2

Remote Rmf Jobs in Aldie, VA (NOW HIRING)

None Potential for Remote Work: ORA_ON_SITE Description SAIC is a trusted leader in delivering ... Produce RMF/cATO‑ready cyber evidence (scan results, mitigation records, SBOM/SCA, logs)

Support RMF, ATO, cybersecurity compliance, and secure-by-design implementation approaches. * Drive ... privileged access management, remote identity verification, and credential management.

Support RMF, ATO, cybersecurity compliance, and secure-by-design implementation approaches. * Drive ... privileged access management, remote identity verification, and credential management.

FTE + Benefits Remote: 80% (4 days a week) Client supports the FedRAMP and FISMA authorization(s ... Identify and assess Cloud System state, including vulnerabilities, RMF package status/accreditation ...

FTE + Benefits Remote: 80% (4 days a week) Supports the FedRAMP and FISMA authorization(s) of new ... Identify and assess Cloud System state, including vulnerabilities, RMF package status/accreditation ...

FTE + Benefits Remote: 80% (4 days a week) Supports the FedRAMP and FISMA authorization(s) of new ... Identify and assess Cloud System state, including vulnerabilities, RMF package status/accreditation ...

FTE + Benefits Remote: 80% (4 days a week) Client supports the FedRAMP and FISMA authorization(s ... Identify and assess Cloud System state, including vulnerabilities, RMF package status/accreditation ...

Herndon, VA 20171 (Remote) Employment Type: FTE + Benefits Client is supporting the FedRAMP and ... Identify and assess Cloud System state, including vulnerabilities, RMF package status/accreditation ...

Herndon, VA 20171 (Remote) Employment Type: FTE + Benefits Client is supporting the FedRAMP and ... Identify and assess Cloud System state, including vulnerabilities, RMF package status/accreditation ...

Showing results 21-40

Remote Rmf information

See Aldie, VA salary details

$29.1K

$93.7K

$168.3K

How much do remote rmf jobs pay per year?

As of Aug 16, 2026, the average yearly pay for remote rmf in Aldie, VA is $93,721.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,900.00 and $125,900.00 per year, depending on experience, location, and employer.

What is a remote RMF?

A Remote RMF (Risk Management Framework) job involves managing cybersecurity risk and compliance for an organization while working remotely. Professionals in this role ensure that IT systems align with federal security standards, such as those outlined by NIST. Responsibilities may include conducting risk assessments, implementing security controls, and maintaining compliance documentation. Remote RMF specialists often work with government agencies, contractors, or private companies handling sensitive data. This position requires expertise in cybersecurity policies, risk management, and regulatory compliance.

What are the typical daily responsibilities of a remote RMF?

As a Remote RMF Specialist, your daily responsibilities often include conducting security assessments, preparing and reviewing authorization packages, and ensuring ongoing compliance with federal information security standards. You'll collaborate with cross-functional teams to identify risks, develop mitigation strategies, and document security control implementations. Regular communication with stakeholders, participation in virtual meetings, and continual monitoring of systems and processes to ensure compliance are also core aspects of the job. This role leverages remote work tools to collaborate effectively with cybersecurity, IT, and compliance professionals across multiple locations.

What are the key skills and qualifications needed to thrive in the remote RMF position, and why are they important?

To thrive as a Remote RMF (Risk Management Framework) Specialist, you need a strong understanding of information security principles, federal risk management frameworks (such as NIST SP 800-37), and relevant cybersecurity policies, typically backed by a degree in information security or related field. Familiarity with security assessment tools, governance, risk, and compliance (GRC) software, as well as certifications like CISSP, CAP, or CISM, is highly valued. Excellent organizational skills, attention to detail, and the ability to communicate complex security concepts clearly are important soft skills. These capabilities are critical to ensure regulatory compliance and robust information system security in a remote work context.

What are popular job titles related to Remote Rmf jobs in Aldie, VA?

For Remote Rmf jobs in Aldie, VA, the most frequently searched job titles are:

What cities near Aldie, VA are hiring for Remote Rmf jobs?

Cities near Aldie, VA with the most Remote Rmf job openings:

Infographic showing various Remote Rmf job openings in Aldie, VA as of August 2026, with employment types broken down into 89% Full Time, and 11% Part Time. Highlights an 100% Remote job distribution, with an average salary of $93,721 per year, or $45.1 per hour.

