2

Remote Rmf Analyst Jobs (NOW HIRING)

RMF AnalystFull Time, Remote, San Antonio, TX areaSecret Clearance **This position is contingent upon contract award** Overview:Semper Valens Solutions is seeking a detail-oriented RMF Analyst to ...

Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position Summary The RMF IT Security Analyst serves as a mid-level cybersecurity ...

Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position Summary The RMF IT Security Analyst serves as a mid-level cybersecurity ...

Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position Summary The RMF IT Security Analyst serves as a mid-level cybersecurity ...

Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position Summary The RMF IT Security Analyst serves as a mid-level cybersecurity ...

Navigating the VA GRC tool to quickly progress systems through the RMF process. * Developing ... Strong analytical, conceptual, and problem-solving abilities * Strong written and oral ...

Be Seen First

Navigating the VA GRC tool to quickly progress systems through the RMF process. * Developing ... Strong analytical, conceptual, and problem-solving abilities * Strong written and oral ...

next page

Showing results 1-20

Remote Rmf Analyst information

See salary details

$39.5K

$107.3K

$141K

How much do remote rmf analyst jobs pay per year?

As of Sep 4, 2026, the average yearly pay for remote rmf analyst in the United States is $107,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What is the difference between Remote Rmf Analyst vs Remote Rmf Reviewer?

AspectRemote Rmf AnalystRemote Rmf Reviewer
CredentialsTypically requires a degree in life sciences, healthcare, or related field; certifications like RAC or RAC-ML are commonSimilar credentials as Rmf Analyst, often with additional experience in review processes
Work EnvironmentPerforms analysis, risk assessments, and compliance evaluations remotely for pharmaceutical or biotech companiesFocuses on reviewing and validating RMF documents and reports remotely within regulatory teams
Employer & IndustryPharmaceutical, biotech, or medical device companiesRegulatory consulting firms, pharmaceutical companies, or biotech firms

The main difference is that Remote Rmf Analysts conduct risk assessments and analysis, while Remote Rmf Reviewers focus on reviewing and validating risk management files. Both roles require similar credentials and work in the same industry, but their responsibilities differ in scope and focus.

More about Remote Rmf Analyst jobs

What cities are hiring for Remote Rmf Analyst jobs?

Cities with the most Remote Rmf Analyst job openings:

What are the most commonly searched types of Rmf Analyst jobs?

The most popular types of Rmf Analyst jobs are:

What states have the most Remote Rmf Analyst jobs?

States with the most job openings for Remote Rmf Analyst jobs include:

Infographic showing various Remote Rmf Analyst job openings in the United States as of August 2026, with employment types broken down into 89% Full Time, 6% Part Time, and 5% Contract. Highlights an 82% Physical, 7% Hybrid, and 11% Remote job distribution, with an average salary of $107,334 per year, or $51.6 per hour.

