2

Remote Rmf Jobs in Oregon (NOW HIRING)

As the cybersecurity engineer, you will be responsible for supporting all aspects of the RMF ... Experience working in a remote team or asynchronous work environment where focus, discipline, and ...

Sr. Cybersecurity Engineer

OR · On-site +1

$121K - $153K/yr

This position may be remote from any location within the United States. Responsibilities * Build ... Practical experience applying NIST CSF and NIST RMF. * Strong understanding of threat modeling ...

This position may be remote from any location within the United States. Responsibilities * Build ... Practical experience applying NIST CSF and NIST RMF. * Strong understanding of threat modeling ...

Senior Network Engineer

$103K - $142K/yr

... with NIST RMF * Secure perimeter and public-facing assets through ingress/egress filtering ... Remote, US Working at DMI DMI is a diverse, prosperous, and rewarding place to work. Our culture is ...

Familiarity with AI risk management frameworks (e.g., NIST AI RMF) * Experience in the music, media ... Relocation to Bologna (Italy) or remote work. We are a hybrid company. * Italian and English ...

Everforth ECS is seeking a Cybersecurity Architect to work in our Portland, OR/Remote office. Seeking a collaborative, experienced Cybersecurity Architect to provide technical leadership in designing ...

Remote, US Type of Employment: Full-time, permanent FLSA Classification (USA Only): Exempt Work Environment: The physical demands described here are representative of those that must be met by an ...

This is a remote, hourly position . At this time, HealthEquity does not employ hourly team members in the following states: California, Nevada, New Jersey, New York, Oregon, and Rhode Island. #LI ...

If the role is remote, there may be occasions that you are requested to come to the office based on business need. Any requests to come to the office would be communicated with you in advance. What ...

Remote Department: Security Schedule: Full Time, Days Salary: $105,830.21 - $147,521.09 per year #LI-Remote How you'll make an impact in this role * Adversary Attribution & Mapping: Collect, pivot ...

Cyber Hunt Senior Analyst

$99K - $128K/yr

Remote work requires a high level of trust in our employees, and we strictly adhere to the details outlined in our Remote Work Policy below. Eligibility Requirements: U.S. Citizenship is required due ...

Remote work requires a high level of trust in our employees, and we strictly adhere to the details outlined in our Remote Work Policy below. Eligibility Requirements: U.S. Citizenship is required due ...

This is a fully remote opportunity. Please see below to find the and desired qualifications: Responsibilities: The primary responsibilities of a DevSecOps Specialist include: • CI/CD Pipeline ...

Remote Experience: Mid-Level Job Function: IT Compliance Employment Type: Full-Time Industry: Computer Network & Security Job Summary The Information Security Engineer is responsible for executing ...

Fully remote position (US-based) with the flexibility to work from anywhere in+ $500 stipend to help you set up your ideal home workspace. * Health Benefits : We offer medical, dental, & vision ...

next page

Showing results 1-20

Remote Rmf information

What is a Remote RMF job?

A Remote RMF (Risk Management Framework) job involves managing cybersecurity risk and compliance for an organization while working remotely. Professionals in this role ensure that IT systems align with federal security standards, such as those outlined by NIST. Responsibilities may include conducting risk assessments, implementing security controls, and maintaining compliance documentation. Remote RMF specialists often work with government agencies, contractors, or private companies handling sensitive data. This position requires expertise in cybersecurity policies, risk management, and regulatory compliance.

What are the typical daily responsibilities of a Remote RMF Specialist?

As a Remote RMF Specialist, your daily responsibilities often include conducting security assessments, preparing and reviewing authorization packages, and ensuring ongoing compliance with federal information security standards. You'll collaborate with cross-functional teams to identify risks, develop mitigation strategies, and document security control implementations. Regular communication with stakeholders, participation in virtual meetings, and continual monitoring of systems and processes to ensure compliance are also core aspects of the job. This role leverages remote work tools to collaborate effectively with cybersecurity, IT, and compliance professionals across multiple locations.

What are the key skills and qualifications needed to thrive in the Remote Rmf position, and why are they important?

To thrive as a Remote RMF (Risk Management Framework) Specialist, you need a strong understanding of information security principles, federal risk management frameworks (such as NIST SP 800-37), and relevant cybersecurity policies, typically backed by a degree in information security or related field. Familiarity with security assessment tools, governance, risk, and compliance (GRC) software, as well as certifications like CISSP, CAP, or CISM, is highly valued. Excellent organizational skills, attention to detail, and the ability to communicate complex security concepts clearly are important soft skills. These capabilities are critical to ensure regulatory compliance and robust information system security in a remote work context.

