1

Fips Certification Analyst Jobs (NOW HIRING)

Business Analyst

$90K - $115K/yr

... ATO (FIPS 199 Moderate). In this role, you will serve as the bridge between business users ... audit-related certifications, such as CISSP, CAP, or Security+ • Experience producing SSPs ...

... CJIS and FIPS compliancy for all County systems. • Perform security audits as directed by ... CJIS level 4 certification. • Valid TX Driver's License. • Must maintain CJIS compliance.

Information Security Analyst Principal

WV · On-site +1

$110K - $149K/yr

Our work depends on a Information Security Analyst Sr Advisor joining our team to support Indian ... FIPS 200, and NIST 800-53. * Security certification such as a CISSP or CISA IT WOULD BE GREAT IF ...

Showing results 21-40

Fips Certification Analyst information

See salary details

$16

$31

$48

How much do fips certification analyst jobs pay per hour?

As of Sep 6, 2026, the average hourly pay for fips certification analyst in the United States is $31.53, according to ZipRecruiter salary data. Most workers in this role earn between $25.24 and $35.82 per hour, depending on experience, location, and employer.

What is a FIPS Certification Analyst?

FIPS Certification Analysts are professionals who specialize in ensuring that products, systems, or processes comply with the Federal Information Processing Standards (FIPS), which are U.S. government standards for data security and interoperability. They support organizations in preparing for FIPS certification by interpreting technical requirements, testing cryptographic modules, and coordinating with certification bodies. Their work helps organizations meet regulatory requirements for handling sensitive government data, especially in industries such as IT, cybersecurity, and defense.

What are the key skills and qualifications needed to thrive as a FIPS Certification Analyst?

To thrive as a FIPS Certification Analyst, you need a solid understanding of cryptographic standards, information security, and regulatory compliance, often supported by a degree in computer science or cybersecurity. Familiarity with NIST standards, FIPS 140-2/140-3 validation processes, and related tools like Cryptographic Module Validation Program (CMVP) documentation systems is crucial. Strong analytical skills, attention to detail, and effective written communication set top analysts apart when preparing certification documentation and liaising with stakeholders. These competencies are essential to ensure secure, compliant cryptographic implementations and successful certification outcomes.

What are some common challenges faced by FIPS Certification Analysts during the certification process?

FIPS Certification Analysts often encounter challenges such as keeping up with evolving cryptographic standards, coordinating documentation with engineering teams, and managing tight project timelines. Navigating complex technical requirements from NIST and ensuring all security modules meet rigorous testing standards can be demanding. Effective communication and organizational skills are essential, as analysts frequently collaborate with multiple stakeholders, including developers, testers, and external auditors, to ensure compliance and resolve issues promptly.

What is the difference between Fips Certification Analyst vs Fips Compliance Specialist?

AspectFips Certification AnalystFips Compliance Specialist
Required CredentialsCertifications in cybersecurity, compliance, or related fields; knowledge of FIPS standardsCertifications in compliance, security, or auditing; familiarity with FIPS requirements
Work EnvironmentTypically in IT, cybersecurity, or government agencies; focus on certification processesOften in compliance departments; focus on regulatory adherence and audits
Employer & Industry UsageUsed by government agencies, tech firms, and security organizationsCommon in regulated industries like finance, healthcare, and government

The Fips Certification Analyst primarily focuses on obtaining and maintaining FIPS certifications, ensuring products meet federal standards. In contrast, the Fips Compliance Specialist concentrates on ongoing compliance and regulatory adherence related to FIPS standards. Both roles require similar certifications and work environments but differ in their core responsibilities—certification versus compliance management.

More about Fips Certification Analyst jobs

What cities are hiring for Fips Certification Analyst jobs?

Cities with the most Fips Certification Analyst job openings:

What are the most commonly searched types of Fips Certification Analyst jobs?

The most popular types of Fips Certification Analyst jobs are:

What states have the most Fips Certification Analyst jobs?

States with the most job openings for Fips Certification Analyst jobs include:

What job categories do people searching Fips Certification Analyst jobs look for?

The top searched job categories for Fips Certification Analyst jobs are:

Infographic showing various Fips Certification Analyst job openings in the United States as of August 2026, with employment types broken down into 2% As Needed, 73% Full Time, 18% Part Time, and 7% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $65,589 per year, or $31.5 per hour.

RMF Analyst- AFMETS

Semper Valens Solutions

Canyon Lake, TX • On-site

Full-time

Posted 13 days ago


Job description

RMF Analyst
Full Time, Remote, San Antonio, TX area
Secret Clearance
**This position is contingent upon contract award**
Overview:
Semper Valens Solutions is seeking a detail-oriented RMF Analyst to support the assessment, authorization, and continuous monitoring of information systems in accordance with the NIST Risk Management Framework (RMF) and applicable federal cybersecurity guidelines (NIST SP 800-37, 800-53, 800-53A, FISMA, DoD 8510.01, and CNSSI 1253, as applicable). This role is critical to ensuring organizational systems achieve and maintain an Authorization to Operate (ATO) by supporting security categorization, control selection, implementation, assessment, and continuous monitoring activities throughout the system lifecycle.
Key Responsibilities
  • Support execution of the RMF process across all six steps: Categorize, Select, Implement, Assess, Authorize, and Monitor
  • Develop, review, and maintain security authorization documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and Risk Assessment Reports (RARs)
  • Conduct security control assessments against NIST SP 800-53/800-53A control baselines and document findings
  • Perform security categorization of information systems using FIPS 199/200 and NIST SP 800-60
  • Coordinate with system owners, ISSOs, and ISSMs to identify, track, and remediate security vulnerabilities and control deficiencies
  • Support continuous monitoring activities, including periodic control assessments, vulnerability scanning review, and configuration compliance checks
  • Assist in the preparation and submission of Authorization to Operate (ATO), Interim ATO (IATO), and Authorization to Test (ATT) packages
  • Utilize GRC tools (e.g., eMASS, Xacta, CSAM, Archer) to manage authorization packages and track compliance status
  • Review and analyze security assessment results, audit logs, and scan reports (e.g., ACAS/Nessus, STIG checklists) to identify risks
  • Support development and tracking of POA&Ms, ensuring timely remediation of identified weaknesses
  • Ensure compliance with applicable frameworks, including FISMA, DoD RMF, CNSSI 1253, and agency-specific cybersecurity policies
  • Prepare risk briefings and status reports for leadership, Authorizing Officials (AOs), and government stakeholders
  • Stay current on evolving NIST guidance, DoD/agency policy updates, and emerging cybersecurity threats affecting authorization requirements

Required Qualifications
  • Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or related field (or equivalent experience)
  • 3+ years of experience supporting RMF, C&A/A&A processes within federal, DoD, or Intelligence Community environments
  • Working knowledge of NIST SP 800-37, 800-53, 800-53A, 800-60, and FIPS 199/200
  • Experience developing or reviewing SSPs, SARs, POA&Ms, and RAR documentation
  • Familiarity with DoD or agency-specific implementation guides (e.g., DoDI 8510.01, ICD 503, CNSSI 1253)
  • Hands-on experience with GRC/eMASS or equivalent RMF tracking tools
  • Understanding of vulnerability management and STIG/SCAP compliance processes
  • Active DoD 8570/8140-compliant certification (e.g., Security+, CySA+, or equivalent) - required or attainable within 6 months of hire
  • Strong written communication skills for technical documentation and stakeholder reporting
  • U.S. Citizenship required; active security clearance or eligibility to obtain one, per position requirements

Preferred Qualifications
  • Active Secret clearance
  • CISSP, CAP (Certified Authorization Professional), or CISM certification
  • Experience with cloud authorization processes (FedRAMP, DoD Cloud Computing SRG)
  • Familiarity with vulnerability scanning tools (ACAS/Nessus, Tenable) and SCAP compliance checkers
  • Experience supporting Cybersecurity Service Provider (CSSP) or SOC operations
  • Knowledge of Zero Trust Architecture principles and their application to RMF
  • Experience working within Intelligence Community (IC) or Defense Industrial Base (DIB) environments

About Semper Valens Solutions:
Semper Valens Solutions, Inc. (SVS) is a Service-Disabled Veteran Owned Small Business (SDVOSB) providing Cost Effective Software and Systems Engineering, Field Support, Training and Full Life cycle Support Management to the DOD and VA community.
At Semper Valens, our vision is to remain a creative, cutting edge and cost-effective solutions provider where our shared intellect, industry experience, and technology excellence, make a positive difference in our customer's success. Our solutions help bridge the gap between IT and business prioritizations to optimize budgets, risks and operational processes.
We search for outstanding technical professionals, hiring at all levels of the experience spectrum; intermediate, journeyman and senior. Consider us for your career plan.
Semper Valens Solutions is an Equal Opportunity Employer
Semper Valens Solutions proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital/parental status, pregnancy/childbirth, or related conditions, physical or mental disability, genetic information, status as a Disabled Veteran, Recently Separated Veteran, Active-Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.
If you require a reasonable accommodation to apply for a position with Semper Valens Solutions through its online applicant system, please contact Semper Valens Solutions Human Resources Department at (830) 899-6870.
Semper Valens Solutions is an affirmative action/equal opportunity employer - minorities, females, disabled, and protected veterans are urged to apply. Applicants have rights under Federal Employment Laws.
All Jobs at Semper Valens Solutions: