Search for More Jobs
Get alerts for jobs like this Get jobs like this tweeted to you
Company: SAIC
Location: Springfield, VA
Career Level: Mid-Senior Level
Industries: Technology, Software, IT, Electronics

Description

Description

SAIC is seeking an experienced Information Systems Security Engineer (ISSE) to support the MAJESTIC Joint Program Office (JPO) by performing advanced security engineering and architectural design for mission‑critical IT systems. 

 

In this role, the ISSE will lead the design, development, implementation, and validation of security architectures, ensuring all security controls are integrated into system engineering processes across the full lifecycle—from requirements development to deployment and sustainment. 

 

The ISSE will collaborate closely with program leadership, system owners, developers, ISSMs/ISSOs, enterprise architects, and cybersecurity operations teams to ensure systems meet federal security requirements, including NIST 800‑53, RMF, and customer‑specific A&A frameworks such as ICD 503 and DAAPM. 

 

This role requires on-site support in Springfield, VA

 

Key Responsibilities: 

  • Design and engineer secure system architectures, integrating RMF and mission requirements. 
  • Translate security requirements into technical specifications, models, and design artifacts. 
  • Select, implement, and validate security controls and technical mitigations. 
  • Integrate security into system diagrams, data flows, and high‑/low‑level designs. 
  • Engineer core security solutions (boundary protection, encryption, IAM, auditing, secure configs). 
  • Embed security across the full system lifecycle—requirements through sustainment. 
  • Develop and maintain A&A documentation and support ATO evidence. 
  • Test and verify security controls across applications, platforms, and networks. 
  • Conduct risk assessments, threat modeling, and vulnerability analysis; recommend mitigations. 
  • Assess security impacts of system changes, upgrades, and new integrations. 
  • Apply DISA STIGs, CIS Benchmarks, and maintain hardened configuration baselines. 
  • Design monitoring architectures for SIEM, detection rules, and audit/log collection. 
  • Support incident response with architectural forensics and remediation guidance. 
  • Collaborate with developers, integrators, administrators, and cybersecurity teams. 
  • Present security engineering findings and architecture recommendations to leadership. 
  • Produce technical documentation, diagrams, reports, SOPs, and design artifacts.  

Qualifications

Education: 

  • Bachelors degree in related field and 2-9+ years of experience OR; 
  • Masters degree in related field and 0-7+ years of experience OR; 
  • High School diploma or equivalent and 6-13+ years of experience  

Certifications (CWF Requirements): 

  • Candidates must satisfy Cybersecurity Workforce Framework (CWF) ID 652 (Security Architect, Intermediate Level) or 633 (System Security Engineer, Intermediate Level) requirements, as outlined by Navy COOL. 
    This requirement can be met by possessing one or more of the following qualifying certifications: 
  • Certified Cloud Security Professional (CCSP) 
  • Certified Information Systems Security Officer (C)ISSO-A) 
  • Certified Secure Software Lifecycle Professional (CSSLP) 
  • CompTIA Cloud+ 
  • CompTIA SecurityX (formerly CASP+) 
  • Federal IT Security Professional-Designer-NG (FITSP-D) 
  • GIAC Cloud Security Automation (GCSA) 
  • GIAC Continuous Monitoring Certification (GMON) 
  • GIAC Security Essentials Certification (GSEC) 

OR This requirement can be met through: 

  • A Bachelor's Degree in Cybersecurity, Computer Science, IT, or a related field. 

Experience: 

  • 2-5 years of professional experience managing and supporting enterprise-level IT environments. 

Technical Skills: 

  • Strong understanding of security architecture, secure system design, and engineering principles. 
  • Experience developing SSPs, security diagrams, interface documentation, and control implementation descriptions. 
  • Proficiency with vulnerability scanning tools (Nessus, ACAS, Qualys) and technical analysis platforms. 
  • Knowledge of DISA STIGs, CIS Benchmarks, and secure configuration/hardening standards. 
  • Familiarity with SIEM platforms (Splunk, SolarWinds) and enterprise monitoring architectures. 
  • Understanding of Windows Server, Active Directory security, RHEL, and network security concepts (TCP/IP, VLANs, IPsec, firewalls). 
  • Experience conducting technical risk assessments and generating architecture‑level recommendations. 
  • High‑quality technical writing and documentation skills for engineering artifacts and audit evidence. 

Clearance Requirement: 

  • Active TS/SCI clearance with the ability to obtain and maintain a TS/SCI with CI Poly

 

Work Environment and Notes: 

  • On-Site Work: All work must be conducted on-site in Springfield, VA. 
  • Program Scope: Supports on-premises enterprise IT environments, including virtualized Windows servers, MS SQL Server databases, and networking layers. 
  • Subcontractor Role: Responsibilities and compensation vary based on the subcontract agreement, with a competitive salary aligned to market rates and role-specific requirements. 
Target salary range: $80,001 - $120,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.


 Apply on company website