Platform Architect - DOD (Active Secret Clearance Required)
WFH Flexible Remote Worker - N/A
Job Type
Full-time, Contract
Description

We are seeking an experienced Platform Architect to lead the design, integration, and execution of the Next Generation architecture. This role defines and governs the shipboard and shore-based platform architecture that consolidates hosting, networking, security, and automation using Red Hat OpenShift as the primary platform.


The Architect will guide the transition from legacy, hardware-coupled implementations to a modular, OpenShift-first, automation-driven architecture. This includes supporting containerized workloads, OpenShift Virtualization for legacy virtual machines, and model-driven network and security operations. The role is hands-on and deeply technical, spanning compute, storage, network, and security domains, while ensuring alignment with tenets, PMW-160 guidance, RMF requirements, and fleet operational constraints.


Key Responsibilities

  • Platform Architecture and Design
    Lead the end-to-end technical architecture for Next Generation across shipboard and shore environments. Ensure architectural consistency across Unit Level, Force Level, submarine, and small platform variants. Define reference architectures, design patterns, and constraints that enable modularity, scalability, and repeatable pier-side installation.
  • OpenShift-First Hosting Strategy
    Architect and govern the use of Red Hat OpenShift as the primary hosting platform, supporting containers and virtual machines side by side using OpenShift Virtualization. Define workload placement, enclave-specific cluster topology, and migration approaches that allow legacy and hosted applications to transition without operational disruption.
  • Virtualization and Legacy Workload Integration
    Define and oversee the technical approach for sustaining and migrating existing VMware-based and bare-metal workloads into OpenShift Virtualization. This includes VM lifecycle management, live migration strategies, backup and recovery integration, and clear operational boundaries between legacy and cloud-native workloads.
  • Automation and Infrastructure as Code
    Establish and enforce Infrastructure as Code and GitOps principles across Next Generation. Architect day-0, day-1, and day-2 automation using Ansible Automation Platform, integrated with shore-to-ship parent and child governance models. Ensure automation supports installation, upgrades, compliance enforcement, rollback, and evidence capture.
  • Modular Hardware and CEG Integration
    Define how modular hardware building blocks and CyKor Equipment Groups are incorporated into the platform architecture. Ensure compute, storage, and network modules are pre-validated, self-describing, and capable of rapid installation, replacement, and lifecycle refresh without requiring architectural redesign.


Requirements
  • Bachelor degree in Computer Science, Information Technology, or related field preferred.
  • Minimum of 8 years of experience in platform architecture, systems engineering, or infrastructure engineering roles, with demonstrated success leading complex platform transformations in mission-critical or regulated environments.
  • Deep expertise in Red Hat OpenShift and Kubernetes, including cluster architecture, operators, upgrades, lifecycle management, and multi-cluster operations in constrained or disconnected environments.
  • Active Secret clearance
  • Travel availability for on-site client installations or similar projects

Virtualization 

  • Hands-on experience with OpenShift Virtualization and KubeVirt, including VM lifecycle management, live migration, backup and restore, and migration of workloads from VMware or other legacy hypervisors.

Automation 

  • Advanced experience with Ansible Automation Platform for orchestration, configuration management, and platform lifecycle automation, particularly in environments requiring strong governance and repeatability.

Operating Systems and Platform Security 

  • Strong experience with RHEL and Red Hat CoreOS, platform hardening, and secure configuration management. Solid understanding of container and VM security controls, identity integration, and compliance enforcement.

Preferred Qualifications

  • Experience with DoD tactical network programs (preferred).  
  • Familiarity with Cisco NSO and model-driven network configuration management.  
  • Experience designing platforms for disconnected, intermittent, or bandwidth-constrained environments.  
  • Strong background in DevSecOps pipelines and controlled software delivery environments.  
  • Ability to produce clear technical documentation for formal design reviews and government stakeholders.