2

Remote Rmf Analyst Jobs in Ashburn, VA (NOW HIRING)

Dive into innovation in Digital Transformation, Cybersecurity, IT, Data Analytics and Software ... This role supports Authorization and Accreditation (A&A), Risk Management Framework (RMF) ATO ...

Manager, Cyber Security

Reston, VA · Remote

$115K - $156K/yr

... require RMF alignment, assessment documentation, POA&M management, contingency planning ... This position is remote within the United States. Please note that ICF monitors employee work ...

IA Engineer

Chantilly, VA · On-site +1

$99K - $225K/yr

... analysis * Ability to decompose RMF security requirements such as DoD JSIG, DAAG, or ICD-503 into ... Remote : If this position is listed as remote, there may still be occasions when you are required ...

Security Compliance Architect

VA · On-site +1

$65.25 - $84.25/hr

This role leads to RMF activities, develops authorization artifacts, and ensures adherence to ... design, analysis, and development of secure enterprise IT systems and architecture solutions ...

Bethesda, MD (mostly remote, occasional onsite required) Work schedule: 40 hrs/week Compensation ... NIST RMF (800-37) and NIST SP 800-53 Rev. 5 * JCAM methodology * Experience reviewing security ...

Bethesda, MD (mostly remote, occasional onsite required) Work schedule: 40 hrs/week Compensation ... NIST RMF (800-37) and NIST SP 800-53 Rev. 5 * JCAM methodology * Experience reviewing security ...

Bethesda, MD (mostly remote, occasional onsite required) Work schedule: 40 hrs/week Compensation ... NIST RMF (800-37) and NIST SP 800-53 Rev. 5 * JCAM methodology * Experience reviewing security ...

Bethesda, MD (mostly remote, occasional onsite required) Work schedule: 40 hrs/week Compensation ... NIST RMF (800-37) and NIST SP 800-53 Rev. 5 * JCAM methodology * Experience reviewing security ...

Bethesda, MD (mostly remote, occasional onsite required) Work schedule: 40 hrs/week Compensation ... NIST RMF (800-37) and NIST SP 800-53 Rev. 5 * JCAM methodology * Experience reviewing security ...

Bethesda, MD (mostly remote, occasional onsite required) Work schedule: 40 hrs/week Compensation ... NIST RMF (800-37) and NIST SP 800-53 Rev. 5 * JCAM methodology * Experience reviewing security ...

Bethesda, MD (mostly remote, occasional onsite required) Work schedule: 40 hrs/week Compensation ... NIST RMF (800-37) and NIST SP 800-53 Rev. 5 * JCAM methodology * Experience reviewing security ...

Bethesda, MD (mostly remote, occasional onsite required) Work schedule: 40 hrs/week Compensation ... NIST RMF (800-37) and NIST SP 800-53 Rev. 5 * JCAM methodology * Experience reviewing security ...

Showing results 41-60

Remote Rmf Analyst information

See Ashburn, VA salary details

$40.4K

$109.8K

$144.2K

How much do remote rmf analyst jobs pay per year?

As of Sep 5, 2026, the average yearly pay for remote rmf analyst in Ashburn, VA is $109,760.00, according to ZipRecruiter salary data. Most workers in this role earn between $93,600.00 and $132,900.00 per year, depending on experience, location, and employer.

What is the difference between Remote Rmf Analyst vs Remote Rmf Reviewer?

AspectRemote Rmf AnalystRemote Rmf Reviewer
CredentialsTypically requires a degree in life sciences, healthcare, or related field; certifications like RAC or RAC-ML are commonSimilar credentials as Rmf Analyst, often with additional experience in review processes
Work EnvironmentPerforms analysis, risk assessments, and compliance evaluations remotely for pharmaceutical or biotech companiesFocuses on reviewing and validating RMF documents and reports remotely within regulatory teams
Employer & IndustryPharmaceutical, biotech, or medical device companiesRegulatory consulting firms, pharmaceutical companies, or biotech firms

The main difference is that Remote Rmf Analysts conduct risk assessments and analysis, while Remote Rmf Reviewers focus on reviewing and validating risk management files. Both roles require similar credentials and work in the same industry, but their responsibilities differ in scope and focus.

What job categories do people searching Remote Rmf Analyst jobs in Ashburn, VA look for?

The top searched job categories for Remote Rmf Analyst jobs in Ashburn, VA are:

What cities near Ashburn, VA are hiring for Remote Rmf Analyst jobs?

Cities near Ashburn, VA with the most Remote Rmf Analyst job openings:

Infographic showing various Remote Rmf Analyst job openings in Ashburn, VA as of August 2026, with employment types broken down into 85% Full Time, 7% Part Time, 1% Temporary, and 7% Contract. Highlights an 81% Physical, 7% Hybrid, and 12% Remote job distribution, with an average salary of $109,760 per year, or $52.8 per hour.

Cyber Security Assessment & Authorization SME

ESM

Vienna, VA • Remote

$105K - $125K/yr

Full-time

Re-posted 14 days ago


Job description

Enterprise Solutions and Management (ESM) is a rapidly growing government contractor that provides strategic IT services that meet mission needs for Defense and Federal customers. We are hiring a Cyber Security Assessment & Authorization SME for an exciting remote opportunity.Job Description and ResponsibilitiesThe successful candidate serves as a Cybersecurity Subject Matter Expert (SME) for the Assessment and Authorization (A&A) of information systems, ensuring compliance with Department of Defense (DoD) and Defense Logistics Agency (DLA) cybersecurity policies, procedures, and the Risk Management Framework (RMF). They execute cybersecurity authorization processes to obtain and maintain system authorizations while providing expert guidance to stakeholders throughout the authorization lifecycle. They apply a strong understanding of NIST SP 800-53 security controls to assess and authorize complex enterprise IT environments, including cloud-hosted services, operational technology, application information systems, and outsourced IT services across large and diverse infrastructures. The successful candidate evaluates security control deficiencies, determines residual risk and the potential impact of identified vulnerabilities on system authorization, and develops risk-based recommendations to support informed decision-making. They also communicate the status, progress, and outcomes of RMF activities by briefing senior leadership and collaborating with technical and program stakeholders to ensure secure, compliant, and mission-ready information systems.Required Knowledge, Skills and Abilities (KSA)Expert knowledge of the Department of Defense (DoD) Risk Management Framework (RMF), Assessment and Authorization (A&A) processes, and applicable DoD, DLA, and NIST cybersecurity policies and guidance, including NIST SP 800-53 security controls.Demonstrated ability to plan, execute, and maintain cybersecurity authorizations for complex information systems, ensuring compliance throughout the system lifecycle and supporting timely authorization decisions.Skill in assessing security controls, identifying and evaluating control deficiencies, analyzing residual risk, and developing risk-based recommendations to support informed authorization and cybersecurity risk management decisions.Knowledge of cybersecurity principles and best practices for enterprise IT environments, including cloud-hosted services, operational technology (OT), application information systems, and outsourced IT services across large, complex infrastructures.Ability to serve as a cybersecurity subject matter expert (SME) by providing technical guidance, interpreting cybersecurity requirements, and collaborating with system owners, program managers, engineers, and other stakeholders to achieve compliance and mission objectives.Skill in communicating complex cybersecurity concepts and RMF activities through clear written documentation, briefings, and presentations to senior leadership, technical teams, and other stakeholders regarding authorization status, risks, and recommended courses of action.Desired KSABe a positive, self-motivated, and proactive person with the ability to adapt to change and tolerate stressful situationsCandidate must communicate effectively with team members, team lead, management, and government customerMinimum Training, Education, and CertificationsFive (5) years of relevant certification and accreditation experience; Risk Management Framework (RMF) and NIST C&A experience; DOD cybersecurity experience. Experience for large complex organizations.8570/8140 compliant certificationMinimum ClearanceSecretPhysical RequirementsRequired to stand, walk and sit; communicate verbally both in person and by telephone; use hands to finger, handle or feel objects or controls; reach with hands and arms. Specific vision abilities required by this job include close vision, distance vision, depth perception, color vision and the ability to adjust focus.Additional RequirementsOther duties as assignedESM provides equal employment opportunity to all individuals regardless of race, color, creed, religion, gender, age, sexual orientation, national origin or ancestry, disability, genetic information, veteran status, gender identification or any other characteristic protected by state, federal or local law.