1

Fips Certification Analyst Jobs (NOW HIRING)

... analytics for test evaluation. * Support product qualification, certification, and release-to ... Familiarity with standards like FIPS 140-3, Common Criteria, or ISO/IEC 17825. * Excellent ...

This position is for an Associate Cybersecurity Analyst in the Applied Cryptography team who will ... Work with the FIPS 140-2 level 2+ certified Hardware Security Modules, Key Management systems.

Ensure ISSOs complete a FIPS-199, Privacy Threshold Analysis (PTA), E-Authorizations, Contingency ... Certified Authorization Professional (CAP), Certified Information Systems Security Officer (CISSO ...

AgileSec Analytics *Proficiency with enterprise standard tools - Workflow and collaboration ... Certifications in cryptographic technologies or EC Council's Certified Encryption Specialist

next page

Showing results 1-20

Fips Certification Analyst information

See salary details

$16

$31

$48

How much do fips certification analyst jobs pay per hour?

As of Jun 8, 2026, the average hourly pay for fips certification analyst in the United States is $31.53, according to ZipRecruiter salary data. Most workers in this role earn between $25.24 and $35.82 per hour, depending on experience, location, and employer.

What are some common challenges faced by FIPS Certification Analysts during the certification process?

FIPS Certification Analysts often encounter challenges such as keeping up with evolving cryptographic standards, coordinating documentation with engineering teams, and managing tight project timelines. Navigating complex technical requirements from NIST and ensuring all security modules meet rigorous testing standards can be demanding. Effective communication and organizational skills are essential, as analysts frequently collaborate with multiple stakeholders, including developers, testers, and external auditors, to ensure compliance and resolve issues promptly.

What are the key skills and qualifications needed to thrive as a FIPS Certification Analyst, and why are they important?

To thrive as a FIPS Certification Analyst, you need a solid understanding of cryptographic standards, information security, and regulatory compliance, often supported by a degree in computer science or cybersecurity. Familiarity with NIST standards, FIPS 140-2/140-3 validation processes, and related tools like Cryptographic Module Validation Program (CMVP) documentation systems is crucial. Strong analytical skills, attention to detail, and effective written communication set top analysts apart when preparing certification documentation and liaising with stakeholders. These competencies are essential to ensure secure, compliant cryptographic implementations and successful certification outcomes.

What are FIPS Certification Analysts?

FIPS Certification Analysts are professionals who specialize in ensuring that products, systems, or processes comply with the Federal Information Processing Standards (FIPS), which are U.S. government standards for data security and interoperability. They support organizations in preparing for FIPS certification by interpreting technical requirements, testing cryptographic modules, and coordinating with certification bodies. Their work helps organizations meet regulatory requirements for handling sensitive government data, especially in industries such as IT, cybersecurity, and defense.

What is the difference between Fips Certification Analyst vs Fips Compliance Specialist?

AspectFips Certification AnalystFips Compliance Specialist
Required CredentialsCertifications in cybersecurity, compliance, or related fields; knowledge of FIPS standardsCertifications in compliance, security, or auditing; familiarity with FIPS requirements
Work EnvironmentTypically in IT, cybersecurity, or government agencies; focus on certification processesOften in compliance departments; focus on regulatory adherence and audits
Employer & Industry UsageUsed by government agencies, tech firms, and security organizationsCommon in regulated industries like finance, healthcare, and government

The Fips Certification Analyst primarily focuses on obtaining and maintaining FIPS certifications, ensuring products meet federal standards. In contrast, the Fips Compliance Specialist concentrates on ongoing compliance and regulatory adherence related to FIPS standards. Both roles require similar certifications and work environments but differ in their core responsibilities—certification versus compliance management.

More about Fips Certification Analyst jobs
What cities are hiring for Fips Certification Analyst jobs? Cities with the most Fips Certification Analyst job openings:
What are the most commonly searched types of Fips Certification Analyst jobs? The most popular types of Fips Certification Analyst jobs are:
What states have the most Fips Certification Analyst jobs? States with the most job openings for Fips Certification Analyst jobs include:
What job categories do people searching Fips Certification Analyst jobs look for? The top searched job categories for Fips Certification Analyst jobs are:
Infographic showing various Fips Certification Analyst job openings in the United States as of May 2026, with employment types broken down into 2% Locum Tenens, 7% As Needed, 29% Full Time, 59% Part Time, 2% Temporary, and 1% Nights. Highlights an 84% Physical, 5% Hybrid, and 11% Remote job distribution, with an average salary of $65,589 per year, or $31.5 per hour.

RMF Cybersecurity Analyst (15.43)

OCT Consulting, LLC

Hyattsville, MD • On-site

$90K - $110K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 3 days ago


Job description

OCT Consulting is a business management and technology consulting firm that supports Federal Government clients. We provide consulting services in the areas of Strategy, Process Improvement, Change Management, Program and Project Management, Acquisition/Procurement, and Information Technology.

OCT currently has an opening for an RMF Cybersecurity Analyst to work with a federal client. The analyst will support the Information Systems Security Officer / Systems Security and Privacy Officer (ISSO/SSPO) in executing Risk Management Framework (RMF) compliance, Security Assessment and Authorization (SA&A) activities, and information security governance across a complex federal health statistics environment.

This position is contingent upon contract award.

Day-to-day responsibilities include:

  • Assist the ISSO/SSPO in interfacing with federal staff, contractors, and business partners to execute information security aspects of the agency's CIPSEA obligations, IT modernization, and cloud migration efforts.
  • Support Security Assessment and Authorization (SA&A) activities including agency-hosted, contractor-hosted, cloud-hosted, and FedRAMP SA assist with interpretation of regulations and policy guidance.
  • Develop, track, and update Plans of Action and Milestones (POA&Ms) for identified vulnerabilities and risks; report remediation status monthly.
  • Prepare and maintain System Security Plans (SSPs) in accordance with NIST SP 800-18 and NIST SP 800-53.
  • Conduct and document Risk Assessment Reports (RARs) consistent with NIST SP 800-30 and applicable agency policies.
  • Support FISMA reporting to the Department of Homeland Security and OMB; prepare gap reports of agency practices against evolving federal, HHS, and agency requirements.
  • Assist with Privacy Threshold Analyses (PTAs) and Privacy Impact Assessments (PIAs) in accordance with HHS policy and OMB M-03-22.
  • Prepare weekly project management/status reports and monthly RMF status reports for the COR and Program POC.
  • Develop and maintain reusable templates, standard operating procedures (SOPs), and process documentation (e.g., SSP templates, risk assessment templates, process flow diagrams).
  • Coordinate with agency Security, Business, and Technical Stewards; provide stakeholder advisory support and training as required.
  • Support EPLC security reviews, IT acquisition security reviews, and security governance coordination activities.
  • Assist in applying CIPSEA oversight in coordination with the agency Confidentiality Officer.
  • Maintain compliance with all agency security training requirements including annual Security Awareness Training (SAT) and role-based training (RBT).

Requirements

  • Must be a U.S. Citizen.
  • Minimum of 3–5 years of experience in federal information security, RMF implementation, or cybersecurity compliance.
  • Demonstrated experience with NIST SP 800-37, 800-30, 800-53/53A, 800-60, and FIPS 199/200.
  • Experience supporting FISMA compliance and reporting activities for a federal civilian agency.
  • Experience developing, reviewing, and maintaining SA&A documentation artifacts (SSPs, RARs, POA&Ms, Contingency Plans).
  • Proficiency with Governance, Risk, and Compliance (GRC) platforms such as Archer or comparable tools.
  • Strong technical writing skills sufficient to independently produce clear, accurate, and professionally formatted security and compliance documentation.
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field (or equivalent work experience).
  • Ability to obtain a Public Trust (Moderate Risk – Level 5 or higher) background investigation; an HSPD-12/PIV card will be required for facility and network access.
  • Work will be performed primarily at the agency facility in Hyattsville, MD, with authorized telework on a situational basis. Must be able to commute to the Hyattsville, MD location.

Preferred Qualifications:

  • Certified Information Systems Security Professional (CISSP), Certified Authorization Professional (CAP), Certified Information Security Manager (CISM), or equivalent certification.
  • Experience supporting HHS or other Federal civilian agency environments.
  • Experience with CIPSEA, Privacy Act compliance, and handling of sensitive health statistics data.
  • Familiarity with FedRAMP authorization activities and cloud migration security governance.
  • Experience with continuous monitoring programs and vulnerability remediation in federal environments.

Benefits

OCT offers competitive compensation packages and a full suite of benefits which includes:

  • Medical, Dental, and Vision insurance
  • Retirement savings 401K plan provided by an industry leading provider with 3% employer contributions of the employee's gross salary
  • Paid Time Off and Standard Government Holidays
  • Life Insurance, Short- and Long-Term disability benefits
  • Training Benefits

Salary Range: $90,000 – $110,000 yearly commensurate with experience, education, and qualifications.

About OCT Consulting

OCT Consulting LLC is a Small Business (SB) providing professional services and information technology solutions to the Federal government and commercial clients. Founded in 2013, we bring the agility of operations and a management team with a track record of leading successful engagements at major Federal government agencies.

At OCT we believe in creating a work environment where employees can thrive based on their abilities, skills, and achievements. We are dedicated to providing career growth and professional development based on individual merit and fostering a workplace where everyone's contributions are valued and recognized.