RMF Analyst

Semper Valens Solutions

Canyon Lake, TX • Remote

Full-time

Posted 9 days ago


Job description

RMF AnalystFull Time, Remote, San Antonio, TX areaSecret Clearance **This position is contingent upon contract award** Overview:Semper Valens Solutions is seeking a detail-oriented RMF Analyst to support the assessment, authorization, and continuous monitoring of information systems in accordance with the NIST Risk Management Framework (RMF) and applicable federal cybersecurity guidelines (NIST SP 800-37, 800-53, 800-53A, FISMA, DoD 8510.01, and CNSSI 1253, as applicable). This role is critical to ensuring organizational systems achieve and maintain an Authorization to Operate (ATO) by supporting security categorization, control selection, implementation, assessment, and continuous monitoring activities throughout the system lifecycle.Key ResponsibilitiesSupport execution of the RMF process across all six steps: Categorize, Select, Implement, Assess, Authorize, and MonitorDevelop, review, and maintain security authorization documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and Risk Assessment Reports (RARs)Conduct security control assessments against NIST SP 800-53/800-53A control baselines and document findingsPerform security categorization of information systems using FIPS 199/200 and NIST SP 800-60Coordinate with system owners, ISSOs, and ISSMs to identify, track, and remediate security vulnerabilities and control deficienciesSupport continuous monitoring activities, including periodic control assessments, vulnerability scanning review, and configuration compliance checksAssist in the preparation and submission of Authorization to Operate (ATO), Interim ATO (IATO), and Authorization to Test (ATT) packagesUtilize GRC tools (e.g., eMASS, Xacta, CSAM, Archer) to manage authorization packages and track compliance statusReview and analyze security assessment results, audit logs, and scan reports (e.g., ACAS/Nessus, STIG checklists) to identify risksSupport development and tracking of POA&Ms, ensuring timely remediation of identified weaknessesEnsure compliance with applicable frameworks, including FISMA, DoD RMF, CNSSI 1253, and agency-specific cybersecurity policiesPrepare risk briefings and status reports for leadership, Authorizing Officials (AOs), and government stakeholdersStay current on evolving NIST guidance, DoD/agency policy updates, and emerging cybersecurity threats affecting authorization requirementsRequired QualificationsBachelor's degree in Cybersecurity, Information Assurance, Computer Science, or related field (or equivalent experience)3+ years of experience supporting RMF, C&A/A&A processes within federal, DoD, or Intelligence Community environmentsWorking knowledge of NIST SP 800-37, 800-53, 800-53A, 800-60, and FIPS 199/200Experience developing or reviewing SSPs, SARs, POA&Ms, and RAR documentationFamiliarity with DoD or agency-specific implementation guides (e.g., DoDI 8510.01, ICD 503, CNSSI 1253)Hands-on experience with GRC/eMASS or equivalent RMF tracking toolsUnderstanding of vulnerability management and STIG/SCAP compliance processesActive DoD 8570/8140-compliant certification (e.g., Security+, CySA+, or equivalent) - required or attainable within 6 months of hireStrong written communication skills for technical documentation and stakeholder reportingU.S. Citizenship required; active security clearance or eligibility to obtain one, per position requirementsPreferred QualificationsActive Secret clearanceCISSP, CAP (Certified Authorization Professional), or CISM certificationExperience with cloud authorization processes (FedRAMP, DoD Cloud Computing SRG)Familiarity with vulnerability scanning tools (ACAS/Nessus, Tenable) and SCAP compliance checkersExperience supporting Cybersecurity Service Provider (CSSP) or SOC operationsKnowledge of Zero Trust Architecture principles and their application to RMFExperience working within Intelligence Community (IC) or Defense Industrial Base (DIB) environments   About Semper Valens Solutions:Semper Valens Solutions, Inc. (SVS) is a Service-Disabled Veteran Owned Small Business (SDVOSB) providing Cost Effective Software and Systems Engineering, Field Support, Training and Full Life cycle Support Management to the DOD and VA community.At Semper Valens, our vision is to remain a creative, cutting edge and cost-effective solutions provider where our shared intellect, industry experience, and technology excellence, make a positive difference in our customer's success. Our solutions help bridge the gap between IT and business prioritizations to optimize budgets, risks and operational processes.We search for outstanding technical professionals, hiring at all levels of the experience spectrum; intermediate, journeyman and senior. Consider us for your career plan.Semper Valens Solutions is an Equal Opportunity EmployerSemper Valens Solutions proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital/parental status, pregnancy/childbirth, or related conditions, physical or mental disability, genetic information, status as a Disabled Veteran, Recently Separated Veteran, Active-Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.If you require a reasonable accommodation to apply for a position with Semper Valens Solutions through its online applicant system, please contact Semper Valens Solutions Human Resources Department at (830) 899-6870.Semper Valens Solutions is an affirmative action/equal opportunity employer - minorities, females, disabled, and protected veterans are urged to apply. Applicants have rights under Federal Employment Laws.All Jobs at Semper Valens Solutions: https://sempervalens.com/careers