SlipstreamJobsFresh Startup & VC-Backed Jobs

Principal Classified Systems Architect, Okta Federal

Okta - Washington, DC, United States - In-office - posted 2026-02-17

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Okta Federal is seeking a Principal Classified Systems Architect to join the Technology, Data & Intelligence (TDI) Team. This role serves as the technical authority for designing, developing, and evolving a robust, compliant, and scalable "High Side" developer platform that empowers product teams to deliver Okta's identity capabilities to the U.S. Government's most sensitive missions. You will define the architectural vision for air-gapped infrastructure, select and validate hardened tooling (Big Bang, Iron Bank, etc.), and bridge the gap between strict DoD compliance requirements and modern DevOps velocity. This position requires deep expertise in DoD classified environments and the ability to solve complex infrastructure challenges in disconnected, high-security settings. Key responsibilities include: - Acting as the central point for defining and evolving the architecture of Okta Federal's SIPR/JWICS environments, ensuring alignment with DoD reference designs - Designing resilient, scalable infrastructure-as-code (IaC) and blueprints for air-gapped environments, addressing unique challenges like disconnected operations and patch management - Collaborating with Product Engineering, Site Reliability Engineers, Business Application teams, and Security teams to translate compliance controls (DISA STIGs, RMF) into automated technical implementations - Guiding the selection and integration of "High Side" tools and technologies, prioritizing compliant, maintainable solutions - Reviewing and approving architectural changes and major system upgrades across the classified boundary - Establishing technical strategy for "High Side" observability and continuous monitoring - Measuring success through uptime, ATO velocity, patch latency, vulnerability resolution time, and developer satisfaction Required qualifications include 12+ years in systems architecture or DevSecOps engineering, with at least 5 years focused on DoD Classified environments (IL6/Secret or higher). You must have deep expertise in Platform One/Cloud One, Big Bang, and Iron Bank; strong understanding of Kubernetes (EKS/RKE2) in air-gapped setups; hands-on experience with DoD CC SRG IL6, NIST 800-53, and FIPS 140-3; proven experience with Cross Domain Solutions (CDS); and experience implementing Zero Trust Architecture in restrictive network environments. Excellent collaboration and communication skills are essential.