Job Closed

This listing is no longer active.

Mattermost logo
Mattermost

Mattermost is a technology company that provides enterprise-grade messaging solutions for some of the world’s leading companies. Using a vibrant, open-source

Federal Solution Architect

Location

United States

Posted

93 days ago

Salary

0

No structured requirement data.

Job Description

Federal Solution Architect

Mattermost

Mattermost is the leading collaborative workflow platform for defense, intelligence, security, and critical infrastructure. Trusted by the U.S. Department of War and Fortune 500s, our platform runs on-premises and in private clouds, delivering secure messaging, file sharing, workflow automation, audio/screenshare, and project management—all with full data and operational control. Mattermost powers high-stakes workflows across mission planning, real-time, real-world operations, DevSecOps, incident response, and cyber defense—enabling secure collaboration from tactical edge and DDIL environments to enterprise HQ. Teams operate across web, desktop, and mobile, with embedded interoperability for Microsoft Teams, Outlook, and Microsoft 365. To learn more, visit www.mattermost.com Mattermost is seeking an experienced and driven Federal Solution Architect to serve as the technical face of Mattermost within the U.S. Defense and Intelligence Community (IC). In this role, you will provide hands-on technical sales support to federal customers and partners, architect solutions that meet the unique requirements of classified and mission-critical environments, and drive the retention and growth of Mattermost's federal revenue base. This is a high-impact, customer-facing role that sits at the intersection of technical expertise and strategic sales. You will partner closely with Federal Account Executives to advance opportunities, deepen customer relationships, and ensure Mattermost remains the platform of choice for secure collaboration across Defense and Intelligence organizations. The long-term roadmap for this position is progression to a senior-level (L6) Solution Architect. Key Responsibilities Technical Sales & Pre-Sales Engineering - Serve as the primary technical resource for Mattermost's U.S. Defense and Intelligence customers, partners, and prospects. - Lead technical discovery sessions, product demonstrations, architecture reviews, and proof-of-concept engagements tailored to federal environments. - Translate complex customer requirements — including compliance mandates (FedRAMP, IL2, IL4/5, IL6, PL3, DISA SRG, Zero Trust) — into actionable Mattermost solution architectures. - Partner with Federal Account Executives to develop and execute technical win strategies for new and expansion opportunities. Customer Success & Retention - Act as a trusted technical advisor to existing federal accounts, proactively identifying risks and opportunities to strengthen customer relationships and retention. - Support deployment planning, integration design, and technical onboarding for Defense and IC customers operating in on-premise, air-gapped, and private cloud environments. - Collaborate with Customer Success, Support, and Engineering teams to resolve technical escalations and ensure customer satisfaction. Solution Architecture & Thought Leadership - Design and document reference architectures for Mattermost deployments within DoD and IC infrastructure, including Platform One, Big Bang, and other DevSecOps frameworks and platforms. - Provide technical guidance on integrations with tools commonly used in federal environments (e.g., GitLab, Jira, ServiceNow, SIEM platforms, and CI/CD pipelines). - Represent Mattermost at federal industry events, conferences, and partner engagements. - Contribute product feedback and market intelligence from the field to inform the Mattermost product roadmap. Partner Enablement - Enable defense contractors, system integrators, and channel partners with the technical knowledge and tools needed to position, deploy, and support Mattermost solutions. - Support joint solution development and co-selling motions with key federal partners. Required Qualifications - 5+ years of experience in a Solution Architect, Sales Engineer, Pre-Sales Engineer, or comparable technical sales role — with a strong focus on U.S. Federal / Defense / Intelligence customers. - Deep understanding of federal IT environments, including on-premise, air-gapped, and classified network deployments. - Familiarity with federal compliance frameworks and security standards such as FedRAMP, DISA SRG (IL4/IL5/IL6), NIST 800-53, CMMC, and Zero Trust Architecture. - Hands-on experience with Linux-based infrastructure, Kubernetes/OpenShift (e.g., Platform One / Big Bang), and container-based deployments. - Working knowledge of networking, identity management (SAML/SSO/LDAP), database administration (PostgreSQL), and DevSecOps toolchains. - Ability to write simple integrations and automations using languages such as Python, Go, or JavaScript, and familiarity with REST APIs and webhooks. - Excellent communication and presentation skills — able to convey complex technical concepts to both technical and executive audiences. - Self-starter with the ability to operate independently in a fast-paced, remote-first environment. - Willingness to travel to customer sites, partner events, and industry conferences as needed (up to 25-40%). - U.S. citizenship required. Must be eligible to obtain and maintain a U.S. government security clearance. Preferred Qualifications - Active U.S. security clearance (Secret or above); existing TS/SCI highly desired. - Prior experience supporting DoD programs such as Platform One, or deployments within the Intelligence Community. - Experience with Mattermost or similar on-prem collaboration platforms (Wickr, Jabber, Skype for Business, Rocket.Chat, Element/Matrix). - Background in secure messaging, C2 (Command and Control) systems, or operational technology (OT) environments. - Certifications such as AWS Solutions Architect, CKA/CKAD, CISSP, Security+, or equivalent. - Experience working at or selling into defense contractors, system integrators, or federal agencies. Why Mattermost? - Mission-driven work: Your contributions directly support national security and the teams who protect it. - Growth opportunity: Clear path from this role to a senior-level (L6) Solution Architect position. - Remote-first culture: Work from anywhere in the U.S. with a globally distributed, high-trust team. - Open source at the core: Be part of a vibrant developer community shaping the future of secure collaboration. - High impact: Join at a critical inflection point for Mattermost's federal business, with direct influence on a $15M+ revenue segment. Compensation Mattermost takes a market-based approach to pay, and compensation may vary depending on your work location in the U.S. The successful candidate's starting pay will be determined based on job-related skills, experience, qualifications, work location, and market conditions. These ranges may be modified in the future. Posting Range $225,000—$250,000 USD Mattermost is an EEO Employer, we are a remote-first, open-source company. We are continually working to expand our hiring in more countries and regions, ensuring compliance with local laws and regulations, which takes time. Mattermost values your unique perspective—we welcome all applicants. We encourage individuals from all backgrounds to apply and are committed to assessing candidates based on their skills and qualifications. We do not tolerate discrimination against staff or applicants based on race, religion, national origin, age, disability, pregnancy status, veteran status, or other personal characteristics. If you require accommodations during the interview process, please let us know—we’re happy to assist.

Related Categories

Related Job Pages

More Solutions Engineer Jobs

IFS logo

Solutions Consultant, Pre Sales

IFS

Be your best when it really matters. At the #MomentOfService

OtherRemoteTeam 5,001-10,000Since 1983H1B Sponsor

• Serve as a trusted technical advisor throughout the sales cycle • Collaborate with the sales team, prospects and existing clients to uncover challenges and design compelling solutions using the IFS Copperleaf decision analytics platform • Demonstrate the positive outcomes of our product suite to prospective clients across the Americas region • Deliver impactful product demos and executive briefings (virtual and on-site) • Design enterprise-level technology solutions • Provide technical leadership in the sales process • Engage with the industry at external events

Illinois
$120K - $140K / year
Job Closed
OtherRemoteTeam 501-1,000H1B No Sponsor

• Serve as a technical authority for Linux-based Zero Trust enforcement infrastructure • Operate and manage systems via SSH, including secure key-based access and privilege separation • Demonstrate deep, hands-on knowledge of: • Bash scripting (required) • Process management and systemd • Filesystem layout, permissions, and logging • Strong understanding of Linux networking internals: • Routing tables and policy routing • Interface binding and traffic steering • iptables / nftables • Diagnose complex cross-platform issues where Linux enforcement points interact with Windows and macOS endpoints • Develop and maintain JavaScript-based logic executed on Appgate appliances to enable integration and automation • Build and troubleshoot REST API integrations with external systems, including: • Microsoft Graph API • ServiceNow REST APIs • Identity, ITSM, logging, NGFW, and security platforms • Operate within an API-first, Security-as-Code/Everything-as-Code architecture • Architect Zero Trust access enforcement for containerized and microservices-based workloads • Support Kubernetes environments, including: • Sidecar injection and operator-based enforcement models • Secure service exposure and service-to-service access • Integrate with Kubernetes networking (CNI), ingress, and egress controls • Enable Appgate to operate as a composable Zero Trust control within multi-vendor Federal architectures • Serve as final escalation point for the most complex Federal deployments • Lead deep technical architecture reviews with government and integrator teams • Mentor senior Solution Architects and engineers

District of Columbia + 1 moreAll locations: District of Columbia | Washington
Job Closed
PerfectServe logo

Software Implementation Consultant

PerfectServe

Founded in 1999, PerfectServe provides the healthcare industry with intelligent communication and collaboration solutions to automate workflows, optimize provider schedules, stream

