Security Authorization Lead

Leidos

Confirmed live 2 days ago High trust
Remote

Quick summary

Work type
Remote
Location
Gaithersburg, MDEagan, MNEgg Harbor Township, NJ
Salary
$107,900–$195,050 / yr
Posted
5 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $182k
This role $151k
$94k most similar roles pay here $239k

This role pays less than 80% of similar roles. Most pay $154,600–$208,800 — the shaded band above. At the midpoint, this role pays about $151k versus about $182k for comparable roles.

Based on 240 similar postings.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 263 open roles on FindRole.

Listed pay typically runs $107,900–$166,850 across 245 roles with salary data.

Most-posted roles

View all roles at Leidos

At a glance

TL;DR · Security Authorization Lead

The Security Authorization Lead joins the Air Traffic Business Area to support the development of the Leidos Common Automation Platform (L-CAP). This role manages the full security authorization lifecycle, leading RMF and ATO processes for workloads on government cloud infrastructure. The individual serves as the primary technical interface with FAA security organizations, managing artifacts such as SSPs, POA&Ms, SBOMs, and vulnerability dispositions. Key responsibilities include defining control inheritance across cloud layers, translating compliance requirements into engineering backlog items, and coordinating cross-ART compliance within a SAFe/Agile framework. The role requires expertise in NIST 800-53 Rev. 5, FedRAMP standards, and tools like OSCAL or eMASS. This position addresses the critical challenge of securing next-generation air traffic management capabilities by ensuring mission-critical systems meet rigorous federal security requirements within a hybrid cloud data mesh architecture.

What you'll do

  • Lead the RMF and ATO authorization process for workloads on government-provided cloud infrastructure.
  • Serve as the primary technical interface to FAA security organizations and Authorizing Official staff.
  • Maintain the security authorization package including architecture diagrams, data flows, and vulnerability dispositions.
  • Define and defend security control inheritance across cloud provider, government platform, and application layers.
  • Manage the POA&M lifecycle including risk characterization, remediation milestones, and continuous monitoring reporting.
  • Translate complex security requirements into actionable engineering backlog items for development teams.
  • Coordinate cross-ART compliance to ensure consistent control implementation across multiple Agile Release Trains.
  • Support FedRAMP and agency-specific authorization requirements across various cloud environments.

What we're looking for

  • Bachelor’s degree in Cybersecurity, Computer Science, IT, or related field with 6+ years of experience, or a Master’s degree with 4+ years.
  • Demonstrated experience leading federal information systems through RMF to ATO using NIST 800-53 Rev. 5 controls.
  • Experience developing and defending authorization packages including SSPs, POA&Ms, and security assessment reports.
  • Experience with FedRAMP cloud control inheritance, vulnerability management, CVE disposition, and remediation tracking.
  • Experience working directly with government security reviewers, ISSOs, and Authorizing Official staff.
  • Ability to translate security requirements into engineering backlog items and coordinate compliance across multiple Agile teams.
  • U.S. citizenship required, including eligibility for FAA facility access and continuous residency for at least 3 of the previous 5 years.
  • CISSP, CGRC, CISM, or equivalent certification (preferred); experience with aviation-sector security or cATO models (preferred).

More like this

Similar roles

Information Assurance Lead

Leidos

Washington, DC 10 days ago $131,300–$237,350
Agile ServiceNow Elastic Kafka AWS RedHat UNIX Linux IDS IPS Firewalls VPN Virtualization DLP Encryption Security+ Cybersecurity Risk Assessment
10+ yrs exp

Lead Enterprise Security Architect

Booz Allen Hamilton

McLean, VA 74 days ago $86,800–$198,000
Zero Trust NIST SP 800‑53 SASE DLP Encryption Tokenization F5 Palo Alto AWS Azure SIEM SOAR Kubernetes DevSecOps Agile RMF FedRAMP ISO 27001 COBIT
7+ yrs exp

Principal Cyber Security Architect

Leidos

Gaithersburg, MD +2 39 days ago $131,300–$237,350
Cybersecurity Architecture FedRAMP NIST 800-53 Zero Trust DevSecOps CI/CD Risk Management Framework AWS Azure Threat Modeling Vulnerability Assessment SBOM SLSA API Gateway SIEM Penetration Testing
10+ yrs exp Hybrid

Lead, Application Security

Prudential Financial

Newark, NJ 26 days ago $123,700–$204,100
SAST SCA DAST ASPM DevSecOps CI/CD Python PowerShell Bash AWS Azure GCP OWASP Top 10 MITRE ATT&CK NIST PCI DSS SBOM Policy-as-Code

Security Risk Management Lead

Affirm

Remote 113 days ago $165,000–$225,000
Python AWS GCP Azure Cursor Claude SQL SOC1&2 PCI DSS IAM BI Tools low code platforms Security Risk Management
5+ yrs exp Remote

Lead, Information Security Regulatory & Compliance

Prudential Financial

Newark, NJ 31 days ago $114,500–$188,900
ISO 27001 NIST SOC 1 NYDFS 23 NYCRR 500 FFIEC GRC Platforms Jira ServiceNow IAM ASM CDR Cloud Security Data Protection Information Security Governance
Hybrid