> Markdown version of [/jobs/ext/2830576-cybersecurity-engineer-lead](https://www.wearedevelopers.com/jobs/ext/2830576-cybersecurity-engineer-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer Lead - **Company:** Caci Inc - **Location:** Aberdeen Proving Ground, MD, United States - **Experience:** Expert - **Salary:** $126,100.0 - $277,300.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Cloud Computing Security, Signals Intelligence, Cyber Security, Computer Engineering, Data Security, Multi-Factor Authentication, Hardware Security Module, Identity and Access Management, Information Security Management, Information Systems Security Architecture Professional, Key Management, Network Security, Machine Learning, Network Segmentation, Public Key Infrastructure, Role-Based Access Control, Zero Trust Network Access, Infrastructure as Code (IaC), Information Technology, Nessus, Devsecops, Security Orchestration, Automation & Response, Vulnerability Analysis - **Published:** September 10, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9154345/cybersecurity-engineer-lead ## About the Role Required: * Active Top Secret security clearance with SCI eligibility (required) * Master's degree in Cybersecurity, Computer Engineering, Electrical Engineering, Electronics Engineering, or Mathematics with concentration in computer science * 10 + years of professional experience with cybersecurity engineering and architecture * Demonstrated experience architecting enterprise cybersecurity solutions for DoD or Intelligence Community systems * Strong understanding of Zero Trust architecture principles and implementation strategies * Proven experience with Risk Management Framework (RMF) processes including IATT, ATC, and ATO activities * Experience designing and implementing Cross Domain Solutions (CDS) for multi-level security environments * Deep knowledge of security frameworks including NIST 800-53, NIST 800-171, CNSSI 1253, and ICD 503 * Experience with Identity and Credential Access Management (ICAM) architectures and implementations * Strong understanding of defense-in-depth strategies, network security architecture, and secure system design principles * Experience with security assessment tools such as ACAS (Nessus), eMASS , and security automation platforms * Demonstrated ability to lead technical teams and influence cybersecurity strategy * Excellent technical writing and communication skills with ability to brief senior leadership * IAM , IAT, or IASAE Level I certification per DoD 8570.01-M (or DoD 8140 equivalent) Desired: * CISSP (Certified Information Systems Security Professional) or CISM (Certified Information Security Manager) certification * CCSP (Certified Cloud Security Professional) or cloud security architecture certifications (AWS Security, Azure Security) * Experience with DoD Cybersecurity Maturity Model Certification (CMMC) requirements and implementation * Knowledge of C5ISR, SIGINT, EW, or intelligence systems security requirements * Experience with Secure Access Service Edge (SASE) and Software-Defined Perimeter (SDP) architectures * Familiarity with container security, Kubernetes security, and cloud-native security architectures * Understanding of AI/ML security considerations and adversarial machine learning threats * Knowledge of electromagnetic spectrum operations security and TEMPEST requirements * Experience with insider threat detection and User and Entity Behavior Analytics (UEBA) * Understanding of supply chain risk management and hardware security * Familiarity with secure communications systems and COMSEC principles * Experience supporting government program offices in intelligence or special access programs * Background in security engineering for tactical edge computing and disconnected/intermittent/limited (DIL) environments ## Description Lead cybersecurity architecture development and implementation for complex Department of Defense intelligence, electronic warfare, and cyber systems. As a Cybersecurity Engineer Lead, you will: * Design and develop enterprise-level cybersecurity architectures for intelligence and mission systems operating across multiple security domains * Lead Zero Trust architecture implementation and Identity, Credential, and Access Management (ICAM) solutions for defense systems * Architect Cross Domain Solutions (CDS) and secure data transfer capabilities between unclassified, secret, and TS/SCI environments * Develop cybersecurity strategies, policies, and technical standards to protect mission-critical systems * Lead Risk Management Framework (RMF) activities and Authorization to Operate (ATO) efforts for complex systems * Provide technical leadership and mentorship to cybersecurity engineering teams * Interface with government program offices, Information System Security Managers (ISSMs), and Authorizing Officials Responsibilities: * Architect and implement Zero Trust security frameworks incorporating micro-segmentation, continuous verification, and least-privilege access controls * Design secure system architectures that comply with NIST 800-53, NIST 800-171, DoD RMF, and Intelligence Community Directive (ICD) 503 requirements * Develop security architecture artifacts including system security plans, security architecture diagrams, data flow diagrams, and threat models * Lead security assessments, vulnerability analyses, penetration testing coordination, and security control validation activities * Architect and validate Cross Domain Solutions (CDS) for Multi-Level Security (MLS) and secure information sharing across classification boundaries * Implement Security Technical Implementation Guides (STIGs), secure configuration baselines, and automated compliance scanning solutions * Design Identity and Access Management (IAM) solutions incorporating Multi-Factor Authentication (MFA), Role-Based Access Control (RBAC), and Attribute-Based Access Control (ABAC) * Architect secure DevSecOps pipelines integrating continuous security validation, automated vulnerability scanning, and Infrastructure as Code ( IaC ) security controls * Develop encryption strategies, Public Key Infrastructure (PKI) implementations, and cryptographic key management solutions * Lead security architecture reviews, threat modeling sessions, and design review boards * Develop cybersecurity roadmaps identifying modernization opportunities, emerging threats, and technology insertion strategies * Provide technical guidance on security architecture decisions to program managers, system engineers, and development teams * Support incident response planning, security event analysis, and continuous monitoring architectures * Maintain current knowledge of emerging threats, attack vectors, and defensive technologies applicable to defense intelligence systems ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence)