Cybersecurity Engineer - Cloud

Science Applications International Corporation
Beale Air Force Base, United States of America
9 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate
Compensation
$ 200K

Job location

Beale Air Force Base, United States of America

Tech stack

Xacta
Artificial Intelligence
JIRA
Cloud Computing
Cloud Computing Security
Computer Security
Automation of Marketing
Octopus Deploy
Ansible
Prometheus
Zero Trust Network Access
Cloud Platform System
Grafana
HybridCloud
Nessus
Enterprise Integration
Terraform
Devsecops
Plan of Action and Milestones
Static Application Security Testing
Dynamic Application Security Testing

Job description

SAIC is a trusted leader in delivering advanced command and control capabilities across the Department of the Air Force, bringing deep expertise in how cutting edge technologies are engineered, secured, and delivered to the fight. At the center of this mission, the Common Mission Control Center (CMCC) unifies data, sensors, mission applications, cloud based services, and emerging AI enabled automation to give warfighters a decisive edge-turning complex, multidomain information into fast, clear, and actionable decisions in the moments that matter most. The CMCC System Facilitator contract positions SAIC to accelerate how new capabilities are integrated, tested, secured, and transitioned into operational use, working side by side with operators, engineers, Capability Providers, and government teams to ensure every delivery strengthens mission readiness. This effort offers the chance to directly shape how the Air Force sees, decides, and acts across all domains-making a tangible and immediate impact on warfighter effectiveness.

The Cybersecurity Engineer (Cloud) secures and accredits CMCC's multi tenant cloud environments (Dev, Integration, Test). The role implements JSIG/NIST/STIG baselines, engineers secure multi classification cloud designs, validates Capability Provider and External cyber artifacts, and ensures all required evidence is provided to the Infrastructure TO for Baseline updates. The Cybersecurity Engineer (Cloud) develops RMF/ATO packages for cloud environments, partners closely with DSOP, Platform, CE, and Cloud SMEs, and contributes hands on effort to early DSOP/cloud design and environment build out.

Job Duties include:

  • Build and secure multi-tenant CMCC cloud environments.

  • Implement JSIG, NIST SP 800-53, STIG, and MLS/MILS baselines across Dev/Integration/Test cloud enclaves.

  • Own RMF/ATO packages for cloud environments, producing SSP, POA&M, and full RMF evidence.

  • Validate STIG, ACAS/Nessus, SAST/DAST, and container-security outputs prior to environment promotion.

  • Perform functional validation of CP/External cyber artifacts; coordinate delivery of validated evidence to Infrastructure TO.

  • Maintain cloud-aligned continuous monitoring, including audit logs, cloud telemetry, and Prometheus/Grafana security metrics.

  • Support Cloud + DSOP joint early design efforts; collaborate to integrate pipeline-aware cloud security.

  • Validate IaC/CaC baselines (Terraform, Ansible, Helm) for secure, consistent cloud deployments and promotion gates.

  • Provide cyber recommendations during CCB promotion evaluations

Requirements

  • Bachelors and nine (9) years or more experience; Masters and seven (7) years or more experience ; PhD or JD and four (4) years or more experience.* Proven experience securing multi classification cloud environments.* Hands on experience performing STIG review/hardening, validating ACAS/Nessus outputs, and adjudicating SAST/DAST results. * Experience maintaining RMF/ATO artifacts (SSP, POA&M, continuous monitoring evidence). * Familiarity with Jira/Xacta workflows for RMF and vulnerability tracking. * DoD 8140 aligned certifications: CISSP, CCSP, CASP+, or equivalent.
  • Desired qualifications and experience:* Experience architecting and securing hybrid cloud and MLS/MILS cross domain environments. * Prior support to SCA assessments (finding remediation, documentation, assessor coordination). * Knowledge of secure DevSecOps pipeline integration, including image signing, SBOM/SCA, and environment gate validation.
  • Desired Skills and Certifications:* Experience with advanced cyber assessment, scanning, and STIG automation tools.* Experience with cloud IaC/CaC security tooling (Terraform, Ansible, Helm, Argo CD). * Familiarity with Zero Trust architecture, container hardening, and cloud security automation platforms. * Strong documentation and communication skills aligned with RMF evidence and CMCC governance.

Benefits & conditions

Target salary range: $160,001 - $200,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

About the company

SAIC is a premier technology integrator, solving our nation's most complex modernization and systems engineering challenges across the defense, space, federal civilian, and intelligence markets. Our robust portfolio of offerings includes high-end solutions in systems engineering and integration; enterprise IT, including cloud services; cyber; software; advanced analytics and simulation; and training. We are a team of 23,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $6.5 billion. For more information, visit saic.com. For information on the benefits SAIC offers, see Working at SAIC. EOE AA M/F/Vet/Disability

Apply for this position