1

Fips Certification Analyst Jobs (NOW HIRING)

Senior Cyber Security Analyst

Chantilly, VA · On-site

$110K - $215K/yr

Knowledge of risk management standards, CNSSP 1253, FIPS 140-2, 199, 200, and NIST SP 800-37, 800 ... certifications, security clearance level, contract requirements, geographic location, and internal ...

Senior Cyber Security Analyst

Chantilly, VA · On-site

$110K - $215K/yr

Knowledge of risk management standards, CNSSP 1253, FIPS 140-2, 199, 200, and NIST SP 800-37, 800 ... certifications, security clearance level, contract requirements, geographic location, and internal ...

Data Analyst

Mclean, VA · On-site

$50K - $115K/yr

Familiarity with FIPS 140-2 compliant encryption to both stored data and data in motion ... CompTIA network+ certification preferred About steampunk Steampunk relies on several factors to ...

Data Analyst

Mclean, VA · On-site

$50K - $115K/yr

Familiarity with FIPS 140-2 compliant encryption to both stored data and data in motion ... CompTIA network+ certification preferred Steampunk relies on several factors to determine salary ...

$95 - $130/hr

Support security incident response, documentation, root-cause analysis, and corrective actions ... The candidate supports ATO renewal to provide current FIPS 140-3 CMVP certificates, algorithm ...

New

Data Analyst

Mclean, VA · On-site

$50K - $115K/yr

Familiarity with FIPS 140-2 compliant encryption to both stored data and data in motion ... CompTIA network+ certification preferred About steampunk Steampunk relies on several factors to ...

Showing results 41-60

Fips Certification Analyst information

See salary details

$16

$31

$48

How much do fips certification analyst jobs pay per hour?

As of Sep 6, 2026, the average hourly pay for fips certification analyst in the United States is $31.53, according to ZipRecruiter salary data. Most workers in this role earn between $25.24 and $35.82 per hour, depending on experience, location, and employer.

What is a FIPS Certification Analyst?

FIPS Certification Analysts are professionals who specialize in ensuring that products, systems, or processes comply with the Federal Information Processing Standards (FIPS), which are U.S. government standards for data security and interoperability. They support organizations in preparing for FIPS certification by interpreting technical requirements, testing cryptographic modules, and coordinating with certification bodies. Their work helps organizations meet regulatory requirements for handling sensitive government data, especially in industries such as IT, cybersecurity, and defense.

What are the key skills and qualifications needed to thrive as a FIPS Certification Analyst?

To thrive as a FIPS Certification Analyst, you need a solid understanding of cryptographic standards, information security, and regulatory compliance, often supported by a degree in computer science or cybersecurity. Familiarity with NIST standards, FIPS 140-2/140-3 validation processes, and related tools like Cryptographic Module Validation Program (CMVP) documentation systems is crucial. Strong analytical skills, attention to detail, and effective written communication set top analysts apart when preparing certification documentation and liaising with stakeholders. These competencies are essential to ensure secure, compliant cryptographic implementations and successful certification outcomes.

What are some common challenges faced by FIPS Certification Analysts during the certification process?

FIPS Certification Analysts often encounter challenges such as keeping up with evolving cryptographic standards, coordinating documentation with engineering teams, and managing tight project timelines. Navigating complex technical requirements from NIST and ensuring all security modules meet rigorous testing standards can be demanding. Effective communication and organizational skills are essential, as analysts frequently collaborate with multiple stakeholders, including developers, testers, and external auditors, to ensure compliance and resolve issues promptly.

What is the difference between Fips Certification Analyst vs Fips Compliance Specialist?

AspectFips Certification AnalystFips Compliance Specialist
Required CredentialsCertifications in cybersecurity, compliance, or related fields; knowledge of FIPS standardsCertifications in compliance, security, or auditing; familiarity with FIPS requirements
Work EnvironmentTypically in IT, cybersecurity, or government agencies; focus on certification processesOften in compliance departments; focus on regulatory adherence and audits
Employer & Industry UsageUsed by government agencies, tech firms, and security organizationsCommon in regulated industries like finance, healthcare, and government

The Fips Certification Analyst primarily focuses on obtaining and maintaining FIPS certifications, ensuring products meet federal standards. In contrast, the Fips Compliance Specialist concentrates on ongoing compliance and regulatory adherence related to FIPS standards. Both roles require similar certifications and work environments but differ in their core responsibilities—certification versus compliance management.

More about Fips Certification Analyst jobs

What cities are hiring for Fips Certification Analyst jobs?

Cities with the most Fips Certification Analyst job openings:

What are the most commonly searched types of Fips Certification Analyst jobs?

The most popular types of Fips Certification Analyst jobs are:

What states have the most Fips Certification Analyst jobs?

States with the most job openings for Fips Certification Analyst jobs include:

What job categories do people searching Fips Certification Analyst jobs look for?

The top searched job categories for Fips Certification Analyst jobs are:

Infographic showing various Fips Certification Analyst job openings in the United States as of August 2026, with employment types broken down into 2% As Needed, 73% Full Time, 18% Part Time, and 7% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $65,589 per year, or $31.5 per hour.

Full-time

Re-posted 20 days ago


Job description

Description


The Cybersecurity Analyst supports the security, compliance, and maintenance of information systems throughout the Risk Management Framework (RMF) lifecycle, from system preparation through decommissioning. This role ensures alignment with Intelligence Community Directive (ICD), Defense Intelligence Agency (DIA), and Department of Defense (DoD) cybersecurity policies and standards.


The analyst works closely with Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), Security Control Assessors (SCAs), Program Managers (PMs), and other stakeholders to execute RMF activities, reduce cybersecurity risk, and improve the overall security posture of supported systems. This position focuses on driving meaningful security outcomes through vulnerability management, continuous monitoring, compliance support, and risk-informed decision-making.


Roles and Responsibilities

  • Support information systems throughout the RMF lifecycle, ensuring compliance with applicable cybersecurity policies, standards, and regulations.
  • Collaborate with ISSMs, ISSOs, SCAs, PMs, and other stakeholders to support security initiatives and compliance efforts.
  • Assist stakeholders in understanding cybersecurity risks, vulnerability impacts, and remediation priorities to improve system security posture.
  • Provide technical support for continuous monitoring activities, compliance reporting, and audit readiness initiatives.
  • Evaluate cybersecurity implications of system modifications, upgrades, and configuration changes.
  • Support implementation, assessment, and documentation of security controls.
  • Maintain and update cybersecurity documentation, authorization packages, and RMF artifacts.
  • Document vulnerabilities, misconfigurations, and security findings clearly to support remediation planning and stakeholder awareness.
  • Utilize Xacta or similar Cyber Risk Management platforms to manage risk assessments, security control evidence, compliance status, and POA&M activities.
  • Track and manage POA&M items to ensure vulnerabilities identified through scans, assessments, or audits are properly documented, mitigated, and resolved.
  • Analyze vulnerability and compliance data to identify trends, recurring issues, and opportunities for security improvements.
  • Promote cybersecurity best practices and ensure alignment with organizational and mission objectives.

Knowledge

  • Knowledge of the Risk Management Framework (RMF), NIST 800-series publications, Federal Information Processing Standards (FIPS), Security Authorization and Assessment (SA&A) processes, continuous monitoring, POA&M management, and vulnerability management.
  • Understanding of cybersecurity compliance requirements within DoD, DIA, and Intelligence Community environments.
  • Familiarity with cybersecurity risk management platforms such as Xacta and related compliance management tools.

Skills

  • Strong verbal and written communication skills with the ability to explain technical concepts to both technical and non-technical audiences.
  • Experience interpreting vulnerability and compliance reports generated from tools such as Xacta, STIG Viewer, ACAS, Prisma, Splunk, Trellix (HBSS), or similar security platforms.
  • Strong analytical, troubleshooting, and problem-solving abilities.
  • Ability to identify root causes of security issues and recommend practical remediation strategies.
  • Experience working across multiple teams and stakeholders to achieve security and compliance objectives.
  • Ability to manage competing priorities while maintaining attention to detail and accuracy.
  • Strong organizational skills and ability to maintain comprehensive security documentation.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.  
  • Obtain and maintain an IAT Level III certification, or maintain an IAT Level II certification, in accordance with DoD 8570.01-M and DoD Directive 8140 Cyberspace Workforce Management requirements.
  • Acceptable certifications include: CompTIA Cybersecurity Analyst (CySA+), CompTIA Security+, EC-Council Certified Network Defender (CND v3), CCNA Security, Global Industrial Cyber Security Professional (GICSP), GIAC Security Essentials (GSEC), Systems Security Certified Practitioner (SSCP)

Clearence

  • Active Top Secret clearance is required with SCI eligibility and the ability to Pass CI Poly


Pueo is an equal employment opportunity employer and affirmative action employer. All interested individuals will receive consideration and will not be discriminated against on the basis of race, color, religion, sex, national origin, disability, age, sexual orientation, gender identity, genetic information, or protected veteran status. Pueo takes affirmative action in support of its policy to advance diversity and inclusion of individuals who are minorities, women, protected veterans, and individuals with disabilities.   Â