RMF IT Security Analyst
System One
Job Title: RMF IT Security Analyst Location: Bethesda, Maryland Type: Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position Summary The RMF IT Security Analyst serves as a mid-level cybersecurity professional. Working under Lead and Senior RMF personnel, the analyst independently supports RMF lifecycle activities, security assessments, continuous monitoring, and compliance initiatives while mentoring junior staff. Work is primarily remote with occasional on-site meetings. Key Responsibilities Support the implementation and maintenance of the NIST RMF program. Develop, review, and maintain RMF documentation including SSPs, SARs, POA&Ms, and authorization packages. Support system categorization, security control selection, assessments, authorization, and continuous monitoring. Maintain the Risk Management Register and track remediation activities. Support cybersecurity audits and assessments conducted by NIH, HHS, OIG, GAO, and other oversight organizations. Support Cybersecurity Supply Chain Risk Management (C-SCRM) activities, including vendor documentation and SBOM reviews. Manage or assist with Risk Mitigation Waivers, documentation, approvals, annual reviews, and tracking. Coordinate contingency plan testing and document results and corrective actions. Communicate risk posture and compliance status while collaborating with system owners, ISSOs, and technical teams. Provide technical guidance and mentoring to junior analysts. Required Qualifications Bachelor's degree in a related technical field (or equivalent experience) and 3–5 years supporting RMF, cybersecurity compliance, or information security programs. Preferred Qualifications Experience supporting federal civilian agencies, including NIH, HHS, or other Federal agencies. Familiarity with NIST RMF, NIST SP 800-37, NIST SP 800-53 Rev. 5, and the Joint Cybersecurity Assessment Methodology (JCAM) . Experience using eMASS or similar Governance, Risk, and Compliance (GRC) platforms. Experience supporting cybersecurity audits, POA&Ms management, continuous monitoring, and contingency planning. Knowledge of Cybersecurity Supply Chain Risk Management (C-SCRM). Experience developing or reviewing SSPs, SARs, SAPs, POA&Ms, and Authorization Packages. Desired Certifications ISC2 Certified in Cybersecurity (CC) CompTIA Security+ CompTIA CySA+ CompTIA SecurityX (formerly CASP+) CompTIA PenTest+
CAP/CGRC
CISSP
CISM Knowledge, Skills, and Abilities Strong analytical, organizational, and communication skills with knowledge of RMF processes, documentation, and federal cybersecurity compliance. Ability to collaborate with system owners, ISSOs, and technical teams. Work Environment This position is primarily remote with occasional on-site meetings or support activities as required. System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan. System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law. #J-18808-Ljbffr System One- System One in Bethesda, Maryland is seeking a mid-level RMF IT Security Analyst to support RMF lifecycle activities, security assessments, continuous monitoring, and compliance initiatives. You will work under Lead and Senior RMF personnel, mentoring junior staff, with...SuggestedRemote job
- Booz Allen Hamilton is seeking an experienced security analyst to support VA information systems, guiding RMF steps and ATO activities from planning through production... ...controls, and ensure compliance across diverse IT environments. Strong communication and leadership...Suggested
- Phase2 Technology is seeking a Senior Security Analyst to partner with VA ISO/ISSO, site managers, and stakeholders to drive RMF steps 0-6 and ATO activities. You will identify and mitigate risks, elevate issues to leadership, apply VA policies, and produce security documentation...Suggested
- Cybersecurity Analyst - Tier 1 (Security Operations Center Analyst) Location: Bethesda, MD (Hybrid; On‑site as Required) Clearance: Tier 2 Public... ...Cybersecurity Framework NIST Risk Management Framework (RMF) Ticket Management Technical Documentation Microsoft Office...SuggestedFull timeWork at officeShift workRotating shiftAfternoon shift
- DescriptionSAIC is looking for a Senior Information Systems Security Analyst to join our team supporting an important US government agency in... ...is an exciting opportunity to work with a team responsible for IT Security Risk and Compliance support by providing direct...SuggestedWork at office2 days per week
- ...support of U.S. citizens. Job Description Information Security Analyst Duties and Responsibilities: Design, implement, and maintain... ...Technical Skills: SCAP, STIG, Patching, eMASS, and related RMF tools Cybersecurity, Systems Administration, implementation...Remote work3 days per week
- ...Washington, DC (onsite) Type: Contract Compensation: $50.88/HR on W2 Security Clearance: Ability to obtain and maintain SEC Public Trust (or... ..., Trellix/McAfee ePO, or Microsoft Security Operations Analyst (preferred). System One, and its subsidiaries including Joul...Contract workLocal area
$102.5k - $188.9k
...grow with confidence, and proactively manage to secure success.Cyber threats continue to evolve, and organizations... ..., and respond to exploitation activity before it disrupts business operations. As a Cyber Exploitation Analyst, you will support cyber defense efforts by...Work at office- ...Position Summary: The Information Security Analyst plays a critical role in protecting the association's member data, proprietary research... ...third-party integrations. o Collaborate with vendors and IT teams to remediate findings. • Policy & Compliance o...
$105k - $130k
...the mission of AHRI. AHRI has an opening for an Information Security Analyst . This position plays a critical role in protecting the... ...hands-on work experience in relevant information security or IT security roles. Experience in nonprofit or association environments...Work experience placementFlexible hours- ...Clearance: TS/SCI w/Polygraph VMR Strategic Solutions is seeking an RMF/Security Assessment. Are you interested in joining a dynamic team responsible for supporting USCYBERCOM’s internal command IT systems, as well as enterprise-wide cyberspace operations systems? We’...Full timeShift work
- ...TLA is seeking a detail-oriented and proactive Information System Security Analyst to join our IT department. This critical role involves safeguarding our organization's sensitive data and computer systems from evolving cyber threats. The analyst will be responsible for...
