SAIC

Cybersecurity Engineer - DSOP

SAIC$110K — $130K *
Aerospace & Defense
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree and 9+ years of experience; Master's and 7+ years; or PhD/JD and 4+ years.
  • US Citizenship required.
  • Hands-on experience with automated SAST/DAST/container scans using tools like Fortify and ZAP.
  • Experience with CWE/CVE documentation and secure coding practices.
  • Proficiency with DevSecOps tools like GitLab CI/CD and SBOM/SCA tools.
  • Certifications such as Security+, CISSP, CCSP, CASP+, or equivalent desired.

Responsibilities

  • Build and operate stages of the DSOP cyber pipeline, including SAST and DAST.
  • Implement blocking rules for vulnerabilities rated Critical/High.
  • Integrate cyber validation tasks into CI/CD across environments.
  • Deliver validated cyber outputs to Infrastructure TO.
  • Produce cyber evidence compliant with RMF/cATO requirements.
  • Validate the integrity of artifacts through signing and provenance tracking.
  • Mentor developers in secure coding and onboarding for DSOP tools.

Benefits

  • Engagement in cutting-edge cybersecurity work with real impact.
  • Opportunities for professional development and certification.
  • Collaborative environment with direct developer support.
  • Participation in early-stage design to influence security practices.
  • Access to advanced DevSecOps tools and technologies.
Full Job Description
Job Description

The Cybersecurity Engineer (DSOP) builds and operates a secure DSOP pipeline to enable rapid, safe development and onboarding of Capability Provider applications. This role integrates automated SAST/DAST/container security and SBOM/SCA scanning, enforces secure coding gates, validates cyber artifacts, and ensures all pipeline evidence is routed to Infrastructure TO for Operational Baseline updates. The DSOP Engineer provides direct developer support, jointly participates in early DSOP/cloud design, and lays the foundation for secure-by-default CI/CD automation.
Job Duties include:
• Build, enhance, and operate DSOP cyber pipeline stages (SAST, DAST, container scanning, SBOM/SCA).
• Implement pipeline blocking rules for Critical/High vulnerabilities.
• Integrate cyber validation tasks into CI/CD for multiple environments.
• Perform functional validation of CP/External artifacts when possible; deliver validated cyber outputs to Infrastructure TO.
• Produce RMF/cATO-ready cyber evidence (scan results, mitigation records, SBOM/SCA, logs).
• Validate artifact integrity (image signing, checksum enforcement, provenance tracking).
• Provide direct developer enablement: onboarding into DSOP tools, secure coding guidance, WHY-based mentorship.
• Review, categorize, and drive remediation of CWE/CVE findings across DSOPS, Cloud, CE, and CP teams.
• Validate rollback readiness when cyber gates block promotion.
• Partner with Cloud engineers on early pipeline/environment design and promote secure-by-default automation.

Qualifications

  • Bachelors and nine (9) years or more experience; Masters and seven (7) years or more experience; PhD or JD and four (4) years or more experience.
  • US Citizenship.

Required Qualifications & Experience:
  • Hands on experience running automated SAST/DAST/container scans using Fortify, ZAP, Grype/Trivy or similar tools.
  • Experience documenting mitigations, reviewing CWE/CVE outputs, and validating secure coding practices.
  • Proficiency with DevSecOps tooling (GitLab CI/CD, container registries, SBOM/SCA tools).
  • Experience supporting secure coding compliance and vulnerability remediation.
  • 8140 aligned certifications such as Security+, CISSP, CCSP, CASP+, or equivalent.

Desired Qualifications and Experience:
  • Experience supporting RMF/cATO pipelines-producing cyber evidence, aligning pipeline scans with SSP/POA&M updates.
  • Background integrating secure DevSecOps automation across multi classification environments.
  • Experience enabling developers by creating training, guidance, and best practice workflows.

Desired Skills and Certifications:
  • Deep experience with GitLab CI/CD, image signing, SBOM/SCA creation, and pipeline compliance validation.
  • Familiarity with secure by design and shift left security principles embedded across DSOP automation.
  • Strong communication habits-providing timely vector checks, developer friendly guidance, and clear evidence trails.


About SAIC

Science Applications International Corporation (SAIC) is a technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. SAIC has approximately 26,000 employees and operates in more than 70 countries. The company was founded in 1969 and is headquartered in Reston, Virginia. SAIC provides services to the U.S. government, including the Department of Defense, the intelligence community, and civilian agencies. The company also serves commercial customers in the healthcare, energy, and financial services sectors.
Learn more about SAIC
Size
26,000 employees
Market Cap
$6 billion
Industry
Net Income
$206 million
Founded
1969
5 Year Trend
+10.7%
Revenue
$6.8 billion
NASDAQ

Similar Jobs

More Jobs at SAIC

More Aerospace & Defense Jobs

  • Kimley-Horn and Associates, Inc.
    Aviation Planner
    $80K — $95K *
    Kimley-Horn and Associates, Inc.
    Fort Lauderdale, FL 33311 (Broward County)
  • Kimley-Horn and Associates, Inc.
    Aviation Civil Engineer
    $80K — $95K *
    Kimley-Horn and Associates, Inc.
    Fort Lauderdale, FL 33311 (Broward County)
  • Security Analyst
    $75K — $90K *
    Na Ali'i Consulting & Sales, LLC.
    Arlington, VA 22204 (Arlington County)
  • Technical Project Manager
    $135K — $216K *
    Peraton
    Herndon, VA 20171 (Fairfax County)
  • Cloud Architect
    $135K — $216K *
    Peraton
    Herndon, VA 20171 (Fairfax County)

Find similar Cybersecurity Engineer - DSOP jobs: