RMF Cyber Security Analyst
Nationwide IT Services · Quantico, VA
About this role
## RMF Cyber Security Analyst **Location:** Quantico, VA (100% on-site at RKB) **Employment Type:** Full Time | Mid Level **Clearance:** Active Secret Required **Certification:** DoD 8570-M/8140-M IAT Level II --- ### Overview Nationwide IT Services (NIS) seeks an RMF Cyber Security Analyst to support cybersecurity policy, operations, assessments, and Risk Management Framework (RMF) lifecycle activities for a program, organization, system, or enclave. --- ### Responsibilities - Support proposing, coordinating, implementing, and enforcing information system/enclave cybersecurity policies, standards, and methodologies - Maintain operational security posture to ensure cybersecurity standards and procedures are established and followed - Perform day-to-day security operations - Conduct IT security control assessments - Provide configuration management (CM) for security software, hardware, and firmware; manage changes and assess security impact - Prepare and review documentation including **Systems Security Plans (SSPs)** and **Security Assessment & Authorization (SA&A)** packages per DoD **RMF** procedures - Interface with Project/Program Managers, SMEs, and ISSMs on major application/general enclave issues and updates - Drive the **7 steps of the RMF lifecycle**: Prepare, Categorize, Select, Implement, Assess, Authorize, Monitor - Create and maintain security packages in **eMASS** - Review vulnerability scan results (e.g., **ACAS** or **Nessus**) and coordinate remediation - Serve as a bridge between technical engineers, **ISSOs**, and executive leadership - Track and report **POA&M** items; RMF status, annual assessments, **ATO**, and Continuous Monitoring actions - Ensure documentation compliance and support ATOs for multiple systems - Prepare briefs and A&A documents for approvals supporting RMF reporting and policy development - Perform **ISSO Type** duties per **DoD 8510 & 8500** - Provide risk mitigation strategies - Perform quality checks on POA&Ms, risk assessments, and RMF documentation - Conduct security control and risk assessments to support authorizations - Review existing documentation bi-annually for accuracy and relevance to current DoD and DCSA mandates - Assist with research on cybersecurity items of interest - Perform other duties related to risk management, communication, and assessments --- ### Minimum Qualifications - **Secret clearance** - Bachelor’s degree in IT, Information Systems Management, Cyber Security, or related field **or** equivalent experience - **5+ years** hands-on technical cyber security experience and knowledge of: - DISA Security Technical Information Guides - DoD A&A process - **NIST SP 800-53** - IA Technical Framework - Applicable DoD cyber security / risk management policies - **Must have DoD or eMASS experience** - **1+ year** knowledge of current security tools, hardware/software security implementation, communication protocols, and **Microsoft Office** - Must meet **DoD 8570-M/8140-M IAT Level II** --- ### Benefits & Compensation - **Salary Range:** **$100,000–$110,000** annually (guideline; depends on scope, experience, education, skills, and market) - Medical, dental, and vision insurance - Life and disability insurance - 401(k) with employer match - Paid holidays and PTO (sick/vacation) - Commuter benefits - Employee Assistance Program (EAP) - Educational reimbursement - Pet insurance --- ### About Nationwide IT Services (NIS) NIS is a CVE-verified Service-Dis
Listing freshness
CronJobs last confirmed this listing 1h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.