What job categories do people searching Remote Rmf jobs in Oregon look for? The top searched job categories for Remote Rmf jobs in Oregon are:
What cities in Oregon are hiring for Remote Rmf jobs? Cities in Oregon with the most Remote Rmf job openings:
Cybersecurity Engineer

Other

Posted yesterday


Job description

EMPLOYER IS A CONTRACTOR FOR THE U.S. GOVERNMENT. THIS POSITION WILL REQUIRE U.S. CITIZENSHIP.Role Description: 

As the cybersecurity engineer, you will be responsible for supporting all aspects of the RMF process from accreditation of the platform to establish a cATO for our Software Factory implementation. You will be expected to champion modern, continuous security implementations within DoD environments and systems (approval processes). Your perpetual goal will be to accelerate the ATO process while simultaneously improving our security posture, thus pushing for cultural change away from security theater and towards responsive and resilient systems. While working within the existing DoD processes, you will also work with other engineers to find the best paths forward and even contribute to capabilities and open source solutions to further streamline ongoing and future efforts.

Responsibilities: 

  • Leading and pathfinding the effort to achieve accreditation in accordance with NIST-800 series requirements.
  • Developing and implementing cybersecurity policies, procedures, and controls necessary to meet DoD accreditation standards. 
  • Conducting comprehensive risk assessments and vulnerability analyses to identify potential security threats and mitigate risks. 
  • Collaborating with cross-functional teams including software developers, system architects, and other Government stakeholders to integrate cybersecurity measures into the software development lifecycle. 
  • Performing security testing and evaluation of our software platform to identify vulnerabilities and weaknesses (STIGs, ACAS, CI/CD security testing, etc.) Providing guidance and support to ensure continuous monitoring and maintenance of cybersecurity controls. 
  • Preparing and maintaining documentation required for the accreditation process, including System Security Plans (SSPs), Security Assessment Reports (SARs), and other relevant artifacts. 
  • Staying up-to-date with evolving cybersecurity threats, technologies, and regulations to proactively address security challenges and compliance requirements. Serving as a subject matter expert on cybersecurity best practices, standards, and procedures within the organization. 
  • Supporting automated Compliance-as-Code capabilities that continuously evaluate the cybersecurity posture of the tech stack.

The listed responsibilities are not exhaustive and additional responsibilities may be assigned based on the evolving needs of the organization. We are seeking a dynamic individual who is able to adapt and take on new responsibilities as they arise. 

Preferred Experience and Qualifications: 

  • Proven experience in cybersecurity engineering, with a focus on achieving accreditation for software systems within the DoD environment. 
  • In-depth knowledge of NIST-800 series standards, particularly NIST-800-53, and experience applying these standards to achieve accreditation. 
  • Skilled at translating technical implementation (infrastructure as code and configuration as code) into verifiable eMASS security control responses that Approving Officials (AOs), and their staffs, can understand. 
  • Strong understanding of cybersecurity principles, technologies, and best practices, including encryption, authentication, access control, and secure coding practices. Hands-on experience with security assessment tools and techniques, such as vulnerability scanning and security analysis. 
  • Familiarity with software development methodologies and practices, particularly Agile and DevSecOps.
  • Excellent analytical and problem-solving skills, with the ability to assess complex systems and identify security risks.
  • Effective communication and interpersonal skills, with the ability to collaborate with cross-functional teams and communicate technical concepts to non-technical stakeholders. 
  • Eligibility to obtain and maintain a DoD security clearance. 
  • Eligibility to obtain and maintain privileged access in a Government Cloud Environment (relevant training and/or certifications).

Desired Experience: 

  • Experience building and supporting continuous authority to operate (cATO) packages within the DoD 
  • Experience with Open Security Controls Assessment Language (OSCAL)
  • Ability to use OSCAL to manage control implementation and statements as "compliance as code" 
  • Understand how products and deployments affect the OSCAL lifecycle from upstream to operations 
  • Familiarity with Department of the Air Force (DAF) security approval processes to include AFI 17-101 
  • Familiarity with DAF Gov Cloud offerings and inherited controls in Gov Cloud environments 
  • Familiarity with the Cloud Computing Security Requirements Guide (CC SRG)
  • Experience working in a remote team or asynchronous work environment where focus, discipline, and comfort navigating/leveraging various communication forms and frequencies to disseminate and prioritize information and keep stakeholders informed