Principal Cyber Architect

BAE SystemsSan Diego, CA
$118,095 - $200,762Onsite

About The Position

This position supports systems engineering teams in various critical activities. Key responsibilities include supporting Assessment and Authorization (A&A) for DoD Systems in accordance with Risk Management Framework (RMF), and performing traditional systems engineering tasks such as developing CONOPS, requirements, cyber design and implementation engineering, and verification and validation. The role also involves supporting continuous monitoring efforts during deployment, operations, and sustainment. Additionally, it requires supporting offensive architecture analysis and the design of defense-in-depth solutions, as well as supporting Development Security Operations (DevSecOps) integration. A significant part of the role involves supporting the development and assessment of system security plans, including security concepts of operation, risk management matrices, security control traceability matrices, security test procedures, and plan of action and milestones. The position also entails conducting and analyzing vulnerability assessments to ensure system compliance with RMF controls and DISA Security Technical Information Guidelines (STIG), and analyzing static and dynamic code scans to validate Application Security and Development STIG compliance. This role may require business travel to customer locations for meetings, product demonstrations, integration, and/or systems testing.

Requirements

  • Bachelor of Science degree in a Cyber, Systems, Software, Electrical, Mechanical or similarly related engineering/technical discipline, and 6+ year(s) related experience or equivalent experience, training and/or certifications.
  • At least one DoDM 8140 (DCWF 652-series) compliant certification: CCSP, CISSP-ISSEP/ISSAP, CSSLP, Cloud+ or equivalent
  • Understanding of MBSE and experience with Cameo
  • Supporting Assessment and Authorization (A&A) activities for DoD Systems in accordance with Risk Management Framework and Zero Trust Architecture
  • Supporting traditional systems engineering tasks such as CONOPS, requirements development and allocation, verification and Validation, and continuous monitoring efforts during deployment, Operations and Sustainment
  • Supporting cyber design engineering and cyber implementation engineering
  • Supporting Development Security Operations (DevSecOps) integration
  • Supporting development and assessment of system security plans including, security concepts of operation, risk management matrix, security control traceability matrix, security test procedures, and plan of action and milestones
  • Conducting and analyzing vulnerability assessments to validate system compliance with RMF controls and DISA Security Technical Information Guidelines (STIG)
  • Analyzing static code scans and dynamic code scans to validate Application Security and Development STIG compliance
  • Good planning and organizational skills
  • Strong oral and written communications skills

Nice To Haves

  • Other cyber certifications desired (e.g., GISF, CASP+, Cloud+, GSEC, AWS CSA Professional, OSCP, etc.)
  • Understanding of Zero Trust Architecture and ability to model Zero Trust into the overall system architecture.
  • Understanding of offensive security tactics, techniques and procedures
  • Experience with Cyber Failure Mode, Effects, and Criticality Analysis (FMECA)
  • Experience writing proposals with innovative cost-effective solutions
  • Experience with offensive architecting, threat modeling and attack vector analysis
  • Experience with cloud and cross domain solution accreditations
  • Ability to negotiate effectively with higher level managers, functional managers, customers, industry partners, and teammates
  • Demonstrated leadership skills (supervisory experience, building teams, building customer relationships)
  • Experience with leading and coordinating security test events to achieve accreditation milestones
  • Experience with verifying and validating vulnerability resolutions and/or mitigations
  • Experience with Attack and Threat modeling
  • Strong mentoring skills
  • Good planning and organizational skills
  • Strong oral and written communications skills

Responsibilities

  • Supporting systems engineering teams
  • Supporting Assessment and Authorization (A&A) activities for DoD Systems in accordance with Risk Management Framework
  • Supporting traditional systems engineering tasks such as CONOPS, requirements development and allocation, cyber design engineering, cyber implementation engineering, verification and Validation, and continuous monitoring efforts during deployment, Operations and Sustainment
  • Supporting offensive architecture analysis and design of defense-in-depth solutions
  • Supporting Development Security Operations (DevSecOps) integration
  • Supporting the development and assessment of system security plans including, security concepts of operation, risk management matrix, security control traceability matrix, security test procedures, and plan of action and milestones
  • Conducting and analyzing vulnerability assessments to validate system compliance with RMF controls and DISA Security Technical Information Guidelines (STIG)
  • Analyzing static code scans and dynamic code scans to validate Application Security and Development STIG compliance

Benefits

  • health, dental, and vision insurance
  • health savings accounts
  • a 401(k) savings plan
  • disability coverage
  • life and accident insurance
  • employee assistance program
  • legal plan
  • discounts on things like home, auto, and pet insurance
  • paid time off
  • paid holidays
  • paid parental leave
  • bereavement leave
  • any applicable federal and state sick leave
  • company recognition program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service