Cloud Security Architect

Back

Cloud Security Architect

@ CGI

Position Description:

  • The CGI Government Cloud Services Program (GCS) delivers and supports a proprietary Government Advantage ERP software suite for state and local governments across the United States.
  • Our CGI Advantage program is seeking a mission-driven Senior Cloud Security Architect to lead the design, governance, and implementation of secure, compliant, and resilient cloud architectures in support of public sector solutions.
  • This role will be instrumental in securing our enterprise platforms, client-facing SaaS offerings, and next-generation AI and data analytics solutions.
  • You will work across cloud, SaaS, and AI ecosystems to ensure the protection of sensitive data—including PII, financial, and operational data—against evolving threats, while ensuring compliance with stringent government security and privacy frameworks (e.g., FedRAMP High, StateRAMP, CJIS, IRS 1075, NIST 800-53).


Your future duties and responsibilities:

  • Design and enforce security architectures for public sector SaaS and data platforms operating in multi-cloud environments (Azure, AWS, GCP), with emphasis on data confidentiality, integrity, and compliance.
  • Architect and implement secure cloud-native services including PaaS, containers (Kubernetes), serverless, and AI/ML workloads.
  • Define enterprise security standards for AI models, inference pipelines, data ingestion, and storage systems ensuring alignment with evolving U.S. government guidance (e.g., Executive Orders on AI and cybersecurity).
  • Perform security architecture reviews, risk assessments, and threat modeling for solutions that process regulated public sector data.
  • Embed security-by-design principles across development teams and DevSecOps pipelines, including IaC scanning and AI model validation.
  • Guide teams on data loss prevention (DLP), encryption at rest and in transit, role-based access control (RBAC), zero trust, and secure API integration.
  • Define and validate security controls for compliance frameworks including FedRAMP, StateRAMP, FISMA, HIPAA, and CJIS.
  • Partner with legal, procurement, and governance teams to evaluate third-party SaaS and AI vendors for security and data handling risks.
  • Champion continuous monitoring and automated compliance reporting using modern SIEM/SOAR and AI observability tools.
  • Serve as an expert advisor in security incident response involving cloud, data platforms, and AI workloads.


Qualifications:

Required qualifications to be successful in this role:

  • 10+ years of experience in cybersecurity, with 5+ years focused on cloud security architecture for government clients or regulated sectors.
  • Deep knowledge of Azure Government, AWS GovCloud, or GCP Assured Workloads and associated security services.
  • Hands-on experience securing SaaS platforms and AI/data environments (e.g., Azure OpenAI, Databricks, Snowflake, MLFlow).
  • Expertise in public sector compliance frameworks such as FedRAMP High, StateRAMP, NIST 800-53, CJIS, or IRS 1075.
  • Experience with data protection strategies including tokenization, data classification, DLP, encryption, and secure storage.
  • Familiarity with AI/ML security considerations, including model tampering, data poisoning, inference attacks, and secure deployment of large language models (LLMs).
  • Proficient with IaC (Terraform, ARM, CloudFormation), DevSecOps tooling, and automation of security controls.
  • Strong communication and influence skills, with ability to engage stakeholders from technical teams to government compliance officers.
  • Bachelor’s or Master’s in Information Security, Computer Science, or related field.
  • Security certifications such as CCSP, CISSP, CISA, GIAC, or cloud provider security certifications (Azure/AWS/GCP) preferred.
  • Experience supporting state, local, or federal government modernization programs, including ERP, case management, or grants systems.
  • Familiarity with zero trust architecture, SCIM/SSO integration, and secure data exchange protocols in government contexts.
  • Exposure to AI governance, model monitoring, and secure data pipeline architecture in public sector use cases.
  • Participation in government audits, ATO (Authority to Operate) processes, or 3PAO engagements.


Skills:

  • Security Architecture


How to Apply:

Apply online at https://www.cgi.com/en/careers

Visit Site to Apply

Location: Lafayette, LA
Date Posted: May 13, 2025
Application Deadline: June 06, 2025
Job Type: Full-time