> Markdown version of [/jobs/ext/221237-cyber-engineer](https://www.wearedevelopers.com/jobs/ext/221237-cyber-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Engineer - **Company:** Science Applications International Corporation - **Location:** San Diego, CA, United States (Remote available) - **Salary:** $80,001.0 - $120,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Identity and Access Management, Network Security, Public Key Infrastructure, System Testing, Software Vulnerability Management, Information Technology, Tools for Reporting - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=6f2d4c2ed761e65b ## About the Role * Bachelors in STEM, or Information Technology related field and two (2) years or more experience; Masters and 0 years related experience. * Must be a U.S. Citizen. * Must have an Active Secret Clearance to start. * NQV Level I or II. * Risk Management Framework (RMF) experience. * Threat and Vulnerability Analysis. * IAT Level II/IAM-1 (CAP, CASP, GSLC, Security + CE) certification. ## Description SAIC is looking for a Cybersecurity Specialist to support a Navy contract located in San Diego, CA. This position supports the Assessment and Authorization (A&A) cybersecurity efforts for NIWC PAC code 82000 to support the Research, Development, Test & Evaluation (RDT&E) network. The Cybersecurity Vulnerability Analyst II will serve as a Risk Management Framework (RMF) Subject Matter Expert (SME) for all network security architectures, designs, implementations, and operations within 3 NIWC Pacific RDT&E systems, networks, and applications. Additionally, the position will provide engineering and technical support for the testing of systems, software, tools and products while identifying operational and functional requirements of new, developing and existing systems and develop a system security approach, which includes but not limited to defining potential threats, vulnerabilities, safeguards, and risk factors., * Shall perform analysis of cybersecurity directives, policies and instructions to include, but not limited to: Communications Task Orders (CTOs), Fragmentary/Task/Operation Orders (FRAG/TASK/OPORDs), IA Vulnerability Management (IAVM), Public Key Infrastructure (PKI) guidance, ACAS and STIG requirements. * Ensure configuration, asset, remediation, and mitigation management supports vulnerability management efforts within the DODIN. * Identify and provide guidance on security-relevant configurations for DoD. * Ensure compliance with DoD vulnerability notification and corrective action process. * Coordinate vulnerability risk reports and assessments within NIWC PAC as required. * Interface with Senior Cybersecurity Engineer and NIWC Pacific supported programs/projects to provide technical consulting/advisory support services required to ensure accurate vulnerability management of NIWC Pacific Corporate, Program of Record (POR), operationally supported, and various RDT&E and joint assets to the Navy's Vulnerability Remediation and Asset Management (VRAM) tool or other government directed tool. * Assist with determining the impact compliance with these directives will have on the security and operability of the RDT&E network and make recommendations to the government regarding strategies to meet compliance objectives. * Assist with tracking and reporting compliance status in the Vulnerability Remediation Asset Manager (VRAM) and similar reporting tools as applicable. * Perform risk analysis/independent verification on security configuration and STIG finding risk reports/POA&Ms for devices on the RDT&E network. * Support Federal Information Security Management Act (FISMA) data reporting requirements. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [How To Test A Ball of Mud](https://www.wearedevelopers.com/videos/173-how-to-test-a-ball-of-mud) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)