Demo

Cybersecurity RMF Analyst with Security Clearance

ClearanceJobs
Washington, DC Full Time
POSTED ON 12/30/2025
AVAILABLE BEFORE 1/30/2026
Falconwood is a woman-owned / veteran-owned company providing consultation and programmatic support to Department of Defense (DoD) Information Technology (IT) initiatives and programs. We provide expert advice and consultation on a diverse range of IT subjects, focusing on acquisition, cybersecurity, engineering, logistics, and process development. We have an immediate opening for a Cybersecurity Risk Management Framework (RMF) Analyst to support the Navy Enterprise Resource Planning (ERP). The successful candidate will perform the complete DoD RMF Assessment and Authorization (A&A) process, to include system categorization, security control baseline selection and tailoring, security control implementation and assessment. They will also get to perform continuous RMF monitoring including annual control assessments, POA&M monitoring and updates, creation and/or updating of security documentation, and development of mitigations for non-fully compliant controls. This position is based at the Washington Navy Yard and requires an active secret clearance. The candidate must have the knowledge skills and abilities required to complete Navy RMF processes as identified in the RMF Process Guide, Supply Chain Assessment - Red, Amber, Green (SCA RAG), and CyberSafe:

  • Perform the complete DoD RMF Assessment and Authorization (A&A) process, to include system categorization, security control baseline selection and tailoring, security control implementation and assessment.
  • Assess the effectiveness of cybersecurity controls In Accordance With (IAW) National Institute of Standards and Technology (NIST) SP 800-53A and effectively document weakness.
  • Successfully complete NIST SP 800-30, compliant risk assessments.
  • Must have experience using the automated RMF Assessment and Authorizations (A&A) tools, such as Enterprise Mission Assurance Support Service (eMASS), to complete and document DoD compliant RMF A&A activities.
  • Support the System Level Continuous Monitoring (SLCM) activities involve ongoing assessment of an organization's systems to ensure compliance and identify risks. These activities typically include continuous auditing, controls monitoring, and transaction inspection to detect inconsistencies, errors, POA&M monitoring and updates, creation and/or updating of security documentation, and development of mitigations for non-fully compliant controls. and policy violations.
  • Maintain the Navy ERP continuous monitoring IAW DoD Inst 8510.01 and DoN CIO Guide (Risk Management Framework Process Guide).
  • Assist in the development of cybersecurity related documentation and other artifacts required to successfully navigate an information system through the DoD/Navy acquisition process.
  • Execute processes and develop artifacts required to obtain DoD and Navy IATTs, ATOs and Use Case approvals.
  • Perform Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG) vulnerability management (identifying, tracking, remediation, mitigation, and exception management).
  • Successfully complete NIST SP 800-30, compliant risk assessments.
  • Coordinate Asset Management (Hardware and Software) activities.
  • Review Interconnection Agreements (Memorandum of Understanding and Service Level Agreements).
  • Coordinate Cyber to identify why issues are not being resolved.
  • Required a bachelor's degree in technology.
  • Required having 3-5 years of experience performing Cybersecurity RMF A&A and RMF continuous monitoring.
  • Must have enterprise Systems, Applications, and Products in Data Processing (SAP) ERP system cybersecurity experience.
  • Must have the ability and willingness to perform independently and/or as part of a team to move the mission forward.
  • Must have the ability to communicate effectively in writing and verbally.
  • The candidate must be a self-starter by taking responsibility and initiative for the successful and timely completion of all tasks and areas assigned.
  • The candidate must have in-depth knowledge of and will have successfully implemented NIST, DoD, and Navy Cybersecurity policies, guidance and standards, e.g. DoDI 8510.01, FIPS-199, FIPS-200, NIST SP 800-37, NIST SP 800-53, Rev x, NIST SP 800-53A, NIST SP 800-34, NIST SP 800-18, NIST SP 800-30, NIST SP 800-64, CNSSI-1253, The Enterprise IT Control Standards (EITCS), etc.
  • The candidate must be certified to meet IAT Level 1 CSWF requirements, i.e.: "CURRENT" Isc2's CISSP, Security certifications, or equivalent.
  • SECRET security clearance with favorably adjudicated T5 (SSBI) background investigation.

Salary.com Estimation for Cybersecurity RMF Analyst with Security Clearance in Washington, DC
$131,559 to $162,765
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cybersecurity RMF Analyst with Security Clearance?

Sign up to receive alerts about other jobs on the Cybersecurity RMF Analyst with Security Clearance career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$179,455 - $227,077
Income Estimation: 
$179,455 - $227,077
Income Estimation: 
$214,167 - $272,269
Income Estimation: 
$99,793 - $130,112
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at ClearanceJobs

  • ClearanceJobs Grand Forks, ND
  • Our client is seeking a System Administrator whose responsibilities include ensuring compliance with government requirements pertaining to computer systems... more
  • 13 Days Ago

  • ClearanceJobs Juneau, AK
  • Barbaricum is a rapidly growing government contractor providing leading-edge support to federal customers, with a particular focus on Defense and National ... more
  • 13 Days Ago

  • ClearanceJobs Honolulu, HI
  • Immersive Wisdom, provider of a leading remote collaborative ops center platform for DDIL environments, is seeking a Honolulu, Hawaii-based - Senior Direct... more
  • 13 Days Ago

  • ClearanceJobs Honolulu, HI
  • Immersive Wisdom, provider of a leading remote collaborative ops center platform for DDIL environments, is seeking a Honolulu, Hawaii-based - Senior Direct... more
  • 13 Days Ago


Not the job you're looking for? Here are some other Cybersecurity RMF Analyst with Security Clearance jobs in the Washington, DC area that may be a better fit.

  • ClearanceJobs Manassas, VA
  • We are seeking a Risk Management Framework (RMF) specialist to support the Assessment and Authorization process for the Military Health System's Planning, ... more
  • 21 Days Ago

  • ClearanceJobs Alexandria, VA
  • Title: RMF Program Lead Location: Ability to report to either Alexandria, VA or Seaside, CA About iWorks : iWorks Corporation, founded in 2005, is a leadin... more
  • 9 Days Ago

AI Assistant is available now!

Feel free to start your new journey!