Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
KBR, Inc.

Cybersecurity RMF Analyst

KBR, Inc.

Cybersecurity RMF Analyst supporting the U.S. Department of War by ensuring cloud-based systems meet security standards.

Posted 5/12/2026full-timeRemote • South Carolina • 🇺🇸 United StatesSeniorLead💰 $129,300 - $194,000 per yearWebsite

Tech Stack

Tools & technologies
AWSAzureCloudCyber SecurityServiceNow

About the role

Key responsibilities & impact
  • Assess cybersecurity standards and practices of cloud-based systems against FedRAMP, DoW, and DHA requirements
  • Document cybersecurity posture in support of the RMF process
  • Facilitate movement of multiple information systems through the RMF process and maintain accreditations through continuous monitoring and annual reviews
  • Provide solutions to complex problems that require the regular use of expertise and creativity
  • Serve as Subject Matter Expert (SME) on one or more technologies/skills related to A&A activities and documentation
  • Participate in sessions aimed at identifying, planning, and executing strategies in response to emerging cybersecurity/RMF policies
  • Maintain awareness and knowledge of evolving security and risk management standards
  • Develop, update, and/or review RMF documentation to include IV&V results, Risk Assessment Reports, and POA&M development
  • Develop, update, and/or review cybersecurity documentation for the use of cloud native services
  • Assess system compliance against NIST, DoW, and DHA security requirements
  • Produce evidence as necessary to support compliance status of NIST, and DoW
  • Review and assess authorization boundary diagrams, service architecture diagrams, data flow diagrams, hardware and software inventories
  • Analyze vulnerability scans of information systems

Requirements

What you’ll need
  • Bachelor’s Degree and ten (10) years of experience with Cybersecurity / Information Technology, or eighteen (18) years of hands-on experience with Cybersecurity / Information Technology in lieu of degree.
  • Active DoW Secret security clearance
  • DoW 8570-compliant certification
  • Demonstrated experience assessing, managing, engineering, or architecting cloud technologies from major vendors such as Microsoft, Amazon, or Google
  • A cloud related certification such as Google Certified Professional Cloud Architect, Microsoft Azure Fundamentals, AWS Certified SysOps Administrator, or ServiceNow Certified Administrator
  • Experience with Risk Management Framework
  • Experience in RMF package review, including POA&Ms (mitigation statements), Security Plans, Risk Assessments, architecture diagrams, hardware/software inventories, and system/site policies, procedures, and processes
  • Experience working within DoW
  • Experience in assessing systems using NIST 800-53 and/or DISA STIGs and SRGs

Benefits

Comp & perks
  • 401K plan with company match
  • Medical, dental, vision insurance
  • Life insurance
  • AD&D
  • Flexible spending account
  • Disability
  • Paid time off
  • Flexible work schedule
  • Professional training and development

ATS Keywords

✓ Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
cybersecuritycloud technologiesRisk Management Frameworkvulnerability assessmentcompliance assessmentdocumentation reviewsystem architecturerisk assessmentcontinuous monitoringinformation systems
Soft Skills
problem solvingcreativitycommunicationplanningexecutionsubject matter expertisecollaborationadaptabilityanalytical thinkingattention to detail
Certifications
DoW 8570-compliant certificationGoogle Certified Professional Cloud ArchitectMicrosoft Azure FundamentalsAWS Certified SysOps AdministratorServiceNow Certified Administrator