- ...Looking for an innovative organization and the opportunity to learn and grow professionally? We can help! We are seeking a IT Security Operations Analyst for the IT Technology Services contract. This project will provide IT service desk, systems, network, and security...Full timeContract workPart timeWork at officeRemote workMonday to Friday
- Coreone is hiring a Security Analyst in McLean, Virginia to support cybersecurity operations, compliance, and risk management for IC systems. This role is pivotal in ensuring all systems meet stringent federal security requirements while enabling secure cloud and on-premises...
- IT - Information Security/Privacy Analyst I Summary: The CIOCC Tier 1 Analyst shall be responsible for the following, but not limited to: Analyze and respond to security events and incidents from SIEM, Firewall (FW), Intrusion Detection Systems (IDS), Intrusion Prevention...Shift workAfternoon shift
- ...private-sector and public-sector clients to help solve national security problems. Job Description Research, verify and document information... ...scientific, or technical disciplines) 5-7 years experience in IT security, including Certification and Accreditation and/or IT...
$99k - $225k
ISSO Security Analyst, SeniorThe Opportunity:As a Security Analyst on our team, you’ll use your experience... ...completion of Risk Management Framework (RMF) steps 0-6 ATO activities and... ...related to system installations, a variety of IT systems, networks, hardware, and software...Full timeContract workPart timeWork at officeLocal areaRemote work- ...deliver mission success. We build the right IT solution for government clients by... ...com/careers . The Senior Information Security Analyst will perform the core cybersecurity assessment... ..., DISA STIGs, FIPS, OMB A-130, and RMF guidance. Required Qualifications •...Full timeStart working todayFlexible hours
- ...positions requiring Top Secret / SCI clearances, and IT certifications. The Information Security Analyst plans, implements, upgrades, or monitors security measures... ...years of experience with Risk Management Framework (RMF) security controls. ~3 - 5 years of experience with...Full timeWork at office
- SilverEdge Government Solutions, LLC is seeking an Architectural Engineering Analyst in Bethesda, Maryland. The role focuses on ensuring compliance with security standards for various diplomatic buildings and requires an active TS/SCI clearance. Candidates should possess...
- ...Nation's most complex national security challenges. In order to... ...Summary We are seeking a Security Analyst to support cybersecurity operations... ...with NIST SP 800-53 / 800-37 RMF, FedRAMP baselines, ICD 503... ...degree or higher in Cybersecurity, IT, or related field and 5+ years...
$99k - $225k
As a Senior Security Analyst on our team, you will partner with the Veterans Affairs (VA) Information... ...of the Risk Management Framework (RMF) steps 0‑6 and Accountable Targeted Operations... ...steps 0‑6 and ATO activities for various IT systems, networks, hardware, and software...Local area- SilverEdge Government Solutions in Bethesda is looking for an Architectural Engineering Analyst to ensure compliance with security standards for diplomatic buildings. The role involves reviewing project plans, offering solutions to security deficiencies, and contributing...
- Peraton in Bethesda, MD seeks a Policy and Strategy Analyst to support government leads in security policy development, interagency coordination, and the communication of shared vision, mission, values, and goals. The role includes drafting and updating policy, guiding...
- Strategic Innovation Group (SIG) is seeking multiple System Security Analysts to support the security, compliance, and risk management of production... .../QUALIFICATIONS Familiarity with Risk Management Framework (RMF) processes. Experience with vulnerability scanning and...Temporary workFor contractors
- Peraton is seeking a Policy & Strategy Analyst to support our customer onsite in Bethesda, MD. You will assist with developing personnel vetting policy and strategy, and communicate shared vision, mission, values, and goals. Responsibilities include drafting policy, supporting...
$69.55k - $125.73k
...CIV IT at Leidos currently has an opening for a Mid‑Level Cyber Security Analyst to provide a full range of cyber security services on a long‑... ...Systems Security Professional or Associate Formal IT Security/Network Certification such as SANS GIAC Certified Intrusion...Long term contractPermanent employmentFull timeWork experience placementImmediate start- RWD Consulting, LLC seeks a Program Analyst to support Behavioral Health Services at Walter Reed National Military Medical Center in Bethesda... ...leadership to drive improvements in clinical operations, staffing, and patient care; security #J-18808-Ljbffr RWD Consulting, LLC
$83.3k - $112.7k
...Qualifications: Operating Systems (OS), Security Operations, Security Software, Troubleshooting... ...: NACI (T1) Job Family: Cyber and IT Risk Management Skills: Operating Systems... ...GDIT is looking for a Information Security Analyst to join our National Institutes of Health...Temporary workImmediate startRemote workWorldwideFlexible hours- General Dynamics Information Technology (GDIT) is seeking an Information Security Analyst to join the NIH CIT Hosting and Storage Services Program in Bethesda, MD. This hybrid role requires you to obtain and maintain a Public Trust and to perform routine security operations...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to RMF IT Security Analyst. Be the first to apply!
- entry level information security analyst Bethesda, MD
- senior information security analyst Bethesda, MD
- security analyst remote Bethesda, MD
- security consultant Bethesda, MD
- network security consultant Bethesda, MD
- security specialist Bethesda, MD
- security advisor Bethesda, MD
- security coordinator Bethesda, MD
- IT security Bethesda, MD
- application security analyst



