Demo

Deputy Cybersecurity Governance Lead

SAIC
Washington, DC Full Time
POSTED ON 4/26/2026
AVAILABLE BEFORE 6/3/2026
Job ID 2610971

Location Washington, DC, US

Date Posted 2026-04-03

Category Cyber

Subcategory Cyber GRC

Schedule Full-Time

Shift Day Job

Travel No

Minimum Clearance Required None

Clearance Level Must Be Able to Obtain Public Trust

Potential for Remote Work ORA_HYBRID

Description

SAIC is seeking a Deputy Cybersecurity Governance Lead to support a critical U.S. government agency in the National Capital Region. This senior-level role provides operational leadership across Governance, Risk, and Compliance (GRC) activities supporting enterprise systems and their subsystems.

This role is responsible for ensuring the security and compliance of agency information systems by overseeing implementation and management of security controls aligned with federal cybersecurity frameworks, including the NIST Risk Management Framework (RMF), FISMA, and NIST SP 800-53.

This is an excellent opportunity for an experienced cybersecurity leader to contribute to the secure provisioning, authorization, and ongoing monitoring of systems across both on-premise and cloud environments. The Deputy Cybersecurity Governance Lead will collaborate with federal Information System Security Officers (ISSOs), system owners, engineers, and security teams to maintain the confidentiality, integrity, and availability of government systems, while driving consistency, quality, and accountability across GRC operations.

***This hybrid role requires a minimum of three on-site days per week in Washington, DC.***

Responsibilities

  • Provide day-to-day operational leadership across GRC workstreams, including Risk Management, Assessment & Authorization, and Audit Support.
  • Oversee development, review, and quality assurance of Security Authorization packages, including SSPs, SARs, and POA&Ms across multiple systems.
  • Coordinate and prepare systems for Security Control Assessments (SCA), ensuring completeness, accuracy, and audit readiness of all artifacts.
  • Oversee Security Impact Analyses (SIAs) for system changes, modernization efforts, and new system integrations.
  • Ensure effective implementation and monitoring of security controls in accordance with NIST SP 800-53, RMF, and agency security policies.
  • Lead POA&M lifecycle management, including development, tracking, remediation validation, and closure assessments.
  • Oversee Risk Acceptance processes, ensuring proper documentation, justification, and alignment with system risk posture.
  • Manage and enforce continuous monitoring activities, ensuring control effectiveness and ongoing authorization compliance.
  • Coordinate audit support activities, including PBC responses, audit data calls, audit brief development, and remediation of findings.
  • Lead development of audit response packages (RCF, RAC, PSR) and support FISMA and A-130 reporting requirements.
  • Serve as a primary contractor interface to federal stakeholders, including ISSOs, Authorizing Officials (AO), and Security Control Assessors (SCA).
  • Oversee coordination between system owners, Security Operations, Vulnerability Management, and Security Tools teams to ensure integrated security operations.
  • Provide mentorship and oversight to ISSO support and business area liaisons, ensuring effective execution of responsibilities.
  • Establish and enforce quality standards for all GRC deliverables, ensuring documentation reflects actual system implementation.
  • Manage task tracking, prioritization, and execution across team activities to ensure contract deliverables and timelines are met.
  • Identify process gaps and implement improvements to increase efficiency, reduce RMF cycle time, and enhance audit readiness.
  • Prepare and deliver executive-level reports, risk briefings, and status updates to internal and external stakeholders.

Qualifications

Requirements

  • Bachelor’s degree and 10 years of IT security, GRC, or systems security engineering experience, or Master’s degree with 8 years of experience.
  • Ability to obtain and maintain a public trust requiring U.S. Citizenship or Green Card.
  • Demonstrated experience leading or overseeing RMF and GRC activities across multiple systems or enterprise environments.
  • Strong understanding of the NIST RMF, NIST SP 800-53, FISMA, and federal security policies including EO 14028 and OMB M-22-09.
  • Experience managing ATO processes, authorization artifacts (SSP, SAR, POA&M, SIA), and continuous monitoring programs.
  • Proven experience supporting federal audits, including PBC responses, audit data calls, and remediation tracking.
  • Experience coordinating across engineering, operations, and compliance teams in complex environments.
  • Ability to enforce accountability and drive execution across multiple stakeholders without direct authority.
  • Strong understanding of enterprise IT environments, including cloud (AWS, Azure, GCP) and hybrid architectures.
  • Familiarity with enterprise platforms such as Microsoft 365, Azure AD, Cisco, and Oracle.
  • Strong documentation, reporting, and communication skills, including the ability to convey complex technical issues to non-technical audiences.
  • Proficient in Microsoft Office (Word, Excel, PowerPoint, SharePoint).

Preferred Qualifications

  • Prior experience functioning in an ISSM, Deputy ISSM, or GRC Lead role within a federal environment.
  • Experience supporting large, multi-system environments or system boundary consolidation efforts.
  • Experience with GRC and SA&A tools such as Archer, eMASS, JCAM, CSAM, or Xacta.
  • Familiarity with FedRAMP, cloud compliance requirements, and federal privacy regulations.
  • Certifications such as CISSP (strongly preferred), CISM, CAP, or CRISC.
  • Understanding of adversary TTPs and frameworks such as MITRE ATT&CK.
  • Ability to operate in a fast-paced, high-visibility environment with competing priorities.

Target salary range $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

Salary : $120,001 - $160,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Deputy Cybersecurity Governance Lead?

Sign up to receive alerts about other jobs on the Deputy Cybersecurity Governance Lead career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$220,784 - $286,649
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at SAIC

  • SAIC Honolulu, HI
  • Job ID 2611572 Location Honolulu, HI, US Date Posted 2026-04-29 Category Information Technology Subcategory Data Scientist Schedule Full-Time Shift Day Job... more
  • 6 Days Ago

  • SAIC Huntsville, AL
  • Job ID 2612271 Location Huntsville, AL, US Date Posted 2026-05-06 Category Information Technology Subcategory Sys Administrator Schedule Full-Time Shift Da... more
  • 6 Days Ago

  • SAIC Charleston, SC
  • Job ID 2612331 Location Charleston, SC, US Date Posted 2026-05-07 Category Logistics Subcategory Logistics Schedule Full-Time Shift Day Job Travel No Minim... more
  • 6 Days Ago

  • SAIC Colorado, CO
  • Job ID 2612260 Location Colorado Springs, CO, US Date Posted 2026-05-06 Category Information Technology Subcategory Technical Svcs Schedule Full-Time Shift... more
  • 6 Days Ago


Not the job you're looking for? Here are some other Deputy Cybersecurity Governance Lead jobs in the Washington, DC area that may be a better fit.

  • Jobs via Dice Washington, DC
  • Job ID: 2610971 Location: Washington, DC, US Date Posted: 2026-04-03 Category: Cyber Subcategory: Cyber GRC Schedule: Full-Time Shift: Day Job Travel: No M... more
  • 13 Days Ago

  • Synapse Business Systems Washington, DC
  • Location: Hybrid, Washington, DC Rate: Market Rate Seeking a Deputy Cybersecurity Governance Lead to support a critical U.S. government agency in the Natio... more
  • 1 Day Ago

AI Assistant is available now!

Feel free to start your new journey!