Назад
Company hidden
2 дня назад

RMF Engineer (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

RMF Engineer (Cybersecurity): Supporting Assessment & Authorization (A&A) activities for DoD systems with an accent on developing RMF documentation and managing artifacts throughout the system lifecycle. Focus on implementing NIST SP 800-53 controls, managing packages in eMASS, and ensuring continuous monitoring and ATO renewal.

Location: Hybrid (Mostly remote) - Candidates based in San Diego, CA or Norfolk/Suffolk, VA areas preferred

Company

hirify.global is a Service-Disabled Veteran-Owned Small Business providing mission-critical IT and cybersecurity solutions to Department of Defense and federal customers.

What you will do

  • Support system categorization by identifying information types, system boundaries, and information flows.
  • Develop and maintain RMF artifacts, including SSPs, CPs, SARs, and POA&Ms.
  • Assess and evaluate implemented security controls and work with engineering teams on remediation.
  • Manage and validate RMF packages in eMASS, including artifact uploading and status tracking.
  • Support continuous monitoring, ATO package preparation, and authorization renewal processes.
  • Provide guidance on NIST SP 800-53 controls and DoD cybersecurity policies.

Requirements

  • Active DoD Secret security clearance (minimum) required.
  • U.S. citizenship required.
  • 3+ years of hands-on experience supporting DoD RMF processes and A&A activities.
  • Proven experience developing RMF artifacts (SSPs, CPs, control evidence, etc.).
  • Strong familiarity with NIST SP 800-53 and RMF steps per NIST SP 800-37.
  • Experience with eMASS or similar authorization management systems.

Nice to have

  • Experience supporting Navy, NAVWAR, or other DoD component systems.
  • Familiarity with ACAS, Nessus, or STIG Viewer.
  • Relevant certifications such as CAP, Security+, CISSP, CISM, or DoD 8570/8140 IAM Level I/II.
  • Bachelor’s degree in Cybersecurity, IT, Computer Science, or a related field.

Culture & Benefits

  • Competitive salary and benefits package.
  • Mostly remote hybrid flexibility for better work-life balance.
  • Opportunity to support high-impact DoD missions.
  • Professional growth in a mission-driven, veteran-friendly environment.
  • Collaborative culture focused on ethics, expertise, and results.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →