The Opportunity:
Lead cybersecurity architecture development and implementation for complex Department of Defense intelligence, electronic warfare, and cyber systems. As a Cybersecurity Engineer Lead, you will:
Design and develop enterprise-level cybersecurity architectures for intelligence and mission systems operating across multiple security domains
Lead Zero Trust architecture implementation and Identity, Credential, and Access Management (ICAM) solutions for defense systems
Architect Cross Domain Solutions (CDS) and secure data transfer capabilities between unclassified, secret, and TS/SCI environments
Develop cybersecurity strategies, policies, and technical standards to protect mission-critical systems
Lead Risk Management Framework (RMF) activities and Authorization to Operate (ATO) efforts for complex systems
Provide technical leadership and mentorship to cybersecurity engineering teams
Interface with government program offices, Information System Security Managers (ISSMs), and Authorizing Officials
Responsibilities:
- Architect and implement Zero Trust security frameworks incorporating micro-segmentation, continuous verification, and least-privilege access controls
- Design secure system architectures that comply with NIST 800-53, NIST 800-171, DoD RMF, and Intelligence Community Directive (ICD) 503 requirements
- Develop security architecture artifacts including system security plans, security architecture diagrams, data flow diagrams, and threat models
- Lead security assessments, vulnerability analyses, penetration testing coordination, and security control validation activities
- Architect and validate Cross Domain Solutions (CDS) for Multi-Level Security (MLS) and secure information sharing across classification boundaries
- Implement Security Technical Implementation Guides (STIGs), secure configuration baselines, and automated compliance scanning solutions
- Design Identity and Access Management (IAM) solutions incorporating Multi-Factor Authentication (MFA), Role-Based Access Control (RBAC), and Attribute-Based Access Control (ABAC)
- Architect secure DevSecOps pipelines integrating continuous security validation, automated vulnerability scanning, and Infrastructure as Code (IaC) security controls
- Develop encryption strategies, Public Key Infrastructure (PKI) implementations, and cryptographic key management solutions
- Lead security architecture reviews, threat modeling sessions, and design review boards
- Develop cybersecurity roadmaps identifying modernization opportunities, emerging threats, and technology insertion strategies
- Provide technical guidance on security architecture decisions to program managers, system engineers, and development teams
- Support incident response planning, security event analysis, and continuous monitoring architectures
- Maintain current knowledge of emerging threats, attack vectors, and defensive technologies applicable to defense intelligence systems
Qualifications:
Required:
- Active Top Secret security clearance with SCI eligibility (required)
- Master's degree in Cybersecurity, Computer Engineering, Electrical Engineering, Electronics Engineering, or Mathematics with concentration in computer science
- 10+ years of professional experience with cybersecurity engineering and architecture
- Demonstrated experience architecting enterprise cybersecurity solutions for DoD or Intelligence Community systems
- Strong understanding of Zero Trust architecture principles and implementation strategies
- Proven experience with Risk Management Framework (RMF) processes including IATT, ATC, and ATO activities
- Experience designing and implementing Cross Domain Solutions (CDS) for multi-level security environments
- Deep knowledge of security frameworks including NIST 800-53, NIST 800-171, CNSSI 1253, and ICD 503
- Experience with Identity and Credential Access Management (ICAM) architectures and implementations
- Strong understanding of defense-in-depth strategies, network security architecture, and secure system design principles
- Experience with security assessment tools such as ACAS (Nessus), eMASS, and security automation platforms
- Demonstrated ability to lead technical teams and influence cybersecurity strategy
- Excellent technical writing and communication skills with ability to brief senior leadership
- IAM, IAT, or IASAE Level I certification per DoD 8570.01-M (or DoD 8140 equivalent)
Desired:
- CISSP (Certified Information Systems Security Professional) or CISM (Certified Information Security Manager) certification
- CCSP (Certified Cloud Security Professional) or cloud security architecture certifications (AWS Security, Azure Security)
- Experience with DoD Cybersecurity Maturity Model Certification (CMMC) requirements and implementation
- Knowledge of C5ISR, SIGINT, EW, or intelligence systems security requirements
- Experience with Secure Access Service Edge (SASE) and Software-Defined Perimeter (SDP) architectures
- Familiarity with container security, Kubernetes security, and cloud-native security architectures
- Understanding of AI/ML security considerations and adversarial machine learning threats
- Knowledge of electromagnetic spectrum operations security and TEMPEST requirements
- Experience with insider threat detection and User and Entity Behavior Analytics (UEBA)
- Understanding of supply chain risk management and hardware security
- Familiarity with secure communications systems and COMSEC principles
- Experience supporting government program offices in intelligence or special access programs
- Background in security engineering for tactical edge computing and disconnected/intermittent/limited (DIL) environments
-
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.
Pay Range:
There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.
The proposed salary range for this position is:
$126,100 - 277,300 USDSkills Required
- Active Top Secret security clearance with SCI eligibility
- Master's degree in Cybersecurity, Computer Engineering, Electrical Engineering, Electronics Engineering, or Mathematics with a computer science concentration
- 10 or more years of professional experience in cybersecurity engineering and architecture
- Experience architecting enterprise cybersecurity solutions for Department of Defense or Intelligence Community systems
- Experience with Zero Trust architecture principles and implementation
- Experience with Risk Management Framework processes, including IATT, ATC, and ATO activities
- Experience designing and implementing Cross Domain Solutions for multi-level security environments
- Knowledge of NIST 800-53, NIST 800-171, CNSSI 1253, and ICD 503
- Experience with Identity and Credential Access Management architectures and implementations
- Knowledge of defense-in-depth, network security architecture, and secure system design
- Experience with ACAS or Nessus, eMASS, and security automation platforms
- Ability to lead technical teams and influence cybersecurity strategy
- Excellent technical writing and communication skills, including briefing senior leadership
- IAM, IAT, or IASAE Level I certification under DoD 8570.01-M or an equivalent DoD 8140 certification
- CISSP or CISM certification
- CCSP or AWS Security or Azure Security certification
- Experience with CMMC requirements and implementation
- Knowledge of C5ISR, SIGINT, electronic warfare, or intelligence systems security requirements
- Experience with SASE and Software-Defined Perimeter architectures
- Familiarity with container security, Kubernetes security, and cloud-native security architectures
- Understanding of AI and machine learning security and adversarial machine learning threats
- Knowledge of electromagnetic spectrum operations security and TEMPEST requirements
- Experience with insider threat detection and UEBA
- Understanding of supply chain risk management and hardware security
- Familiarity with secure communications systems and COMSEC principles
- Experience supporting government program offices in intelligence or special access programs
- Experience with security engineering for tactical edge computing and disconnected, intermittent, or limited environments
CACI International Inc Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about CACI International Inc and has not been reviewed or approved by CACI International Inc.
-
Healthcare Strength — Pay is supported by a broad set of health-plan options across multiple national carriers, with telemedicine and tax-advantaged accounts included. Dental and vision choices are also described as multi-option, which strengthens overall coverage breadth.
-
Leave & Time Off Breadth — Flexible Time Off is available for many salaried-exempt roles, while hourly roles accrue PTO, creating multiple time-off pathways by employment class. Paid disability coverage, fixed holidays, and paid leave programs (including parental leave and other leave types) further round out time-off and leave coverage.
-
Retirement Support — Retirement support includes a 401(k) match structure described as 50% up to 8% of pay (effective 4%) and an Employee Stock Purchase Plan with a discount. Tuition reimbursement and certification support also add to the overall rewards package that complements core retirement benefits.
CACI International Inc Insights
What We Do
CACI’s approximately 23,000 talented employees are vigilant in providing the unique expertise and distinctive technology that address our customers’ greatest enterprise and mission challenges. Our culture of good character, innovation, and excellence drives our success and earns us recognition as a Fortune World's Most Admired Company. As a member of the Fortune 1000 Largest Companies, the Russell 1000 Index, and the S&P MidCap 400 Index, we consistently deliver strong shareholder value. Visit us at www.caci.com.