Cybersecurity Engineer - DSOP

SAIC

Chantilly, VA • Remote

$160K - $200K/yr

Full-time

Posted 24 days ago


SAIC rating

7.9

Company rating: 7.9 out of 10

Based on 79 frontline employees who took The Breakroom Quiz

79th of 224 rated it services


Job description

Job ID: 2614830

Location: Chantilly, VA, US

Date Posted: 2026-07-23

Category: Software

Subcategory: DevSecOps

Schedule: Full-Time

Shift: Day Job

Travel: Yes - 10% of the time

Minimum Clearance Required: TS.SCI

Clearance Level Must Be Able to Obtain: None

Potential for Remote Work: ORA_ON_SITE


Description

SAIC is a trusted leader in delivering advanced command and control capabilities across the Department of the Air Force, bringing deep expertise in how cutting edge technologies are engineered, secured, and delivered to the fight. At the center of this mission, the Common Mission Control Center (CMCC) unifies data, sensors, mission applications, cloud based services, and emerging AI enabled automation to give warfighters a decisive edge—turning complex, multidomain information into fast, clear, and actionable decisions in the moments that matter most. The CMCC System Facilitator contract positions SAIC to accelerate how new capabilities are integrated, tested, secured, and transitioned into operational use, working side by side with operators, engineers, Capability Providers, and government teams to ensure every delivery strengthens mission readiness. This effort offers the chance to directly shape how the Air Force sees, decides, and acts across all domains—making a tangible and immediate impact on warfighter effectiveness.
 

The Cybersecurity Engineer (DSOP) builds and operates CMCC’s secure DSOP pipeline to enable rapid, safe development and onboarding of Capability Provider applications. This role integrates automated SAST/DAST/container security and SBOM/SCA scanning, enforces secure coding gates, validates cyber artifacts, and ensures all pipeline evidence is routed to Infrastructure TO for Operational Baseline updates. The DSOP Engineer provides direct developer support, jointly participates in early DSOP/cloud design, and lays the foundation for secure-by-default CI/CD automation.

Job Duties Include:

  • Build, enhance, and operate DSOP cyber pipeline stages (SAST, DAST, container scanning, SBOM/SCA).
  • Implement pipeline blocking rules for Critical/High vulnerabilities.
  • Integrate cyber validation tasks into CI/CD for multiple  environments.
  • Perform functional validation of CP/External artifacts when possible; deliver validated cyber outputs to Infrastructure TO.
  • Produce RMF/cATO‑ready cyber evidence (scan results, mitigation records, SBOM/SCA, logs).
  • Validate artifact integrity (image signing, checksum enforcement, provenance tracking).
  • Provide direct developer enablement: onboarding into DSOP tools, secure coding guidance, WHY‑based mentorship.
  • Review, categorize, and drive remediation of CWE/CVE findings across DSOPS, Cloud, CE, and CP teams.
  • Validate rollback readiness when cyber gates block promotion.
  • Partner with Cloud engineers on early pipeline/environment design and promote secure-by-default automation. 

Qualifications

  • Bachelors and nine (9) years or more experience; Masters and seven (7) years or more experience; PhD or JD and four (4) years or more experience.
  • US Citizenship.

Required Qualifications & Experience:

  • Hands on experience running automated SAST/DAST/container scans using Fortify, ZAP, Grype/Trivy or similar tools.
  • Experience documenting mitigations, reviewing CWE/CVE outputs, and validating secure coding practices. 
  • Proficiency with DevSecOps tooling (GitLab CI/CD, container registries, SBOM/SCA tools). 
  • Experience supporting secure coding compliance and vulnerability remediation. 
  • 8140 aligned certifications such as Security+, CISSP, CCSP, CASP+, or equivalent.

Desired Qualifications and Experience:

  • Experience supporting RMF/cATO pipelines—producing cyber evidence, aligning pipeline scans with SSP/POA&M updates. 
  • Background integrating secure DevSecOps automation across multi classification environments. 
  • Experience enabling developers by creating training, guidance, and best practice workflows.

Desired Skills and Certifications:

  • Deep experience with GitLab CI/CD, image signing, SBOM/SCA creation, and pipeline compliance validation. 
  • Familiarity with secure by design and shift left security principles embedded across DSOP automation. 
  • Strong communication habits—providing timely vector checks, developer friendly guidance, and clear evidence trails.

Target salary range: $160,001 - $200,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

What SAIC employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom