1

Rmf Analyst Jobs in Georgia (NOW HIRING)

COLSA is seeking a Certified RMF Validator to join our team and play a critical role in supporting ... Provides network and security operations technical analysis, assessment, and recommendations to ...

New

COLSA is seeking a Certified RMF Validator to join our team and play a critical role in supporting ... Provides network and security operations technical analysis, assessment, and recommendations to ...

New

COLSA is seeking a Certified RMF Validator to join our team and play a critical role in supporting ... Provides network and security operations technical analysis, assessment, and recommendations to ...

New

... Analysis and Reporting (10%). Information Security AI Governance (50%) * Execute the day-to-day ... RMF), European Union (EU) AI Act, and Open Worldwide Application Security Project (OWASP) Top 10 ...

... Analysis and Reporting (10%). Information Security AI Governance (50%) * Execute the day-to-day ... RMF), European Union (EU) AI Act, and Open Worldwide Application Security Project (OWASP) Top 10 ...

Develop a Risk Management Framework (RMF) Executive Package for each Authorization that will include a System Security Plan, Security Assessment Report (SAR), Plans of Actions and Milestones (POA&M ...

Develop a Risk Management Framework (RMF) Executive Package for each Authorization that will include a System Security Plan, Security Assessment Report (SAR), Plans of Actions and Milestones (POA&M ...

next page

Showing results 1-20

Rmf Analyst information

See Georgia salary details

$33.4K

$90.6K

$119.1K

How much do rmf analyst jobs pay per year?

As of Aug 30, 2026, the average yearly pay for rmf analyst in Georgia is $90,631.00, according to ZipRecruiter salary data. Most workers in this role earn between $77,300.00 and $109,800.00 per year, depending on experience, location, and employer.

What is an RMF analyst?

An RMF (Risk Management Framework) Analyst is responsible for ensuring IT systems comply with security regulations and frameworks, such as NIST 800-53. They assess risks, implement security controls, and help organizations maintain authorization to operate (ATO) for their systems. RMF Analysts work closely with security teams, auditors, and system owners to document risks and remediation efforts. Their role is crucial in maintaining cybersecurity compliance for government and private-sector organizations handling sensitive data.

What are the typical daily responsibilities of an RMF analyst?

As an RMF Analyst, your daily responsibilities often include conducting security assessments, preparing documentation to support system accreditation, reviewing compliance with information security policies, and coordinating with system owners to address security risks. You may also be responsible for monitoring ongoing system changes, updating risk assessment reports, and supporting remediation activities based on audit findings. Most RMF Analysts work as part of a cybersecurity or compliance team, collaborating closely with IT personnel, auditors, and management to maintain a secure organizational environment. The work requires a mix of independent analysis and team-oriented problem-solving, making communication and attention to detail key to your success.

What are the key skills and qualifications needed to thrive in the RMF analyst position, and why are they important?

To thrive as an RMF Analyst, you need a thorough understanding of the Risk Management Framework (RMF), information security policies, and federal compliance standards such as NIST SP 800-53. Familiarity with security assessment tools, vulnerability scanning software, and certifications like CompTIA Security+ or CISSP are highly valued. Strong analytical thinking, attention to detail, and clear written and verbal communication are important soft skills in this position. These abilities are crucial for accurately evaluating security risks, maintaining regulatory compliance, and effectively collaborating with both technical and non-technical stakeholders.

What does an RMF analyst do?

An RMF analyst is responsible for implementing and managing the Risk Management Framework (RMF) to ensure the security of information systems. They assess security controls, conduct risk assessments, and prepare documentation to meet compliance standards, often using tools like NIST guidelines. This role requires knowledge of cybersecurity principles and attention to detail to protect organizational assets.

What are the most commonly searched types of Rmf Analyst jobs in Georgia?

The most popular types of Rmf Analyst jobs in Georgia are:

What cities in Georgia are hiring for Rmf Analyst jobs?

Cities in Georgia with the most Rmf Analyst job openings:

Infographic showing various Rmf Analyst job openings in Georgia as of August 2026, with employment types broken down into 90% Full Time, 6% Part Time, and 4% Contract. Highlights an 79% Physical, 8% Hybrid, and 13% Remote job distribution, with an average salary of $90,631 per year, or $43.6 per hour.

Full-time

Posted 2 days ago

New


Job description

COLSA is seeking a Certified RMF Validator to join our team and play a critical role in supporting cybersecurity and Risk Management Framework (RMF) activities . This position will provide expertise throughout the validation process, assessing security controls, documenting assessment results, and ensuring validation activities are performed in accordance with applicable policies and guidance.

This position is contingent upon contract award, with work anticipated to begin in March 2027. The selected candidate will be proposed as Key Personnel in accordance with proposal requirements.

  • Responsible for performing validation/auditing of Unclassified RMF authorization requirements in accordance with Assessment and Authorization Processes
  • Provides independent verification and validation (IV&V) of system's security controls and safeguards designed through the security engineering process
  • Develops the Security Assessment Report (SAR) and other validation support requirements as required by DoW policies and guidance for the assigned system(s)
  • Facilitates the coordination of the Program Manager, ISSM/ISSO, User Representative, and client agreement of the documentation
  • Develops and report metrics that include the percentages of completion in every step of the validation process
  • Provides network and security operations technical analysis, assessment, and recommendations to senior personnel.
  • Provides recommendations for protecting networks, workstations, servers, and IT assets. 
  • Conducts audits to ensure information systems security policies and procedures are implemented as defined in security plans and best practices. 
  • Participates in response teams to ensure any anomalies are corrected in accordance with government or industry standards.

At COLSA, people are our most valuable resource and centered at our core value. We invite you to unite your talents with opportunity and be a part of our “Family of Professionals!” Learn about our employee-centric culture and benefits here: https://www.colsa.com/culture_benefits  


Required Skills
Required Experience
  • Bachelor’s Degree (or higher) in Cybersecurity, Information Technology, or a related field or equivalent experience 
  • Minimum of 5 years of related experience 
  • Hands-on experience with security control assessment, validation/IV&V, and RMF documentation, including development of Security Assessment Reports (SARs).
  • Experience supporting cybersecurity incident response, anomaly investigation, and remediation in accordance with DoD policies and industry best practices.
  • Strong written and verbal communication skills.
  • DoD Secret security clearance; US Citizenship required

Preferred Qualifications

  • DoD 8570/8140-compliant certification such as Security+, CGRC (formerly CAP), or equivalent

Applicant selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. COLSA Corporation is an Equal Opportunity Employer, Minorities/Females/Veterans/Disabled. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin.