2

Remote Rmf Jobs in Virginia (NOW HIRING)

ISSO Security Analyst

Stafford, VA · On-site +1

$99K - $225K/yr

  • Medical

  • Life

  • Retirement

  • PTO

Remote Work: No Job Number: R0245454 Location: Stafford,VA,US Share job via: Share ISSO Security ... Experience supporting all RMF steps, security categorizations, creating and updating security ...

Lead the technical execution of the RMF process to achieve and maintain Authority to Operate (ATO ... Work is typically based in a remote working environment and subject to frequent interruptions.

Security Compliance Architect

VA · On-site +1

$65.25 - $84.25/hr

  • Medical

  • Life

  • Retirement

  • PTO

... 15, 2026 City Remote Country United States Working time Full-time Description & Requirements ... This role leads to RMF activities, develops authorization artifacts, and ensures adherence to ...

Lead the technical execution of the RMF process to achieve and maintain Authority to Operate (ATO ... Work is typically based in a remote working environment and subject to frequent interruptions.

Showing results 21-40

Remote Rmf information

See Virginia salary details

$29.2K

$94.1K

$169K

How much do remote rmf jobs pay per year?

As of Aug 16, 2026, the average yearly pay for remote rmf in Virginia is $94,111.00, according to ZipRecruiter salary data. Most workers in this role earn between $49,100.00 and $126,400.00 per year, depending on experience, location, and employer.

What is a remote RMF?

A Remote RMF (Risk Management Framework) job involves managing cybersecurity risk and compliance for an organization while working remotely. Professionals in this role ensure that IT systems align with federal security standards, such as those outlined by NIST. Responsibilities may include conducting risk assessments, implementing security controls, and maintaining compliance documentation. Remote RMF specialists often work with government agencies, contractors, or private companies handling sensitive data. This position requires expertise in cybersecurity policies, risk management, and regulatory compliance.

What are the typical daily responsibilities of a remote RMF?

As a Remote RMF Specialist, your daily responsibilities often include conducting security assessments, preparing and reviewing authorization packages, and ensuring ongoing compliance with federal information security standards. You'll collaborate with cross-functional teams to identify risks, develop mitigation strategies, and document security control implementations. Regular communication with stakeholders, participation in virtual meetings, and continual monitoring of systems and processes to ensure compliance are also core aspects of the job. This role leverages remote work tools to collaborate effectively with cybersecurity, IT, and compliance professionals across multiple locations.

What are the key skills and qualifications needed to thrive in the remote RMF position, and why are they important?

To thrive as a Remote RMF (Risk Management Framework) Specialist, you need a strong understanding of information security principles, federal risk management frameworks (such as NIST SP 800-37), and relevant cybersecurity policies, typically backed by a degree in information security or related field. Familiarity with security assessment tools, governance, risk, and compliance (GRC) software, as well as certifications like CISSP, CAP, or CISM, is highly valued. Excellent organizational skills, attention to detail, and the ability to communicate complex security concepts clearly are important soft skills. These capabilities are critical to ensure regulatory compliance and robust information system security in a remote work context.

What cities in Virginia are hiring for Remote Rmf jobs?

Cities in Virginia with the most Remote Rmf job openings:

Infographic showing various Remote Rmf job openings in Virginia as of August 2026, with employment types broken down into 92% Full Time, 4% Part Time, and 4% Contract. Highlights an 85% Physical, 6% Hybrid, and 9% Remote job distribution, with an average salary of $94,111 per year, or $45.2 per hour.

Information Systems Security Manager (ISSM)

Tetra Tech

Arlington, VA • Remote

Full-time

Medical, Dental, Vision, Life, Retirement

Re-posted 14 days ago


Tetra Tech rating

6.4

Company rating: 6.4 out of 10

Based on 42 frontline employees who took The Breakroom Quiz

402nd of 449 rated engineering


Job description

Position Summary:

Segue Technologies is seeking an Information Systems Security Manager (ISSM) to support an Authorization to Operate (ATO) effort on a U.S. Air Force Salesforce program. Candidates will lead controls definition, documentation, evidence collection, and interface with government stakeholders to support approval activities. This is a full-time remote position; occasional travel may be required (<10%).  This position is contingent upon contract award.

Job Duties and Responsibilities:

  • Own RMF controls documentation and evidence submission for the program ATO package, inheriting from an existing platform-level SIA.
  • Define and document security controls applicable to a Salesforce Government Cloud Plus Defense (IL-5/Hyperforce Gov) environment.
  • Coordinate with government counterparts on control review, approval gates, and ATO milestones.
  • Support continuous monitoring requirements and prepare artifacts for AO review.
  • Identify control gaps and work with the engineering team to remediate findings.

Required Skills :

  • Bachelor's Degree or equivalent and 5+ years of related experience.

  • 5+ years of cybersecurity / RMF experience on DoD programs.

  • Direct experience with DoD RMF (NIST 800-53, eMASS or equivalent ATO tooling).

  • Ability to communicate technical controls requirements to both government stakeholders and engineering teams.

  • Demonstrated ability to make decisions by assessing the situation to determine the importance, urgency, and risks, and making clear decisions which are timely and in the best interest of the organization.

  • Experience obtaining ATO(s) for modern, cloud-based SaaS in DoD/W required, Salesforce-specific ATO experience preferred.

  • Strong familiarity with Federal compliance standards such as NIST 800-53, FIPS, FedRAMP.

  • IAT Level II Certification required (CompTIA Security+, GSEC, SSCP, or CCNA-Security) OR Active Security +, CAP, CASP or CISSP certification

  • Must hold or be able to pass a Federal Background investigation to obtain a T1 (also known as Public Trust or NACI).

Additional Desired Skills :

  • Salesforce experience
  • Familiarity with aircrew LMS systems (PEX, GTIMS, Puckboard)
  • Active DoD Secret Clearance (ability to obtain)

Our compensation package includes: Competitive Annual Salaries, Rewards and Recognition Program, Employee Stock Purchase Plan, Time Off with Pay (MyFlex Time) that Increases with Seniority, Life and Disability Insurance, 401K Retirement Plan with Employer Contribution, Dental, Vision, and Health Insurance, Flexible Spending Account, Tuition and Training Reimbursement.

Segue Technologies is a wholly owned subsidiary of Tetra Tech, Inc. Segue is based out of Arlington, VA, with a presence in over 14 states and DC. We support Federal and DoD organizations to develop and enhance mission-critical business systems. We provide custom software applications, solve data management problems, and support the evolution of the mobile workforce.

Segue Technologies, Inc. is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. Please visit our website, www.seguetech.com/careers , to submit an application. 

Additional Information
  • Organization: 132 SEG

What Tetra Tech employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom