2

Remote Rmf Jobs in Aldie, VA (NOW HIRING)

OWASP AI Testing Guide, NIST AI Risk Management Framework (RMF) Location: Remote, with occasional travel to customer sites or TestPros labs in Sterling, VA This role evaluates AI systems and software ...

Cybersecurity Engineer - ISSO

Vienna, VA · On-site +1

$160K - $200K/yr

None Potential for Remote Work: ORA_ON_SITE Description SAIC is seeking a Cyber Security Engineer ... Execute RMF processes for Assessment & Authorization (A&A). * Develop/maintain SSPs, POA&Ms, SARs ...

Manager, Cyber Security

Reston, VA · Remote

$115K - $156K/yr

... require RMF alignment, assessment documentation, POA&M management, contingency planning ... This position is remote within the United States. Please note that ICF monitors employee work ...

IA Engineer

Chantilly, VA · On-site +1

$99K - $225K/yr

Remote Work: No Job Number: R0245020 Location: Chantilly,VA,US Share job via: Share IA Engineer The ... Experience supporting RMF activities, including documentation in tools such as EMASS, SNOW, or ...

Lead the technical execution of the RMF process to achieve and maintain Authority to Operate (ATO ... Work is typically based in a remote working environment and subject to frequent interruptions.

Security Compliance Architect

VA · On-site +1

$65.25 - $84.25/hr

... 15, 2026 City Remote Country United States Working time Full-time Description & Requirements ... This role leads to RMF activities, develops authorization artifacts, and ensures adherence to ...

Lead the technical execution of the RMF process to achieve and maintain Authority to Operate (ATO ... Work is typically based in a remote working environment and subject to frequent interruptions.

Experience supporting all RMF steps, security categorizations, creating and updating security artifacts and FISMA security documents, control implementation details, and Plan of Action and Milestones ...

ISSO Security Analyst-SSA

VA · On-site +1

$52.41/hr

Experience supporting all RMF steps, security categorizations, creating and updating security artifacts and FISMA security documents, control implementation details, and Plan of Action and Milestones ...

None Potential for Remote Work: ORA_ON_SITE Description SAIC is a trusted leader in delivering ... Produce RMF/cATO‑ready cyber evidence (scan results, mitigation records, SBOM/SCA, logs)

next page

Showing results 1-20

Remote Rmf information

See Aldie, VA salary details

$29.1K

$93.7K

$168.3K

How much do remote rmf jobs pay per year?

As of Aug 16, 2026, the average yearly pay for remote rmf in Aldie, VA is $93,721.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,900.00 and $125,900.00 per year, depending on experience, location, and employer.

What is a remote RMF?

A Remote RMF (Risk Management Framework) job involves managing cybersecurity risk and compliance for an organization while working remotely. Professionals in this role ensure that IT systems align with federal security standards, such as those outlined by NIST. Responsibilities may include conducting risk assessments, implementing security controls, and maintaining compliance documentation. Remote RMF specialists often work with government agencies, contractors, or private companies handling sensitive data. This position requires expertise in cybersecurity policies, risk management, and regulatory compliance.

What are the typical daily responsibilities of a remote RMF?

As a Remote RMF Specialist, your daily responsibilities often include conducting security assessments, preparing and reviewing authorization packages, and ensuring ongoing compliance with federal information security standards. You'll collaborate with cross-functional teams to identify risks, develop mitigation strategies, and document security control implementations. Regular communication with stakeholders, participation in virtual meetings, and continual monitoring of systems and processes to ensure compliance are also core aspects of the job. This role leverages remote work tools to collaborate effectively with cybersecurity, IT, and compliance professionals across multiple locations.

What are the key skills and qualifications needed to thrive in the remote RMF position, and why are they important?

To thrive as a Remote RMF (Risk Management Framework) Specialist, you need a strong understanding of information security principles, federal risk management frameworks (such as NIST SP 800-37), and relevant cybersecurity policies, typically backed by a degree in information security or related field. Familiarity with security assessment tools, governance, risk, and compliance (GRC) software, as well as certifications like CISSP, CAP, or CISM, is highly valued. Excellent organizational skills, attention to detail, and the ability to communicate complex security concepts clearly are important soft skills. These capabilities are critical to ensure regulatory compliance and robust information system security in a remote work context.

What are popular job titles related to Remote Rmf jobs in Aldie, VA?

For Remote Rmf jobs in Aldie, VA, the most frequently searched job titles are:

What cities near Aldie, VA are hiring for Remote Rmf jobs?

Cities near Aldie, VA with the most Remote Rmf job openings:

Infographic showing various Remote Rmf job openings in Aldie, VA as of August 2026, with employment types broken down into 89% Full Time, and 11% Part Time. Highlights an 100% Remote job distribution, with an average salary of $93,721 per year, or $45.1 per hour.

Defensive Cybersecurity Advisor - RMF/A&A Lead

Quality Business Engineering

Haymarket, VA • On-site, Remote

$102K - $138K/yr

Full-time

Medical, Life, Retirement, PTO

Posted 6 days ago


Job description

Job Type
Full-time
Description
About QBE, LLC
QBE, LLC is a small business dedicated to delivering innovative technology, cybersecurity, and mission-support solutions to federal government customers. Our experienced professionals work closely with our customers to solve complex challenges, protect critical information, and support essential government missions.
At QBE, we turn the possible into the proven.
Overview
QBE, LLC is seeking an experienced Defensive Cybersecurity Advisor - RMF/A&A Lead to support comprehensive information security services for the National Institutes of Health, Office of the Director, Office of Information Technology (NIH/OD-OIT).
Responsibilities
  • Lead and coordinate Risk Management Framework (RMF) and Assessment and Authorization (A&A) activities for federal information systems and applications.
  • Provide subject-matter expertise related to federal cybersecurity requirements, security authorization processes, and risk management.
  • Guide system owners and technical teams through the full system authorization lifecycle.
  • Develop, review, and maintain security authorization documentation, including:

o System Security Plans
o Security Assessment Plans and Reports
o Plans of Action and Milestones
o Risk assessments
o Security control implementation statements
o Contingency planning documentation
o Continuous monitoring documentation
  • Evaluate system security controls using applicable NIST guidance and federal security requirements.
  • Coordinate security assessments, control testing, evidence collection, and remediation activities
  • Review system changes to determine potential impacts on security authorizations and organizational risk.
  • Identify cybersecurity risks, control deficiencies, and compliance gaps and recommend appropriate corrective actions.
  • Track security findings, vulnerabilities, and remediation activities through closure
  • Support continuous monitoring activities for Low- and Moderate-impact systems.
  • Review technical and nontechnical security documentation for accuracy, consistency, and compliance.
  • Provide cybersecurity guidance for on-premises, cloud-based, hybrid, and third-party systems.
  • Support Governance, Risk, and Compliance initiatives across the customer environment.
  • Collaborate with Security Operations and Engineering teams to ensure technical security activities align with RMF and authorization requirements.
  • Assist with the development and improvement of cybersecurity policies, procedures, standards, and governance processes.
  • Prepare cybersecurity status reports, risk summaries, dashboards, and briefing materials for technical and executive audiences.
  • Participate in meetings with government stakeholders, system owners, auditors, assessors, and cybersecurity personnel.
  • Provide recommendations that support the continued improvement and maturation of the organization's cybersecurity program.

**This position will be primarily REMOTE but will require some onsite work in Bethesda, MD
#qf #qg
Requirements
Minimum Qualifications
  • Associate degree in cybersecurity, information technology, computer science, information systems, or a related field, or an additional two or more years of relevant experience in place of the degree requirement.
  • At least eight years of relevant cybersecurity, information assurance, risk management, or security compliance experience.
  • Demonstrated experience leading RMF and A&A activities for federal information systems.
  • Working knowledge of NIST Special Publication 800-37, NIST Special Publication 800-53, FIPS 199, FIPS 200, and related federal cybersecurity guidance.
  • Experience developing, reviewing, and maintaining security authorization documentation.
  • Experience assessing security controls and supporting security control validation activities.
  • Experience managing Plans of Action and Milestones and tracking remediation activities.
  • Experience supporting Low- and Moderate-impact federal information systems.
  • Understanding of cybersecurity risks associated with hybrid, cloud-based, on-premises, and third-party environments.
  • Ability to communicate complex cybersecurity and compliance requirements to technical and nontechnical stakeholders.
  • Strong documentation, analytical, organizational, and problem-solving skills.
  • CompTIA Security+ certification.
  • CompTIA SecurityX certification.
  • Ability to obtain and maintain the required Public Trust determination associated with the position.

Preferred Qualifications
  • Bachelor's degree in cybersecurity, information technology, computer science, information systems, or a related field.
  • Experience supporting cybersecurity programs within the Department of Health and Human Services, National Institutes of Health, or another federal civilian agency.
  • Experience supporting environments that process protected health information, personally identifiable information, research data, or other sensitive information.
  • Familiarity with federal privacy, healthcare data protection, and information security requirements.
  • Experience with Governance, Risk, and Compliance platforms or automated security authorization tools.
  • Experience supporting cloud security assessments and authorization activities.
  • Experience briefing senior government leadership on cybersecurity risks, findings, and remediation strategies.
  • Additional certifications such as CISSP, CGRC, CISM, or other advanced cybersecurity credentials.

Physical Requirements
  • Ability to remain in a stationary position for extended periods while working at a computer.
  • Ability to operate standard office equipment and communicate effectively through virtual and in-person meetings.
  • Ability to perform duties in an office, remote, or hybrid work environment based on program requirements.

Equal Opportunity Employer
QBE is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender, gender-identity and/or expression, age, disability, Veteran status, genetic information, pregnancy (including childbirth, lactation, or related medical conditions), marital status, neurodivergence, ethnicity, ancestry, caste, military/uniformed service-member status, or any other characteristic protected by applicable law.
The projected compensation range for this position is $149,282.00 - $207,459.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (for remote opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, QBE invests in its employees beyond just compensation. QBE's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.