Sr. Zero Trust Engineer III (6794)
Arlington, TX - USA
Job Summary
As Sr. Zero Trust Engineer III youll help design and implement identity-centric security for complex cloud and hybrid environments. You will use Microsoft Azure security technologies automation and recognized Zero Trust frameworks to reduce risk strengthen access controls and improve continuous monitoring across the enterprise.
We know that you cant have great technology services without amazing people. At MetroStar we are obsessed with our people and have led a two-decade legacy of building the best and brightest teams. Because we know our future relies on our deep understanding and relentless focus on our people we live by our mission: A passion for our people. Value for our customers.
If you think you can see yourself delivering our mission and pursuing our goals with us then check out the job description below!
What youll do:
- Zero Trust Architecture: Design implement and maintain Zero Trust security architectures that align with NIST SP 800-207 CISA Zero Trust guidance and applicable organizational cybersecurity requirements across cloud hybrid and on-premises environments.
- Identity & Access Management (IAM): Implement and manage identity-centric security controls using Microsoft Entra ID (Azure Active Directory) Role-Based Access Control (RBAC) Conditional Access Privileged Identity Management (PIM) Multi-Factor Authentication (MFA) and identity governance solutions.
- Cloud Security Engineering: Design and implement security controls for Azure environments using Microsoft Defender for Cloud Microsoft Sentinel Azure Policy Key Vault Network Security Groups (NSGs) Azure Firewall and Private Endpoints to protect critical enterprise workloads.
- Microsegmentation & Network Security: Develop and enforce network segmentation strategies using Zero Trust principles to reduce attack surfaces and secure communication between users devices applications and services across enterprise environments.
- Security Automation & Compliance: Develop automation using PowerShell Python Azure CLI Terraform or Bicep to deploy security controls enforce policy compliance automate remediation activities and improve operational efficiency.
- Continuous Monitoring & Threat Detection: Configure and optimize Microsoft Sentinel Microsoft Defender XDR Azure Monitor and Log Analytics to provide continuous monitoring threat detection incident response and security reporting.
- Security Assessments & Risk Management: Conduct Zero Trust maturity assessments architecture reviews and security gap analyses while developing remediation strategies that improve security posture and support compliance objectives.
- DevSecOps Integration: Collaborate with DevSecOps teams to integrate Zero Trust security controls into CI/CD pipelines Infrastructure as Code (IaC) and cloud-native application development processes.
- Stakeholder Collaboration: Partner with client stakeholders cloud architects cybersecurity teams system engineers and program leadership to develop Zero Trust implementation roadmaps provide technical guidance and ensure security solutions align with organizational objectives.
What youll need to succeed:
- Active Top Secret security clearance.
- Bachelors degree in Computer Science Cybersecurity Information Systems Engineering or a related technical discipline.
- 10 years of experience in cybersecurity cloud security engineering systems engineering or enterprise security architecture.
- 5 years of experience designing implementing and supporting Zero Trust architectures within Microsoft Azure and hybrid cloud environments.
- Strong knowledge of Zero Trust principles and frameworks including NIST SP 800-207 CISA Zero Trust Maturity Model and other recognized Zero Trust guidance.
- Experience implementing Microsoft security technologies including Microsoft Entra ID (Azure Active Directory) Microsoft Defender for Cloud Microsoft Sentinel Azure Policy Microsoft Intune Conditional Access Privileged Identity Management (PIM) and Azure Key Vault.
- Hands-on experience with Infrastructure as Code (Terraform ARM Templates or Bicep) cloud automation and CI/CD platforms such as GitLab GitHub Jenkins or Azure DevOps.
- Proficiency with PowerShell Python Azure CLI or other scripting languages used for security automation and cloud administration.
- Strong understanding of Azure networking identity management encryption PKI network segmentation secure access and cloud-native security services.
- Experience supporting large enterprise public sector or regulated environments and implementing security controls aligned with NIST RMF FedRAMP applicable security baselines and security authorization requirements.
- Excellent analytical communication and stakeholder engagement skills with the ability to present technical recommendations to engineering teams cybersecurity leadership and client stakeholders.
SALARY RANGE: $150000.00 - $190000.00
The salary range for this position is determined based on qualifications skills and relevant experience. The final salary offered will be determined based on several factors including:
- The candidates professional background and relevant work experience
- The specific responsibilities of the role and organizational needs
- Internal equity and alignment with current team compensation
- This role is also eligible for additional compensation subject to the terms and policies of MetroStar which may include:
- Performance-based bonuses
- Company-paid training and/or certifications
- Referral bonuses
To apply for this position please submit your resume via the form below or through our careers page: Deadline: Applications will be accepted on a rolling basis until the position is filled; candidates are encouraged to apply as early as possible for full consideration.
Additional Compensation: This role may also be eligible for bonuses and/or additional incentives based on individual and company performance.
Benefits: All full-time employees are eligible to participate in our benefits programs:
- Health dental and vision insurance
- 401(k) retirement plan with company match
- Paid time off (PTO) and holidays
- Parental Leave and dependent care
- Flexible work arrangements
- Professional development opportunities
- Employee assistance and wellness programs
Like we said we are big fans of our people. Thats why we offer a generous benefits package professional growth and valuable time to recharge. Learn more about our company culture code and benefits. Plus check out our accolades.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment based on merit and without regard to sex race ethnicity age national origin citizenship religion physical or mental disability medical condition genetic information pregnancy family structure marital status ancestry domestic partner status sexual orientation gender identity or expression veteran or military status status as a protected veteran or any other status protected by applicable federal state local or international law.
What we want you to know:
In compliance with federal law all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
Not ready to apply now
Sign up to join our newsletter here.
Required Experience:
Senior IC
About Company
MetroStar builds transformative and innovative technology solutions to accelerate agency missions. We're where government and tech collide.