Spectrum San Diego Logo

Spectrum San Diego

Cyber Security Architect / Policy Lead

Posted 2 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in TX, USA
Expert/Leader
Remote
Hiring Remotely in TX, USA
Expert/Leader
Leads cybersecurity architecture, policy, ATO/A&A, RMF compliance, vulnerability management, cloud security, Zero Trust implementation, incident response, and continuous monitoring for federal VA systems. Coordinates with VA security stakeholders, maintains compliance artifacts and POA&Ms, enforces cryptographic and access-control requirements, and advises on AI/ML security. Requires extensive federal cybersecurity experience, ATO expertise, and knowledge of NIST, FISMA, FedRAMP, VA policies, and related security frameworks.
The summary above was generated by AI

Position Summary: The Cyber Security Architect/Policy Lead is the program's senior cybersecurity authority, responsible for designing and enforcing the security architecture, managing the ATO/A&A lifecycle, and ensuring all HELM Product Line systems comply with VA, federal, and FISMA cybersecurity requirements. This role also serves as the primary interface with VA Information Security Officers (ISOs), Field Security Services (FSS), and the Office of Cyber Security (OCS). 

Key Responsibilities

  • Lead the development and maintenance of all Assessment and Authorization (A&A) artifacts required to obtain and maintain Authority to Operate (ATO) for all HELM Product Line systems, in accordance with NIST SP 800-37 Rev 2 and VA Handbook 6500
  • Serve as the primary technical lead for cybersecurity, Zero Trust Architecture (ZTA), and RMF compliance across the HELM PL
  • Participate in vulnerability scans and quality reviews in accordance with NIST SP 800-53 Rev 5; remediate critical and high severity vulnerabilities identified through government scans
  • Provide vulnerability scanning reports and risk assessments per NIST SP 800-30 Rev 1 
  • Ensure cloud solutions comply with FedRAMP, VA Directive 6500/6517, VA Zero Trust Architecture principles, TIC 3.0, IPv6 requirements, and all VA cybersecurity policies
  • Implement required cloud security controls: encryption in transit and at rest, boundary protection, audit logging, identity federation, and secrets management
  • Develop and maintain cybersecurity policy documentation, POA&Ms, and continuous monitoring artifacts
  • Coordinate with VA ISOs, FSS, and OCS to support ATO compliance and respond to security findings
  • Ensure all HELM systems comply with VA Critical Security Controls (effective July 1, 2025) and VA Memorandum "VA Security Controls"
  • Support FICAM/PIV logical access policy compliance, including IAL 3, AAL 3, and FAL 3 assurance levels
  • Enforce cryptographic requirements per FIPS 140-2/140-3 and NIST SP 800-52; document cryptographic system protections
  • Manage patching governance: document patch management, vulnerability management, and mitigation processes
  • Advise on AI/ML security implications and ensure AI systems comply with applicable EOs and OMB memoranda (E.O. 13960, 14319, M-25-21, M-26-04)
  • Ensure all contractor personnel complete VA mandatory cybersecurity training (TMS #10176) and role-based security training
  • Respond to security incidents; coordinate with VA PM and VA Information Security Officer within required timeframes
Qualifications

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or related field; Master's preferred
  • Must have a Bachelors and 13 years of experience, Masters degree and 11 years of experience or a PhD or JD and 8 years of experience.
  • 10+ years of cybersecurity experience, with at least 5 years supporting federal IT programs under FISMA/RMF
  • Deep expertise in NIST SP 800-53 Rev 5, NIST SP 800-37 Rev 2 (RMF), and VA Handbook 6500
  • Demonstrated experience obtaining and maintaining ATOs for federal information systems
  • Proficiency with VA or federal security scanning tools (Fortify, WASA, Nessus, or equivalent)
  • Experience with Zero Trust Architecture principles and implementation in cloud environments (AWS, Azure, VAEC)
  • Demonstrated expertise in VA Zero Trust Architecture, TIC 3.0, and ATO compliance (required per program standards) 
  • Knowledge of FedRAMP, FISMA, HIPAA/PHI security requirements, and VA Directive 6517 (cloud security)
  • Familiarity with CISA Binding Operational Directives (BOD 19-02, BOD 22-01, BOD 23-01) [43]
  • Experience with FICAM, PIV/CAC logical access, SAML, and identity assurance frameworks [36]
  • Must be eligible for VA background investigation (likely Tier 4/High Risk); must be US-based [26,29,30]

Preferred Certifications

  • CISSP-ISSAP 
  • CISSP-ISSEP
  • GIAC GSLC 
  • CISM
  • CompTIA Security+ 
About UsSAIC® is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.

We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

Spectrum San Diego Richmond, California, USA Office

Richmond, United States

Similar Jobs

2 Hours Ago
Remote or Hybrid
United States
Senior level
Senior level
Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Advises dealership parts and service leaders across Michigan and Ohio, driving revenue, KPI performance, customer care, and aftersales execution. Identifies operational needs involving inventory, warranty, customer experience, retention, training, and EV compliance. Develops action plans, supports performance improvement, analyzes reporting, and partners with regional teams to align execution with business objectives. This field-based role requires frequent travel of at least 50% and residence or relocation within the assigned territory.
2 Hours Ago
Remote or Hybrid
United States
Mid level
Mid level
Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Leads parts and service performance across a New Hampshire and northern Massachusetts dealership territory. Advises dealer leadership, drives revenue, customer retention, and satisfaction, executes GM aftersales programs, analyzes operational and marketing performance, develops business plans, monitors KPIs, resolves customer and warranty concerns, and implements improvements. The role is field-based, requires at least 50% travel, territory residency or relocation, regular vehicle operation, and strong automotive service and parts expertise.
Top Skills: Automotive Parts And Service SystemsDealer Operating ReportsFixed Ops Analysis ToolsExcelSales Reporting Tool (Srt)
2 Hours Ago
Remote or Hybrid
United States
Junior
Junior
Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Manages GM dealership relationships across a multi-state territory, providing consultative coaching, sales strategy, inventory optimization, performance analysis, product launch support, and issue resolution. Drives vehicle, accessory, product, and service sales while monitoring dealer commitments, training compliance, customer satisfaction, and GM program execution. This field-based role requires frequent travel, legal vehicle operation, and residence or relocation within the assigned territory.
Top Skills: Gm Consensus Allocation SystemGoogle WorkspaceVehicle Ordering System

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account