1

Rmf Jobs in California (NOW HIRING)

Navy systems acquisition program office in the execution of Risk Management Framework (RMF), with Federal Information Security Management Act (FISMA) and government Technical Authority products and ...

Sr. RMF Security Engineer

San Diego, CA ยท On-site

$131K - $237K/yr

Leidos has a new and exciting opportunity for a Sr. RMF Security Engineer in our Intelligence Group (IG) Cyber & Analytics Business Area (CABA) . Our talented team is at the forefront in Security ...

Sr. RMF Security Engineer

San Diego, CA ยท On-site

$121K - $166K/yr

Leidos is seeking a Sr. RMF Security Engineer to support a project at a Navy base in San Diego. This role will guide the project through the RMF lifecycle, including categorizing information systems ...

Sr. RMF Security Engineer

San Diego, CA ยท On-site

$131K - $237K/yr

Leidos has a new and exciting opportunity for a Sr. RMF Security Engineer in our Intelligence Group (IG) Cyber & Analytics Business Area (CABA) . Our talented team is at the forefront in Security ...

RMF Specialist

El Segundo, CA ยท On-site

$61K - $141K/yr

RMF Specialist The Opportunity: Seeking an Information Assurance Engineer to design, implement, and manage policies and procedures to ensure software security for themission management softwarefor ...

The RMF Engineer will support the development, maintenance, assessment, and authorization of cybersecurity packages for DHRA information systems. This position will work directly with system owners ...

Risk Management Framework Engineer

Seaside, CA ยท On-site

$87K - $157K/yr

The RMF Engineer will support the development, maintenance, assessment, and authorization of cybersecurity packages for DHRA information systems. This position will work directly with system owners ...

next page

Showing results 1-20

Rmf information

See California salary details

$38.5K

$95.9K

$165.8K

How much do rmf jobs pay per year?

As of Sep 12, 2026, the average yearly pay for rmf in California is $95,851.00, according to ZipRecruiter salary data. Most workers in this role earn between $68,600.00 and $116,500.00 per year, depending on experience, location, and employer.

What is an RMF?

An RMF (Risk Management Framework) job involves implementing security measures and compliance processes to protect an organization's information systems. Professionals in this role assess risks, develop mitigation strategies, and ensure adherence to federal cybersecurity regulations, such as those outlined by NIST. They often work with government agencies, contractors, and businesses handling sensitive data. RMF specialists conduct security assessments, document controls, and support continuous monitoring efforts to maintain system integrity and compliance.

What are the key skills and qualifications needed to thrive in the RMF position, and why are they important?

To excel as a Risk Management Framework (RMF) specialist, a solid background in cybersecurity principles, risk assessment, and knowledge of federal compliance standards is essential, often supported by a degree in information security or a related field. Familiarity with tools like eMASS, NIST guidelines, and certifications such as CISSP or CAP is highly advantageous. Strong analytical thinking, attention to detail, and effective communication skills set outstanding RMF professionals apart in this role. These skills are vital to ensure secure system operations and maintain regulatory compliance in sensitive environments.

What are the primary responsibilities of an RMF specialist on a daily basis?

An RMF specialist typically oversees the implementation and documentation of security controls for information systems, ensuring continuous compliance with government and organizational regulations. Daily tasks may include conducting risk assessments, preparing security authorization documentation, communicating with stakeholders about security requirements, and staying updated on regulatory changes. They also collaborate closely with IT, cybersecurity, and compliance teams to address vulnerabilities and support audits. This role requires regular monitoring and reporting to maintain a secure and compliant operational environment.

What does an RMF analyst do?

An RMF analyst is responsible for managing and implementing the Risk Management Framework to ensure the security of information systems. They assess vulnerabilities, develop security plans, and ensure compliance with cybersecurity standards, often using tools like NIST guidelines. The role requires strong analytical skills and knowledge of cybersecurity protocols.

What are the most commonly searched types of Rmf jobs in California?

The most popular types of Rmf jobs in California are:

What job categories do people searching Rmf jobs in California look for?

The top searched job categories for Rmf jobs in California are:

What cities in California are hiring for Rmf jobs?

Cities in California with the most Rmf job openings:

Infographic showing various Rmf job openings in California as of September 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $95,851 per year, or $46.1 per hour.

Cybersecurity RMF Analyst

San Diego, CA โ€ข On-site

Boarhog LLC
Engineering Professional Servicesย โ€ขย 11 - 50 employees

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 9 days ago


Job description

Boarhog is in the market for a mid-level Cybersecurity Analyst in San Diego, CA. with an active SECRET level security clearance to support a U.S. Navy systems acquisition program office in the execution of Risk Management Framework (RMF), with Federal Information Security Management Act (FISMA) and government Technical Authority products and processes compliance. If you currently do not hold at least an active SECRET level security clearance, please do not apply. No exceptions.
The U.S. government client requires Information System Security Engineering Support Services in order to acquire and sustain Information Warfare systems and technologies Cybersecurity to ensure strong authentication, data integrity, confidentiality, non-repudiation, and availability of interoperable Command and Control, Communications, Computers, and Intelligence (C4I) capabilities.
The Cybersecurity Analyst will be expected to work with systems engineers in analyzing current and emerging operational and functional requirements (in the context of Cybersecurity) of existing systems as well as capabilities under development and assist with the development of engineered solutions that adhere to RMF cybersecurity compliance requirements, evaluating Commercial-Off-The-Shelf (COTS) and other technologies for applicability to cybersecurity compliance. 
Successful candidates will be expected to immediately perform Risk Management Framework (RMF) duties, and participate in the following activities
  • Support the program office’s Assistant Program Manager for Cyber Security (APM-CS) in maintaining the authorization of assigned systems, including continuous monitoring vulnerability management
  • Prepare and present risk assessment briefs, including High-Risk Escalation, for executives
  • Collaborate with Validators, Information Systems Security Engineers and supported Information Systems Security Manager (ISSM).
  • Coordinate with Systems Engineering to authorize system upgrades
  • Perform duties of the RMF Information Systems Security Engineer role as defined by the Navy’s RMF Process Guide (RPG)
  • Perform assigned duties of the RMF ISO/PM role as defined by the Navy’s RPG
  • Perform preliminary security assessments of components, subsystems, and systems, including reviewing and/or executing Nessus Vulnerability Scans, Security Technical Implementation Guide (STIG) Benchmarks, manual STIG testing, and NIST SP 800-53a assessment procedures
Responsibilities also include being prepared to answer routine A&A questions during meetings, gather data and perform the analysis required to close action items, and document recommendations and decisions reached.
Qualifications, Experience, and Certifications:
  • BA or BS degree
  • MUST have at least a current CompTIA Security+ certification
  • MUST have at least three (3) years of RMF experience 
  • MUST have an active SECRET level security clearance
  • Cyber Security Workforce technical certification
  • Examining system architectures, engineering processes, and cybersecurity functionality to include implementation, reviewing cross system interfaces and systems integration for feasibilities and vulnerabilities, assisting with and observing test and evaluation
  • Verification and validation, engineering analysis, technical documentation analysis, reviewing software and hardware designs for cybersecurity risks or issues and recommend mitigation and resolution strategies.
  • Proficiency with all phases of the RMF transformation and the activities to transition a system from DIACAP to RMF
  • Assuring the system security posture is attained and maintained in accordance with DoD and DoN Information Assurance (IA) Technical Authority directives, Naval Information Forces (NAVIFOR) and Type Commander (TYCOM) operational guidance
  • Proficiency with Enterprise Mission Assurance Support Service (eMASS)
Desired Qualifications, Certifications, and Discriminators
  • Certified Information Systems Security Professional (CISSP) or equivalent certification
  • Prior Federal Public Sector (preferably Navy) Acquisition Program Management Office experience
  • Prior experience authorizing RMF High Impact, classified systems
  • Knowledge of Fleet operations, IT network security, software and hardware security engineering, and cybersecurity regulations, policy, and strategy
  • Eligible for a Top Secret / Sensitive Compartmented Information clearance (TS/SI/TK/G/HCS)
  • Navy Qualified Validator II or III
  • Currently reside in, or agree to move to, a Small Business Administration (SBA) designated Historically Underutilized Business Zone (HUBZone) area (see SBA.gov website for HUBZone map
BOARHOG BENEFITS:
Boarhog has over 14 years of defense industrial base steady, controlled growth and profitability, offering our full-time associates a remarkable compensation package, including:
  • Competitive salary and opportunities for additional compensation.
  • Greater Self-Determination
  • Medical/Dental/Vision Health Benefits.
  • Generous 401K retirement plan after six months of full-time employment, with pre-tax/post-tax options and company matching with immediate vesting to boost retirement savings.
  • Vacation.
  • Health savings account.
  • Stipend for residing in a HUBZone location (https://maps.certify.sba.gov/hubzone/map).
  • Relocation or small signing bonus, and earned a performance bonus.
We thrive in a welcoming culture within a completely flat organization, with a demonstrated vested interest in associates' personal and professional goals and aspirations, taking pride in the resulting exceedingly low associate turnover rate.  How flat? There is no fat on the Boarhog, translating to a great degree of self-determination... nobody with Boarhog has ever and will never make a living watching other associates do work. The company has no CEO, or President, or VPs, or supervisors. The Managing Member co-founded Boarhog and actively engages in the day-to-day operations and growth objectives. Pigs in the breakfast... skin-in-the-game, and the story behind our logo. https://www.BoarhogLLC.com. Come join us!

E04JI800rmcl407i99z