RMF Cybersecurity Analyst (15.43)
$90k - $110kOCT CONSULTING LLC
OCT Consulting is a business management and technology consulting firm that supports Federal Government clients. We provide consulting services in the areas of Strategy, Process Improvement, Change Management, Program and Project Management, Acquisition/Procurement, and Information Technology. OCT currently has an opening for an RMF Cybersecurity Analyst to work with a federal client. The analyst will support the Information Systems Security Officer / Systems Security and Privacy Officer (ISSO/SSPO) in executing Risk Management Framework (RMF) compliance, Security Assessment and Authorization (SA&A) activities, and information security governance across a complex federal health statistics environment. This position is contingent upon contract award. Day-to-day responsibilities Assist the ISSO/SSPO in interfacing with federal staff, contractors, and business partners to execute information security aspects of the agency's CIPSEA obligations, IT modernization, and cloud migration efforts. Support Security Assessment and Authorization (SA&A) activities including agency-hosted, contractor-hosted, cloud-hosted, and FedRAMP SA&A; assist with interpretation of regulations and policy guidance. Develop, track, and update Plans of Action and Milestones (POA&Ms) for identified vulnerabilities and risks; report remediation status monthly. Prepare and maintain System Security Plans (SSPs) in accordance with NIST SP 800-18 and NIST SP 800-53. Conduct and document Risk Assessment Reports (RARs) consistent with NIST SP 800-30 and applicable agency policies. Support FISMA reporting to the Department of Homeland Security and OMB; prepare gap reports of agency practices against evolving federal, HHS, and agency requirements. Assist with Privacy Threshold Analyses (PTAs) and Privacy Impact Assessments (PIAs) in accordance with HHS policy and OMB M-03-22. Prepare weekly project management/status reports and monthly RMF status reports for the COR and Program POC. Develop and maintain reusable templates, standard operating procedures (SOPs), and process documentation (e.g., SSP templates, risk assessment templates, process flow diagrams). Coordinate with agency Security, Business, and Technical Stewards; provide stakeholder advisory support and training as required. Support EPLC security reviews, IT acquisition security reviews, and security governance coordination activities. Assist in applying CIPSEA oversight in coordination with the agency Confidentiality Officer. Maintain compliance with all agency security training requirements including annual Security Awareness Training (SAT) and role-based training (RBT). Qualifications Must be a U.S. Citizen. Minimum of 3–5 years of experience in federal information security, RMF implementation, or cybersecurity compliance. Demonstrated experience with NIST SP 800-37, 800-30, 800-53/53A, 800-60, and FIPS 199/200. Experience supporting FISMA compliance and reporting activities for a federal civilian agency. Experience developing, reviewing, and maintaining SA&A documentation artifacts (SSPs, RARs, POA&Ms, Contingency Plans). Proficiency with Governance, Risk, and Compliance (GRC) platforms such as Archer or comparable tools. Strong technical writing skills sufficient to independently produce clear, accurate, and professionally formatted security and compliance documentation. Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field (or equivalent work experience). Ability to obtain a Public Trust (Moderate Risk – Level 5 or higher) background investigation; an HSPD-12/PIV card will be required for facility and network access. Work will be performed primarily at the agency facility in Hyattsville, MD, with authorized telework on a situational basis. Must be able to commute to the Hyattsville, MD location. Preferred Qualifications Certified Information Systems Security Professional (CISSP), Certified Authorization Professional (CAP), Certified Information Security Manager (CISM), or equivalent certification. Experience supporting HHS or other Federal civilian agency environments. Experience with CIPSEA, Privacy Act compliance, and handling of sensitive health statistics data. Familiarity with FedRAMP authorization activities and cloud migration security governance. Experience with continuous monitoring programs and vulnerability remediation in federal environments. OCT offers competitive compensation packages and a full suite of benefits which includes: Medical, Dental, and Vision insurance Retirement savings 401K plan provided by an industry leading provider with 3% employer contributions of the employee's gross salary Paid Time Off and Standard Government Holidays Life Insurance, Short- and Long-Term disability benefits Training Benefits Salary Range: $90,000 – $110,000 yearly commensurate with experience, education, and qualifications. #J-18808-Ljbffr
