For Employers
Apply Now

Please mention DailyRemote when applying

?/100
Resume Match Score

Match your resume skills with our AI powered skill match!

Get professional review
AI Summary

The RMF Analyst will support the assessment, authorization, and continuous monitoring of information systems to ensure compliance with NIST and DoD cybersecurity guidelines. Responsibilities include developing security documentation, conducting control assessments, and managing authorization packages within GRC tools.

RMF Analyst

Full Time, Remote, San Antonio, TX area

Secret Clearance

 

**This position is contingent upon contract award**

 

Overview:

Semper Valens Solutions is seeking a detail-oriented RMF Analyst to support the assessment, authorization, and continuous monitoring of information systems in accordance with the NIST Risk Management Framework (RMF) and applicable federal cybersecurity guidelines (NIST SP 800-37, 800-53, 800-53A, FISMA, DoD 8510.01, and CNSSI 1253, as applicable). This role is critical to ensuring organizational systems achieve and maintain an Authorization to Operate (ATO) by supporting security categorization, control selection, implementation, assessment, and continuous monitoring activities throughout the system lifecycle.

Key Responsibilities

  • Support execution of the RMF process across all six steps: Categorize, Select, Implement, Assess, Authorize, and Monitor
  • Develop, review, and maintain security authorization documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and Risk Assessment Reports (RARs)
  • Conduct security control assessments against NIST SP 800-53/800-53A control baselines and document findings
  • Perform security categorization of information systems using FIPS 199/200 and NIST SP 800-60
  • Coordinate with system owners, ISSOs, and ISSMs to identify, track, and remediate security vulnerabilities and control deficiencies
  • Support continuous monitoring activities, including periodic control assessments, vulnerability scanning review, and configuration compliance checks
  • Assist in the preparation and submission of Authorization to Operate (ATO), Interim ATO (IATO), and Authorization to Test (ATT) packages
  • Utilize GRC tools (e.g., eMASS, Xacta, CSAM, Archer) to manage authorization packages and track compliance status
  • Review and analyze security assessment results, audit logs, and scan reports (e.g., ACAS/Nessus, STIG checklists) to identify risks
  • Support development and tracking of POA&Ms, ensuring timely remediation of identified weaknesses
  • Ensure compliance with applicable frameworks, including FISMA, DoD RMF, CNSSI 1253, and agency-specific cybersecurity policies
  • Prepare risk briefings and status reports for leadership, Authorizing Officials (AOs), and government stakeholders
  • Stay current on evolving NIST guidance, DoD/agency policy updates, and emerging cybersecurity threats affecting authorization requirements

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or related field (or equivalent experience)
  • 3+ years of experience supporting RMF, C&A/A&A processes within federal, DoD, or Intelligence Community environments
  • Working knowledge of NIST SP 800-37, 800-53, 800-53A, 800-60, and FIPS 199/200
  • Experience developing or reviewing SSPs, SARs, POA&Ms, and RAR documentation
  • Familiarity with DoD or agency-specific implementation guides (e.g., DoDI 8510.01, ICD 503, CNSSI 1253)
  • Hands-on experience with GRC/eMASS or equivalent RMF tracking tools
  • Understanding of vulnerability management and STIG/SCAP compliance processes
  • Active DoD 8570/8140-compliant certification (e.g., Security+, CySA+, or equivalent) - required or attainable within 6 months of hire
  • Strong written communication skills for technical documentation and stakeholder reporting
  • U.S. Citizenship required; active security clearance or eligibility to obtain one, per position requirements

Preferred Qualifications

  • Active Secret clearance
  • CISSP, CAP (Certified Authorization Professional), or CISM certification
  • Experience with cloud authorization processes (FedRAMP, DoD Cloud Computing SRG)
  • Familiarity with vulnerability scanning tools (ACAS/Nessus, Tenable) and SCAP compliance checkers
  • Experience supporting Cybersecurity Service Provider (CSSP) or SOC operations
  • Knowledge of Zero Trust Architecture principles and their application to RMF
  • Experience working within Intelligence Community (IC) or Defense Industrial Base (DIB) environments

 

 

 

About Semper Valens Solutions:

Semper Valens Solutions, Inc. (SVS) is a Service-Disabled Veteran Owned Small Business (SDVOSB) providing Cost Effective Software and Systems Engineering, Field Support, Training and Full Life cycle Support Management to the DOD and VA community.

At Semper Valens, our vision is to remain a creative, cutting edge and cost-effective solutions provider where our shared intellect, industry experience, and technology excellence, make a positive difference in our customer's success. Our solutions help bridge the gap between IT and business prioritizations to optimize budgets, risks and operational processes.

We search for outstanding technical professionals, hiring at all levels of the experience spectrum; intermediate, journeyman and senior. Consider us for your career plan.

Semper Valens Solutions is an Equal Opportunity Employer

Semper Valens Solutions proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital/parental status, pregnancy/childbirth, or related conditions, physical or mental disability, genetic information, status as a Disabled Veteran, Recently Separated Veteran, Active-Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.

If you require a reasonable accommodation to apply for a position with Semper Valens Solutions through its online applicant system, please contact Semper Valens Solutions Human Resources Department at (830) 899-6870.

Semper Valens Solutions is an affirmative action/equal opportunity employer - minorities, females, disabled, and protected veterans are urged to apply. Applicants have rights under Federal Employment Laws.

All Jobs at Semper Valens Solutions: https://sempervalens.com/careers

Automatically Apply to the Best Remote Jobs

Stop the endless job search. Our AI finds and applies to the best jobs for you.

Try it Now
Keep looking

Similar Jobs

See all Remote Others jobs →

Job Analyst (Immediate Opening)

Full Time United States $63400 - $73300 per year Others

Senior Connectivity Partner Manager

Freelance United States $65 - $85 per hour Others

Patient Access Scheduler, Boca Centralized Scheduling, FT, 9A-5:30P (Remote)

Full Time United States $17.27 - $21.93 per hour Others

Operations Senior Analyst - Express Scripts - Remote

Other, Full Time United States $54100 - $90100 per year Others

Business Project Senior Advisor , MyMatrixx - Evernorth - Remote

Other, Full Time United States $112K - $186K per year Others

Large Bank Information Technology Internal Audit Senior Consultant (Temporary)

Full Time United States Others
Apply Now

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Others

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified