1

Fips Certification Jobs (NOW HIRING)

FIPS Security Specialist

Leesburg, VA ยท On-site

$120K - $150K/yr

As a FIPS Security Specialist, you'll engage with customers as a technical point of contact ... CERTIFIED VALIDATION PROFESSIONAL (CVP) certification is recommended for enhancing skills and ...

Staff Technical Project Manager

San Jose, CA ยท On-site

$163 - $253/hr

Experience and knowledge with FIPS certification processes is a plus. * Proven experience managing complex technical projects across multiple stakeholders; excellent communication skills required.

Certification Specialist

Ashburn, VA ยท On-site

$80 - $120/hr

Collaborate with the rest of the certification team to further certify data security products according to Common Criteria, FIPS, PCI, and other certification schemes; * Assist in developing a ...

Drive the Security Development Lifecycle including architecture, threat modeling, security code review, fuzz testing, vulnerability testing, FIPS certification support, and OCP S.A.F.E. compliance

Senior Tech Lead

New York, NY ยท On-site

$125K - $171K/yr

Expertise enforcing FIPS 140 HSMs via KMS, AES-256 encryption at rest, and TLS 1.2+ FIPS in transit. Certifications: AWS Certified Security - Specialty or AWS Certified Advanced Networking ...

Post-Quantum Security Project Manager

Houston, TX ยท On-site

$62 - $80.25/hr

This will include developing a Cryptographic Bill of Materials and evaluating PKI, certificates ... NIST FIPS 203 (ML-KEM), FIPS 204 (ML-DSA), FIPS 205 (SLH-DSA), or hybrid cryptographic ...

next page

Showing results 1-20

Fips Certification information

What is FIPS certification?

FIPS certification refers to compliance with the Federal Information Processing Standards (FIPS), which are publicly announced standards developed by the United States federal government for use in computer systems by non-military government agencies and contractors. FIPS certification is primarily required for cryptographic modules and algorithms to ensure they meet specific security requirements. Companies seeking to work with federal agencies often need FIPS 140-2 or FIPS 140-3 certification for their products, demonstrating that their encryption technologies are secure and reliable. The certification process involves rigorous testing by accredited labs and approval by the National Institute of Standards and Technology (NIST).

What are some typical challenges faced during the FIPS certification process, and how can they be managed?

Professionals involved in FIPS Certification often encounter challenges such as navigating complex regulatory requirements, maintaining thorough documentation, and ensuring every component complies with cryptographic standards. The process can also require close coordination with testing labs and government agencies, which may introduce unforeseen delays. To manage these challenges effectively, staying up-to-date with current FIPS standards, maintaining open communication with all stakeholders, and adopting a proactive approach to documentation and testing are essential. Collaborating closely with engineering, compliance, and quality assurance teams can help streamline the process and resolve issues promptly.

What are the key skills and qualifications needed to thrive as a FIPS certification specialist, and why are they important?

To thrive as a FIPS Certification Specialist, you need a solid understanding of information security principles, cryptographic standards, and regulatory compliance, typically supported by a relevant degree and experience in cybersecurity or IT. Familiarity with NIST FIPS 140-2/140-3 requirements, cryptographic modules, and certification management systems is essential, along with knowledge of validation processes and tools. Strong analytical skills, attention to detail, and effective communication are vital for interpreting complex standards and collaborating with vendors and government agencies. These skills ensure accurate certification, regulatory compliance, and secure technology implementations within highly regulated environments.

What is the difference between Fips Certification vs Data Security Analyst?

AspectFips CertificationData Security Analyst
Required CredentialsFIPS standards, compliance certificationsSecurity certifications (CISSP, CISA), technical skills
Work EnvironmentIT, government, compliance-focusedIT, cybersecurity teams, corporate environments
Industry UsageFederal agencies, regulated industriesPrivate sector, finance, healthcare

Fips Certification focuses on ensuring products meet federal security standards, primarily for compliance. Data Security Analysts implement and monitor security measures within organizations. While Fips Certification is about product compliance, Data Security Analysts work on protecting data assets. Both roles are essential in cybersecurity but serve different functions within the industry.

More about Fips Certification jobs

What cities are hiring for Fips Certification jobs?

Cities with the most Fips Certification job openings:

What states have the most Fips Certification jobs?

States with the most job openings for Fips Certification jobs include:

Infographic showing various Fips Certification job openings in the United States as of August 2026, with employment types broken down into 2% As Needed, 73% Full Time, 17% Part Time, and 8% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution.

Security/Certification Engineer - FIPS/CC (Mobile Devices)

Infomatics corp

Mountain View, CA โ€ข On-site

Other

Re-posted 16 days ago


Job description

Location : Mountain View, California

WHO we're looking for:

We are looking for an individual who has experience in the common criteria evaluations of IT products and who has experience with FIPS validation of cryptographic modules ( FIPS 140-3) . They will be responsible for the end-end validation of the products ( performing initial assessment of the security functions and specifications; consult with various teams in the development of the process, design, and documentation required for the common criteria evaluations of our Mobile Device products and the FIPS 140-2/3 accreditation of our cryptographic modules.

Role and Responsibilities:

  • Develop the security target for our products, assist with the testing,documentation and working with the necessary engineering teams during the evaluation.
  • Develop plans and procedures using applicable security controls, including NIAP Protection Profiles (MDFPP, VPN, WLAN, Biometric enrollment, and verification), assist with the CAVP algorithm testing ,drafting and review of the security policies for our cryptographic modules according to the FIPS 140-3 specifications, possess information around the DCID 6/3, DoD 8500, or NIST SP 800-53.
  • Assist in the development and review of all test reports and required certification documentation for all the Common Criteria evaluations and FIPS 140-2/3 accreditation.
  • Experience building testing environments, performing testing and reporting results (technical writing) for all of the common criteria and FIPS evaluations.
  • Develop mitigation strategies to address vulnerabilities uncovered during security testing; and assist with completing all the required documentation to meet the specifications and certification requirements, as required.
  • Perform vulnerability analysis of product or system designs against applicable security criteria using common tools, including Nessus, NMAP, and Wireshark.
  • Project POC with Internal/External audience when required.
Skills:
  • Self-motivated individual with the ability to thrive in a team-based or independent environment.
  • Detail-oriented with strong organization skills.
  • Ability to work in a fast-paced environment.
  • Limited supervision and the exercise of discretion.
  • Ability to comprehend security standard requirements and specifications and apply them to products.
  • Excellent communication (written/verbal) skills and analytical skills.

Required Experience and Education:

  • 5+ years of technical experience in Common Criteria evaluations NIAP-managed Common Criteria Evaluation and Validation Scheme (CCEVS or Scheme) of any product in the US scheme . Mobile device and Software knowledge highly preferred.
  • Bachelor's Degree in Electrical Engineering, Computer/Information Science, Information Assurance/Cybersecurity, or equivalent degree (Master's Degree preferred).
  • Knowledge of common security related protocols and their design (i.e., SSH, IPsec, TLS, etc.)
  • Be highly proficient in FIPS 186-4/5, SP 800-186, SP800-90B and the FIPS 140-3 requirements and have knowledge around the cryptographic encryption algorithms, key exchange algorithms, hashing/message authentication algorithms, PKI, random number generators .