Search for More Jobs
Get alerts for jobs like this Get jobs like this tweeted to you
Company: SAIC
Location: Pensacola, FL
Career Level: Associate
Industries: Technology, Software, IT, Electronics

Description

Description

SAIC is hiring a Cybersecurity Specialist located in Pensacola, FL. This position will be supporting Training & Education Management Systems for Naval Education and Training Command (NETC). The role will support our Programs of Record; Corporate Enterprise Training Activity Resource Systems (CeTARS) for both schoolhouse & corporate, Navy & Joint MyEducation (MyED), Naval Education and Training Future Officer and Citizenship User System (NETFOCUS), Navy Inspector General Hotline Tracking System (NIGHTS), Navy Enlisted Advancement System (NEAS), Authoring Instructional Materials (AIM), and Learning Assessment System (LAS). As a Cybersecurity Specialist, you'll be responsible for maintaining systems' Authority to Operate by ensuring compliance and security posture, coordinating secure access for all systems and subsystems, and integrating robust security measures into the DevSecOps software development lifecycle to safeguard organizational assets.

The Cybersecurity Specialist will require:

  • Maintaining All Systems Authority to Operate (ATO)
    • Request and monitor vulnerability scanning, incident response, and remediation of physical and cybersecurity systems using COTS/GOTS and custom tools.
    • Manage Continuous Monitoring Risk Scoring (CMRS) for classified and unclassified systems, ensuring compliance with DoW risk management, reporting tools (e.g., DCS, COAMS, CMRS, PPSM Registry, and eMASS), and DoD CIO/CISO portals (NIPR/SIPR).
    • Prepare comprehensive technical reports summarizing security assessments, mitigation activities, and remedial actions while supporting audits, scorecards, FISMA, and CSWF reporting.
    • Research and integrate cybersecurity tools, techniques, and technologies to strengthen enterprise security architecture and support ongoing military cyberspace operations.
  • Coordinating All System and Subsystem Accesses
    • Collaborate with external customers, multidisciplinary teams, and vendors (e.g., Armis partnership for architecture implementation and issue resolution).
    • Lead incident investigations, coordinate with system owners to restore systems to secure baselines, and liaise with contracted vendors for incident control and resolution.
    • Monitor and analyze systems for abnormal events using COTS/GOTS tools, threat intelligence, and forensic applications to identify potential security incidents or malicious activities.
    • Actively participate in policy alignment initiatives, pre-CISO meetings, CCMD Cyber Scorecard Syncs, and other stakeholder engagements to ensure consistent compliance and operational effectiveness.
  • Supporting the Security Portion of the DevSecOps Software Development Model
    • Research, evaluate, and recommend new security tools, techniques, and technologies to align enterprise security architecture with DevSecOps objectives.
    • Implement application and data migration strategies that prioritize simplicity, security compliance, scalability, and alignment with short- and long-term operational needs.
    • Assist in selecting, deploying, and managing software, and cloud service providers, including assessing and authoring SLAs with vendors to align with security standards.
    • Support cyber metrics development, reporting, and maintenance for managed tools, ensuring accuracy and alignment with enterprise DevSecOps models and security controls.

Qualifications

Required experience, certification, and education: (IAW DoD 8140 for the 631 work role)

  • Bachelor's Degree in Software Engineering, Information Technology, Cybersecurity, Data Science, Information Systems, Computer Science, or any of the 40+ other accepted degrees identified at cyber.mil that are from an ABET accredited or NCAE-C designated institution.

- or -

  • SecurityX/CASP+, CCSP, Cloud+, CSC, GCLD, GCSA, GSEC, CISSP-ISSEP, or GFITSP-D

 

Required skills:

  • Maintaining All Systems Authority to Operate (ATO)
    • Leverage expertise in cloud security architecture and enterprise security tools (e.g., firewalls, IDS/IPS, SIEMs) to secure IT infrastructures through vulnerability scanning, incident response, and modernization efforts.
    • Develop and maintain highly technical cybersecurity documentation (e.g., assessment reports, solution designs) while adhering to NIST, NICE Framework, and other industry standards.
  • Coordinating All System and Subsystem Accesses
    • Balance multiple projects and collaborate with stakeholders to provide technical solutions for complex cybersecurity challenges in government and enterprise environments.
    • Independently analyze and implement solutions to ensure effective risk management, compliance with cybersecurity frameworks, and alignment with organizational goals.
  • Supporting the Security Portion of the DevSecOps Software Development Model
    • Design, evaluate, and integrate modern cybersecurity technologies and cloud-based solutions into DevSecOps processes to ensure secure application development and deployment.
    • Implement risk-informed approaches, combining thorough risk management practices with actionable methods to address factors affecting security posture.


Preferred Qualifications (Nice-to-Have):

  • Strong understanding of Cloud, DevOps, and Digital Workplace technologies, including cloud security principles, deployment, and management in dynamic environments.
  • Industry-recognized certifications such as Security+, CEH (Certified Ethical Hacker), GCIH (GIAC Certified Incident Handler), BTL2 (Blue Team Leader Level 2), CASP (CompTIA Advanced Security Practitioner), or GSEC (GIAC Security Essentials Certification).
  • ITIL v4 certification (Foundation or above) to demonstrate knowledge of IT service management best practices.
  • Experience in contributing to the successful completion of specific government or enterprise cybersecurity programs and projects, including addressing technical challenges.
  • Proficiency with advanced toolsets, including Armis (201 or higher certifications), SIEM platforms (e.g., Splunk, QRadar), and cloud-based security tools.
  • Familiarity with standard frameworks and guidelines, such as NIST 800-53, ISO/IEC 27001, and NICE Cybersecurity Workforce Framework (NICE Framework), and their application in real-world scenarios.
  • Strong communication skills with the ability to present cybersecurity strategies and incident findings to technical and non-technical stakeholders concisely and clearly.
  • Advanced defensive cybersecurity skills in areas such as threat intelligence utilization, incident investigation, forensic analysis, and vulnerability management.
  • Practical experience with DevSecOps tools and workflows, including CI/CD pipelines, container security (e.g., Docker or Kubernetes), and secure software development practice.

 

Clearance required:

Secret Clearance is required


 Apply on company website