> Markdown version of [/jobs/ext/1936958-cybersecurity-engineer-isso](https://www.wearedevelopers.com/jobs/ext/1936958-cybersecurity-engineer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - ISSO - **Company:** Science Applications International Corporation - **Location:** Vienna, VA, United States (Remote available) - **Salary:** $160,001.0 - $200,000.0 - **Contract:** Permanent contract - **Skills:** Xacta, Java (Programming Language), Microsoft Windows, Confluence, JIRA, Cyber Security, Databases, Linux, Python (Programming Language), Software Vulnerability Management, Web Applications, Scripting, SARS Software Products, ReactJS, Atlassian Tools, Devsecops, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 5, 2026 - **Apply:** https://www.dice.com/job-detail/5f852f2b-e695-4a93-83df-49cbeadc2055 ## About the Role * Bachelor's degree + 5 years of experience (or equivalent). * Active or Current TS/SCI. * DoD 8570 IAT II+ (Security+, CySA+, CISSP, etc.). * Hands-on RMF, POA&M, ATO documentation experience. * Experience with ACAS, IAVM tracking. * Knowledge of STIGs, patching, system hardening. * Familiarity with NIST publications and incident-response processes. * Strong analytical and communication skills. Desired Qualifications * Scripting experience (Python, Java, React). * DevSecOps pipeline experience. * Linux/Windows, databases, or web app experience. * Familiarity with Agile tools (Jira, Confluence). * Experience with NIST SP 800-171. ## Description SAIC is seeking a Cyber Security Engineer to support critical DoD and Intelligence Community missions. You will lead assessment, authorization, vulnerability management, and secure operations for classified systems. Responsibilities * Execute RMF processes for Assessment & Authorization (A&A). * Develop/maintain SSPs, POA&Ms, SARs, and ATO artifacts in XACTA/eMASS. * Conduct vulnerability scanning and track remediation using ACAS/IAVM. * Implement and validate NIST 800-53 and CNSSI 1253 controls. * Support hardening, patching, STIG compliance for Windows, Linux, and networks. * Monitor systems and assist with incident response. * Evaluate security impacts of system changes. * Collaborate with engineering, administration, and DevSecOps teams. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Collaboration Quantified: Lessons from Open Source Developer Networks](https://www.wearedevelopers.com/videos/1422-collaboration-quantified-lessons-from-open-source-developer-networks) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)