Tech Stack
AWSAzureCloudCyber SecurityOracle
About the role
- Lead RMF activities across all phases: categorization, control selection, implementation, assessment, authorization, and continuous monitoring.
- Prepare, review, and maintain documentation including SSPs, POA&Ms, and SARs.
- Manage compliance within eMASS and support ATO package submissions.
- Apply NIST 800-53, CNSSI 1253, and DISA STIG controls across hybrid and cloud systems.
- Collaborate with engineering and infrastructure teams to embed cybersecurity best practices.
- Support vulnerability management, remediation, and continuous monitoring.
- Coordinate with Security Control Assessors (SCAs) and Authorizing Officials (AOs).
- Develop and deliver RMF training, templates, and process improvements.
Requirements
- 15+ years of experience supporting RMF processes as a cybersecurity analyst, ISSO, or SME.
- Minimum 3 years of Federal or DoD experience (military IT experience qualifies).
- Deep understanding of DoDI 8510.01, NIST 800-53, CNSSI 1253, and DISA STIGs.
- Experience using eMASS and applying controls in hybrid or cloud environments (AWS, Azure, Oracle Cloud).
- Excellent communication and stakeholder coordination skills.
- Clearance: Active DoD Secret clearance (or ability to obtain and maintain).
- None specified
📊 Resume Score
Upload your resume to see if it passes auto-rejection tools used by recruiters
Check Resume Score
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
RMFNIST 800-53CNSSI 1253DISA STIGvulnerability managementcybersecurity best practicesdocumentation preparationcompliance managementATO package submissionsprocess improvements
Soft skills
communicationstakeholder coordinationcollaborationtraining development
Certifications
DoD Secret clearance