1

Fisma Jobs (NOW HIRING)

Develop and maintain security assessment methodologies and tools, and ensure compliance with FISMA requirements and guidelines; develop and maintain FISMA documentation, including System Security ...

Develop and maintain security assessment methodologies and tools, and ensure compliance with FISMA requirements and guidelines; develop and maintain FISMA documentation, including System Security ...

100% Remote or option to periodically work on-site FISMA Compliance Support BACKGROUND : The Information Security & Privacy Branch of the client propose to engage two to three contractors to provide ...

Cybersecurity Manager

Bethesda, MD · On-site

$119K - $160K/yr

FISMA Compliance Support What's in it for you: * Join a premier technology firm specializing in innovative solutions. * Be part of a collaborative, inclusive, and innovative work culture. * Enjoy ...

Cybersecurity Manager

Bethesda, MD · On-site

$165K - $180K/yr

FISMA Compliance Support What's in it for you: * Join a premier technology firm specializing in innovative solutions. * Be part of a collaborative, inclusive, and innovative work culture. * Enjoy ...

Provide audit support for assigned systems (Financial, A-123, FISMA, internal, DHS, etc.), throughout the audit (Pre, During, and Post Audit). * Maintain knowledge of inventory in accreditation ...

Senior Software Engineer

Bethesda, MD · On-site

$110 - $140/hr

Support FISMA compliance and ATO activities. * Manage application security scans and remediation. * Support migrations from on-premises environments to cloud platforms. Requirements * Bachelor ...

Provide audit support for assigned systems (Financial, A-123, FISMA, internal, DHS, etc.), throughout the audit (Pre, During, and Post Audit). * Maintain knowledge of inventory in accreditation ...

Showing results 21-40

Fisma information

See salary details

$35K

$56.3K

$79K

How much do fisma jobs pay per year?

As of Aug 17, 2026, the average yearly pay for fisma in the United States is $56,250.00, according to ZipRecruiter salary data. Most workers in this role earn between $37,500.00 and $75,000.00 per year, depending on experience, location, and employer.

What are the biggest challenges FISMA compliance professionals face when working with cross-functional teams?

FISMA compliance professionals often encounter challenges when coordinating with cross-functional teams, as each department may have different priorities, technical knowledge, and levels of security awareness. Ensuring that everyone understands and follows federal security standards can require extensive communication and documentation. Additionally, balancing the need for security with operational efficiency and managing tight deadlines for audits or reporting are common challenges. Building collaborative relationships and providing clear guidance are key to overcoming these obstacles.

What are the key skills and qualifications needed to thrive as a FISMA compliance analyst, and why are they important?

To thrive as a FISMA Compliance Analyst, you need a strong understanding of information security concepts, risk management frameworks, and knowledge of federal cybersecurity regulations, typically supported by a degree in information technology or cybersecurity. Familiarity with tools like NIST Risk Management Framework (RMF), vulnerability scanners, and compliance management software, as well as certifications such as CISSP or Security+, is often required. Attention to detail, analytical thinking, and effective communication are crucial soft skills for collaborating with stakeholders and ensuring thorough documentation. These skills ensure federal agencies meet regulatory requirements, safeguard sensitive data, and minimize security risks.

What is a FISMA job?

FISMA jobs are roles focused on ensuring compliance with the Federal Information Security Management Act (FISMA), a United States law that requires federal agencies and their contractors to protect sensitive information and maintain effective information security programs. Professionals in FISMA jobs are responsible for developing, implementing, and monitoring security policies, conducting risk assessments, and ensuring that systems meet federal security standards. These roles are critical for maintaining cybersecurity and protecting government data from threats and vulnerabilities.

What is the difference between Fisma vs Cybersecurity Analyst?

AspectFismaCybersecurity Analyst
Required CertificationsFISMA-specific training, CISSP, CISACISSP, Security+, CEH
Work EnvironmentGovernment agencies, federal contractorsPrivate sector, corporations, government
Industry UsagePrimarily federal and defense sectorsBroad across industries including finance, healthcare
Job FocusImplementing FISMA compliance, managing federal info securityIdentifying vulnerabilities, incident response, security monitoring

Fisma professionals focus on ensuring compliance with the Federal Information Security Management Act (FISMA) within government and federal contractor environments. In contrast, Cybersecurity Analysts work across various industries to protect organizational data through threat detection, vulnerability assessment, and incident response. While both roles require security certifications and involve protecting information systems, Fisma specialists are more compliance-oriented, whereas Cybersecurity Analysts focus on proactive security measures.

More about Fisma jobs

What cities are hiring for Fisma jobs?

Cities with the most Fisma job openings:

What states have the most Fisma jobs?

States with the most job openings for Fisma jobs include:

Infographic showing various Fisma job openings in the United States as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $56,250 per year, or $27 per hour.

Senior Information Security Analyst

MANTECH

Doral, FL • On-site

Full-time

Posted 11 days ago


ManTech rating

9.0

Company rating: 9.0 out of 10

Based on 14 frontline employees who took The Breakroom Quiz

33rd of 244 rated software companies


Job description

MANTECH seeks a motivated, career and customer-oriented Senior Information Security Analyst join our team in Doral, FL.
Responsibilities include but are not limited to:

  • Senior Information Security Analyst is responsible for conducting comprehensive security assessments, including Federal Information Security Management Act (FISMA) reviews, to identify vulnerabilities and ensure compliance with relevant security standards and regulations
  • Lead and conduct comprehensive security assessments of information systems, applications, and infrastructure, including FISMA reviews
  • Evaluate the effectiveness of security controls and identify vulnerabilities, analyze security risks, and provide recommendations for mitigation
  • Develop and maintain security assessment methodologies and tools, and ensure compliance with FISMA requirements and guidelines; develop and maintain FISMA documentation, including System Security Plans (SSP), risk assessments, and Continuous Monitoring Plans
  • Prioritize vulnerabilities based on risk and impact, and develop and implement remediation plans; track and report on vulnerability remediation progress; review and evaluate security architecture designs
  • Provide security guidance and recommendations to Architects and Engineers


Minimum Qualifications:

  • BA/BS in field necessary to assume Senior Information Security Analyst duties or 4 additional years of experience in lieu of a degree
  • 9 years of experience with 5 years of relevant Senior Information Security Analyst experience
  • Strong understanding of security frameworks, standards, and regulations, such as NIST, ISO 27001, and FISMA.
  • Experience conducting vulnerability assessments and penetration testing.
  • Knowledge of security technologies, such as firewalls, intrusion detection/prevention systems and security information and event management (SIEM) tools.
  • Must hold at least one (1) of the following certifications: CompTIA Security, Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or any DoD 8570.01-M IAM Level II compliant certification.


Preferred Qualifications:

  • Master’s degree in Computer Science, Computer Engineering, Information Systems, or a closely related field.
  • Experience in current authorization practices, particularly within the DoD.
  • Experience with cloud security assessments. Knowledge of scripting or programming languages.
  • Experience and/or certifications associated with RMF, ICD 503, NIST SP800-53 or DCID 6/3. Windows, Linux, UNIX, Cisco, SQL or Oracle databases, and virtualized systems certification. Red Hat Enterprise License (RHEL) Linux 7, Tenable, and one or more SIEM certifications.
  • Relevant certifications, such as CISSP, CISM, CISA, or CAP. Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), Certified Cloud Security Professional (CCSP), AWS Certified Security Specialty, Azure Security Engineer Associate, Certified in Risk and Information Systems Control (CRISC), ISO 27001 Lead Auditor.
  • Experience at a DoD Combatant Command (e.g., SOUTHCOM, NORTHCOM, CENTCOM, CYBERCOM, INDOPACOM, EUCOM, AFRICOM, STRATCOM, TRANSCOM, SOCOM, SPACECOM) or a component is desired.


Clearance Requirements:

  • Must have an active Top Secret clearance with SCI Eligibility


Physical Requirements:

  • Must be able to remain in a stationary position 50%
  • Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer
  • The person in this position frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.

What ManTech employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom