All jobs

Cyber Security Engineer

Caci20h ago
United StatesOnsiteFull-time

Top focus

Security EngineerCloud Security Engineer

Job Title: Cyber Security Engineer Travel: Local * * * The Opportunity: CACI is seeking a skilled Cyber Security Engineer to support the design, implementation, and maintenance of secure systems and networks. The successful candidate will work closely with CACI's development and IT teams to integrate security best practices, identify and mitigate security vulnerabilities, and ensure compliance with industry standards.

You’ll contribute to strengthening the security posture of critical infrastructure and systems supporting CACI operations. Translate RMF categorization results and applicable control baselines into implementable, testable system security requirements allocated across hardware, software, network, and inherited common controls.

Design security architectures and control implementations that satisfy authorization requirements while meeting mission performance, integration, and sustainment constraints. Develop and maintain security architecture artifacts, authorization boundary diagrams, data flow diagrams, hardware/software lists, and PPSM registrations.

Analyze ACAS/Nessus and STIG/SCAP results at the engineering level to separate genuine risk from finding noise and drive the remediate / mitigate / risk-acceptance decision. Evaluate candidate security solutions against mission need, integration complexity, sustainment burden, and authorization impact; produce recommendations with defensible tradeoff analysis.

Serve as technical authority for control implementation decisions, including tailoring rationale, compensating controls, and inheritance strategy from common control providers. Provide security-focused insights and technical direction for network, infrastructure, and system architecture.

Translate and communicate technical risks and requirements between technical and non-technical stakeholders. Research and evaluate emerging security technologies and practices and assess their applicability and authorization impact for our environments.

Office Location for this Opportunity is in: Austin, TX Responsibilities: Collaborate with cross-functional engineering teams to design, implement, and sustain secure system architectures across the development and delivery lifecycle. Embed security into engineering processes, design reviews, configuration baselines, build pipelines, and delivery gates rather than assessing it after the fact.

Provide security engineering input to modernization efforts including cloud migration, Zero Trust architecture alignment, containerization, and automation of compliance evidence generation. Maintain and enhance internally developed security tooling and automation to ensure it adheres to best practices and meets evolving cybersecurity standards.

Develop and maintain security engineering standards, guidelines, and reference patterns for reuse across programs and systems. Mentor junior engineers and ISSOs on control implementation, assessment preparation, and secure design principles

Qualifications

  • Required: Bachelor’s degree in Cybersecurity, Computer Science, Information Technology
  • a related field (will consider relevant experience in lieu of a degree) and 8+ years of cybersecurity engineering experience, including 3+ years in a security architecture or systems security engineering capacity.
  • Must have an active Top Secret/SCI clearance to start.
  • US Citizenship Required.
  • Demonstrated experience carrying at least one system through a full RMF authorization cycle; categorization through ATO in an engineering role.
  • Working knowledge of NIST SP 800-53 Rev 5, NIST SP 800-37, CNSSI 1253, DISA STIGs and SRGs, and eMASS/XACTA/SNOW CAM.
  • Demonstrated expertise in cybersecurity engineering activities, including security architecture development, vulnerability assessment, risk assessment, and remediation planning.
  • Experienced in hardening operating systems (Windows Server, RHEL/Linux) and applications to align with STIG requirements and compliance obligations.
  • Hands-on proficiency with enterprise networking, network segmentation and boundary protection, and virtualization platforms.
  • Scripting and automation capability (Python, PowerShell, Bash) sufficient to build tooling and automate compliance evidence collection.
  • Ability to read system and software design documentation and independently identify security implications and control gaps.
  • Proficient in security toolsets, including vulnerability assessment platforms (Nessus/Tenable Security Center, ACAS), SIEM platforms, and endpoint security tooling.
  • Exceptional problem-solving abilities with a proactive approach to identifying and mitigating security risks.
  • Ability to work independently and within a team, adapting to dynamic security challenges.
  • Desired: Advanced architecture certifications such as CISSP-ISSAP, CCSP, or a cloud platform security certification (AWS Security Specialty, Azure AZ-500).
  • Experience architecting systems in DoD cloud environments at IL4/IL5 or above.
  • Container and Kubernetes security experience; familiarity with Iron Bank or Platform One.
  • Familiarity with DevSecOps practices and integrating security controls and evidence generation into CI/CD pipelines.
  • Knowledge of Infrastructure as Code tools such as Terraform or Ansible for secure, repeatable infrastructure management.
  • Understanding of data encryption techniques, FIPS 140-3 validated implementations, and secure data handling practices.
  • Experience with cross-domain solutions, CSfC, or PKI/ICAM implementation.
  • Prior experience on the assessment side (Security Control Assessor, IV&V, or Navy Qualified Validator).
  • Familiarity with Navy RMF process specifics and NAVAIR system delivery requirements.
  • Experience in disconnected, standalone, or embedded/tactical system environments. - What You Can Expect: A culture of integrity.
  • At CACI, we place character and innovation at the center of everything we do.
  • As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.
  • An environment of trust.
  • CACI values the unique contributions that every employee brings to our company and our customers - every day.
  • You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
  • A focus on continuous growth.
  • Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.
  • Pay Range : There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications.
  • Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives.
  • We offer competitive compensation, benefits and learning and development opportunities.
  • Our broad and competitive mix of benefits options is designed to support and protect employees and their families.
  • At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.
  • The proposed salary range for this position is: $108,400 - 227,500 USD CACI is an Equal Opportunity Employer.
  • All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran
  • any other protected characteristic.

Required skills

PythonTypeScriptAWSAzureKubernetesTerraformAnsibleLinuxCI/CDSecurity
Posted on JobRush — the end-to-end AI job-search platform.