1

Cybersecurity Rmf Isso Jobs (NOW HIRING)

We are seeking an experienced ISSO Lead to support an enterprise cybersecurity program, providing leadership and oversight in applying the Risk Management Framework (RMF) and NIST 800-series ...

Senior Cybersecurity Analyst

San Diego, CA · On-site

$106K - $137K/yr

You will be instrumental in identifying and mitigating traditional Navy Cybersecurity (RMF) process ... Familiarity with processes and procedures NAVWAR ISSM/ISSO/ISSE utilize for cyber hardening and ...

The ISSO/RMF Lead is responsible for RMF compliance across two ATO systems ANG-DSS and AROWS ... cybersecurity subject matter expertise IAW AFI 33-200, AFMAN 33-282, and DODI 8510.01. Position ...

The ISSO/RMF Lead is responsible for RMF compliance across two ATO systems ANG-DSS and AROWS ... cybersecurity subject matter expertise IAW AFI 33-200, AFMAN 33-282, and DODI 8510.01. Position ...

next page

Showing results 1-20

People also search for

Cybersecurity Rmf Isso information

See salary details

$46K

$118.3K

$184.5K

How much do cybersecurity rmf isso jobs pay per year?

As of Jun 6, 2026, the average yearly pay for cybersecurity rmf isso in the United States is $118,327.00, according to ZipRecruiter salary data. Most workers in this role earn between $95,000.00 and $138,000.00 per year, depending on experience, location, and employer.

What is a Cybersecurity RMF ISSO?

A Cybersecurity RMF ISSO (Risk Management Framework Information System Security Officer) is a professional responsible for ensuring the security and compliance of information systems within an organization, following the guidelines of the Risk Management Framework (RMF). The ISSO plays a key role in assessing, implementing, and maintaining security controls, ensuring that systems meet federal or organizational cybersecurity standards. They collaborate with system owners and other stakeholders to manage risks, document security processes, and support continuous monitoring. RMF ISSOs are particularly common in government and defense sectors, where strict security compliance is required.

What are some common challenges faced by a Cybersecurity RMF ISSO when implementing security controls across multiple systems?

A Cybersecurity RMF ISSO often encounters challenges such as aligning security controls with diverse system architectures, ensuring compliance with evolving regulatory requirements, and coordinating with various stakeholders who may have competing priorities. Balancing thorough documentation with tight project deadlines can also be demanding. Effective communication and strong organizational skills are key to overcoming these obstacles and ensuring all systems maintain their required security posture.

What are the key skills and qualifications needed to thrive as a Cybersecurity RMF ISSO, and why are they important?

To thrive as a Cybersecurity RMF Information System Security Officer (ISSO), you need in-depth knowledge of risk management frameworks (like NIST RMF), security policies, and compliance requirements, typically backed by a degree in cybersecurity or a related field. Familiarity with technical tools such as vulnerability scanners, security information and event management (SIEM) systems, and certifications like CISSP or Security+ are commonly required. Strong attention to detail, effective communication, and the ability to work collaboratively with both technical and non-technical stakeholders are key soft skills for this role. These abilities are vital to ensure that organizational systems remain compliant and secure against evolving cyber threats.

What is the difference between Cybersecurity Rmf Isso vs Cybersecurity Analyst?

AspectCybersecurity Rmf IssoCybersecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentFocus on risk management, compliance, and security frameworks within organizationsMonitor security systems, analyze threats, and implement security measures
Employer & Industry UsagePrimarily in government, defense, and regulated industriesAcross various industries including finance, healthcare, and tech

While both roles involve cybersecurity, a Cybersecurity Rmf Isso specializes in risk management and compliance within security frameworks like RMF, often in regulated sectors. A Cybersecurity Analyst focuses on monitoring and analyzing security threats across diverse industries. Understanding these differences helps organizations assign the right responsibilities and certifications for each role.

Infographic showing various Cybersecurity Rmf Isso job openings in the United States as of May 2026, with employment types broken down into 71% Full Time, 25% Part Time, 1% Temporary, and 3% Contract. Highlights an 82% Physical, 5% Hybrid, and 13% Remote job distribution, with an average salary of $118,327 per year, or $56.9 per hour.
Cyber Security Analyst/ISSO

Cyber Security Analyst/ISSO

Arete Associates

Los Angeles, CA • On-site

$88K - $110K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

This job post has expired today. Applications are no longer accepted.


Job description

Job Description Job Description At Areté, we are on the forefront of utilizing innovative solutions, with great minds from all backgrounds, to help solve the nation's most complex security challenges. We strive for an inclusive, collaborative team environment that approaches differences as opportunities for innovation and excellence. As an employee-owned company, we foster an atmosphere that propels diverse career opportunities and professional growth.

Discover your future with us. Areté is immediately seeking a full-time Cyber Security Analyst/Information Systems Security Officer to work primarily in our Northridge, CA facility. The selected candidate will have and maintain a Top-Secret security clearance with SCI access, including a CI polygraph.

The candidate will collaborate with other Cyber Security and IT staff members, travel occasionally, and provide some after-hours support. The candidate will also support a variety of information systems at varying levels of complexity on the classified networks. This position is an on-site position, hybrid and remote options are not available.

Primary responsibilities: Perform duties as ISSO in accordance with JSIG, RMF, and NIST 800-53. Develop, maintain, and update security authorization documentation including System Security Plans (SSPs), Plan of Actions and Milestones (POA&M), SCTMs, ConMon Reports, and audit logs. Conduct security control implementation, validation, and assessment activities.

Perform and document system audits and risk analysis. Manage and execute Continuous Monitoring (ConMon) tasks to ensure compliance throughout the system lifecycle. Support configuration management (CM) processes with a minimum of 1-2 years direct CM experience, including review and documentation of system changes, baseline management, and change control.

Provide incident response support, including investigation, reporting, and remediation of security events. Support preparation for internal and external inspections and assessments. Support ISSM with other duties as assigned.

We have an impressive range of benefits, programs, and perks that we offer: Health & Wellness: Medical, Dental & Vision Insurance Life and Long-Term Disability (LTD) Vision Reimbursement Fitness Reimbursement Financial: Company-funded 5% contribution to your 401(k) retirement plan Company-funded 5% contribution to your Employee Stock Ownership Plan Continuing Education Assistance Work-Life Balance: Flexible Scheduling Paid Time Off (PTO) Paid Parental and Bereavement Leave What We Value: Creativity and innovation in solving challenges Integrity and responsibility in all actions Collaboration across teams and specialties Responsiveness in fast-paced environments Passion for national security and excellence Experiences and Background We Look For (Required Skills): Active Top Secret security clearance with ability to obtain a CI polygraph. 1-2 years of experience performing ISSO or equivalent cybersecurity duties for classified systems. Demonstrated experience with JSIG, RMF, and NIST 800-53 security controls.

Hands-on experience in security auditing, continuous monitoring, and documentation of control implementation. Current IAT Level II Security Certification or higher (Security+, CASP, CySA+, CISSP, GSEC) or ability to obtain within 3 months of the start date. Must have solid technical knowledge on how Windows and Server operating systems are hardened.

Experience with common information system Cyber Security tools, technologies, and STIGs (Nessus/ACAS, SCAP Compliance Checker, STIG Viewer, Microsoft Group Policy, etc.). Strong interpersonal skills, technical writing skills, and the ability to work autonomously and on a team. Strong written communication skills and the ability to document/diagram information systems and procedures.

Must be able to lift 25 pounds. Nice to Have (Preferred Skills): Knowledge of the Risk Management Framework is a plus; Experience with Security Directives, Policies, Publications and Regulations including but not limited to the NIST 800-171, NIST 800-53, JSIG and/or ICD 503; Experience in one or more of the following Cybersecurity tools/technologies: SIEM or Log Reduction & Analysis Tools, McAfee ePO, SCC Tool, Bitlocker, Rapid7 IDR, InsightVM; Technical knowledge on how Linux (RHEL 8/9) systems are configured, hardened, and managed. The salary range for this role depends on the candidate's level of experience: Cyber Analyst/ISSO 1: $80,000 - $90,000 [minimum 1 year experience] Cyber Analyst/ISSO 2: $88,000 - $110,000 [minimum 2-year experience] However, Arete considers several factors when extending an offer of employment, including but not limited to: the position and associated responsibilities, a candidate's work experience, education/training, and key skills.

Other Considerations Areté is committed to the principles of equal employment opportunity and nondiscrimination, and we believe every person has the right to be treated with fairness, dignity, and equal consideration. Areté is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, marital status, national origin, age, veteran status, disability, or any other characteristic protected by applicable federal, state, or local law.

U.S. citizenship is required to meet position eligibility. Successful passage of a criminal background screen is required to meet position eligibility.

Selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Areté will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the Los Angeles Fair Chance Initiative for Hiring. Successful passage of a Department of Transportation (DOT) drug test is required to meet position eligibility.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access our website because of your disability. To request an accommodation, please contact Areté Human Resources at 818-885-2200 for assistance.