2

Remote Rmf Jobs in Red Springs, NC (NOW HIRING)

Join the DataAnnotation team and contribute to developing cutting-edge AI systems, while enjoying the flexibility of remote work and setting your own schedule. We are looking for experienced ...

Remote Rmf information

See Red Springs, NC salary details

$25.2K

$81K

$145.5K

How much do remote rmf jobs pay per year?

As of Jun 9, 2026, the average yearly pay for remote rmf in Red Springs, NC is $81,022.00, according to ZipRecruiter salary data. Most workers in this role earn between $42,200.00 and $108,800.00 per year, depending on experience, location, and employer.

What is a Remote RMF job?

A Remote RMF (Risk Management Framework) job involves managing cybersecurity risk and compliance for an organization while working remotely. Professionals in this role ensure that IT systems align with federal security standards, such as those outlined by NIST. Responsibilities may include conducting risk assessments, implementing security controls, and maintaining compliance documentation. Remote RMF specialists often work with government agencies, contractors, or private companies handling sensitive data. This position requires expertise in cybersecurity policies, risk management, and regulatory compliance.

What are the typical daily responsibilities of a Remote RMF Specialist?

As a Remote RMF Specialist, your daily responsibilities often include conducting security assessments, preparing and reviewing authorization packages, and ensuring ongoing compliance with federal information security standards. You'll collaborate with cross-functional teams to identify risks, develop mitigation strategies, and document security control implementations. Regular communication with stakeholders, participation in virtual meetings, and continual monitoring of systems and processes to ensure compliance are also core aspects of the job. This role leverages remote work tools to collaborate effectively with cybersecurity, IT, and compliance professionals across multiple locations.

What are the key skills and qualifications needed to thrive in the Remote Rmf position, and why are they important?

To thrive as a Remote RMF (Risk Management Framework) Specialist, you need a strong understanding of information security principles, federal risk management frameworks (such as NIST SP 800-37), and relevant cybersecurity policies, typically backed by a degree in information security or related field. Familiarity with security assessment tools, governance, risk, and compliance (GRC) software, as well as certifications like CISSP, CAP, or CISM, is highly valued. Excellent organizational skills, attention to detail, and the ability to communicate complex security concepts clearly are important soft skills. These capabilities are critical to ensure regulatory compliance and robust information system security in a remote work context.

What cities near Red Springs, NC are hiring for Remote Rmf jobs? Cities near Red Springs, NC with the most Remote Rmf job openings:
Information System Security Engineer (ISSE) AWS Cloud Security - with Security Clearance

Information System Security Engineer (ISSE) AWS Cloud Security - with Security Clearance

LMI

Fayetteville, NC • On-site, Remote

Contractor

This job post has expired today. Applications are no longer accepted.


Job description

Overview LMI is seeking a skilled Information System Security Engineer (ISSE) with hands-on experience in AWS cloud security to provide advanced cybersecurity engineering and Risk Management Framework (RMF) support for Department of Defense (DoD) cloud-based systems. This position focuses on designing, implementing, and maintaining secure AWS environments aligned with DoD Cloud Computing Security Requirements Guide (CC SRG), NIST SP 800-53, and DISA STIGs/SRGs to support Authorization to Operate (ATO) efforts. LMI is a new breed of digital solutions provider dedicated to accelerating government impact with innovation and speed. Investing in technology and prototypes ahead of need, LMI brings commercial-grade platforms and mission-ready AI to federal agencies at commercial speed. Leveraging our mission-ready technology and solutions, proven expertise in federal deployment, and strategic relationships, we enhance outcomes for the government, efficiently and effectively. With a focus on agility and collaboration, LMI serves the defense, space, healthcare, and energy sectors-helping agencies navigate complexity and outpace change. Headquartered in Tysons, Virginia, LMI is committed to delivering impactful results that strengthen missions and drive lasting value. This position can be remote but requires quarterly travel for planning increments. This position requires an active SECRET clearance; TS/SCI preferred. Responsibilities * Architect and manage robust access control strategies using AWS Identity and Access Management (IAM), enforcing the principle of Least Privilege across all roles and users.
* Implement encryption and key management solutions using AWS Key Management Service (KMS) and related tools to protect data at rest and in transit, aligning with DoD data classification standards.
* Deploy and configure native AWS security services (e.g. GuardDuty, Security Hub, Inspector, and Config) to provide continuous threat detection, compliance monitoring, and automated remediation.
* Collaborate with network teams to secure VPCs using AWS Network Firewall, WAF, and hybrid connectivity solutions (Direct Connect, VPN) within a GovCloud environment.
* Lead technical implementation and validation of NIST SP 800-53 and DoD CC SRG controls to achieve and maintain ATO.
* Serve as a technical SME for RMF documentation and artifact generation within eMASSor other DoD compliance systems.
* Design, test, and implement DISA STIG/SRG-based configuration hardening across AWS services, operating systems, and containerized workloads.
* Conduct continuous vulnerability scanning and monitoring using DoD-approved tools (ACAS/Nessus), coordinating remediation and risk mitigation activities.
* Integrate security into CI/CD pipelines using Infrastructure-as-Code (IaC) tools such as Terraform or CloudFormation to automate compliance and security controls.
* Build and maintain centralized, compliant logging architectures using Splunk, Elastic, or equivalent SIEM platformsto ensure event visibility and retention per DoD policy.
* Participate in incident response activities for cloud-based threats, performing forensic analysis and recommending corrective actions.
* Collaborate with DoD stakeholders, system owners, and developers to embed security throughout the system lifecycle and support RMF accreditation efforts.
* Implement and maintain Trellix ePolicy Orchestrator (ePO) infrastructure, including deployment and lifecycle management of Trellix endpoint security solutions (Endpoint Security, Policy Auditor, Application Control).
* Manage ePO extensions, repositories, and Agent Handlers to ensure scalability, performance, and operational resilience across the enterprise. Qualifications * Active SECRET clearance required; TS/SCI preferred
* Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
* 3-5+ years of experience in information security, with at least 3 years focused on AWS cloud security engineering
* Deep experience with DoD RMF, NIST SP 800-53, DoD CC SRG, and DISA STIG/SRG compliance frameworks
* Strong hands-on expertise with AWS security services (IAM, KMS, GuardDuty, Security Hub, Config)
* Experience with Docker, Kubernetes, and system hardening for Linux/Windows environments
* Proficiency in IaC tools (Terraform, CloudFormation) for managing and enforcing security policies
* Familiarity with ACAS/Nessus, continuous monitoring, and vulnerability management processes
* Experience integrating security within DevSecOps and CI/CD workflows
* Hands-on experience administering and maintaining Trellix ePolicy Orchestrator (ePO) in enterprise or DoD environments * Experience deploying and managing Trellix endpoint security solutions (Endpoint Security, Policy Auditor, Application Control) * Experience managing ePO infrastructure components, including extensions, repositories, and Agent Handlers for scalability and performance * Certifications: * DoD 8570/8140-M compliant (e.g., CISSP, CASP+, CISM) - required
* AWS Certified Security - Specialty - highly preferred
* Kubernetes certification (CKS/CKA) - a plus Target Salary Range: $90,270.00 - $155,037.00 Disclaimer: The salary range displayed represents the typical salary range for this position and is not a guarantee of compensation. Individual salaries are determined by various factors including, but not limited to location, internal equity, business considerations, client contract requirements, and candidate qualifications, such as education, experience, skills, and security clearances.