1

Nist Rmf Jobs (NOW HIRING)

Responsibilities : • Lead and support FedRAMP Moderate/High and IC ATO authorization efforts, ensuring compliance with NIST RMF, NIST 800-53, NIST 800-37, FedRAMP, and ICD 503 requirements. • ...

Responsibilities : • Lead and support FedRAMP Moderate/High and IC ATO authorization efforts, ensuring compliance with NIST RMF, NIST 800-53, NIST 800-37, FedRAMP, and ICD 503 requirements. • ...

Showing results 21-40

Nist Rmf information

See salary details

$43K

$99.4K

$150K

How much do nist rmf jobs pay per year?

As of Aug 22, 2026, the average yearly pay for nist rmf in the United States is $99,400.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,500.00 and $115,500.00 per year, depending on experience, location, and employer.

What is NIST RMF?

NIST RMF stands for the National Institute of Standards and Technology Risk Management Framework. It is a structured process used by federal agencies and organizations to identify, assess, and manage cybersecurity risks to information systems. The RMF provides a set of steps that guide organizations through the selection, implementation, assessment, and monitoring of security controls to ensure systems meet required security standards. This framework is essential for achieving compliance with federal cybersecurity requirements and improving overall information security.

What are the key skills and qualifications needed to thrive as a NIST RMF specialist?

To thrive as a NIST RMF specialist, you need a solid understanding of information security principles, risk assessment, compliance standards, and often a background in cybersecurity or IT, supported by certifications like CISSP, CAP, or Security+. Familiarity with NIST SP 800-37, eMASS, and other GRC (Governance, Risk, and Compliance) tools is typically required. Attention to detail, analytical thinking, and strong communication skills help professionals navigate complex regulatory requirements and effectively collaborate with stakeholders. These skills are essential for ensuring organizational compliance, safeguarding sensitive data, and managing security risks efficiently.

What are some typical challenges faced by professionals implementing the NIST RMF in an organization?

Professionals working with the NIST Risk Management Framework (RMF) often encounter challenges such as aligning organizational processes with RMF requirements, ensuring stakeholder buy-in, and maintaining comprehensive documentation. Adapting legacy systems to meet modern security controls can be complex, and coordinating efforts across multiple teams—such as IT, compliance, and management—requires strong communication skills. Staying current with evolving NIST guidelines and integrating continuous monitoring into daily operations are also important aspects to manage for success in this role.

What is the difference between Nist Rmf vs Cybersecurity Analyst?

AspectNist RmfCybersecurity Analyst
CertificationsRisk Management Framework (RMF) certifications, NIST guidelinesCompTIA Security+, CISSP, CEH
Work EnvironmentGovernment agencies, federal projects, compliance-focusedPrivate sector, IT departments, security teams
Industry UsagePrimarily in federal and defense sectorsAcross various industries including finance, healthcare, tech
Primary FocusImplementing and managing risk management frameworksMonitoring, analyzing, and responding to security threats

While Nist Rmf specialists focus on establishing and maintaining risk management processes based on NIST standards, Cybersecurity Analysts are more involved in threat detection and incident response. Both roles require security knowledge but serve different functions within cybersecurity frameworks.

More about Nist Rmf jobs

What states have the most Nist Rmf jobs?

States with the most job openings for Nist Rmf jobs include:

What job categories do people searching Nist Rmf jobs look for?

The top searched job categories for Nist Rmf jobs are:

Infographic showing various Nist Rmf job openings in the United States as of August 2026, with employment types broken down into 75% Full Time, and 25% Contract. Highlights an 100% In-person job distribution, with an average salary of $99,400 per year, or $47.8 per hour.

Cyber Security Analyst II RMF

Argo Cyber Systems

Millington, TN • On-site

$60K - $75K/yr

Full-time

Re-posted 23 days ago


Job description

How You'll Make an Impact
As an RMF/Cybersecurity Analyst, you will support Navy cybersecurity compliance and continuous monitoring activities by:
  • Supporting RMF package maintenance in accordance with Navy BUPERS guidance.
  • Managing and maintaining system records within eMASS.
  • Coordinating with Navy Cyber RMF stakeholders on project timelines, deliverables, and compliance activities.
  • Maintaining RMF documentation, including hardware/software inventories, system diagrams, Contingency Plans, Disaster Recovery Plans, Incident Response Plans, Vulnerability & Patch Management Plans, Privacy Impact Assessments (PIA), and System-Level Continuous Monitoring (SLCM) strategies.
  • Ensuring monthly vulnerability scans, credentialed scans, and quarterly STIG updates are completed.
  • Processing scan results using eMASSter and documenting security findings.
  • Reviewing vulnerabilities, mapping findings to applicable security controls, and maintaining POA&M items.
  • Supporting Authorization to Operate (ATO) package updates and risk assessments.
Required Qualifications
  • Active Secret Security Clearance.
  • High School Diploma or equivalent.
  • 3+ years of experience supporting NIST RMF, DoD RMF, or DIACAP environments.
  • Navy Cyber Security Workforce (CSWF) IAM Level I certification or higher (Security+ CE, CAP, CND, GSLC, Cloud+, HCISPP, or equivalent).
  • Experience supporting Security Assessment & Authorization (A&A)/ATO processes.
  • Hands-on experience with:
    • eMASS
    • ACAS vulnerability reports
    • SCAP compliance
    • Security Technical Implementation Guides (STIGs)
    • DoD Architecture Framework (DoDAF)
    • Cybersecurity risk assessments and vulnerability remediation
  • Proficiency with Microsoft Office (Word, Excel, PowerPoint, Visio).
Preferred Qualifications
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, Business, or a related field.
  • Experience supporting Navy or DoD cybersecurity programs.
  • Prior DIACAP experience.
  • IT project management experience.
  • Strong technical writing, communication, and documentation skills.
  • Excellent analytical, problem-solving, and teamwork abilities.
  • Experience creating technical diagrams using Microsoft Visio.
Physical Requirements
  • Ability to work at a computer for extended periods.
  • Communicate effectively in both written and verbal formats.
  • Ability to access IT equipment in office and data center environments.
  • Occasionally lift equipment up to 25 pounds.
  • Reasonable accommodations will be provided in accordance with the Americans with Disabilities Act (ADA).
Background & Drug Screening Disclaimer
© Argo Cyber Systems, LLC - All Rights Reserved
Argo Cyber Systems, LLC is committed to maintaining a safe, secure, and trusted workplace for all employees and our federal clients. Employment with Argo Cyber Systems is contingent upon successful completion of all required background investigations and pre-employment screenings, which may include, but are not limited to:
  • Criminal background checks (federal, state, and local)
  • Employment and education verification
  • Reference checks
  • Drug screening (in compliance with federal and state law)
  • Security clearance verification (as applicable for classified positions)

Candidates selected for employment in positions requiring access to sensitive or classified information may also be subject to additional U.S. Government background investigations and security adjudication processes, including DHS Entry on Duty (EOD) suitability or equivalent federal clearance requirements.
Argo Cyber Systems reserves the right to disqualify or rescind an offer of employment based on the results of any background or screening process that, in the company's judgment, may impact an individual's ability to perform essential job functions or meet contractual obligations.
All background investigations and screenings are conducted in accordance with applicable federal, state, and local laws, including the Fair Credit Reporting Act (FCRA). Candidates will be notified of their rights and provided an opportunity to review and dispute any adverse findings before final employment determinations are made.