Enterprise Cloud Security Architect at GuidePoint Security
Reston, VA
—
Jul 7, 2026
Reston, VA
Jul 21, 2026
What this job asks for AI summary
A senior presales engineering role focused on multicloud security architecture across AWS, Azure, and GCP, primarily supporting federal government clients. Day-to-day work involves developing reference architectures, governance frameworks, and cloud-agnostic security patterns, while guiding engineering teams on topics such as Zero Trust, infrastructure-as-code, and hybrid networking. An active TS/SCI clearance and extensive enterprise cloud security experience are required.
Senior level · 10+ years · Remote · TS/SCI clearance · Full-time
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
What the occupation pays Median $132,021 (middle half $99,961–$167,095).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (11)
The title 'Enterprise Cloud Security Architect' carries no explicit seniority level word, so the title states no level; however, the 10+ years requirement and enterprise-wide architectural scope firmly support Senior.
The role is posted by GuidePoint Security but the JD body references Booz Allen's enterprise cloud capabilities, suggesting this is a presales/consulting position supporting a federal client — the primary day-to-day work is cloud security architecture and cybersecurity engineering, making 15-1212 the best fit, with 15-1299 as a runner-up given the strong architecture/design emphasis.
TS/SCI is an explicit hard gate ('MUST possess active TS/SCI clearance'); the counter-intelligence polygraph is listed as 'ability to obtain' rather than already held, but the active TS/SCI itself is required.
Degree requirement is None: the JD offers three equivalent paths (Associate's+5 yrs, Bachelor's+3 yrs, Master's+1 yr), meaning no single degree level is a hard gate — experience can substitute.
The DoD 8570 IAT Level III / IASAE Level II certification (CISSP or SecurityX) is listed under Requirements and is a hard gate. The CSSP-IS certification (CEH or equivalents) must be obtained within 30 days of start — treated as a required gate since it is in the Requirements section with a firm deadline.
Multicloud cloud provider certifications (AWS, Azure, GCP) appear under Preferred Qualifications.
No compensation figures are provided in the posting.
The posting states 'Remote workforce primarily (U.S. based only)' but notes that on-site may be required for Federal positions — this role is Federal, so some on-site work is possible; remote=true reflects the primary stated arrangement.
The three major cloud providers (AWS, Azure, GCP) are each individually required as part of the multicloud SME scope; they are listed together as a combined requirement rather than alternatives, but the JD treats them as a unified multicloud stack — emitted as separate skills with cross-references in alternatives to reflect the 'or similar' governance tool framing.
Requires a TS/SCI clearance — the cleared population is a small fraction of this occupation, so the real candidate pool is materially smaller than the estimate below, which does not model clearance.
This posting reads as a fully-remote role, so it was scored against the national candidate pool rather than a single metro.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.