> Markdown version of [/jobs/ext/1989601-cybersecurity-engineer-isso](https://www.wearedevelopers.com/jobs/ext/1989601-cybersecurity-engineer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - ISSO - **Company:** Science Applications International Corporation - **Location:** St. Louis, MO, United States (Remote available) - **Contract:** Permanent contract - **Skills:** Xacta, Java (Programming Language), Microsoft Windows, Confluence, JIRA, Cyber Security, Databases, Linux, Python (Programming Language), Software Vulnerability Management, Web Applications, Scripting, SARS Software Products, ReactJS, Atlassian Tools, Devsecops, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 8, 2026 - **Apply:** https://www.dice.com/job-detail/90ce5518-3257-4d99-b9a5-dce408f0a36f ## About the Role * Active TS/SCI clearance. Candidates must have this clearance to be considered. * Willing and able to pass a polygraph. * Bachelor's degree + 5 years of experience (or equivalent). * Active or Current TS/SCI. * DoD 8570 IAT II+ (Security+, CySA+, CISSP, etc.). * Hands-on RMF, POA&M, ATO documentation experience. * Experience with ACAS, IAVM tracking. * Knowledge of STIGs, patching, system hardening. * Familiarity with NIST publications and incident-response processes. * Strong analytical and communication skills. Desired Qualifications * Scripting experience (Python, Java, React). * DevSecOps pipeline experience. * Linux/Windows, databases, or web app experience. * Familiarity with Agile tools (Jira, Confluence). * Experience with NIST SP 800-171. ## Description SAIC is seeking a Cyber Security Engineer to support critical DoD and Intelligence Community missions. You will lead assessment, authorization, vulnerability management, and secure operations for classified systems. Responsibilities * Execute RMF processes for Assessment & Authorization (A&A). * Develop/maintain SSPs, POA&Ms, SARs, and ATO artifacts in XACTA/eMASS. * Conduct vulnerability scanning and track remediation using ACAS/IAVM. * Implement and validate NIST 800-53 and CNSSI 1253 controls. * Support hardening, patching, STIG compliance for Windows, Linux, and networks. * Monitor systems and assist with incident response. * Evaluate security impacts of system changes. * Collaborate with engineering, administration, and DevSecOps teams. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Collaboration Quantified: Lessons from Open Source Developer Networks](https://www.wearedevelopers.com/videos/1422-collaboration-quantified-lessons-from-open-source-developer-networks) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Integrate your Cognitive Assistant with 3rd-party DBs and software](https://www.wearedevelopers.com/videos/249-integrate-your-cognitive-assistant-with-3rd-party-dbs-and-software) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)