Deputy Cybersecurity Governance Lead

Washington, DC, US • Posted 14 hours ago • Updated 14 hours ago
Full Time
On-site
USD $120,001.00 - 160,000.00 per year
Company Branding Image
Fitment

Dice Job Match Score™

📊 Calculating match score...

Job Details

Skills

  • Security Clearance
  • Information Systems
  • Provisioning
  • Cyber Security
  • Information System Security
  • Leadership
  • Risk Management
  • Quality Assurance
  • Impact Analysis
  • Lifecycle Management
  • RAC
  • Security Controls
  • SCA
  • Collaboration
  • Vulnerability Management
  • Security Operations
  • Mentorship
  • System Implementation
  • IT Security
  • System Security
  • Risk Management Framework
  • RMF
  • NIST SP 800 Series
  • FISMA
  • OMB
  • Authorization
  • SSP
  • SAR
  • Continuous Monitoring
  • Auditing
  • Accountability
  • Management
  • Amazon Web Services
  • Google Cloud Platform
  • Google Cloud
  • Microsoft Office
  • Microsoft Azure
  • Cisco
  • Oracle
  • Documentation
  • Reporting
  • Communication
  • Microsoft Word
  • Microsoft Excel
  • Microsoft PowerPoint
  • Microsoft SharePoint
  • ISSM
  • SAP GRC
  • EMC RSA Archer
  • eMASS
  • XACTA
  • FedRAMP
  • Cloud Computing
  • Regulatory Compliance
  • Privacy
  • CISSP
  • CISM
  • ISACA
  • Information Technology
  • Systems Engineering
  • FOCUS

Summary

Job ID: 2610971

Location: Washington, DC, US

Date Posted: 2026-04-03

Category: Cyber

Subcategory: Cyber GRC

Schedule: Full-Time

Shift: Day Job

Travel: No

Minimum Clearance Required: None

Clearance Level Must Be Able to Obtain: Public Trust

Potential for Remote Work: ORA_HYBRID

Description

SAIC is seeking a Deputy Cybersecurity Governance Lead to support a critical U.S. government agency in the National Capital Region. This senior-level role provides operational leadership across Governance, Risk, and Compliance (GRC) activities supporting enterprise systems and their subsystems.

This role is responsible for ensuring the security and compliance of agency information systems by overseeing implementation and management of security controls aligned with federal cybersecurity frameworks, including the NIST Risk Management Framework (RMF), FISMA, and NIST SP 800-53.

This is an excellent opportunity for an experienced cybersecurity leader to contribute to the secure provisioning, authorization, and ongoing monitoring of systems across both on-premise and cloud environments. The Deputy Cybersecurity Governance Lead will collaborate with federal Information System Security Officers (ISSOs), system owners, engineers, and security teams to maintain the confidentiality, integrity, and availability of government systems, while driving consistency, quality, and accountability across GRC operations.

***This hybrid role requires a minimum of three on-site days per week in Washington, DC.***

Responsibilities:
  • Provide day-to-day operational leadership across GRC workstreams, including Risk Management, Assessment & Authorization, and Audit Support.
  • Oversee development, review, and quality assurance of Security Authorization packages, including SSPs, SARs, and POA&Ms across multiple systems.
  • Coordinate and prepare systems for Security Control Assessments (SCA), ensuring completeness, accuracy, and audit readiness of all artifacts.
  • Oversee Security Impact Analyses (SIAs) for system changes, modernization efforts, and new system integrations.
  • Ensure effective implementation and monitoring of security controls in accordance with NIST SP 800-53, RMF, and agency security policies.
  • Lead POA&M lifecycle management, including development, tracking, remediation validation, and closure assessments.
  • Oversee Risk Acceptance processes, ensuring proper documentation, justification, and alignment with system risk posture.
  • Manage and enforce continuous monitoring activities, ensuring control effectiveness and ongoing authorization compliance.
  • Coordinate audit support activities, including PBC responses, audit data calls, audit brief development, and remediation of findings.
  • Lead development of audit response packages (RCF, RAC, PSR) and support FISMA and A-130 reporting requirements.
  • Serve as a primary contractor interface to federal stakeholders, including ISSOs, Authorizing Officials (AO), and Security Control Assessors (SCA).
  • Oversee coordination between system owners, Security Operations, Vulnerability Management, and Security Tools teams to ensure integrated security operations.
  • Provide mentorship and oversight to ISSO support and business area liaisons, ensuring effective execution of responsibilities.
  • Establish and enforce quality standards for all GRC deliverables, ensuring documentation reflects actual system implementation.
  • Manage task tracking, prioritization, and execution across team activities to ensure contract deliverables and timelines are met.
  • Identify process gaps and implement improvements to increase efficiency, reduce RMF cycle time, and enhance audit readiness.
  • Prepare and deliver executive-level reports, risk briefings, and status updates to internal and external stakeholders.


Qualifications

Requirements:
  • Bachelor's degree and 10+ years of IT security, GRC, or systems security engineering experience, or Master's degree with 8+ years of experience.
  • Ability to obtain and maintain a public trust requiring U.S. Citizenship or .
  • Demonstrated experience leading or overseeing RMF and GRC activities across multiple systems or enterprise environments.
  • Strong understanding of the NIST RMF, NIST SP 800-53, FISMA, and federal security policies including EO 14028 and OMB M-22-09.
  • Experience managing ATO processes, authorization artifacts (SSP, SAR, POA&M, SIA), and continuous monitoring programs.
  • Proven experience supporting federal audits, including PBC responses, audit data calls, and remediation tracking.
  • Experience coordinating across engineering, operations, and compliance teams in complex environments.
  • Ability to enforce accountability and drive execution across multiple stakeholders without direct authority.
  • Strong understanding of enterprise IT environments, including cloud (AWS, Azure, Google Cloud Platform) and hybrid architectures.
  • Familiarity with enterprise platforms such as Microsoft 365, Azure AD, Cisco, and Oracle.
  • Strong documentation, reporting, and communication skills, including the ability to convey complex technical issues to non-technical audiences.
  • Proficient in Microsoft Office (Word, Excel, PowerPoint, SharePoint).

Preferred Qualifications:
  • Prior experience functioning in an ISSM, Deputy ISSM, or GRC Lead role within a federal environment.
  • Experience supporting large, multi-system environments or system boundary consolidation efforts.
  • Experience with GRC and SA&A tools such as Archer, eMASS, JCAM, CSAM, or Xacta.
  • Familiarity with FedRAMP, cloud compliance requirements, and federal privacy regulations.
  • Certifications such as CISSP (strongly preferred), CISM, CAP, or CRISC.
  • Understanding of adversary TTPs and frameworks such as MITRE ATT&CK.
  • Ability to operate in a fast-paced, high-visibility environment with competing priorities.


Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.


Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10111346
  • Position Id: 2610971
  • Posted 14 hours ago

Company Info

About SAIC

SAIC® is a premier Fortune 500 mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, civilian and intelligence markets include secure high-end solutions in mission IT, enterprise IT, engineering services and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.

We are approximately 24,000 strong; driven by mission, united by purpose, and inspired by opportunities. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.5 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

About_Company_One
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Washington, District of Columbia

Today

Full-time

0 to 0

Arlington, Virginia

Today

Full-time

Arlington, Virginia

Today

Full-time

Washington, District of Columbia

Today

Full-time

USD 120,001.00 - 160,000.00 per year

Search all similar jobs