$90k - $110k
...Program and Project Management, Acquisition/Procurement, and Information Technology. OCT currently has an opening for an RMF Cybersecurity Analyst to work with a federal client. The analyst will support the Information Systems Security Officer / Systems Security and...SuggestedContract workTemporary workFor contractorsWork experience placementRemote work- Dark Wolf is seeking Cybersecurity Analysts to develop, manage, and maintain the security posture of information systems in Washington, DC. The... ...the authorization process, ensuring compliance with NIST & RMF standards, and managing cybersecurity best practices. The ideal...Suggested
- People, Technology & Processes, LLC is seeking a Cybersecurity Analyst V (Senior) based in Washington, DC. The candidate must have at least 10 years... ...or a related field. Responsibilities include leading RMF lifecycle execution, coordinating Security Authorization Packages...Suggested
- ...Ellumen is looking for a Cybersecurity Analyst based in Silver Spring, Maryland, who will support cybersecurity and Risk Management Framework (RMF) activities for the Defense Health Agency (DHA). The successful candidate will liaise with Information System Security Managers...Suggested
$130k
...Overview Senior Cybersecurity Analyst LOCATION: Washington DC - Navy Yard JOB STATUS: Full... ...degree in a relevant field and fifteen (15) years of relevant experience in cyber... ...In depth knowledge of all steps in the RMF Process. Ideal candidate has Risk Management...SuggestedFull timeFlexible hours- ...Ellumen in Silver Spring, Maryland, is seeking a Cybersecurity Analyst to support cybersecurity operations for the Defense Health Agency (DHA).... ...ensuring the security and integrity of DHA systems, focusing on RMF and compliance. The successful candidate will manage...
- ...Senior Cyber-Security Analyst / Navy Validator Provides Information Assurance (IA) support for the Office of Naval Research (ONR) in... ...and networks. Implements Navy Risk Management Framework (RMF) Implementation Plan IAW DODI 8510.01. Develops, coordinates,...For contractorsWork at officeLocal area
- ...Astrion is seeking a Senior Cybersecurity Analyst located at the Washington Navy Yard in Washington, DC. This role involves leading efforts in the Risk Management Framework process, providing cybersecurity expertise, and ensuring compliance with DoD standards. The ideal...Full time
$100k - $145k
...Dark Wolf is seeking Cybersecurity Analysts to join a collaborative team to develop, manage, and maintain the security posture of information... ...Authorization (A&A), continuous monitoring and compliance with NIST & RMF. The successful candidate will support your team and...Work at officeLocal area$190k - $200k
Job Title Active TS/SCI with Polygraph Required. Please do not apply if you do not currently possess this level of clearance. Telework: None Basic Requirements ~ Security+ Cert ~12 years of experience in the Information Technology field ~ Bachelor's degree...Immediate startRemote work- ...A leading technology company seeks a Cyber Security Analyst in Suitland, MD to support government missions. The role involves developing... ...with federal standards. Candidates should have a BS in Cybersecurity and at least four years of relevant experience. A security certification...
- ...This role involves managing server patches, emphasizing security posture during deployments, and ensuring compliance with FISMA and RMF standards. Strong experience with server imaging and security patch testing is essential. The position requires a Top Secret clearance...
$127k - $138k
...Position Type: Full Time. Salary Range: $127,000.00 - $138,000.00. Title: Cybersecurity Analyst V (Senior). Clearance Type: Secret with the ability to obtain a Top Secret. Responsibilities Lead RMF lifecycle execution: Develop, manage, and maintain RMF artifacts (system...Full time$105.8k - $124.2k
...As a Sr. Cybersecurity Analyst I , you'll focus on leading Authorization to Operate (ATO) efforts from start to finish-owning documentation,... ...succeed: ~5+ years of experience in cybersecurity compliance / RMF / ATO support (Strong candidates with slightly less...Full timeWork experience placementLocal areaFlexible hours- ...A decision analytics firm is seeking a Senior Analyst in Arlington, VA, to provide cybersecurity expertise and lead Risk Management Framework processes. The ideal candidate will have a Bachelor's degree in Cybersecurity Management and at least 10 years of direct experience...
- ...PingWind is looking for a Cybersecurity Analyst in Alexandria, VA to lead governance, risk, and compliance activities, ensuring compliance with DoD cybersecurity standards. You will have a role in monitoring security controls and managing vulnerability assessments. The...
