CACI International

Cyber Security Engineer

CACI International$108K — $227K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor’s in Cybersecurity, Computer Science, or related field (considering experience as substitute); 8+ years in cybersecurity engineering; 3+ years in security architecture role.
  • Active Top Secret/SCI clearance required.
  • US Citizenship mandatory.
  • Experience conducting a full RMF authorization cycle; managing categorization through ATO in an engineering capacity.
  • Familiarity with NIST SP 800-53, NIST SP 800-37, DISA STIGs, and related compliance tools.

Responsibilities

  • Collaborate with cross-functional teams to design secure system architectures throughout the development lifecycle.
  • Embed security practices early in engineering processes instead of post-implementation.
  • Provide security input for modernization initiatives including cloud migration and Zero Trust alignment.
  • Maintain and improve internal security tools to ensure compliance with evolving standards.
  • Develop security engineering guidelines and reference patterns for consistency across projects.

Benefits

  • Flexible time off to balance personal and professional life.
  • Comprehensive health and wellness benefits.
  • Access to continuous education and learning resources.
  • Support for family needs and retirement planning.
Full Job Description
Job Title: Cyber Security Engineer

Job Category: Engineering

Time Type: Full time

Minimum Clearance Required to Start: TS/SCI

Employee Type: Regular

Percentage of Travel Required: Up to 10%

Type of Travel: Local

* * *


The Opportunity:

CACI is seeking a skilled Cyber Security Engineer to support the design, implementation, and maintenance of secure systems and networks. The successful candidate will work closely with CACI's development and IT teams to integrate security best practices, identify and mitigate security vulnerabilities, and ensure compliance with industry standards. You’ll contribute to strengthening the security posture of critical infrastructure and systems supporting CACI operations.

  • Translate RMF categorization results and applicable control baselines into implementable, testable system security requirements allocated across hardware, software, network, and inherited common controls.
  • Design security architectures and control implementations that satisfy authorization requirements while meeting mission performance, integration, and sustainment constraints.
  • Develop and maintain security architecture artifacts, authorization boundary diagrams, data flow diagrams, hardware/software lists, and PPSM registrations.
  • Analyze ACAS/Nessus and STIG/SCAP results at the engineering level to separate genuine risk from finding noise and drive the remediate / mitigate / risk-acceptance decision.
  • Evaluate candidate security solutions against mission need, integration complexity, sustainment burden, and authorization impact; produce recommendations with defensible tradeoff analysis.
  • Serve as technical authority for control implementation decisions, including tailoring rationale, compensating controls, and inheritance strategy from common control providers.
  • Provide security-focused insights and technical direction for network, infrastructure, and system architecture.
  • Translate and communicate technical risks and requirements between technical and non-technical stakeholders.
  • Research and evaluate emerging security technologies and practices and assess their applicability and authorization impact for our environments.

Office Location for this Opportunity is in: Austin, TX

Responsibilities:

  • Collaborate with cross-functional engineering teams to design, implement, and sustain secure system architectures across the development and delivery lifecycle.
  • Embed security into engineering processes, design reviews, configuration baselines, build pipelines, and delivery gates rather than assessing it after the fact.
  • Provide security engineering input to modernization efforts including cloud migration, Zero Trust architecture alignment, containerization, and automation of compliance evidence generation.
  • Maintain and enhance internally developed security tooling and automation to ensure it adheres to best practices and meets evolving cybersecurity standards.
  • Develop and maintain security engineering standards, guidelines, and reference patterns for reuse across programs and systems.
  • Mentor junior engineers and ISSOs on control implementation, assessment preparation, and secure design principles.


Qualifications:

Required: 

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field (will consider relevant experience in lieu of a degree) and 8+ years of cybersecurity engineering experience, including 3+ years in a security architecture or systems security engineering capacity.
  • Must have an active Top Secret/SCI clearance to start.
  • US Citizenship Required.
  • Demonstrated experience carrying at least one system through a full RMF authorization cycle; categorization through ATO in an engineering role.
  • Working knowledge of NIST SP 800-53 Rev 5, NIST SP 800-37, CNSSI 1253, DISA STIGs and SRGs, and eMASS/XACTA/SNOW CAM.
  • Demonstrated expertise in cybersecurity engineering activities, including security architecture development, vulnerability assessment, risk assessment, and remediation planning.
  • Experienced in hardening operating systems (Windows Server, RHEL/Linux) and applications to align with STIG requirements and compliance obligations.
  • Hands-on proficiency with enterprise networking, network segmentation and boundary protection, and virtualization platforms.
  • Scripting and automation capability (Python, PowerShell, Bash) sufficient to build tooling and automate compliance evidence collection.
  • Ability to read system and software design documentation and independently identify security implications and control gaps.
  • Proficient in security toolsets, including vulnerability assessment platforms (Nessus/Tenable Security Center, ACAS), SIEM platforms, and endpoint security tooling.
  • Exceptional problem-solving abilities with a proactive approach to identifying and mitigating security risks.
  • Ability to work independently and within a team, adapting to dynamic security challenges.



Desired:

  • Advanced architecture certifications such as CISSP-ISSAP, CCSP, or a cloud platform security certification (AWS Security Specialty, Azure AZ-500).
  • Experience architecting systems in DoD cloud environments at IL4/IL5 or above.
  • Container and Kubernetes security experience; familiarity with Iron Bank or Platform One.
  • Familiarity with DevSecOps practices and integrating security controls and evidence generation into CI/CD pipelines.
  • Knowledge of Infrastructure as Code tools such as Terraform or Ansible for secure, repeatable infrastructure management.
  • Understanding of data encryption techniques, FIPS 140-3 validated implementations, and secure data handling practices.
  • Experience with cross-domain solutions, CSfC, or PKI/ICAM implementation.
  • Prior experience on the assessment side (Security Control Assessor, IV&V, or Navy Qualified Validator).
  • Familiarity with Navy RMF process specifics and NAVAIR system delivery requirements.
  • Experience in disconnected, standalone, or embedded/tactical system environments.

-

What You Can Expect:

 A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.


Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is:

$108,400 - 227,500 USD

About CACI International

CACI International Inc is a multinational professional services and information technology company. It provides services to many branches of the federal government including defense, homeland security, intelligence, and healthcare. CACI has approximately 23,000 employees worldwide. The company's mission is to provide enterprise and mission technology services and solutions that best fit the needs of its customers. CACI has been named a Fortune World's Most Admired Company, a Washington Post Top Workplace, and a Forbes Best Employer for Diversity.
Learn more about CACI International
Size
22,000 employees
Market Cap
$7.1 billion
Industry
Net Income
$374.4 million
Founded
1962
5 Year Trend
+7.3%
Revenue
$5.8 billion
NASDAQ

Similar Jobs

More Jobs at CACI International

More Information Technology Jobs

Find similar Cyber Security Engineer jobs: