1

Rmf Jobs (NOW HIRING)

Summary RMF Analyst III Huntsville, AL Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development ...

Overview RMF Analyst III Huntsville, AL Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development ...

Summary RMF Analyst III Huntsville, AL Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development ...

Req ID: 41784 Summary RMF Analyst III Huntsville, AL Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional ...

RMF Engineer - Intermediate

Seaside, CA · On-site

$94K - $127K/yr

Description RMF Engineer - Intermediate Xcelerate Solutions is seeking a RMF Engineer to support CyberPRIMES cybersecurity, privacy, records and information management, and related enterprise support ...

Sr. RMF Security Engineer

San Diego, CA · On-site

$131K - $237K/yr

Leidos has a new and exciting opportunity for a Sr. RMF Security Engineer in our Intelligence Group (IG) Cyber & Analytics Business Area (CABA) . Our talented team is at the forefront in Security ...

Overview RMF Analyst III Huntsville, AL Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development ...

RMF Subject Matter Expert

Lincoln, MA · On-site

$120 - $180/hr

RMF Subject Matter Expert Location: Hanscom Air Force Base Clearance: Secret - Top Secret Preferred Program: BLITS 3.0 Company/ Program Description: Centuria, a Service-Disabled Veteran-Owned Small ...

The ISSO/RMF Lead is responsible for RMF compliance across two ATO systems ANG-DSS and AROWS supporting a shared user base of approximately 120,000 ANG service members (200,000+ total user accounts ...

Showing results 21-40

Rmf information

See salary details

$39K

$97.1K

$168K

How much do rmf jobs pay per year?

As of Aug 24, 2026, the average yearly pay for rmf in the United States is $97,123.00, according to ZipRecruiter salary data. Most workers in this role earn between $69,500.00 and $118,000.00 per year, depending on experience, location, and employer.

What is an RMF?

An RMF (Risk Management Framework) job involves implementing security measures and compliance processes to protect an organization's information systems. Professionals in this role assess risks, develop mitigation strategies, and ensure adherence to federal cybersecurity regulations, such as those outlined by NIST. They often work with government agencies, contractors, and businesses handling sensitive data. RMF specialists conduct security assessments, document controls, and support continuous monitoring efforts to maintain system integrity and compliance.

What are the key skills and qualifications needed to thrive in the RMF position, and why are they important?

To excel as a Risk Management Framework (RMF) specialist, a solid background in cybersecurity principles, risk assessment, and knowledge of federal compliance standards is essential, often supported by a degree in information security or a related field. Familiarity with tools like eMASS, NIST guidelines, and certifications such as CISSP or CAP is highly advantageous. Strong analytical thinking, attention to detail, and effective communication skills set outstanding RMF professionals apart in this role. These skills are vital to ensure secure system operations and maintain regulatory compliance in sensitive environments.

What are the primary responsibilities of an RMF specialist on a daily basis?

An RMF specialist typically oversees the implementation and documentation of security controls for information systems, ensuring continuous compliance with government and organizational regulations. Daily tasks may include conducting risk assessments, preparing security authorization documentation, communicating with stakeholders about security requirements, and staying updated on regulatory changes. They also collaborate closely with IT, cybersecurity, and compliance teams to address vulnerabilities and support audits. This role requires regular monitoring and reporting to maintain a secure and compliant operational environment.

What does an RMF analyst do?

An RMF analyst is responsible for managing and implementing the Risk Management Framework to ensure the security of information systems. They assess vulnerabilities, develop security plans, and ensure compliance with cybersecurity standards, often using tools like NIST guidelines. The role requires strong analytical skills and knowledge of cybersecurity protocols.
More about Rmf jobs

What cities are hiring for Rmf jobs?

Cities with the most Rmf job openings:

What are the most commonly searched types of Rmf jobs?

The most popular types of Rmf jobs are:

What states have the most Rmf jobs?

States with the most job openings for Rmf jobs include:

What job categories do people searching Rmf jobs look for?

The top searched job categories for Rmf jobs are:

Infographic showing various Rmf job openings in the United States as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $97,123 per year, or $46.7 per hour.

Risk Management Framework (RMF) Specialist

Huntsville, AL • On-site

PeopleTec, Inc.
Guided Missile and Space Vehicle Manufacturing • 501 - 1,000 employees

Full-time

Posted 7 days ago


Job description

Opportunity

PeopleTec is currently seeking a Risk Management Framework (RMF) Specialist to support our Huntsville, AL location.

PeopleTec, Inc. is seeking a highly experienced and motivated RMF Specialist to assist with the development, implementation, assessment, and sustainment of RMF packages supporting digital engineering and digital ecosystem initiatives. A successful candidate will provide cybersecurity and RMF expertise, ensure compliance with Department of Defense (DoD) cybersecurity requirements, and lead efforts to achieve and maintain Authority to Operate (ATO) for complex, distributed digital engineering environments.

This position will serve as a cybersecurity advisor to program leadership, engineering teams, system owners, and other stakeholders, providing guidance throughout the RMF lifecycle and helping organizations identify, assess, and mitigate cybersecurity risks. The RMF Specialist will be responsible for coordinating RMF activities across multiple stakeholders and systems while ensuring cybersecurity requirements are effectively incorporated into acquisition, development, testing, and operational activities.

The successful candidate will also provide technical and functional mentorship to junior RMF personnel and contribute to the development and improvement of RMF processes, procedures, and cybersecurity practices across the organization.

Duties:

  • Lead the development, maintenance, review, and delivery of comprehensive RMF documentation, including System Security Plans (SSP), Security Assessment Reports (SAR), Risk Assessment Reports (RAR), Plans of Action and Milestones (POA&M), Policies and Procedures, and associated authorization artifacts.
  • Lead systems through all phases of the RMF lifecycle, from system categorization and control selection through assessment, authorization, continuous monitoring, and reauthorization.
  • Advise system owners, program managers, engineers, cybersecurity personnel, and other stakeholders on the implementation of DoD cybersecurity requirements and RMF best practices.
  • Develop and execute strategies to address security control deficiencies, vulnerabilities, POA&M items, and other cybersecurity risks.
  • Review and analyze vulnerability scan results, STIG assessments, security control assessments, and other cybersecurity assessment data to identify systemic risks and develop appropriate mitigation strategies.
  • Provide oversight of vulnerability management activities, including ACAS/Nessus scanning, STIG compliance, remediation tracking, and security assessment activities.
  • Ensure compliance with applicable DoD cybersecurity policies, including DoDI 8510.01, NIST SP 800-37, NIST SP 800-53, CNSSI guidance, applicable STIGs, and other cybersecurity requirements.
  • Assess cybersecurity risks associated with digital engineering systems, cloud environments, distributed architectures, and developmental and testing environments.
  • Provide cybersecurity guidance during system design, development, integration, acquisition, testing, deployment, and operational activities.
  • Lead the development and validation of risk mitigation strategies and provide recommendations to program leadership regarding residual cybersecurity risk.
  • Identify opportunities to improve RMF processes, standardize documentation, and increase the efficiency and effectiveness of cybersecurity activities across programs.
  • Mentor and provide technical guidance to junior RMF personnel.
  • Represent the cybersecurity/RMF team in technical interchange meetings, program reviews, security assessments, and other stakeholder engagements.
  • Communicate cybersecurity risks, requirements, findings, and recommendations effectively to both technical and non-technical stakeholders.
  • Support cybersecurity continuous monitoring activities and ensure ongoing compliance with authorization requirements.
  • Perform other cybersecurity and RMF-related duties as required.
  • Travel as required (estimated 10%).
Qualifications

Required Skills/Experience:

  • 8-10 years of experience
  • Significant experience developing, implementing, assessing, and maintaining RMF packages within the DoD or federal government environment.
  • Demonstrated experience leading systems through the DoD RMF lifecycle and supporting successful ATO or authorization activities.
  • In-depth knowledge of DoD cybersecurity policies, RMF processes, NIST SP 800-37, NIST SP 800-53, FIPS, CNSSI guidance, and applicable DoD STIG requirements.
  • Proficiency with vulnerability assessment and compliance tools, including ACAS/Nessus, EvaluateSTIG, eMASSter, and eMASS.
  • Demonstrated ability to analyze vulnerability, STIG, and security assessment results and develop effective remediation and risk mitigation strategies.
  • Experience developing and reviewing SSPs, SARs, RARs, POA&Ms, security control implementation statements, and other RMF documentation.
  • Demonstrated ability to independently manage multiple RMF activities, systems, and competing priorities.
  • Strong understanding of cybersecurity principles, risk management, vulnerability management, security controls, and continuous monitoring.
  • Excellent verbal, written, analytical, and interpersonal communication skills.
  • Demonstrated ability to lead and collaborate effectively across multidisciplinary technical and program teams.
  • Must be a U.S. Citizen.
  • An active DoD Secret clearance is required to perform this work. Candidates must hold or be able to obtain and maintain a DoD Secret Security Clearance during their employment.

Education/Certification Requirements:

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field.
  • CISSP, CAP, CISM, or equivalent DoD-approved cybersecurity certification.
  • DoD 8570/8140 baseline certification appropriate to the position and assigned duties.

Desired Skills:

  • Demonstrated expertise securing digital engineering systems, distributed architectures, and cloud-based infrastructures.
  • Experience supporting RMF activities for cloud environments, including AWS, Azure, GCP, or DoD-specific cloud platforms.
  • Experience with cloud security architecture, authorization, and implementation.
  • Experience supporting developmental and operational testing environments.
  • Experience with DevSecOps, secure software development, or cybersecurity integration into acquisition and development lifecycles.
  • Experience supporting complex or distributed systems with multiple interconnected components and external dependencies.
  • Active TS/SCI clearance is a plus.
Overview

People First. Technology Always.

PeopleTec, Inc. is an employee-owned small business founded in Huntsville, AL that provides exceptional customer support by employing and retaining a highly skilled workforce.

Culture: The name "PeopleTec" was deliberately chosen to remind us of our core value system - our people. Our company's foundation was built on placing our employees and customers first. With an award-winning atmosphere, we have matured into a company that boasts the best and brightest across multiple technical fields.

Career: At PeopleTec, we value your long-term goals. Whether it's through our continuing-education opportunities, our robust training programs, or our "People First" benefits package, PeopleTec truly believes that our best investments are our people.

Come Experience It.

#cjpost #dpost

EEO Statement

PeopleTec, Inc. is an Equal Employment Opportunity employer and provides reasonable accommodation for qualified individuals with disabilities and disabled veterans in its job application procedures. If you have any difficulty using our online system and you need an accommodation due to a disability, you may use the following email address, applicationhelp@peopletec.com and/or phone number (256.319.3800) to contact us about your interest in employment with PeopleTec, Inc.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, citizenship, ancestry, marital status, protected veteran status, disability status or any other status protected by federal, state, or local law. PeopleTec, Inc. participates in E-Verify.

Employment Type: FULL_TIME