1

Rmf Jobs in Florida (NOW HIRING)

Support RMF activities throughout the system lifecycle, including system categorization, control implementation, assessment, authorization, and continuous monitoring. * Work closely with system ...

Support RMF activities throughout the system lifecycle, including system categorization, control implementation, assessment, authorization, and continuous monitoring. * Work closely with system ...

Cyber Security SME

Orlando, FL · Hybrid

$135K - $165K/yr

Provide dedicated Assessment and Authorization (A&A) support services as defined in the DoD/DoN Risk Management Framework (RMF) * Assist the customer in transitioning system security documentation ...

Cyber Lead

Tampa, FL · On-site

$109K - $147K/yr

Support RMF activities throughout the system lifecycle, including system categorization, control implementation, assessment, authorization, and continuous monitoring. * Work closely with system ...

ISSE

Jacksonville, FL · On-site

$95K - $114K/yr

RMF Re-Authorization Leadership: Lead the development, analysis, and submission of the Authority to Operate (ATO) package via Navy eMASS in accordance with the Risk Management Framework (RMF). * NIST ...

ISSE

Jacksonville, FL · On-site

$95K - $114K/yr

RMF Re-Authorization Leadership: Lead the development, analysis, and submission of the Authority to Operate (ATO) package via Navy eMASS in accordance with the Risk Management Framework (RMF). * NIST ...

next page

Showing results 1-20

Rmf information

See Florida salary details

$29.1K

$72.6K

$125.5K

How much do rmf jobs pay per year?

As of Aug 6, 2026, the average yearly pay for rmf in Florida is $72,579.00, according to ZipRecruiter salary data. Most workers in this role earn between $51,900.00 and $88,200.00 per year, depending on experience, location, and employer.

What are the primary responsibilities of an RMF specialist on a daily basis?

An RMF specialist typically oversees the implementation and documentation of security controls for information systems, ensuring continuous compliance with government and organizational regulations. Daily tasks may include conducting risk assessments, preparing security authorization documentation, communicating with stakeholders about security requirements, and staying updated on regulatory changes. They also collaborate closely with IT, cybersecurity, and compliance teams to address vulnerabilities and support audits. This role requires regular monitoring and reporting to maintain a secure and compliant operational environment.

What is an RMF?

An RMF (Risk Management Framework) job involves implementing security measures and compliance processes to protect an organization's information systems. Professionals in this role assess risks, develop mitigation strategies, and ensure adherence to federal cybersecurity regulations, such as those outlined by NIST. They often work with government agencies, contractors, and businesses handling sensitive data. RMF specialists conduct security assessments, document controls, and support continuous monitoring efforts to maintain system integrity and compliance.

What are the key skills and qualifications needed to thrive in the RMF position, and why are they important?

To excel as a Risk Management Framework (RMF) specialist, a solid background in cybersecurity principles, risk assessment, and knowledge of federal compliance standards is essential, often supported by a degree in information security or a related field. Familiarity with tools like eMASS, NIST guidelines, and certifications such as CISSP or CAP is highly advantageous. Strong analytical thinking, attention to detail, and effective communication skills set outstanding RMF professionals apart in this role. These skills are vital to ensure secure system operations and maintain regulatory compliance in sensitive environments.

What does an RMF analyst do?

An RMF analyst is responsible for managing the Risk Management Framework process, which involves assessing, implementing, and monitoring security controls to protect information systems. They often work with cybersecurity tools, conduct risk assessments, and ensure compliance with security standards such as NIST SP 800-37. The role requires strong analytical skills and knowledge of security frameworks and regulations.
What are the most commonly searched types of Rmf jobs in Florida? The most popular types of Rmf jobs in Florida are:
What are popular job titles related to Rmf jobs in Florida? For Rmf jobs in Florida, the most frequently searched job titles are:
What cities in Florida are hiring for Rmf jobs? Cities in Florida with the most Rmf job openings:
Infographic showing various Rmf job openings in Florida as of July 2026, with employment types broken down into 91% Full Time, 6% Part Time, and 3% Contract. Highlights an 86% Physical, 5% Hybrid, and 9% Remote job distribution, with an average salary of $72,579 per year, or $34.9 per hour.

Cyber Security Analyst - RMF

Trace Systems

Tampa, FL • On-site

Full-time

Posted 23 days ago


Job description

Job Overview
Job Title: Cyber Secuirty Analyst (ISSO)
Location: MacDill, FL
This position is pending contract award.
Job Responsibilities
Trace Systems is seeking an experienced ISSO - RMF Analyst to support a global transport network supporting the US Special Operations Command and mission partners. This role supports critical communications infrastructure and will require shift work. The ISSO will provide ISSO and RMF support for enterprise, tactical, and transport network infrastructures supporting mission-critical operations.
  • Support 24/7/365 cybersecurity operations and compliance activities in support of mission-critical systems and global operations.
  • Monitor, assess, and maintain the cybersecurity posture of information systems across classified and unclassified environments.
  • Support RMF activities throughout the system lifecycle, including system categorization, control implementation, assessment, authorization, and continuous monitoring.
  • Work closely with system administrators, network engineers, cybersecurity teams, government stakeholders, and OEM partners to ensure systems remain secure, compliant, and operationally available.
  • Perform root-cause analysis of cybersecurity incidents, vulnerabilities, compliance deficiencies, and operational disruptions while documenting findings and corrective actions.
  • Develop, maintain, and update Authorization to Operate (ATO) packages, security documentation, System Security Plans (SSPs), Security Assessment Reports (SARs), POA&Ms, and related RMF artifacts.
  • Support implementation and validation of NIST 800-53 security controls, DISA STIGs, Security Technical Implementation Guides (STIGs), and other cybersecurity requirements.
  • Conduct vulnerability assessments, security reviews, compliance audits, and risk assessments to identify and remediate security weaknesses.
  • Prepare and deliver cybersecurity status reports, risk assessments, compliance summaries, outage summaries, and executive briefings to customer leadership.
  • Provide cybersecurity guidance and technical assistance to users operating from headquarters, regional hubs, remote sites, and forward-deployed locations.
  • Participate in system upgrades, technology refresh efforts, patch management activities, and configuration management processes to maintain secure system operations.
  • Maintain cybersecurity documentation, architecture diagrams, standard operating procedures, security baselines, and knowledge management repositories.
  • Coordinate activities with engineering teams, cybersecurity personnel, logistics support teams, and program management staff to ensure mission success.
  • Support Information Assurance (IA), Risk Management Framework (RMF), Continuous Monitoring (ConMon), vulnerability management, and cybersecurity compliance activities.
  • Utilize eMASS, ACAS, HBSS/ESS, SCAP, and other cybersecurity tools to track system compliance, vulnerabilities, and remediation efforts.
  • Assist with security architecture reviews, system accreditation activities, risk mitigation planning, and modernization initiatives supporting customer objectives.
  • Support incident response activities, forensic investigations, corrective action planning, and cybersecurity reporting requirements as required.
  • Support occasional travel requirements, site surveys, security inspections, compliance assessments, and field cybersecurity support activities as required.

Minimum Qualifications
  • Active, in-scope US Government issued Top Secret w/ SCI Eligibility clearance.
  • Due to the nature of the work and contract requirements, US Citizenship is required.
  • Candidates must meet the qualification requirements of DoDM 8140.03 (511 / Intermediate) for an applicable Cybersecurity, Information Systems Security, Security Control Assessment, or RMF-related work role (Education, DoD Military/Training, Certification, or a combination thereof), as defined by the applicable contract. Qualification Pathways (One or More May Apply)
  • Education (OR)
    • Bachelor's degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, Software Engineering, or related technical field OR equivalent combination of education and experience.
  • DoD/Military Training (OR)
  • Certification such as CompTIA Security+ CE, CEH(P), GMON, GRID, Cloud+, FITSP-O, GCED, GDSA, GSEC, PenTest+, or other approved cybersecurity certifications.
  • Ability to travel worldwide, including to remote or austere locations. Individual trips may extend up to two months, with the possibility of multiple trips per year.
  • 6+ years executing RMF Steps 1-6 with eMASS (SSP, SCTM/controls, SAR, POA&M, Continuous Monitoring).
  • 5+ years producing ATO-quality evidence: STIG/SRG checklists, ACAS/Tenable outputs, scan/patch tracking, artifact curation.
  • Demonstrated experience supporting Risk Management Framework (RMF) activities, cybersecurity compliance efforts, and system authorization processes within DoD environments.
  • Hands-on experience supporting cybersecurity compliance programs, Authorization to Operate (ATO) packages, security control implementation, and continuous monitoring activities.
  • Working knowledge of NIST 800-53 security controls, RMF lifecycle processes, STIG implementation, vulnerability management, POA&M development, eMASS, and cybersecurity compliance requirements.
  • Experience conducting security control assessments, log reviews, vulnerability analysis, compliance audits, risk assessments, and root-cause investigations to identify and remediate cybersecurity findings.
  • Strong verbal and written communication skills with the ability to communicate effectively with technical and non-technical personnel.

Desired Qualification
  • Experience supporting SOCOM, CENTCOM, AFRICOM, TRANSCOM, Space Force, or other Combatant Command environments.
  • Experience supporting OCONUS operations and remote-site sustainment activities.
  • Prior military service or experience supporting DOD customers.

Trace Systems
Trace Systems Inc. was founded to support and defend our nation's security interests at home and abroad-- whenever and wherever. We provide enterprise IT, engineering, full life-cycle communications, cybersecurity, cloud and virtualization services and solutions to the United States Department of Defense and other federal agencies.
To Apply: We invite you to put your talents to work by joining a growing team of dynamic professionals here at Trace Systems! Be part of a culture at our leading-edge company where you can achieve great things while fostering a satisfying and rewarding career progression. To learn more about our current openings, text 'tracejobs' to 97211 or apply directly through our website at: www.tracesystems.com. #jointracesystems
Trace Systems is an equal opportunity employer. Qualified candidates will be considered without regard to legally protected characteristics.