Quick Overview
Job Description
R-00194306 Description Leidos is seeking a Senior Cyber Specialist to serve as an Information System Security Officer (ISSO) responsible for the day-to-day security posture, authorization, and continuous monitoring of enterprise information systems. The role owns the security control implementation and accreditation artifacts for assigned systems and serves as the principal point of contact for cybersecurity matters affecting them.
This position is responsible for ensuring assigned systems are built, documented, assessed, and operated in accordance with applicable federal and DoD cybersecurity requirements. Duties include security control implementation and validation, risk assessment, vulnerability and compliance oversight, incident support, and the development and maintenance of the artifacts required to obtain and sustain an authorization to operate.
The successful candidate is a cybersecurity practitioner who works comfortably between the engineering teams who build the system and the authorizing officials who must accept its risk — translating technical reality into defensible control documentation, and translating control requirements into changes engineers can actually implement.
Scope and Impact Impact: Influences development of solutions that impact strategic project and program goals and business results. Recommends and develops security solutions, practices, and standards. Decisions and risk recommendations have significant impact on the authorization and operation of assigned systems.
Complexity: Resolves highly complex problems through significant application of technical and regulatory knowledge, conceptualization, reasoning, and interpretation. Evaluates technical risk where requirements are ambiguous and compensating controls must be justified.
Communication: Communicates with executive and client leadership on matters of significant importance to the security posture of assigned systems. Presents risk assessments, control implementation positions, and remediation plans to engineering leadership, security authorities, and authorizing officials.
Knowledge: In-depth understanding of cybersecurity principles, risk management frameworks, and security control implementation across a range of systems. Serves as a subject matter expert within the information assurance domain. Primary Responsibilities Authorization and Risk Management Framework
- Serve as ISSO for assigned systems, maintaining the system security posture and acting as the principal cybersecurity point of contact for those systems.
- Execute Risk Management Framework (RMF) activities across categorization, control selection, implementation, assessment, authorization, and continuous monitoring.
- Develop, maintain, and defend authorization packages, including the System Security Plan, security control implementation statements, risk assessment reports, contingency and incident response plans, and supporting artifacts.
- Maintain system records and artifacts in eMASS or the designated authorization repository, keeping control status, assessment results, and documentation current and accurate.
- Develop and track Plans of Action and Milestones (POA&Ms), including risk justification, mitigation approach, compensating controls, and milestone closure evidence.
- Support security assessments, audits, inspections, and command cyber readiness activities, including evidence collection and assessor coordination.
- Evaluate proposed system and architecture changes for security impact, and provide written recommendations on acceptance, mitigation, or denial.
- Oversee vulnerability management for assigned systems, including scan review, validation, prioritization, remediation tracking, and reporting against required timelines.
- Oversee DISA STIG and security configuration compliance, including baseline review, deviation justification, and verification of applied hardening.
- Review and act on cybersecurity directives, bulletins, advisories, and tasking orders applicable to assigned systems, and track compliance to closure.
- Perform continuous monitoring activities, including control status review, log and audit record oversight, account and privilege review, and security posture reporting.
- Support incident response and reporting, including initial analysis, documentation, coordination with the security operations team, and after-action tracking of corrective measures.
- Partner with network, systems, cloud, application, and operations engineering teams to ensure security requirements are designed in rather than retrofitted.
- Provide practical security guidance on architecture and implementation decisions, including boundary definition, access control, encryption, auditing, and least privilege.
- Advise program leadership and government stakeholders on cybersecurity risk, control posture, remediation options, and the security implications of schedule and design decisions.
- Mentor junior cybersecurity staff and provide technical direction on assessment, documentation, and remediation work.
- Improve cybersecurity processes, templates, evidence standards, and reporting to reduce rework and shorten authorization timelines.
- System Security Plans and control implementation statements
- System boundary descriptions, data flow diagrams, and hardware/software inventories
- Risk assessment reports and security impact analyses
- Plans of Action and Milestones with supporting evidence
- Contingency, continuity, and incident response plans
- Configuration and hardening baselines and deviation justifications
- Continuous monitoring and security posture reports
- Standard operating procedures for recurring security activities Required Qualifications:
- Bachelor's degree or equivalent experience and 12+ years of prior relevant experience, or Master's degree with 10+ years of experience. Specific experience, education, and training may be considered in lieu of a degree.
- Current IAT Level II or higher certification, such as Security+ or CISSP.
- Active DoD Secret clearance. If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.
Original Posting: October 9, 2026 For U.S.
Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range: Pay Range $131,300.00 - $237,350.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
About Leidos Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www. Leidos.com . Pay and Benefits Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers.
Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits . Securing Your Data Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work).
Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at .
If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission . Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law.
Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.
Similar jobs
- NI
Sr.. Principal Cyber Software Engineer with Security Clearance
NewNightwing
Sterling, VA🇺🇸$122k - $253k/yrHybridYesterdayGCPMySQLOracle+18Technology - RR
Embedded Hardware Security Research Engineer with Security Clearance
NewRiverside Research
Dayton, OH🇺🇸$100k - $145k/yrOn-siteYesterdayAdministrative - BA
Security Operations Analyst, Mid with Security Clearance
NewBooz Allen Hamilton
Huntsville, AL🇺🇸$61.9k - $141k/yrOn-siteYesterdayOperations & Project Management - IS
SOC Cyber Engineer-Virginia Beach, VA with Security Clearance
NewiSenpai, LLC
Virginia Beach, VA🇺🇸HybridYesterdaySplunkActive DirectoryAgile+5Technology - AS
Network Security Engineer, Lead (Top Secret Clearance with SCI & with Security Clearance
NewAmerican Systems Corporation
Dallas, TX🇺🇸$155k - $180k/yrHybridYesterdayVMwareTechnology - TF
Senior Security Engineer with Security Clearance
NewTria Federal
Baltimore, MD🇺🇸On-siteYesterdayAWSOWASPSplunk+6Technology - LE
Tier 2 Security Operations Center (SOC) Analyst with Security Clearance
Leidos
Alexandria, VA🇺🇸$87.1k - $157.4k/yrHybrid2 weeks agoTechnology - GO
Cybersecurity Policy Analyst with Security Clearance
NewGoldbelt Inc
Columbus, OH🇺🇸$83k - $120k/yrHybridYesterdayTechnology - MI
Senior Information System Security Engineer (Splunk Engineer) with Security Clearance
NewMITRE Corporation
Bedford, MA🇺🇸$129.2k - $161.5k/yrOn-siteYesterdaySplunkBashPowerShell+1Technology - MI
Senior Cyber Operations Analyst (TS Cleared) with Security Clearance
NewMITRE Corporation
McLean, VA🇺🇸$129.2k - $161.5k/yrOn-siteYesterdayPythonBlockchainTechnology - LE
Cyber Infrastructure Support with Security Clearance
NewLeidos
Omaha, NE🇺🇸On-siteYesterdaySchedulingTechnology - BN
Vice President, Sailpoint Information Security
NewBNY
Pittsburgh, Pennsylvania🇺🇸Hybrid2 hours agoAdministrative