• Develop and maintain product expertise and a deep understanding of our clients and their workflows • Onboard and train new clients through remote and onsite delivery; analyzing their scheduling requirements and configuring the software to streamline their workflows • Use your analytical and troubleshooting skills to provide continued support for clients regarding potential issues with configuration and advise on corrective steps • Build trusting relationships, drive high levels of end-user satisfaction and ensure the client is maximizing the value of their Lightning Bolt investment, e.g., executive sponsors, department/service line directors and key strategic practices • Identify, develop, and share best practices that enable clients to achieve their business goals and objectives • Serve as the voice of the client and an advocate for end users within the Lightning Bolt organization • Collaborate with Project Managers, Account Executives, Customer Success Managers, and others within the organization to deliver the best possible solutions to meet client needs

United States
$70K - $75K / year
Job Closed
OtherRemoteTeam 501-1,000H1B No Sponsor

Position Overview The Senior Solutions Architect is the senior technical authority responsible for the design, integration, automation, and operational success of AppGate's Zero Trust Network Access (ZTNA) platform across U.S. Federal and DoD environments. This role requires deep, hands-on engineering expertise, not abstract or presentation-level knowledge. The successful candidate must be capable of operating systems, writing and reviewing code, debugging live integrations, and troubleshooting failures at the protocol, OS, and application level. This is a role for practitioners who build, integrate, and operate secure access systems in real-world Federal environments.   Technical Depth Expectations (Applies to All Areas Below) For every domain listed, candidates are expected to demonstrate operational competence, including the ability to: - Configure and operate systems directly - Debug failures using logs, shell access, packet captures, and code inspection - Write and modify scripts or automation to solve real problems - Explain system behavior based on implementation, not abstraction - Design and Architect systems that align with customer requirements for Appgate ZTNA - Integrate Appgate ZTNA with other 3rd party systems and sources of trust or risk telemetry including Identity Providers (SAML, OIFC, RADIUS, LDAP(s)), NGFWs, Entitlement Automation systems, SIEM/SOAR, ITSM, and many others. - Detailed documentation and information hand-off skills are also required   This role requires engineers who actively operate systems, write scripts, debug APIs, and analyze packet captures. Candidates whose experience is limited to diagrams, presentations, or vendor marketing materials will not be successful.   Core Responsibilities & Required Expertise Linux Systems & Access Enforcement Platforms (Critical) - Serve as a technical authority for Linux-based Zero Trust enforcement infrastructure - Operate and manage systems via SSH, including secure key-based access and privilege separation - Demonstrate deep, hands-on knowledge of: - Bash scripting (required) - Process management and systemd - Filesystem layout, permissions, and logging - Strong understanding of Linux networking internals: - Routing tables and policy routing - Interface binding and traffic steering - iptables / nftables - Diagnose complex cross-platform issues where Linux enforcement points interact with Windows and macOS endpoints JavaScript & REST API Integration Engineering (Critical) - Develop and maintain JavaScript-based logic executed on Appgate appliances to enable integration and automation - Build and troubleshoot REST API integrations with external systems, including: - Microsoft Graph API - ServiceNow REST APIs - Identity, ITSM, logging, NGFW, and security platforms - Apply strong understanding of: - RESTful API design and consumption - JSON data models and schema validation - Authentication methods (OAuth, tokens, certificates) - Operate within an API-first, Security-as-Code/Everything-as-Code architecture Containers & Kubernetes Architecture - Architect Zero Trust access enforcement for containerized and microservices-based workloads - Support Kubernetes environments, including: - Sidecar injection and operator-based enforcement models - Secure service exposure and service-to-service access - Integration with Kubernetes networking (CNI), ingress, and egress controls - Ensure access models scale across on-premises and cloud-native environments Automation, Infrastructure as Code & Configuration as Code - Design and implement Infrastructure as Code (IaC) using Terraform - Implement Configuration as Code (CaC) and GitOps workflows for: - Appgate ZTNA Policies - Appgate ZTNA Entitlements - Integrations with 3rd party systems and Entitlement Engines - Integrate Zero Trust deployments into CI/CD pipelines aligned with Federal DevSecOps standards - Ensure all automation is: - Version-controlled - Repeatable - Auditable - API-driven Identity & Authentication Engineering (Critical) - Architect identity-centric access solutions using enterprise identity systems as the authoritative control