Senior Principal Cyber Information Systems Security Engineer

Posted 17 Hours Ago
Be an Early Applicant
3 Locations
In-Office
Senior level
Security
The Role
Leads RMF lifecycle activities and ATO authorization for simultaneous classified and unclassified DoD enterprise IT systems. Manages eMASS records, security controls, POA&Ms, continuous monitoring, audits, policy analysis, and coordination with Authorizing Officials and program offices. Provides senior technical guidance, mentors cybersecurity staff, supports enterprise security architecture, and contributes to proposals and customer engagements. Requires deep Navy and DoD authorization expertise, active Secret clearance, and ability to obtain TS/SCI clearance.
Summary Generated by Built In

  SAIC is seeking an expert-level Senior Principal Information Systems Security Engineer (ISSE) to support DoD enterprise IT and network modernization programs in one of the following locations and is required to be local: the National Capital Region, San Diego, CA, Norfolk, VA, or Charleston, SC.  

This role serves as a senior principal individual contributor and subject matter expert responsible for leading the development, management, and authorization of Risk Management Framework (RMF) packages across both unclassified and classified environments in direct support of DoD enterprise IT and digital transformation missions.

The ideal candidate is a recognized expert in DoD RMF processes with deep hands-on experience navigating Navy program office authorization workflows, eMASS system management, and ATO package development. This position requires direct engagement with senior government leadership, program offices, engineering teams, and authorizing officials to drive security authorization packages through the full RMF lifecycle from initiation through authorization and continuous monitoring.

This role operates with significant independence, serving as the senior principal ISSE authority and organizational spokesperson on complex cybersecurity authorization matters requiring coordination across multiple program teams, engineering organizations, and government stakeholders. The successful candidate will be a technically fluent self-starter capable of leading RMF authorization efforts across simultaneous unclassified and classified programs while working collaboratively with a team of engineers to deliver compliant, authorized, and operationally ready systems in support of the warfighter.

Must be able to travel up to 10% to support program site visits and customer engagement

JOB DUTIES:

  • Serve as Senior Principal ISSE and subject matter expert responsible for leading development, management, and authorization of RMF packages across both unclassified and classified environments supporting DoD enterprise IT and network modernization programs
  • Lead end-to-end RMF lifecycle activities following NIST 800-39, 800-37, 800-53, 800-53A, and 800-137 for multiple simultaneous unclassified and classified systems
  • Categorize systems and information stored and processed on systems based on FIPS 199 and NIST 800-60; select and tailor initial security control baselines based on FIPS 200 and NIST 800-53
  • Implement security controls based on NIST Special Publication guidance documents including 800-34, 800-64, and 800-128; specifically and functionally document all implemented security controls
  • Assess security controls based on NIST 800-53A to ensure they are implemented correctly, operating as intended, and producing desired outcomes
  • Manage and maintain eMASS records for all assigned systems; ensure accuracy and completeness of all RMF artifacts, POA&Ms, and authorization documentation throughout the system lifecycle
  • Drive RMF packages through full authorization workflow in accordance with Navy and DoD RMF processes; coordinate directly with Authorizing Officials (AOs), Information System Owners (ISOs), and Program Managers to achieve and maintain Authority to Operate (ATO)
  • Ensure continuous monitoring is achieved based on NIST 800-137, 800-37, 800-53A, and related special publications; maintain ongoing ATO compliance across authorized systems
  • Work collaboratively with teams of engineers to identify, document, and implement security controls across complex DoD enterprise IT and network infrastructure environments
  • Perform internal auditing functions in support of ISO/IEC standards including 9000, 20000, and 27001; coordinate with external auditors to ensure actions have been performed to industry standards
  • Perform policy analysis activities to author or support the authoring of new enterprise cybersecurity policy in alignment with DoD and Navy security requirements
  • Provide expert technical guidance and mentorship to junior cybersecurity team members on RMF processes, eMASS management, and ATO authorization workflows
  • Serve as organizational spokesperson and prime ISSE technical contact on significant cybersecurity authorization matters requiring coordination between program teams, engineering organizations, and government stakeholders
  • Support business development activities including technical proposal development, capability demonstrations, and customer relationship management in support of program re-compete and growth opportunities

Qualifications

REQUIREMENTS:

Education and experience:

  • Education: Bachelor's degree and 14+ years of related experience; Master's degree and 12+ years of related experience; PhD or JD and 9+ years of related experience
  • Experience: 10+ years of hands-on ISSE and RMF experience with demonstrated senior principal-level contributions across complex DoD program authorization environments

Clearance:

  • Must be a U.S. Citizen
  • Must have an Active Secret Clearance at start
  • Must be able to obtain a TS/SCI after start

Certifications:

  • DoD 8570/8140 IAM Level III or IAT Level III certification required (CISSP, CISM, or equivalent)
  • CompTIA Security+ CE required at minimum

Technical Expertise:

  • RMF lifecycle management (NIST 800-37, 800-53, 800-53A, 800-137)
  • eMASS system management and ATO package development
  • FIPS 199/200 system categorization and security control selection
  • POA&M development, tracking, and remediation management
  • Unclassified and classified system authorization workflows
  • DoD enterprise IT and network infrastructure security

DESIRED SKILLS:

  • Deep expertise in Navy and DoD program office RMF authorization processes and workflows strongly preferred
  • Demonstrated experience managing simultaneous unclassified and classified RMF packages through full authorization lifecycle in Navy or DoD enterprise IT environments
  • Familiarity with DoD enterprise IT modernization programs including Navy shore network infrastructure, network exchange points, and related digital transformation initiatives
  • Experience working directly with Authorizing Officials, SCA teams, and program offices to resolve complex security control deficiencies and drive packages to authorization
  • Background in Navy or DoD network infrastructure security including SD-WAN, switching, routing, firewall, and wireless network security architectures
  • Experience supporting continuous monitoring programs for large-scale DoD enterprise IT environments with multiple simultaneously authorized systems
  • Familiarity with DoD cloud security authorization processes including FedRAMP and DoD Cloud Computing Security Requirements Guide (CC SRG)
  • Experience performing internal auditing functions in support of ISO/IEC 27001 or related standards
  • Background in cybersecurity policy development and enterprise security architecture in Navy or DoD environments
  • Experience with Assured Compliance Assessment Solution (ACAS), SCAP Compliance Checker (SCC), or related vulnerability scanning and compliance tools
  • Familiarity with Navy Qualified Products List (QPL) and Approved Products List (APL) processes for security tool selection and implementation
  • Experience mentoring and providing technical guidance to junior ISSE and cybersecurity team members in complex DoD program environments
About UsSAIC® is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.

We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

Skills Required

  • Bachelor's degree and 14+ years of related experience; alternatively, Master's degree and 12+ years, or PhD/JD and 9+ years
  • 10+ years of hands-on ISSE and RMF experience in complex DoD authorization environments
  • U.S. citizenship
  • Active Secret clearance at start
  • Ability to obtain a TS/SCI clearance after start
  • DoD 8570/8140 IAM Level III or IAT Level III certification, such as CISSP or CISM
  • CompTIA Security+ CE certification at minimum
  • RMF lifecycle management experience using NIST 800-37, 800-53, 800-53A, and 800-137
  • eMASS system management and ATO package development experience
  • FIPS 199/200 system categorization and security control selection experience
  • POA&M development, tracking, and remediation management experience
  • Experience with unclassified and classified system authorization workflows
  • DoD enterprise IT and network infrastructure security experience
  • Deep Navy and DoD program office RMF authorization process expertise
  • Experience managing simultaneous classified and unclassified RMF packages through authorization
  • Experience with Navy shore networks, network exchange points, or digital transformation programs
  • Experience working with Authorizing Officials, SCA teams, and program offices
  • Network security architecture experience involving SD-WAN, switching, routing, firewalls, and wireless networks
  • Continuous monitoring experience for large-scale DoD IT environments
  • FedRAMP and DoD Cloud Computing SRG experience
  • Internal auditing experience supporting ISO/IEC 27001 or related standards
  • Cybersecurity policy development and enterprise security architecture experience
  • Experience with ACAS, SCAP Compliance Checker, or related vulnerability and compliance tools
  • Experience with Navy QPL and APL processes
  • Experience mentoring junior ISSE and cybersecurity personnel
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Stamford, CT
34,000 Employees

What We Do

Spectrum San Diego is a high tech security innovator, specializing in ultra-low-dose X-ray screening systems.

Similar Jobs

CDW Logo CDW

Architect

Information Technology
Remote or Hybrid
US
15100 Employees
121K-169K Annually

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Inside Sales Representative

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Remote or Hybrid
12 Locations
40000 Employees
45K-85K Annually

Vannevar Logo Vannevar

Mission Lead - USV Software

Artificial Intelligence • Machine Learning • Software • Defense
In-Office or Remote
Norfolk, VA, USA
225 Employees

Sprinter Health Logo Sprinter Health

Clinical Operations Liaison (Full-Time, Remote)

Artificial Intelligence • Healthtech • Logistics • Social Impact • Software • Telehealth
Remote or Hybrid
United States
500 Employees
65K-75K Annually

Similar Companies Hiring

Closinglock Thumbnail
Fintech • Real Estate • Security • Software • Financial Services • Cybersecurity • PropTech
Austin, TX
110 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account