1

Stig Jobs in California (NOW HIRING)

Sr. DevSecOps Engineer

San Diego, CA · On-site

$120K - $150K/yr

Responsibilities SCAP / STIG Automation * Build automated OpenSCAP pipelines to scan Ubuntu 24.04 LTS and other Linux hosts using DISA STIG benchmarks. * Integrate XCCDF and OVAL results into OpenRMF ...

Sr. DevSecOps Engineer

San Diego, CA · On-site

$120K - $150K/yr

Responsibilities SCAP / STIG Automation * Build automated OpenSCAP pipelines to scan Ubuntu 24.04 LTS and other Linux hosts using DISA STIG benchmarks. * Integrate XCCDF and OVAL results into OpenRMF ...

Implement and verify compliance with DoD cybersecurity policies and STIG requirements * Collaborate with cybersecurity teams to ensure RMF accreditation and secure network configurations * Support IT ...

Implement and verify compliance with DoD cybersecurity policies and STIG requirements * Collaborate with cybersecurity teams to ensure RMF accreditation and secure network configurations * Support IT ...

Apply security patches and ensure database compliance with STIG requirements * Design and implement database schemas, data models, and migration strategies * Manage database backup, recovery, and ...

New

next page

Showing results 1-20

Stig information

See California salary details

$30.1K

$43.6K

$52.3K

How much do stig jobs pay per year?

As of Sep 4, 2026, the average yearly pay for stig in California is $43,584.00, according to ZipRecruiter salary data. Most workers in this role earn between $40,000.00 and $47,900.00 per year, depending on experience, location, and employer.

What is a Stig?

STIG stands for Security Technical Implementation Guide. STIGs are configuration standards developed by the Defense Information Systems Agency (DISA) to enhance the security of information systems within the Department of Defense (DoD). They provide detailed guidance on how to configure systems, software, and networks to minimize vulnerabilities and comply with DoD cybersecurity requirements. IT professionals use STIGs to assess, secure, and maintain the security posture of DoD-affiliated systems.

What are some typical challenges faced by Stig drivers during high-performance testing days?

Stig drivers often encounter challenges such as adapting quickly to different vehicle types, managing varying track conditions, and consistently pushing cars to their limits while maintaining safety. Communication with the engineering team is crucial to relay precise feedback on vehicle performance. Additionally, drivers must remain focused and adaptable throughout long testing sessions, as weather, technical issues, or last-minute vehicle adjustments can impact the day’s plans.

What are the key skills and qualifications needed to thrive as a Stig, and why are they important?

I'm sorry, but 'Stig' is not recognized as a real-world professional occupation, so I am unable to provide relevant skills and qualifications for this job title.

What is the difference between Stig vs Security Analyst?

AspectStigSecurity Analyst
CredentialsTypically no formal certification required, but familiarity with security standards helpsOften requires certifications like CompTIA Security+, CISSP, or CEH
Work EnvironmentPrimarily used in government and military settings for security complianceCommonly employed in corporate, government, and private sectors for security monitoring
Employer & Industry UsageUsed by agencies following DoD and federal standardsUsed across industries to analyze and improve security posture

While a Stig (Security Technical Implementation Guide) is a set of security standards and checklists, a Security Analyst actively monitors, assesses, and responds to security threats. The Stig provides guidelines that Security Analysts implement to ensure compliance and security best practices.

What are the most commonly searched types of Stig jobs in California?

The most popular types of Stig jobs in California are:

Infographic showing various Stig job openings in California as of August 2026, with employment types broken down into 92% Full Time, and 8% Part Time. Highlights an 87% In-person, 4% Hybrid, and 9% Remote job distribution, with an average salary of $43,584 per year, or $21 per hour.