plane - Deep hands-on expertise with: - Active Directory, including multi-domain and multi-forest environments - Domain Controllers and LDAP/LDAPS binding behavior - Kerberos authentication flows and ticket lifecycles - SAML - OIDC - RADIUS - Design and troubleshoot DNS architecture and resolution behavior across: - Windows endpoints - macOS endpoints - Linux enforcement platforms - Support authentication mechanisms including: - Machine certificate–based authentication on Windows - PKI trust chains, certificate lifecycle, and revocation - SAML and OIDC user authentication via external Identity Providers - Understand how identity, DNS, and routing failures manifest as access control issues Modern Cloud & Infrastructure Excellence ·       Virtualization: Architect-level knowledge of VMware, ESXi, and KVM for private cloud deployments ·       Public Cloud: Demonstrate architect-level design and implementation of security services within AWS (GovCloud), Azure (Government), and Google Cloud Platform (GCP), with a specific focus on native networking (VPCs, VNets, Transit Gateways) and IAM policy enforcement. ·       AI/ML Security: Forward-thinking experience in governing access to AI/LLM workloads and agent platforms. (Desired) Endpoint Scripting & Client-Side Automation - Design and troubleshoot endpoint-executed scripts used for posture checks, integrations, and access decisions - PowerShell (Required): - Windows endpoint scripting - Interaction with certificates, networking, registry, and system services - Bash (Required): - macOS and Linux client scripting - System interrogation, diagnostics, and process control - Ensure scripts are secure, deterministic, and compatible with Federal endpoint hardening requirements Networking, Transport & Cryptographic Protocol Expertise - Architect-level understanding of: - IP packet structure and routing behavior - TCP three-way handshake and session lifecycle - ARP, GARP, and Proxy ARP functionality - Deep knowledge of: - TLS 1.2 / TLS 1.3 and QUIC - Mutual TLS (mTLS) - Certificate validation and trust chains - Familiarity with: - VPN architectures and tunneling models - Differences between VPN and identity-centric ZTNA - MPLS and SDWAN Architectures and traffic flows - Demonstrate Architect level knowledge and experience designing, articulating, and implementing complex Network integrations and Cybersecurity solitons - Architect level familiarity with network security solutions such as firewalls/next generation firewalls, network access control and VPNs, Logging / SYSLOG integration, IT Operations, IT Security Operations, SDWAN, WAN, and other Layer3/4 Network technology - Denied, Disrupted, Intermittent, and Limited (DDIL) environmental chalanges - Single Packet Authorization or port knocking familiarity desired - Expertise with Zero Trust Network and Univeral ZTNA concepts and Software Defined Perimeter desirable - Diagnose failures using: - tcpdump - Wireshark - OS-level packet tracing STIG, SCAP & Compliance Engineering - Support STIG compliance for Linux-based platforms - Working knowledge of SCAP, including: - OpenSCAP tooling - Interpreting scan output and false positives - Mapping findings to mitigations - Support RMF and ATO efforts through technical evidence and explanation - Communicate effectively with ISSMs, ISSEs, and assessors Interoperability & Federal Integration - Architect interoperability between Appgate and adjacent Federal systems: - Identity platforms - Endpoint security tools - SIEM, SOAR, and ITSM platforms - Network and boundary security systems - Enable Appgate to operate as a composable Zero Trust control within multi-vendor Federal architectures - Support integrators and partners implementing joint solutions Senior Technical Leadership - Serve as final escalation point for the most complex Federal deployments - Lead deep technical architecture reviews with government and integrator teams - Mentor senior Solution Architects and engineers - Influence product direction related to automation, integration, and operability Required Qualifications & Experience - 12+ years in networking, security, systems, platform, or automation engineering roles - Demonstrated mastery of: - Bash - PowerShell - JavaScript - Linux systems administration - REST APIs and automation - Strong experience with identity systems (Active Directory, DNS, PKI, SAML/OIDC) - Experience supporting Federal or other high-assurance environments - Ability to obtain or maintain a U.S. security clearance - Ability to work extended hours / flextime as needed to meet customer needs / deadlines / escalations  - There are times when this role requires more than 40 hours a week   - Travel Requirements:  - Flexibility and ability to travel to meet project and customer needs  - Travel requirements will vary depending on project and for some projects can exceed 50%  Appgate is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class. In furtherance of Appgate's policy regarding affirmative action and equal employment opportunity, Appgate has developed a written affirmative action program. This program is available for review upon request by any applicant or employee during normal business hours by contacting the company's EEO Coordinator.

District of Columbia
Job Closed