$90k - $110k
...cloud migration support, acquisition security reviews, and other RMF-related activities as requested. Support development and... ...in cloud security, federal information security compliance, or cybersecurity operations. Demonstrated experience with cloud security governance...Contract workTemporary workFor contractorsWork experience placementRemote work- ...DecisionPoint Corporation is seeking a Cyber Security Analyst – Intermediate to support cybersecurity governance and operational defense. This role involves RMF/A&A and TRM specialization, alongside frontline SOC support through Microsoft Sentinel monitoring. The applicant...Remote work
- A federal services provider is seeking a Cybersecurity Analyst in Alexandria, VA, focused on governance, risk, and compliance (GRC) activities. The ideal candidate should have a minimum of 10 years of relevant experience and senior-level cybersecurity certifications. You...
- ...ensuring compliance with NIST and FedRAMP standards. The successful candidate will have strong expertise in Azure networking, hands-on experience with RMF processes, and will develop key security documentation. This is a 6 month contract to hire position. #J-18808-Ljbffr...Contract work3 days per week
- A cybersecurity solutions provider is seeking a Cyber Security Analyst - Intermediate to support cybersecurity governance and defense. This role requires expertise in RMF/A&A processes and SOC operations, utilizing tools like Microsoft Sentinel for monitoring. Preferred...Remote job
$30.08 - $52.65 per hour
...Plan with employer contribution Paid Time Off and paid holidays Health and wellness programs and more! Position Summary The Cybersecurity Analyst safeguards, monitors and continuously advances the organization’s security posture across complex hybrid environments, including...Local area- ...Cybersecurity Analyst – Crypto Modernization Alexandria, United States | Posted on 06/11/2026 Clearance Requirement Active Top Secret/SCI IAT/IAM... ...Communications Security (COMSEC); Risk Management Framework (RMF); NIST cybersecurity standards; cybersecurity architecture;...Work at officeImmediate startFlexible hours
- ...Description Job Description Salary: Senior Information System Security Officer / RMF Lead Position Overview The Senior ISSO / RMF Lead serves as the senior cybersecurity compliance and authorization lead supporting the CDC National Center for Health...For contractors
$140.5k - $210k
...Summary Oversees and/or participates in the instrumentation and administration of cybersecurity tools, appliances, and measures to protect the Board’s IT assets and ensure the Board’s ability to conduct its mission. Utilizes cybersecurity tools such as firewalls, proxies...Full timeWork at office- ...secret Clearance Certifications: Holds senior-level cybersecurity and GRC certifications appropriate for RMF and compliance roles, such as CISSP, CAP, CISM, or... ...Position Description PingWind is seeking a Cybersecurity Analyst responsible for leading governance, risk, and...Temporary workFlexible hours
- ...The Cyber Security Specialist II/III supports cybersecurity engineering and compliance execution in a NAVSEA Program Office Support role. This... ...in 3-6 months. Requirements - Experience supporting RMF/cyber compliance activities in defense or regulated...Work at office
$70k - $85k
...Assistance Program. Most benefits take effect within 30 days of employment, and some require a waiting period. Job Summary The Cybersecurity Analyst is responsible for protecting the organization's information systems, networks, and data from cyber threats. This role...Temporary work$110k - $160k
...Cybersecurity SOC Analyst II Washington, District of Columbia, United States CHAOS Industries is redefining modern defense with a multi-product portfolio that gives the ultimate advantage—domain dominance. The company's products are powered by Coherent Distributed...Contract workWork experience placementCasual workRelocation package- ...are changing the way small businesses hire. We are seeking a Cybersecurity Analyst to report to the Cybersecurity Program Manager. This... ...Visio, Excel, Word, and PowerPoint Experience working with RMF and NIST 800-53 Experience working with cyber security tools...Local areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to RMF Cybersecurity Analyst (15.43). Be the first to apply!
- cyber security Hyattsville, MD
- cybersecurity software engineer Hyattsville, MD
- remote cyber security Hyattsville, MD
- IT cyber security Hyattsville, MD
- junior cyber security consultant
- microsoft cybersecurity analyst
- senior cybersecurity analyst
- comptia cybersecurity analyst
- cybersecurity rmf analyst
- cyber security consultant