Cybersecurity Engineer - Cloud

Saic

Beale Air Force Base, CA • On-site

$160 - $200/hr

Other

Re-posted 12 days ago


SAIC rating

7.8

Company rating: 7.8 out of 10

Based on 80 frontline employees who took The Breakroom Quiz

88th of 226 rated it services


Job description

Description

SAIC is a trusted leader in delivering advanced command and control capabilities across the Department of the Air Force, bringing deep expertise in how cutting edge technologies are engineered, secured, and delivered to the fight. At the center of this mission, the Common Mission Control Center (CMCC) unifies data, sensors, mission applications, cloud based services, and emerging AI enabled automation to give warfighters a decisive edge—turning complex, multidomain information into fast, clear, and actionable decisions in the moments that matter most. The CMCC System Facilitator contract positions SAIC to accelerate how new capabilities are integrated, tested, secured, and transitioned into operational use, working side by side with operators, engineers, Capability Providers, and government teams to ensure every delivery strengthens mission readiness. This effort offers the chance to directly shape how the Air Force sees, decides, and acts across all domains—making a tangible and immediate impact on warfighter effectiveness.

The Cybersecurity Engineer (Cloud) secures and accredits CMCC’s multi tenant cloud environments (Dev, Integration, Test). The role implements JSIG/NIST/STIG baselines, engineers secure multi classification cloud designs, validates Capability Provider and External cyber artifacts, and ensures all required evidence is provided to the Infrastructure TO for Baseline updates. The Cybersecurity Engineer (Cloud) develops RMF/ATO packages for cloud environments, partners closely with DSOP, Platform, CE, and Cloud SMEs, and contributes hands on effort to early DSOP/cloud design and environment build out.

Job Duties Include:

  • Build and secure multi‑tenant CMCC cloud environments.
  • Implement JSIG, NIST SP 800‑53, STIG, and MLS/MILS baselines across Dev/Integration/Test cloud enclaves.
  • Own RMF/ATO packages for cloud environments, producing SSP, POA&M, and full RMF evidence.
  • Validate STIG, ACAS/Nessus, SAST/DAST, and container‑security outputs prior to environment promotion.
  • Perform functional validation of CP/External cyber artifacts; coordinate delivery of validated evidence to Infrastructure TO.
  • Maintain cloud‑aligned continuous monitoring, including audit logs, cloud telemetry, and Prometheus/Grafana security metrics.
  • Support Cloud + DSOP joint early design efforts; collaborate to integrate pipeline‑aware cloud security.
  • Validate IaC/CaC baselines (Terraform, Ansible, Helm) for secure, consistent cloud deployments and promotion gates.
  • Provide cyber recommendations during CCB promotion evaluations.

Qualifications

Required Qualifications & Experience:

  • Bachelors and nine (9) years or more experience; Masters and seven (7) years or more experience ; PhD or JD and four (4) years or more experience.
  • Proven experience securing multi classification cloud environments.
  • Hands on experience performing STIG review/hardening, validating ACAS/Nessus outputs, and adjudicating SAST/DAST results.
  • Experience maintaining RMF/ATO artifacts (SSP, POA&M, continuous monitoring evidence).
  • Familiarity with Jira/Xacta workflows for RMF and vulnerability tracking.
  • DoD 8140 aligned certifications: CISSP, CCSP, CASP+, or equivalent.

Desired Qualifications and Experience:

  • Experience architecting and securing hybrid cloud and MLS/MILS cross domain environments.
  • Prior support to SCA assessments (finding remediation, documentation, assessor coordination).
  • Knowledge of secure DevSecOps pipeline integration, including image signing, SBOM/SCA, and environment gate validation.

Desired Skills and Certifications:

  • Experience with advanced cyber assessment, scanning, and STIG automation tools.
  • Experience with cloud IaC/CaC security tooling (Terraform, Ansible, Helm, Argo CD).
  • Familiarity with Zero Trust architecture, container hardening, and cloud security automation platforms.
  • Strong documentation and communication skills aligned with RMF evidence and CMCC governance.
Target salary range: $160,001 - $200,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.
#J-18808-Ljbffr

What SAIC employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom