2

Remote Rmf Jobs in York, PA (NOW HIRING)

Remote Rmf information

See York, PA salary details

$29K

$93.4K

$167.8K

How much do remote rmf jobs pay per year?

As of Jul 29, 2026, the average yearly pay for remote rmf in York, PA is $93,423.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,700.00 and $125,500.00 per year, depending on experience, location, and employer.

What is a Remote RMF job?

A Remote RMF (Risk Management Framework) job involves managing cybersecurity risk and compliance for an organization while working remotely. Professionals in this role ensure that IT systems align with federal security standards, such as those outlined by NIST. Responsibilities may include conducting risk assessments, implementing security controls, and maintaining compliance documentation. Remote RMF specialists often work with government agencies, contractors, or private companies handling sensitive data. This position requires expertise in cybersecurity policies, risk management, and regulatory compliance.

What are the typical daily responsibilities of a Remote RMF Specialist?

As a Remote RMF Specialist, your daily responsibilities often include conducting security assessments, preparing and reviewing authorization packages, and ensuring ongoing compliance with federal information security standards. You'll collaborate with cross-functional teams to identify risks, develop mitigation strategies, and document security control implementations. Regular communication with stakeholders, participation in virtual meetings, and continual monitoring of systems and processes to ensure compliance are also core aspects of the job. This role leverages remote work tools to collaborate effectively with cybersecurity, IT, and compliance professionals across multiple locations.

What are the key skills and qualifications needed to thrive in the Remote Rmf position, and why are they important?

To thrive as a Remote RMF (Risk Management Framework) Specialist, you need a strong understanding of information security principles, federal risk management frameworks (such as NIST SP 800-37), and relevant cybersecurity policies, typically backed by a degree in information security or related field. Familiarity with security assessment tools, governance, risk, and compliance (GRC) software, as well as certifications like CISSP, CAP, or CISM, is highly valued. Excellent organizational skills, attention to detail, and the ability to communicate complex security concepts clearly are important soft skills. These capabilities are critical to ensure regulatory compliance and robust information system security in a remote work context.

What are popular job titles related to Remote Rmf jobs in York, PA? For Remote Rmf jobs in York, PA, the most frequently searched job titles are:
What cities near York, PA are hiring for Remote Rmf jobs? Cities near York, PA with the most Remote Rmf job openings:
Infographic showing various Remote Rmf job openings in York, PA as of July 2026, with employment types broken down into 70% Full Time, 13% Part Time, and 17% Contract. Highlights an 43% Physical, 3% Hybrid, and 54% Remote job distribution, with an average salary of $93,423 per year, or $44.9 per hour.

Cybersecurity Assessment & Authorization SME

Connected Logistics

New Cumberland, PA • On-site, Remote

$115K - $125K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Job description

Description

Remote role but must live within 150 miles of DLA Location: New Cumberland PA

Contingent Upon Contract Award

Connected Logistics is seeking a Cybersecurity Assessment & Authorization SME to assist in managing the implementation, maintenance and monitoring of cybersecurity in support of J6 Program Executive Officer's Portfolio of IT capabilities, associated Program Management Offices, IT infrastructure support and Operational Technology areas for Information Systems/Programs throughout the entirety of its system development life cycle.

The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert (SME) with regards to Assessment and Authorization (A&A) of information systems and all associated cybersecurity policies and procedures.

Key Responsibilities
The Cybersecurity Assessment & Authorization SME executes DoW/DLA cybersecurity processes to authorize information systems, maintain authorization of information systems, or serves as a Subject Matter Expert (SME) for systems undergoing the authorization process.  Specific duties for this position include but aren't limited to:

  • Possessing an understanding of how security controls identified in the NIST 800-53 apply to the process of assessing and authorizing a large organization's IT infrastructure such as DLA, in which there is a compilation of large and small enclaves, Cloud Hosted Services, Operational Technology, AIS applications and outsourced IT processes.
  •  Determining the residual risk of an identified vulnerability (e.g., non-compliant security control) and determines the possible ramifications on the system's current or future authorization. 
  • Briefs senior management on the progress or results of an information system undergoing the Risk Management Framework (RMF) process.

Preferred Qualifications

  • Possess excellent analytical and writing skills.
  • Possess Microsoft Office programs (Excel, Word, PowerPoint, MS Project, etc.) knowledge.
  • Possess experience working with DoD/DLA.

Requirements

 KP-1 Enterprise RMF & Authorization Lead


Purpose: Serves as the senior cybersecurity authority for enterprise RMF execution, authorization strategy, and executive engagement across the DLA portfolio. Leads assessment, authorization, and risk management activities while serving as the primary advisor for AO, SCA, ISSM, and PM stakeholders.   


Minimum Requirements 

  • Five years RMF, C&A, and DoD cybersecurity experience 
  • Experience conducting authorization reviews 
  • Secret clearance 
  • Tier 3/NACLC/ANACI 
  • IAM Level III certification 
  • CISSP 
  • CAP 
  • Former ISSM, SCA, AO support staff, or Cyber Program Lead 
  • DLA or Fourth Estate experience 
  • eMASS administration experience 
  • Experience briefing SES and Flag Officer equivalents 

KP-2 Security Control Assessment Lead  


Purpose: Leads security control assessment, independent validation, compliance reviews, and risk determination activities. Responsible for ensuring assessment consistency and quality across the enterprise workload.  


Minimum Requirements 

  • Five years RMF and NIST experience 
  • Security control assessment experience 
  • Authorization review experience 
  • Secret clearance 
  • Tier 3 investigation 
  • IAM Level III certification 
  • CAP 
  • CISSP 
  • CISA 
  • Extensive NIST 800-53 assessment background 
  • Experience conducting SCA-style reviews 
  • Knowledge of FISMA and Federal compliance frameworks  

KP-3 Continuous Monitoring & Vulnerability Management Lead 


Purpose: Leads ongoing cybersecurity compliance, vulnerability management, remediation tracking, STIG validation, and continuous monitoring operations throughout system lifecycles.  


Minimum Requirements 

  • Five years DoD cybersecurity experience 
  • RMF experience 
  • Secret clearance 
  • Tier 3 investigation 
  • IAM Level III certification 
  • CISSP 
  • SecurityX (formerly CASP+) 
  • ACAS experience 
  • Enterprise vulnerability management experience 
  • STIG implementation expertise 
  • POA&M governance experience 

KP-4 OT, Cloud & Emerging Technology Security Lead  


Purpose: Serves as the lead for Operational Technology (OT), Facility Related Control Systems (FRCS), cloud-hosted environments, and specialized authorization efforts requiring advanced cybersecurity expertise.  


Minimum Requirements 

  • Five years DoD cybersecurity experience 
  • RMF and C&A experience 
  • Authorization review experience 
  • Secret clearance 
  • Tier 3 investigation 
  • IAM Level III certification 
  • CISSP 
  • CCSP or AWS/Azure security certification 
  • OT/ICS security experience 
  • Cloud authorization experience 
  • Experience supporting hybrid architectures 
  • Experience with platform and enclave authorizations 

Total Rewards Statement 


We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position is $115,000.00 to $125,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.


Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We're excited to support you in building a rewarding career with us!


Connected Logistics respects the need for confidentiality for all applicants.


Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support.

 
Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.


EOE/Disability/Veterans