1

Nist Jobsexternal in Tennessee (NOW HIRING)

ISO 27001 & NIST Control Framework * Serve as a trusted internal subject-matter expert (SME) for the ISO 27001 Information Security Management System (ISMS), providing strategic guidance on ...

ISO 27001 & NIST Control Framework * Serve as a trusted internal subject-matter expert (SME) for the ISO 27001 Information Security Management System (ISMS), providing strategic guidance on ...

Select and tailor security controls by applying scoping guidance in accordance with NIST SP 800-53 and FedRAMP specific guidance. Document the implementation characteristics for security controls ...

Perform consulting/readiness and compliance services for organizations seeking compliance with CMMC, DFARS 252.204-7012, NIST SP 00-171, and FedRAMP * Conduct readiness/consulting services directly ...

Perform consulting/readiness and compliance services for organizations seeking compliance with CMMC, DFARS 252.204-7012, NIST SP 00-171, and FedRAMP * Conduct readiness/consulting services directly ...

Network Engineer, Sr.

Oak Ridge, TN · On-site

$67K - $135K/yr

... NIST 800-53/171, and ISA/IEC 62443 security controls • Support DOE readiness activities, audits, and assessment documentation • Collaborate with Cybersecurity teams on firewall policies ...

next page

Showing results 1-20

Nist information

See Tennessee salary details

$39K

$90.2K

$136.1K

How much do nist jobs pay per year?

As of Sep 7, 2026, the average yearly pay for nist in Tennessee is $90,217.00, according to ZipRecruiter salary data. Most workers in this role earn between $72,200.00 and $104,800.00 per year, depending on experience, location, and employer.

What is a NIST professional?

NIST professionals are experts who work for the National Institute of Standards and Technology, a U.S. federal agency that develops technology, metrics, and standards to promote innovation and industrial competitiveness. Their work covers a wide range of fields including cybersecurity, engineering, physical sciences, and information technology. NIST professionals conduct research, create standards, and provide guidance to improve the security, quality, and efficiency of products and services in both the public and private sectors.

What are the key skills and qualifications needed to thrive as a NIST professional?

To excel as a professional at NIST, you need a strong background in science or engineering, often supported by an advanced degree in a relevant technical field. Familiarity with specialized laboratory equipment, data analysis software, and quality management systems such as ISO/IEC standards is typically required. Critical thinking, attention to detail, and effective teamwork are important soft skills that help drive research accuracy and collaborative innovation. These skills are crucial for advancing measurement science, ensuring rigorous standards, and supporting technological progress across industries.

What are some common challenges faced by NIST cybersecurity professionals when implementing new security frameworks in an organization?

NIST cybersecurity professionals often encounter challenges such as gaining organizational buy-in for new security frameworks, ensuring that existing systems are compatible with the latest NIST standards, and managing the complexities of compliance across multiple departments. Additionally, balancing thorough risk assessments with tight project timelines can be demanding. Collaborating closely with IT, compliance, and executive teams is essential to address these challenges and to ensure successful framework implementation.

What is the difference between Nist vs Cybersecurity Analyst?

AspectNistCybersecurity Analyst
CertificationsTypically no specific certifications required, but familiarity with NIST frameworks is essentialOften requires certifications like CompTIA Security+, CISSP, or CEH
Work EnvironmentDevelops and maintains cybersecurity standards and frameworks for organizationsMonitors, analyzes, and responds to security threats within organizations
Industry UsageUsed across industries for cybersecurity best practices and complianceEmployed in various sectors to protect information systems
Primary FocusCreating and implementing cybersecurity standards based on NIST guidelinesDetecting and mitigating security incidents and vulnerabilities

While NIST focuses on developing cybersecurity standards and frameworks, a Cybersecurity Analyst applies these standards in practical security operations. Both roles are essential in maintaining organizational cybersecurity, with NIST providing the foundational guidelines and the analyst executing security measures based on those guidelines.

Infographic showing various Nist job openings in Tennessee as of August 2026, with employment types broken down into 89% Full Time, 5% Part Time, and 6% Contract. Highlights an 76% Physical, 9% Hybrid, and 15% Remote job distribution, with an average salary of $90,217 per year, or $43.4 per hour.

NIST Risk Management Framework SME

Boston Government Services, LLC

Oak Ridge, TN • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 19 days ago


Key responsibilities

  • Lead RMF activities for federal systems, ensuring compliance with NIST SP 800-53 and related standards.

  • Develop and maintain System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action & Milestones (POA&Ms).

  • Support security audits and assessments, including preparation for FISMA and FedRAMP requirements.


Job description

Boston Government Services, LLC. (BGS) has created this Evergreen Talent Pool post for gathering qualified candidates for a position relating to NIST Risk Management Framework (RMF) Subject Matter Expert (SME) to support our clients. The RMF SME will provide expert guidance and support for implementing and maintaining compliance with NIST SP 800-53 security controls across federal systems. This role ensures adherence to the RMF lifecycle, including categorization, selection, implementation, assessment, authorization, and continuous monitoring of security controls.

BGS is an engineering, technology, and security firm helping to advance missions of national importance for government programs, national laboratories, national security facilities, nuclear operations, and complex projects. We support clients at every stage, from strategic planning and program management to the execution of engineering and technical activities. We work to attract and retain the best talent because the best talent delivers the best results for our clients. Our capabilities are based on our experience in complex, secure, and highly regulated environments. We leverage our experience and capabilities to provide mission-driven solutions tuned to our client's mission needs and strategic direction.

Work that Matters. People that Matter More. At BGS, we believe meaningful work starts with great people. We foster a culture built on respect, collaboration, and accountability—where employees are empowered to contribute ideas, grow professionally, and make an impact. We care about our employees’ well-being through competitive benefits, clear expectations, and an environment that values both excellence and connection.


If you align with BGS’ company values and culture, we would love for you to explore opportunities to join our growing team by checking out the job description below!

Responsibilities:

  • Lead RMF activities for federal systems, ensuring compliance with NIST SP 800-53 and related standards.
  • Develop and maintain System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action & Milestones (POA&Ms).
  • Conduct gap analyses and risk assessments to identify compliance deficiencies and recommend remediation strategies.
  • Provide expert guidance on security control implementation and documentation for Authorization to Operate (ATO) packages.
  • Support security audits and assessments, including preparation for FISMA and FedRAMP requirements.
  • Deliver training and workshops on RMF processes and NIST SP 800-53 controls.
  • Collaborate with system owners, ISSOs, and other stakeholders to ensure continuous monitoring and risk mitigation.

Requirements:

  • Bachelor’s degree in Cybersecurity, Information Systems, or related field (or equivalent experience).
  • Minimum 5 years of experience in cybersecurity compliance, with at least 3 years focused on RMF and NIST SP 800-53.
  • Demonstrated experience developing SSPs, POA&Ms, and conducting security assessments.
  • Strong understanding of NIST SP 800 series (800-53, 800-37, 800-171) and FISMA requirements.
  • Professional certifications such as CISSP, CISM, CISA, or equivalent are required.
  • Excellent technical writing and communication skills for compliance documentation.

Preferred Qualifications: 

  • ISSEP (formerly CISSP-ISSEP) certification.
  • Experience with cloud security and FedRAMP controls. 
  • Ability to lead compliance workshops and mentor junior staff.

Location/Work Arrangement:

  • This position is a Remote Work Arrangement with some travel/onsite requirements.

Benefits:

BGS offers a competitive total compensation package to eligible employees. Benefits include Health, Dental, Vision, Life Insurance, Paid Vacation, 401K, Long and Short-Term Disability.

EEO:

BGS is an Equal Opportunity/Affirmative Action employer. All qualified applicants are encouraged to apply and will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or protected veteran status.

Exclusive Agreement Disclaimer:

BGS has standing contracts with federal agencies throughout the United States. We require an affirmative exclusive agreement to represent all candidates to our clients. By submitting this application, you are consenting to allow BGS to represent you as a candidate for the role in which you are applying. 


Schedule is full-time, Monday – Friday 40-hour week.