Cybersecurity Engineer Lead

CACI International Inc.

Maryland

On-site

USD 126,000 - 277,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

CACI International Inc. seeks a Cybersecurity Engineer Lead to guide architecture development for DoD intelligence and cyber systems.

You will design enterprise security architectures, lead Zero Trust implementations, and oversee RMF/ATO activities across MLS environments. In this role you will mentor engineering teams, create ICD 503-compliant artifacts, and collaborate with program offices to advance secure data sharing, IAM, and CDS solutions while ensuring mission readiness and robust risk

Qualifications

  • Active TS/SCI with eligibility for SCI.
  • Experience architecting DoD/IC security solutions.
  • Familiarity with ICD 503 and CNSSI 1253.

Responsibilities

  • Lead Zero Trust architecture and MLS solutions.
  • Design secure architectures compliant with DoD RMF and NIST.
  • Develop artifacts: SSPs, diagrams, data flow, and threat models.
  • Coordinate RMF/ATO activities and support incident response planning.
  • Mentor cybersecurity engineering teams and interface with ISSMs and AO.

Skills

Top Secret clearance
RMF knowledge
NIST 800-53
NIST 800-171
CDS
ICAM
IAM (MFA/RBAC/ABAC)
Strong written communication

Education

Master's degree in Cybersecurity or related field

Tools

ACAS
eMASS
Security automation platforms

Job description

Job Title: Cybersecurity Engineer LeadJob Category: EngineeringTime Type: Full timeMinimum Clearance Required to Start: TS/SCIEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *The Opportunity:Lead cybersecurity architecture development and implementation for complex Department of Defense intelligence, electronic warfare, and cyber systems. As a Cybersecurity Engineer Lead, you will:Design and develop enterprise-level cybersecurity architectures for intelligence and mission systems operating across multiple security domainsLead Zero Trust architecture implementation and Identity, Credential, and Access Management (ICAM) solutions for defense systemsArchitect Cross Domain Solutions (CDS) and secure data transfer capabilities between unclassified, secret, and TS/SCI environmentsDevelop cybersecurity strategies, policies, and technical standards to protect mission-critical systemsLead Risk Management Framework (RMF) activities and Authorization to Operate (ATO) efforts for complex systemsProvide technical leadership and mentorship to cybersecurity engineering teamsInterface with government program offices, Information System Security Managers (ISSMs), and Authorizing OfficialsResponsibilities:Architect and implement Zero Trust security frameworks incorporating micro-segmentation, continuous verification, and least-privilege access controlsDesign secure system architectures that comply with NIST 800-53, NIST 800-171, DoD RMF, and Intelligence Community Directive (ICD) 503 requirementsDevelop security architecture artifacts including system security plans, security architecture diagrams, data flow diagrams, and threat modelsLead security assessments, vulnerability analyses, penetration testing coordination, and security control validation activitiesArchitect and validate Cross Domain Solutions (CDS) for Multi-Level Security (MLS) and secure information sharing across classification boundariesImplement Security Technical Implementation Guides (STIGs), secure configuration baselines, and automated compliance scanning solutionsDesign Identity and Access Management (IAM) solutions incorporating Multi-Factor Authentication (MFA), Role-Based Access Control (RBAC), and Attribute-Based Access Control (ABAC)Architect secure DevSecOps pipelines integrating continuous security validation, automated vulnerability scanning, and Infrastructure as Code ( IaC ) security controlsDevelop encryption strategies, Public Key Infrastructure (PKI) implementations, and cryptographic key management solutionsLead security architecture reviews, threat modeling sessions, and design review boardsDevelop cybersecurity roadmaps identifying modernization opportunities, emerging threats, and technology insertion strategiesProvide technical guidance on security architecture decisions to program managers, system engineers, and development teamsSupport incident response planning, security event analysis, and continuous monitoring architecturesMaintain current knowledge of emerging threats, attack vectors, and defensive technologies applicable to defense intelligence systemsQualifications:Required:Active Top Secret security clearance with SCI eligibility (required)Master's degree in Cybersecurity, Computer Engineering, Electrical Engineering, Electronics Engineering, or Mathematics with concentration in computer science10 + years of professional experience with cybersecurity engineering and architectureDemonstrated experience architecting enterprise cybersecurity solutions for DoD or Intelligence Community systemsStrong understanding of Zero Trust architecture principles and implementation strategiesProven experience with Risk Management Framework (RMF) processes including IATT, ATC, and ATO activitiesExperience designing and implementing Cross Domain Solutions (CDS) for multi-level security environmentsDeep knowledge of security frameworks including NIST 800-53, NIST 800-171, CNSSI 1253, and ICD 503Experience with Identity and Credential Access Management (ICAM) architectures and implementationsStrong understanding of defense-in-depth strategies, network security architecture, and secure system design principlesExperience with security assessment tools such as ACAS (Nessus), eMASS , and security automation platformsDemonstrated ability to lead technical teams and influence cybersecurity strategyExcellent technical writing and communication skills with ability to brief senior leadershipIAM , IAT, or IASAE Level I certification per DoD 8570.01-M (or DoD 8140 equivalent)Desired:CISSP (Certified Information Systems Security Professional) or CISM (Certified Information Security Manager) certificationCCSP (Certified Cloud Security Professional) or cloud security architecture certifications (AWS Security, Azure Security)Experience with DoD Cybersecurity Maturity Model Certification (CMMC) requirements and implementationKnowledge of C5ISR, SIGINT, EW, or intelligence systems security requirementsExperience with Secure Access Service Edge (SASE) and Software-Defined Perimeter (SDP) architecturesFamiliarity with container security, Kubernetes security, and cloud-native security architecturesUnderstanding of AI/ML security considerations and adversarial machine learning threatsKnowledge of electromagnetic spectrum operations security and TEMPEST requirementsExperience with insider threat detection and User and Entity Behavior Analytics (UEBA)Understanding of supply chain risk management and hardware securityFamiliarity with secure communications systems and COMSEC principlesExperience supporting government program offices in intelligence or special access programsBackground in security engineering for tactical edge computing and disconnected/intermittent/limited (DIL) environments-What You Can Expect: A culture of integrity.At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.An environment of trust.CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.A focus on continuous growth.Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.Pay Range :There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.The proposed salary range for this position is:$126,100 - 277,300 USDCACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineering Manager
Cyber Security Engineering Manager

CACI International Inc. • Oklahoma City (OK)

On-site
USD 95,000 - 208,000
Cyber Security Engineer
Cyber Security Engineer

CACI International Inc • North Charleston (SC)

On-site
USD 72,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

Caci • North Charleston (SC)

On-site
USD 78,000 - 164,000
Senior Cyber Automation Engineer - ISSE
Senior Cyber Automation Engineer - ISSE

CACI International Inc. • Denver (CO)

On-site
USD 99,000 - 207,000
Cyber Security Engineer
Cyber Security Engineer

CACI International Inc. • North Charleston (SC)

On-site
USD 72,000 - 150,000
Cyber Security Engineering Lead
Cyber Security Engineering Lead

CACI International Inc • North Charleston (SC)

On-site
USD 86,000 - 180,000
Cybersecurity Engineer
Cybersecurity Engineer

CACI International Inc. • Sterling (VA)

On-site
USD 73,000 - 149,000
Cybersecurity Engineer
Cybersecurity Engineer

CACI International • Sterling (IL)

On-site
USD 73,000 - 149,000
Cybersecurity Engineer
Cybersecurity Engineer

CACI International Inc • Oklahoma City (OK)

On-site
USD 90,000 - 190,000
Chief Cybersecurity Engineer
Chief Cybersecurity Engineer

CACI International Inc. • Springfield (VA)

On-site
USD 132,000 - 290,000
Comprehensive benefits