Security Authorization Lead

Leidos

United States

Hybrid

USD 120,000 - 180,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Public Trust eligibility support

Job summary

Leidos seeks a Security Authorization Lead to drive the RMF/ATO lifecycle for L-CAP in government clouds. You will manage security artifacts, coordinate with FAA security and AO staff, and oversee control inheritance, POA&Ms, and continuous monitoring.

This role spans four ARTs to ensure consistent evidence and secure delivery. The position is hybrid with on-site requirements and potential for remote work, depending on commutable distance from listed hubs.

Qualifications

  • Bachelor's degree in cybersecurity, CS, IT, or related field; 6+ years of cybersecurity or security authorization experience.
  • Experience leading a federal information system through RMF to ATO or equivalent authorization.
  • Experience developing and defending authorization packages (SSPs, POA&Ms, Security Assessment Reports).
  • Familiarity with FedRAMP cloud controls and inheritance, CVE disposition, and remediation tracking.

Responsibilities

  • Lead RMF/ATO processes for L-CAP workloads on government-provided cloud infrastructure.
  • Maintain and defend the security authorization package (SSP, POA&Ms, Security Assessment Reports, boundary diagrams).
  • Define control inheritance across cloud provider, government platform, and Leidos layers; maintain Customer Responsibility Matrix.
  • Serve as the primary interface with government security reviewers, ISSOs, assessors, and Authorizing Official staff.
  • Coordinate and manage POA&M and continuous monitoring lifecycle, remediation milestones, and evidence quality.

Skills

RMF process
Security authorization
SAFe coordination
Technical writing
Public Trust readiness

Education

Bachelor's degree in Cybersecurity/CS/IT or related field

Tools

NIST SP 800-53

Job description

Leidos is seeking a Security Authorization Lead to join the Air Traffic Business Area within the Homeland Sector, supporting the development of the Leidos Common Automation Platform (L-CAP). L-CAP is a mission-critical, future-ready automation platform built on a hybrid cloud data mesh architecture, enabling next-generation air traffic management capabilities. We are building with an AI-first engineering mindset, embracing emerging AI capabilities and modern development practices to accelerate delivery, improve software quality, and continuously evolve how we design and build mission-critical systems. This role operates within a SAFe/Agile framework as part of an Agile Release Train (ART) delivering iterative value across the program. This position supports government programs and requires the ability to obtain and maintain a favorable Public Trust investigation.

This is a hybrid position requiring 3 days onsite and 2 days working from home, i f you are located within a commutable distance (Less than 1 hour's drive one-way during normal traffic) from Gaithersburg, MD; Eagan, MN; or Egg Harbor Township, NJ. However, if you do not reside within a commutable distance, you may be considered for a 100% remote role.

In this role, you will own the security authorization lifecycle for L-CAP. You will lead the formal processes required to authorize L-CAP workloads to connect to and operate within government cloud environments, serve as the program's primary technical interface to FAA security and Authorizing Official organizations, and own the artifact package and control-inheritance position that underpin every authorization decision. This is a delivery-facing compliance leadership role - you will translate authorization requirements into engineering work rather than documenting them after the fact.

What You'll Do:
  • Lead the government network connection and RMF/ATO authorization process for L-CAP workloads on government-provided cloud infrastructure, including security assessments, architecture reviews, control evidence, and assessor coordination.
  • Own and maintain the security authorization package , including architecture briefings, data flow/security boundary diagrams, ports/protocols/services matrices, SBOMs, vulnerability/CVE dispositions, and POA&Ms.
  • Define and defend security control inheritance across cloud provider, government platform, and Leidos application layers, maintaining the Customer Responsibility Matrix.
  • Serve as the primary interface with government security reviewers, ISSOs, assessors, and Authorizing Official staff .
  • Manage the POA&M and continuous monitoring lifecycle , including findings, risk characterization, remediation milestones, closure evidence, and security status reporting.
  • Maintain the authorization boundary as architecture evolves, assess security impacts of proposed changes, and translate requirements into actionable engineering backlog items.
  • Coordinate cross-ART compliance across four Agile Release Trains to ensure consistent control implementation and evidence quality.
  • Support FedRAMP and agency-specific authorization requirements across cloud environments.
  • Coordinate personnel security and facility access eligibility with program security and Talent Acquisition.
  • Champion an AI-first engineering culture through AI-assisted development, automation, and emerging practices that improve productivity, code quality, testing, and delivery.
Core Technical Qualifications:
  • Bachelor's degree in Cybersecurity, Computer Science, IT, or related field with 6+ years of relevant cybersecurity, compliance, or security authorization experience , or a Master's degree with 4+ years. (additional experience, education and training may be considered in lieu of degree)
  • Demonstrated experience leading a federal information system through RMF to ATO or equivalent authorization , including NIST 800-53 Rev. 5 control implementation and assessment.
  • Experience developing and defending authorization packages , including SSPs, POA&Ms, Security Assessment Reports, and authorization boundary diagrams.
  • Experience with FedRAMP cloud control inheritance, Customer Responsibility Matrices, vulnerability management, CVE disposition, and remediation tracking .
  • Experience working directly with government security reviewers, ISSOs, and/or Authorizing Official staff .
  • Ability to translate security requirements into actionable engineering backlog items and coordinate compliance across multiple Agile engineering teams.
  • Strong technical writing skills with experience producing government-facing security documentation .
  • Ability to obtain and maintain a Public Trust and successfully complete required government background investigations.
  • U.S. citizenship required , including eligibility for FAA facility and information system access (continuous U.S. residency for at least 3 of the previous 5 years ).
Preferred / Desired Qualifications:
  • CISSP, CGRC (formerly CAP), CISM , or equivalent certification (strongly preferred)
  • FAA
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Authorization Lead Leidos · Gaithersburg, NJ + 1 more Full-time · On-site $107,900–195,050 2 hours ago
Security Authorization Lead Leidos · Gaithersburg, NJ + 1 more Full-time · On-site $107,900–195,050 2 hours ago

Emploive • Gaithersburg (MD), Northern (KY)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Leidos Inc • Eagan (MN)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Leidos Inc • Egg Harbor Township (NJ)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Leidos Inc • Gaithersburg (MD)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Via Logic LLC • Eagan (MN)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Via Logic LLC • Egg Harbor Township (NJ)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Leidos • Gaithersburg (MD)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Leidos • Egg Harbor Township (NJ)

Hybrid
USD 108,000 - 195,000
Security Authorization Lead
Security Authorization Lead

Leidos • Eagan (MN)

Hybrid
USD 108,000 - 195,000
DevSecOps Security Engineer
DevSecOps Security Engineer

Leidos • United States

Hybrid
USD 120,000 - 150,000