1

Rmf Analyst Jobs (NOW HIRING)

About the role Concept Plus is seeking a Cybersecurity Policy and RMF Analyst to provide Risk Management Support to identify shortfalls in the assessment and authorization process, track and manage ...

next page

Showing results 1-20

Rmf Analyst information

See salary details

$39.5K

$107.3K

$141K

How much do rmf analyst jobs pay per year?

As of Jun 20, 2026, the average yearly pay for rmf analyst in the United States is $107,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What are the typical daily responsibilities of an RMF Analyst?

As an RMF Analyst, your daily responsibilities often include conducting security assessments, preparing documentation to support system accreditation, reviewing compliance with information security policies, and coordinating with system owners to address security risks. You may also be responsible for monitoring ongoing system changes, updating risk assessment reports, and supporting remediation activities based on audit findings. Most RMF Analysts work as part of a cybersecurity or compliance team, collaborating closely with IT personnel, auditors, and management to maintain a secure organizational environment. The work requires a mix of independent analysis and team-oriented problem-solving, making communication and attention to detail key to your success.

What is an RMF Analyst job?

An RMF (Risk Management Framework) Analyst is responsible for ensuring IT systems comply with security regulations and frameworks, such as NIST 800-53. They assess risks, implement security controls, and help organizations maintain authorization to operate (ATO) for their systems. RMF Analysts work closely with security teams, auditors, and system owners to document risks and remediation efforts. Their role is crucial in maintaining cybersecurity compliance for government and private-sector organizations handling sensitive data.

What are the key skills and qualifications needed to thrive in the Rmf Analyst position, and why are they important?

To thrive as an RMF Analyst, you need a thorough understanding of the Risk Management Framework (RMF), information security policies, and federal compliance standards such as NIST SP 800-53. Familiarity with security assessment tools, vulnerability scanning software, and certifications like CompTIA Security+ or CISSP are highly valued. Strong analytical thinking, attention to detail, and clear written and verbal communication are important soft skills in this position. These abilities are crucial for accurately evaluating security risks, maintaining regulatory compliance, and effectively collaborating with both technical and non-technical stakeholders.

More about Rmf Analyst jobs
What cities are hiring for Rmf Analyst jobs? Cities with the most Rmf Analyst job openings:
What are the most commonly searched types of Rmf Analyst jobs? The most popular types of Rmf Analyst jobs are:
What states have the most Rmf Analyst jobs? States with the most job openings for Rmf Analyst jobs include:
Infographic showing various Rmf Analyst job openings in the United States as of June 2026, with employment types broken down into 1% Locum Tenens, 95% Full Time, and 4% Contract. Highlights an 81% Physical, 8% Hybrid, and 11% Remote job distribution, with an average salary of $107,334 per year, or $51.6 per hour.
RMF Analyst / ISSO Support

RMF Analyst / ISSO Support

American Operations Corporation

Montgomery, AL โ€ข On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 16 days ago


Job description

Supports execution of RMF activities, security documentation, STIG compliance analysis, vulnerability reporting, POA&M management, and cybersecurity artifact preparation for BMx systems. This role assists the Cybersecurity Lead with maintaining authorization readiness, continuous monitoring activities, and eMASS-compatible documentation supporting Government cybersecurity oversight.
The RMF Analyst/ISSO Support role works closely with DevSecOps personnel, System Architects, Independent Test Teams, Cloud Engineers, and Product Owners to ensure RMF evidence remains synchronized with deployment activities, modernization changes, infrastructure modifications, and release sequencing. This role also supports continuous monitoring reporting, control validation, cybersecurity audit preparation, and vulnerability remediation coordination.
Requirements
Must possess DoD Secret Clearance.
Technical Skills
โ€ข eMASS
โ€ข RMF documentation
โ€ข ACAS
โ€ข STIGs
โ€ข POA&M management
โ€ข Security compliance reporting
Certifications
Required:
โ€ข Security+
Preferred:
โ€ข CAP
Experience
โ€ข 5+ years RMF support experience.
Benefits
  • Health Care Plan (Medical, Dental & Vision)
  • Retirement Plan (401k)
  • Life Insurance (Basic, Voluntary & AD&D)
  • Paid Time Off (Vacation, Sick & Public Holidays)
  • Short Term & Long Term Disability