SAIC

Principal Cyber RMF Engineer

SAIC$120K — $150K *
US-Anywhere
+ 2 other locationsRemote
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Cybersecurity or related field (or equivalent experience)
  • DoD 8570.01 IAM Level II or III certification (e.g., CISSP, CISM)
  • Minimum 9 years in cybersecurity; at least 3 years in RMF for DoD systems
  • Active Secret Clearance required; Top Secret/SCI preferred
  • Proficiency with security tools (e.g., ACAS, eMASS) and NIST 800-53 controls

Responsibilities

  • Lead the RMF lifecycle for DoD IT systems including risk assessments and monitoring
  • Develop and maintain security documentation such as SSPs and SARs
  • Ensure compliance with cybersecurity regulations and standards
  • Conduct security audits and facilitate independent validation activities
  • Collaborate with stakeholders to ensure RMF compliance
  • Provide cybersecurity training and mentorship to team members
  • Support incident response and continuous monitoring initiatives

Benefits

  • Opportunities for professional development and certification
  • Collaboration with high-level defense stakeholders
  • Impactful contribution to national security initiatives
  • Access to advanced cybersecurity tools and technologies
  • Engagement with cutting-edge space defense systems
Full Job Description
Job Description

Make a meaningful impact on national security by supporting the Space Development Agency (SDA) in delivering the Battle Management Command, Control, and Communications (BMC3) software development and hosting environment for the National Defense Space Architecture (NDSA). These systems accelerate the secure development, testing, and deployment of mission critical space applications that enable Joint All Domain Command and Control (JADC2).

Key Responsibilities:

1. RMF Process Implementation
- Lead the end-to-end RMF lifecycle for DoD IT systems, including categorization, control selection, implementation, assessment, and monitoring.
- Conduct and oversee system security risk assessments and recommend strategies to mitigate risks effectively.
- Develop, review, and maintain security documentation such as System Security Plans (SSPs), Security Assessment Reports (SARs), and Risk Assessment Reports (RARs).
- Serve as the Information System Security Officer (ISSO) or provide subject matter expertise to ISSOs.

2. Compliance and Policy Adherence:
- Ensure compliance with DoD 8500.01, 8570.01, NIST 800-53, and other applicable cybersecurity regulations and standards.
- Provide guidance for achieving and maintaining Authority to Operate (ATO) and addressing Plan of Action and Milestones (POA&M) items.

3. Audit and Assessment:
- Conduct security audits and vulnerability assessments, utilizing industry-standard tools to identify and mitigate risks.
- Facilitate independent verification and validation (IV&V) activities to ensure thorough system testing.

4. Collaboration and Stakeholder Engagement:
- Collaborate with stakeholders, including system owners, process owners, and leadership, to ensure compliance with RMF requirements.
- Provide cybersecurity training, awareness, and mentorship to team members and stakeholders.
5. **Incident Response & Continuous Monitoring:*
- Support the development and execution of incident response protocols.
- Establish and maintain continuous monitoring initiatives to detect and address emerging threats.

Qualifications

Required Skills and Qualifications:
• Education: Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or related field (equivalent experience may be considered).
• Certifications: Must have a DoD 8570.01 certification at IAM Level II or III (e.g., CISSP, CISM, CAP, CISA, CASP+ CE, GSLC).
• Experience: Minimum 9 of experience in cybersecurity, with at least 3 years of hands-on RMF implementation and oversight for a DoD system.
• Clearance: Active Secret Clearance required at the time of hire; ability to obtain Top Secret/SCI may be preferred.
Technical Proficiency:
• Extensive experience with security tools (e.g., ACAS, eMASS, STIG/SRGs).
• Strong knowledge of cloud, system administration, and vulnerability analysis.
• Expertise in applying NIST 800-53 security controls to federal systems and addressing weaknesses.
• Strong analytical, problem-solving, and organizational skills.
• Excellent verbal and written communication skills

Preferred Qualifications
- Master's degree in a related field.
- Knowledge of cloud technologies and their associated cybersecurity risks.
- Familiarity with A&A tools and platforms used by the DoD for RMF processes.

About SAIC

Science Applications International Corporation (SAIC) is a technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. SAIC has approximately 26,000 employees and operates in more than 70 countries. The company was founded in 1969 and is headquartered in Reston, Virginia. SAIC provides services to the U.S. government, including the Department of Defense, the intelligence community, and civilian agencies. The company also serves commercial customers in the healthcare, energy, and financial services sectors.
Learn more about SAIC
Size
26,000 employees
Market Cap
$6 billion
Industry
Net Income
$206 million
Founded
1969
5 Year Trend
+10.7%
Revenue
$6.8 billion
NASDAQ

Similar Jobs

More Jobs at SAIC

More Aerospace & Defense Jobs

Find similar Principal Cyber RMF Engineer jobs: