SAIC

Cybersecurity Engineer - Cloud

SAIC$100K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree with 9+ years or Master's with 7+ years of experience in cybersecurity; PhD or JD with 4+ years.
  • Extensive experience securing multi classification cloud environments.
  • Hands-on expertise in STIG review/hardening, as well as validating ACAS/Nessus outputs.
  • Proficient in maintaining RMF/ATO artifacts like SSP and POA&M.
  • Familiar with Jira/Xacta workflows for RMF and vulnerability tracking.
  • DoD 8140 aligned certifications such as CISSP, CCSP, or CASP+.

Responsibilities

  • Build and secure multi-tenant CMCC cloud environments.
  • Implement security baselines (JSIG, NIST SP 800-53, STIG) across various cloud enclaves.
  • Own and produce RMF/ATO packages for cloud, including SSP and POA&M.
  • Validate security outputs from STIG, ACAS/Nessus, and other tools before environment promotion.
  • Perform functional validation of Capability Provider and External cyber artifacts, ensuring evidence delivery.
  • Maintain continuous monitoring aligned with cloud security metrics like audit logs and telemetry.
  • Support early design efforts for Cloud and DSOP while integrating security into pipelines.
  • Validate Infrastructure as Code (IaC) and Configuration as Code (CaC) baselines for secure cloud deployments.

Benefits

  • Opportunities for professional development in advanced cloud security practices.
  • Engagement in cutting-edge technology projects with a focus on cybersecurity.
  • Collaborative and dynamic work environment with cross-functional teams.
  • Access to ongoing training and certifications in the cybersecurity field.
Full Job Description
Job Description

The Cybersecurity Engineer (Cloud) secures and accredits CMCC's multi tenant cloud environments (Dev, Integration, Test). The role implements JSIG/NIST/STIG baselines, engineers secure multi classification cloud designs, validates Capability Provider and External cyber artifacts, and ensures all required evidence is provided to the Infrastructure TO for Baseline updates. The Cybersecurity Engineer (Cloud) develops RMF/ATO packages for cloud environments, partners closely with DSOP, Platform, CE, and Cloud SMEs, and contributes hands on effort to early DSOP/cloud design and environment build out.
Job Duties include:
• Build and secure multi-tenant CMCC cloud environments.
• Implement JSIG, NIST SP 800-53, STIG, and MLS/MILS baselines across Dev/Integration/Test cloud enclaves.
• Own RMF/ATO packages for cloud environments, producing SSP, POA&M, and full RMF evidence.
• Validate STIG, ACAS/Nessus, SAST/DAST, and container-security outputs prior to environment promotion.
• Perform functional validation of CP/External cyber artifacts; coordinate delivery of validated evidence to Infrastructure TO.
• Maintain cloud-aligned continuous monitoring, including audit logs, cloud telemetry, and Prometheus/Grafana security metrics.
• Support Cloud + DSOP joint early design efforts; collaborate to integrate pipeline-aware cloud security.
• Validate IaC/CaC baselines (Terraform, Ansible, Helm) for secure, consistent cloud deployments and promotion gates.
• Provide cyber recommendations during CCB promotion evaluations

Qualifications

Required Qualifications & Experience:
  • Bachelors and nine (9) years or more experience; Masters and seven (7) years or more experience ; PhD or JD and four (4) years or more experience.
    • Proven experience securing multi classification cloud environments.
    • Hands on experience performing STIG review/hardening, validating ACAS/Nessus outputs, and adjudicating SAST/DAST results.
    • Experience maintaining RMF/ATO artifacts (SSP, POA&M, continuous monitoring evidence).
    • Familiarity with Jira/Xacta workflows for RMF and vulnerability tracking.
    • DoD 8140 aligned certifications: CISSP, CCSP, CASP+, or equivalent.
  • Desired qualifications and experience:
    • Experience architecting and securing hybrid cloud and MLS/MILS cross domain environments.
    • Prior support to SCA assessments (finding remediation, documentation, assessor coordination).
    • Knowledge of secure DevSecOps pipeline integration, including image signing, SBOM/SCA, and environment gate validation.
  • Desired Skills and Certifications:
    • Experience with advanced cyber assessment, scanning, and STIG automation tools.
    • Experience with cloud IaC/CaC security tooling (Terraform, Ansible, Helm, Argo CD).
    • Familiarity with Zero Trust architecture, container hardening, and cloud security automation platforms.
    • Strong documentation and communication skills aligned with RMF evidence and CMCC governance.


About SAIC

Science Applications International Corporation (SAIC) is a technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. SAIC has approximately 26,000 employees and operates in more than 70 countries. The company was founded in 1969 and is headquartered in Reston, Virginia. SAIC provides services to the U.S. government, including the Department of Defense, the intelligence community, and civilian agencies. The company also serves commercial customers in the healthcare, energy, and financial services sectors.
Learn more about SAIC
Size
26,000 employees
Market Cap
$6 billion
Industry
Net Income
$206 million
Founded
1969
5 Year Trend
+10.7%
Revenue
$6.8 billion
NASDAQ

Similar Jobs

More Jobs at SAIC

More Information Technology Jobs

Find similar Cybersecurity Engineer - Cloud jobs: