity technologies that align with Federal cybersecurity guidance and industry best practices.

Essential Duties and Responsibilities: Zero Trust Strategy
  • Develop and maintain enterprise Zero Trust Architecture roadmaps.
  • Design security architectures based on Zero Trust principles.
  • Assess existing environments and identify opportunities to improve Zero Trust maturity.
  • Recommend phased implementation strategies that minimize operational disruption.
  • Align Zero Trust initiatives with organizational business and mission objectives.
  • Support long-term cybersecurity modernization efforts.
Enterprise Architecture
  • Design secure enterprise architectures that integrate identity, devices, networks, applications, and data protection.
  • Develop reference architectures and technical standards supporting Zero Trust implementation.
  • Review proposed technologies for architectural alignment.
  • Identify architectural risks and recommend mitigation strategies.
  • Support secure integration across cloud, hybrid, and on-premises environments.
  • Ensure security is incorporated throughout the system development lifecycle.
Identity and Access Management
  • Design enterprise Identity and Access Management (IAM) architectures.
  • Implement least-privilege and just-in-time access models.
  • Support deployment of Multi-Factor Authentication (MFA), Conditional Access, Privileged Identity Management (PIM), and Privileged Access Management (PAM).
  • Develop identity governance strategies.
  • Support continuous identity verification and adaptive access controls.
  • Recommend improvements to authentication and authorization processes.
Network and Micro-Segmentation
  • Design secure network segmentation strategies.
  • Implement policy-based access controls.
  • Recommend micro-segmentation solutions that limit lateral movement.
  • Evaluate secure remote access technologies.
  • Support software-defined perimeter (SDP) and Zero Trust Network Access (ZTNA) initiatives.
  • Review network architectures for Zero Trust compliance.
Cloud and Data Security
  • Design secure cloud architectures supporting Microsoft Azure, Microsoft 365, Amazon Web Services (AWS), and hybrid environments.
  • Implement cloud-native Zero Trust capabilities.
  • Develop data protection strategies utilizing encryption, data classification, and data loss prevention (DLP).
  • Recommend secure workload protection mechanisms.
  • Evaluate cloud security posture and identify opportunities for improvement.
  • Support secure cloud modernization initiatives.
Security Technologies

Design and integrate enterprise security technologies including:

  • Microsoft Entra ID
  • Microsoft Defender XDRMicrosoft Defender for Cloud
  • Microsoft Sentinel
  • Microsoft Intune
  • Azure Policy
  • Microsoft Purview
  • Conditional Access
  • Privileged Identity Management (PIM)
  • Privileged Access Management (PAM)
  • Security Information and Event Management (SIEM)
  • Endpoint Detection and Response (EDR)
  • Extended Detection and Response (XDR)
  • Zero Trust Network Access (ZTNA)

Evaluate new technologies supporting Zero Trust maturity.

Risk Management Framework (RMF) Support
  • Support implementation of NIST SP 800-53 security controls.
  • Review system architectures supporting Authorization to Operate (ATO) activities.
  • Assist ISSOs and Security Assessors during architecture reviews.
  • Recommend technical solutions supporting continuous monitoring.
  • Evaluate architectural risks identified during security assessments.
  • Support development of architecture documentation associated with RMF activities.
Documentation and Reporting

Develop and maintain:

  • Zero Trust Roadmaps
  • Enterprise Security Architectures
  • Reference Architectures
  • Technical Design Documents
  • Security Architecture Diagrams
  • Technology Standards
  • Implementation Guides
  • Executive Briefings
  • Maturity Assessments
  • Architecture Decision Records (ADRs)

Ensure documentation remains current, technically accurate, and aligned with organizational standards.

Collaboration
  • Coordinate with Security Architects, Security Engineers, Cloud Engineers, ISSOs, Network Engineers, System Owners, Enterprise Architects, Project Managers, and Government stakeholders.
  • Participate in architecture review boards and technical working groups.
  • Provide technical leadership during modernization initiatives.
  • Present Zero Trust strategies and recommendations to technical and executive leadership.
  • Mentor engineering teams on Zero Trust implementation principles.
Continuous Improvement
  • Monitor emerging Zero Trust technologies, Federal cybersecurity guidance, and industry best practices.
  • Recommend improvements to enterprise architecture and security engineering processes.
  • Support automation initiatives that improve security operations and policy enforcement.
  • Evaluate evolving Zero Trust capabilities and implementation approaches.
  • Maintain professional certifications and advanced technical expertise.
Minimum Qualifications
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Systems, Engineering, or a related discipline.
  • Minimum eight (8) years of experience designing enterprise cybersecurity architectures.
  • Minimum three (3) years of experience designing or implementing Zero Trust Architecture initiatives.
  • Experience implementing Identity and Access Management (IAM), cloud security, and enterprise security architecture.
  • Experience supporting the NIST Risk Management Framework (RMF) and NIST SP 800-53 security controls.
  • Strong analytical, documentation, presentation, and communication skills.
  • U.S. Citizenship required.
  • Ability to obtain and maintain a Tier 2 Public Trust.
Preferred Qualifications
  • Master's degree in Cybersecurity, Computer Science, Information Assurance, Engineering, or a related discipline.
  • Experience supporting a Federal civilian agency.
  • Experience implementing Microsoft security technologies within enterprise environments.
  • Experience designing cloud security architectures for Microsoft Azure and AWS.
  • Certified Information Systems Security Professional (CISSP)
  • Certified Cloud Security Professional (CCSP)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • TOGAF Certification (preferred)
  • SABSA Chartered Security Architect (preferred)
Knowledge, Skills, and Abilities
  • Zero Trust Architecture (ZTA)
  • Identity and Access Management (IAM)
  • Microsoft Entra ID
  • Conditional Access
  • Multi-Factor Authentication (MFA)
  • Privileged Identity Management (PIM)
  • Privileged Access Management (PAM)
  • Zero Trust Network Access (ZTNA)
  • Micro-Segmentation
  • Microsoft Defender XDR
  • Microsoft Defender for Cloud
  • Microsoft Sentinel
  • Microsoft Intune
  • Microsoft Purview
  • Microsoft Azure
  • Microsoft 365 Security
  • Amazon Web Services (AWS)
  • Security Information and Event Management (SIEM)
  • Endpoint Detection and Response (EDR)
  • Extended Detection and Response (XDR)
  • NIST Risk Management Framework (RMF)
  • NIST SP 800-53
  • NIST SP 800-207
  • CISA Zero Trust Maturity Model
  • Federal Information Security Modernization Act (FISMA)
  • Enterprise Security Architecture
  • Technical Documentation
  • Microsoft Office Suite
  • Microsoft Visio
  • ServiceNow
  • Jira
Security Requirements
  • Ability to successfully obtain and maintain a Tier 2 Public Trust investigation.
  • Compliance with all applicable Federal security, privacy, ethics, and information assurance training requirements before receiving system access.
  • Ability to support enterprise cybersecurity modernization initiatives, architecture reviews, continuity of operations (COOP), emergency response activities, and surge support as required.
  • Must maintain strict confidentiality while handling enterprise architecture documentation, security designs, implementation roadmaps, and Federal information systems.
  • Ability to design and implement enterprise Zero Trust Architecture while collaborating with Government stakeholders, technical teams, and program leadership to improve cyber resilience, reduce organizational risk, and strengthen the security of enterprise information systems through modern, identity-centric security principles.
#J-18808-Ljbffr