Demo

RMF Analyst

ANALYGENCE
Norfolk, VA Full Time
POSTED ON 11/8/2025 CLOSED ON 1/10/2026

What are the responsibilities and job description for the RMF Analyst position at ANALYGENCE?

ANALYGENCE is pursuing an opportunity to support the US Navy with operational test and evaluation support.

The RMF Analyst will conduct comprehensive evaluations of management, operational, and technical security controls, both implemented and inherited, to determine overall control effectiveness and compliance. The Security Architect also provides project management, subject-matter expertise, and hands-on technical support for all aspects of OPTEVFOR Cyber Operational Test & Evaluation (OT&E) infrastructure, tools, and certification/accreditation activities in alignment with DoD and Department of the Navy (DON) cybersecurity policies and guidance.

  • Create, review, update, and validate cybersecurity Standard Operating Procedures (SOPs) as required.
  • Review and maintain an inventory of authorized software (as the software custodian).
  • Review and maintain an inventory of government-furnished devices and media.
  • Ensure configurations on laptops and servers are validated before being deployed (as required)
  • Audit and validate configurations of network devices based on STIGs, or define and implement compensating controls of such STIGs as required to ensure mission execution.
  • Maintain and update all RMF and A&A documentation to ensure relevance and alignment with OPTEVFOR cyber OT&E mission assets, including required revisions and updates in eMASS.
  • Conduct comprehensive annual RMF package reviews to ensure continued compliance of the cyber OT&E mission toolset, networks, and/or systems.
  • Ensure traceability is maintained throughout the RMF submission process (e.g., A&A plan, Plan Of Action and Milestones (POA&M), Security Assessment Report (SAR), topology, software, ports, protocols and services, test plan).
  • Maintain network and system documentation in DoD Information Technology Portfolio Repository-DON / DADMS.
  • Maintain documentation and registration of network ports, protocols, and services.
  • Maintain circuit registrations in the Global Interconnection Approval Process System (GIAP) and Systems/Network Approval Process (SNAP).
  • Maintain and report on the status (weekly) of all outstanding A&A items and supporting documentation.
  • As a member of the Configuration Control Board (CCB), ensure CCB-approved changes are timely and accurately reflected in the A&A documentation.
  • Support compliance validation of current and future directives (e.g., IAVs, STIGs, TASKORD/CTOs).
  • Provide recommendations for corrective action of any non-compliant security controls.
  • Execute DISA STIG validations for systems in conjunction with RMF/A&A package reviews annually in accordance with eh DoD Instruction 8510 series, Risk Management Framework for DoD systems.
  • Provide security expertise to ensure security controls are implemented and the resulting documentation and artifacts are current.
  • Prepare reports on scanning results and configuration management observations monthly.
  • Document assessment activities and results in sufficient detail to enable external review of all assessment processes, activities, results, and conclusions.
  • Conduct and document a semi-annual tabletop exercise twice in a calendar year.
  • Produce test plans, draft after actions, and other documents for review and comment.
  • Review and/or revise Business Impact Analysis (BIA) to include business process, IT dependency, and physical security assessments annually.
  • Review and analyze IT contingency/disaster recovery plans for NIST and DoN compliance, and produce checklists for IT systems.
  • Assist with exercise and/or training and documentation of IT contingency plan and execution. Able to work alone or in a small group to resolve tasks independently with minimal supervision.
  • Minimum 5 years' experience designing enterprise and systems security throughout the development lifecycle.
  • Minimum 3 years' experience conducting thorough assessments of management, operational, and technical security controls within IT systems
  • Minimum 3 years' experience providing project management, subject matter expertise, and hands-on experience for systems certification and accreditation efforts in accordance with applicable DOD and DON policies and guidance.

ANALYGENCE is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer, making decision without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class.


 

Project Analyst
Sellers & Associates, LLC -
Chesapeake, VA
Business Analyst
Robert Half -
Chesapeake, VA
Management Analyst
DLA Careers -
Norfolk, VA

Salary.com Estimation for RMF Analyst in Norfolk, VA
$82,261 to $99,338
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a RMF Analyst?

Sign up to receive alerts about other jobs on the RMF Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$70,781 - $90,589
Income Estimation: 
$98,463 - $125,752
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
This job has expired.
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at ANALYGENCE

  • ANALYGENCE Dahlgren, VA
  • ANALYGENCE is seeking a skilled Security Software Engineer with a strong foundation in reverse engineering, penetration testing, and secure software develo... more
  • 16 Days Ago

  • ANALYGENCE Washington, WA
  • ANALYGENCE delivers mission-critical support to Headquarters Air Combat Command (HQ ACC) at Langley Air Force Base, Virginia. This support encompasses a fu... more
  • 6 Days Ago

  • ANALYGENCE Fulton, MD
  • ANALYGENCE is growing and searching for a dynamic Director of Proposal Operations. This role will actively manage the people, process, and tools related to... more
  • 7 Days Ago

  • ANALYGENCE Norfolk, VA
  • ANALYGENCE is pursuing an opportunity to support the US Navy with operational test and evaluation support. The Security Control Assessor will conduct indep... more
  • 11 Days Ago


Not the job you're looking for? Here are some other RMF Analyst jobs in the Norfolk, VA area that may be a better fit.

  • Cambridge International Systems Inc Norfolk, VA
  • Risk Management Framework (RMF) Analyst – Top Secret Clearance | Norfolk, VA Cambridge International Systems, Inc. Join a dynamic global team united by sha... more
  • 1 Month Ago

  • Watershed Security Norfolk, VA
  • Job Description Watershed Security is looking for an RMF practitioner to join our growing team in Norfolk, VA. Be part of a multifaceted team providing RMF... more
  • 13 Days Ago

AI Assistant is available now!

Feel free to start your new journey!