1

Fisma Analyst Jobs (NOW HIRING)

Apply knowledge of NIST RMF, FISMA, and OMB cybersecurity guidelines * Leverage 3+ years of experience in cybersecurity operations, threat analysis, or incident response * Hold or pursue ...

Apply knowledge of NIST RMF, FISMA, and OMB cybersecurity guidelines * Leverage 3+ years of experience in cybersecurity operations, threat analysis, or incident response * Hold or pursue ...

This role focuses on vulnerability assessments, incident response, and ensuring compliance with standards such as NIST 800-53 and FISMA. Working within RMF, the analyst conducts investigations ...

Senior Business Analyst

Washington, DC · On-site

$65 - $70/hr

Senior Business Analyst Personnel Qualifications * Requires a bachelor's degree in computer science ... Participates in information gathering and tracking efforts to ensure FISMA compliance and assists ...

This role focuses on vulnerability assessments, incident response, and ensuring compliance with standards such as NIST 800-53 and FISMA. Working within RMF, the analyst conducts investigations ...

This role focuses on vulnerability assessments, incident response, and ensuring compliance with standards such as NIST 800-53 and FISMA. Working within RMF, the analyst conducts investigations ...

This role focuses on vulnerability assessments, incident response, and ensuring compliance with standards such as NIST 800-53 and FISMA. Working within RMF, the analyst conducts investigations ...

Supports continuous monitoring activities and validates compliance with FISMA, RMF, and ... Analyze cybersecurity risks, vulnerabilities, and compliance gaps and provide recommendations for ...

Supports continuous monitoring activities and validates compliance with FISMA, RMF, and ... Analyze cybersecurity risks, vulnerabilities, and compliance gaps and provide recommendations for ...

Supports continuous monitoring activities and validates compliance with FISMA, RMF, and ... Analyze cybersecurity risks, vulnerabilities, and compliance gaps and provide recommendations for ...

next page

Showing results 1-20

Fisma Analyst information

See salary details

$16

$31

$48

How much do fisma analyst jobs pay per hour?

As of Jun 8, 2026, the average hourly pay for fisma analyst in the United States is $31.53, according to ZipRecruiter salary data. Most workers in this role earn between $25.24 and $35.82 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a FISMA Analyst, and why are they important?

To thrive as a FISMA Analyst, you need strong knowledge of information security principles, risk assessment, and compliance frameworks, often supported by a degree in cybersecurity or related fields. Familiarity with tools like NIST RMF, vulnerability scanners, and certifications such as CISSP or CISA are typical requirements. Analytical thinking, attention to detail, and effective communication are vital soft skills for interpreting regulations and working with teams. These skills ensure organizations maintain compliance with federal security standards, protecting sensitive information and reducing risk.

What are some common challenges FISMA Analysts face when ensuring compliance across multiple departments?

FISMA Analysts often encounter challenges coordinating with various departments to gather necessary documentation and enforce standardized security practices. Each department may have different systems, risk tolerances, and levels of security awareness, making it crucial for FISMA Analysts to communicate requirements clearly and foster collaboration. Additionally, keeping up with evolving federal regulations and ensuring timely completion of assessments can be demanding. Building strong relationships and maintaining organized tracking systems are key strategies to overcome these hurdles.

What are FISMA Analysts?

FISMA Analysts are professionals who ensure that organizations comply with the Federal Information Security Management Act (FISMA). They assess and monitor the security of information systems, perform risk assessments, and help implement security controls to protect federal data. Their work involves preparing documentation, conducting audits, and coordinating with other stakeholders to ensure continuous compliance. FISMA Analysts play a critical role in safeguarding government information and supporting cybersecurity best practices within federal agencies.

What is the difference between Fisma Analyst vs Security Analyst?

AspectFisma AnalystSecurity Analyst
CertificationsFISMA-related certifications, CISSP, CISACISSP, Security+, CEH
Work EnvironmentGovernment agencies, federal contractorsPrivate sector, corporations, government
Primary FocusFederal compliance, FISMA regulationsCybersecurity threats, network security
Industry UsageHigh in government and defenseBroad across industries

Fisma Analysts primarily focus on federal compliance with FISMA regulations, working within government agencies or contractors. Security Analysts have a broader cybersecurity role, addressing threats and protecting networks across various industries. While both roles require cybersecurity certifications, Fisma Analysts specialize in compliance, whereas Security Analysts focus on threat mitigation.

More about Fisma Analyst jobs
Security Analyst I

Other

Posted 19 days ago


Job description

Description

Position:  Security Analyst I

Location: Rosslyn, VA, 

Clearance:  Secret

 

The Security Analyst I monitors, analyzes, and responds to cybersecurity threats to protect government systems and data. This role focuses on vulnerability assessments, incident response, and ensuring compliance with federal standards such as NIST 800-53 and FISMA. Working within the RMF, the analyst collaborates with teams to strengthen defenses and support continuous monitoring. Overall, the position plays a critical role in proactive risk management and maintaining system security posture.
  • Analyze security events, vulnerabilities, and system posture for control effectiveness
  • Support incident response, RMF compliance, and continuous monitoring activities
  • Perform log analysis and triage security scans using SIEM, EDR, and cloud-native tools
  • Investigate security incidents independently at moderate complexity (Level II)
  • Correlate logs across systems to identify threats and anomalies
  • Develop SOPs and runbooks to improve response and operational consistency
  • Contribute to POA&M tracking and remediation efforts
  • Utilize tools such as Splunk, vulnerability scanners, and endpoint protection platforms
  • Apply knowledge of NIST RMF, FISMA, and OMB cybersecurity guidelines
  • Leverage 3+ years of experience in cybersecurity operations, threat analysis, or incident response
  • Hold or pursue certifications such as CompTIA Security+, CISSP, or GCIH
 
 

Who is ActioNet?

ActioNet is a dynamic, award-winning SEI CMMI Level 4 and ISO 20000/ISO 27000 I Certified IT Services Firm that specializes in Enterprise Software Development involving Full Lifecycle Methodology, Project Management, Information Systems Security, Systems Integration and Training. ActioNet is committed to quality exemplified by our continual efforts to enhance how we do business. Our vision is what sets up apart, we help our customers align their IT strategies with their business goals.

 Why ActioNet?

It is simple. We are passionate about the inspirational missions of our customers and we entrust our employees and teams to deliver exceptional performance to enable the safety, security, health and well-being of our nation. We have been awarded the Washington Post Top Places to Work for 8 years in the row.

What's in It For You?

As an ActioNeter, you get to be part of exceptional team and a corporate culture that nurtures mutual success for our customers, employees and our communities. We give you the tools to be successful; all you need to do is bring your best ideas, your energy and a desire to develop your skills, experience and career.

 Are you ready to make a difference?

 ActioNet is an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

 

 

Â