SAIC

Cybersecurity Engineer - Cloud

SAIC$100K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree with 9+ years or Master's degree with 7+ years of experience; PhD or JD and 4+ years.
  • Proven experience securing multi-classification cloud environments.
  • Hands-on experience with STIG reviews, ACAS/Nessus outputs, and adjudicating SAST/DAST results.
  • Experience maintaining RMF/ATO artifacts including SSP and POA&M documents.
  • Familiarity with Jira/Xacta for RMF and vulnerability tracking.
  • DoD 8140 aligned certifications: CISSP, CCSP, CASP+, or equivalent.

Responsibilities

  • Build and secure multi-tenant CMCC cloud environments.
  • Implement security baselines like JSIG and NIST in cloud enclaves.
  • Own the creation of RMF/ATO packages for cloud environments, including SSP and POA&M.
  • Validate security outputs from STIG, ACAS/Nessus, SAST/DAST before environment promotion.
  • Perform functional validation of cyber artifacts and coordinate evidence delivery to Infrastructure TO.
  • Maintain continuous monitoring of cloud environments, using tools like Prometheus and Grafana.
  • Support integrated security efforts during early cloud design and deployments.

Benefits

  • Flexible work hours and remote work options.
  • Access to cutting-edge technology and tools.
  • Opportunities for professional development and training.
  • Collaborative and innovative work environment.
Full Job Description
Job Description

The Cybersecurity Engineer (Cloud) secures and accredits CMCC's multi tenant cloud environments (Dev, Integration, Test). The role implements JSIG/NIST/STIG baselines, engineers secure multi classification cloud designs, validates Capability Provider and External cyber artifacts, and ensures all required evidence is provided to the Infrastructure TO for Baseline updates. The Cybersecurity Engineer (Cloud) develops RMF/ATO packages for cloud environments, partners closely with DSOP, Platform, CE, and Cloud SMEs, and contributes hands on effort to early DSOP/cloud design and environment build out.
Job Duties include:
• Build and secure multi-tenant CMCC cloud environments.
• Implement JSIG, NIST SP 800-53, STIG, and MLS/MILS baselines across Dev/Integration/Test cloud enclaves.
• Own RMF/ATO packages for cloud environments, producing SSP, POA&M, and full RMF evidence.
• Validate STIG, ACAS/Nessus, SAST/DAST, and container-security outputs prior to environment promotion.
• Perform functional validation of CP/External cyber artifacts; coordinate delivery of validated evidence to Infrastructure TO.
• Maintain cloud-aligned continuous monitoring, including audit logs, cloud telemetry, and Prometheus/Grafana security metrics.
• Support Cloud + DSOP joint early design efforts; collaborate to integrate pipeline-aware cloud security.
• Validate IaC/CaC baselines (Terraform, Ansible, Helm) for secure, consistent cloud deployments and promotion gates.
• Provide cyber recommendations during CCB promotion evaluations

Qualifications

Required Qualifications & Experience:
  • Bachelors and nine (9) years or more experience; Masters and seven (7) years or more experience ; PhD or JD and four (4) years or more experience.
    • Proven experience securing multi classification cloud environments.
    • Hands on experience performing STIG review/hardening, validating ACAS/Nessus outputs, and adjudicating SAST/DAST results.
    • Experience maintaining RMF/ATO artifacts (SSP, POA&M, continuous monitoring evidence).
    • Familiarity with Jira/Xacta workflows for RMF and vulnerability tracking.
    • DoD 8140 aligned certifications: CISSP, CCSP, CASP+, or equivalent.
  • Desired qualifications and experience:
    • Experience architecting and securing hybrid cloud and MLS/MILS cross domain environments.
    • Prior support to SCA assessments (finding remediation, documentation, assessor coordination).
    • Knowledge of secure DevSecOps pipeline integration, including image signing, SBOM/SCA, and environment gate validation.
  • Desired Skills and Certifications:
    • Experience with advanced cyber assessment, scanning, and STIG automation tools.
    • Experience with cloud IaC/CaC security tooling (Terraform, Ansible, Helm, Argo CD).
    • Familiarity with Zero Trust architecture, container hardening, and cloud security automation platforms.
    • Strong documentation and communication skills aligned with RMF evidence and CMCC governance.


About SAIC

Science Applications International Corporation (SAIC) is a technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. SAIC has approximately 26,000 employees and operates in more than 70 countries. The company was founded in 1969 and is headquartered in Reston, Virginia. SAIC provides services to the U.S. government, including the Department of Defense, the intelligence community, and civilian agencies. The company also serves commercial customers in the healthcare, energy, and financial services sectors.
Learn more about SAIC
Size
26,000 employees
Market Cap
$6 billion
Industry
Net Income
$206 million
Founded
1969
5 Year Trend
+10.7%
Revenue
$6.8 billion
NASDAQ

Similar Jobs

More Jobs at SAIC

More Information Technology Jobs

Find similar Cybersecurity Engineer - Cloud jobs: