Security Authorization Lead

Leidos Inc

Gaithersburg (MD)

Hybrid

USD 108,000 - 195,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Leidos seeks a Security Authorization Lead to own the RMF/ATO lifecycle for L-CAP workloads, interfacing with FAA security and Authorizing Official staff. You will manage the authorization package, control inheritance, and continuous monitoring across hybrid cloud environments.

You will translate security requirements into engineering backlog items, ensure cross-ART compliance, and drive FedRAMP compliance while maintaining a robust security posture in a fast-paced, mission-critical program.

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, IT, or related field with 6+ years of relevant cybersecurity experience, or a Master's with 4+ years.
  • Experience leading a federal information system through RMF to ATO or equivalent authorization, including NIST 800-53 Rev. 5.
  • Experience developing authorization packages (SSPs, POA&Ms, SARs, boundary diagrams).
  • Experience with FedRAMP cloud control inheritance and vulnerability management.
  • Experience working with government security reviewers, ISSOs, and Authorizing Official staff.
  • Ability to translate security requirements into actionable backlog items for multiple Agile teams.
  • Strong government-facing security documentation skills; U.S. citizenship and public trust eligibility required.

Responsibilities

  • Lead the government RMF/ATO authorization process for L-CAP workloads on government-provisioned cloud infrastructure.
  • Own and maintain the security authorization package, including SBOMs, POA&Ms, and evidence artifacts.
  • Define and defend security control inheritance across cloud, platform, and application layers.
  • Interface with government security reviewers, ISSOs, assessors, and Authorizing Official staff.
  • Manage POA&M and continuous monitoring lifecycle, including findings and remediation milestones.
  • Maintain the authorization boundary as architecture evolves and translate requirements into engineering backlog items.
  • Coordinate cross-ART compliance to ensure consistent control implementation and evidence quality.
  • Support FedRAMP and agency-specific authorization requirements across cloud environments.
  • Coordinate personnel security and facility access eligibility; champion AI-first engineering culture.

Skills

RMF/ATO processes
Security authorization lifecycles
FedRAMP/ GovCloud
SAFe / Agile compliance
Technical writing
Interfacing with government reviewers
Backlog item translation
Public Trust eligibility

Education

Bachelor's degree in Cybersecurity or related field
Master's degree (optional for seniority)

Tools

OSCAL
eMASS
Xacta
SBOM tooling

Job description

Description

Leidos is seeking a Security Authorization Lead to join the Air Traffic Business Area within the Homeland Sector, supporting the development of the Leidos Common Automation Platform (L-CAP). L-CAP is a mission-critical, future-ready automation platform built on a hybrid cloud data mesh architecture, enabling next-generation air traffic management capabilities. We are building with an AI-first engineering mindset, embracing emerging AI capabilities and modern development practices to accelerate delivery, improve software quality, and continuously evolve how we design and build mission-critical systems. This role operates within a SAFe/Agile framework as part of an Agile Release Train (ART) delivering iterative value across the program. This position supports government programs and requires the ability to obtain and maintain a favorable Public Trust investigation.

This is a hybrid position requiring 3 days onsite and 2 days working from home, i if you are located within a commutable distance (Less than 1 hour's drive one-way during normal traffic) from Gaithersburg, MD; Eagan, MN; or Egg Harbor Township, NJ. However, if you do not reside within a commutable distance, you may be considered for a 100% remote role.

In this role, you will own the security authorization lifecycle for L-CAP. You will lead the formal processes required to authorize L-CAP workloads to connect to and operate within government cloud environments, serve as the program's primary technical interface to FAA security and Authorizing Official organizations, and own the artifact package and control-inheritance position that underpin every authorization decision. This is a delivery-facing compliance leadership role - you will translate authorization requirements into engineering work rather than documenting them after the fact.

What You'll Do:
  • Lead the government network connection and RMF/ATO authorization process for L-CAP workloads on government-provided cloud infrastructure, including security assessments, architecture reviews, control evidence, and assessor coordination.
  • Own and maintain the security authorization package, including architecture briefings, data flow/security boundary diagrams, ports/protocols/services matrices, SBOMs, vulnerability/CVE dispositions, and POA&Ms.
  • Define and defend security control inheritance across cloud provider, government platform, and Leidos application layers, maintaining the Customer Responsibility Matrix.
  • Serve as the primary interface with government security reviewers, ISSOs, assessors, and Authorizing Official staff.
  • Manage the POA&M and continuous monitoring lifecycle, including findings, risk characterization, remediation milestones, closure evidence, and security status reporting.
  • Maintain the authorization boundary as architecture evolves, assess security impacts of proposed changes, and translate requirements into actionable engineering backlog items.
  • Coordinate cross-ART compliance across four Agile Release Trains to ensure consistent control implementation and evidence quality.
  • Support FedRAMP and agency-specific authorization requirements across cloud environments.
  • Coordinate personnel security and facility access eligibility with program security and Talent Acquisition.
  • Champion an AI‑first engineering culture through AI-assisted development, automation, and emerging practices that improve productivity, code quality, testing, and delivery.
Core Technical Qualifications:
  • Bachelor's degree in Cybersecurity, Computer Science, IT, or related field with 6+ years of relevant cybersecurity, compliance, or security authorization experience, or a Master's degree with 4+ years. (additional experience, education and training may be considered in lieu of degree)
  • Demonstrated experience leading a federal information system through RMF to ATO or equivalent authorization, including NIST 800-53 Rev. 5 control implementation and assessment.
  • Experience developing and defending authorization packages, including SSPs, POA&Ms, Security Assessment Reports, and authorization boundary diagrams.
  • Experience with FedRAMP cloud control inheritance, Customer Responsibility Matrices, vulnerability management, CVE disposition, and remediation tracking.
  • Experience working directly with government security reviewers, ISSOs, and/or Authorizing Official staff.
  • Ability to translate security requirements into actionable engineering backlog items and coordinate compliance across multiple Agile engineering teams.
  • Strong technical writing skills with experience producing government-facing security documentation.
  • Ability to obtain and maintain a Public Trust and successfully complete required government background investigations.
  • U.S. citizenship required, including eligibility for FAA facility and information system access (continuous U.S. residency for at least 3 of the previous 5 years).
Preferred / Desired Qualifications:
  • CISSP, CGRC (formerly CAP), CISM, or equivalent certification (strongly preferred)
  • FAA or aviation‑sector security authorization experience, including familiarity with FAA ATO processes and security governance organizations
  • Experience with continuous ATO (cATO) or ongoing authorization models
  • Experience defining authorization boundaries for Kubernetes and containerized workloads
  • Familiarity with FedRAMP High and GovCloud inheritance models
  • Security authorization experience for safety‑critical or real‑time operational systems
  • Experience with compliance automation and evidence tooling, including OSCAL, eMASS, Xacta, or equivalent
  • Knowledge of software supply chain security, including SBOM, artifact signing, and provenance
  • Experience with SAFe or large-scale Agile compliance integration
Why Leidos?

You’ll work on systems where performance, precision, and reliability matter - every second. This is not experimental AI for prototypes. This is disciplined, responsible AI applied to mission‑critical software that supports national infrastructure.

If you’re excited by solving complex problems in regulated, real-world environments - and using AI as a force multiplier rather than a shortcut - we’d like to talk.

ATMC

If you’re looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 - and moving faster than anyone else dares.

Pay Range:

Pay Range $107,900.00 - $195,050.00

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That’s why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Authorization Lead
Security Authorization Lead

Leidos Inc • Eagan (MN)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Leidos Inc • Egg Harbor Township (NJ)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Leidos • Egg Harbor Township (NJ)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Leidos • Eagan (MN)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Via Logic LLC • Eagan (MN)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Via Logic LLC • Egg Harbor Township (NJ)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Leidos • Gaithersburg (MD)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead Leidos · Gaithersburg, NJ + 1 more Full-time · On-site $107,900–195,050 2 hours ago
Security Authorization Lead Leidos · Gaithersburg, NJ + 1 more Full-time · On-site $107,900–195,050 2 hours ago

Emploive • Gaithersburg (MD), Northern (KY)

Hybrid
USD 108,000 - 195,000
DevSecOps Security Engineer
DevSecOps Security Engineer

Leidos Inc • Eagan (MN)

Hybrid
USD 87,000 - 157,000
DevSecOps Security Engineer
DevSecOps Security Engineer

Via Logic LLC • Eagan (MN)

Hybrid
USD 87,000 - 157,000