Cyber Analyst-RMF Specialist

Saic

Colorado Springs (CO)

On-site

USD 120,000 - 160,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

SAIC is seeking a Cyber Analyst - RMF Specialist in Colorado Springs, CO to support RMF and eMASS activities for the NITES contract. The role requires hands-on vulnerability scanning, STIG compliance, and liaison with System Owners and leadership.

You will maintain system records, coordinate CTASKORD responses, and translate findings into POA&Ms while keeping a CORA-ready posture across Windows, Linux, and network enclaves.

Qualifications

  • Active TS/SCI security clearance required.
  • 5+ years IT/cybersecurity experience.
  • 2+ years as an ISSO on DoD systems.
  • Experience with RMF, eMASS, STIGs and SCAP tools.

Responsibilities

  • Register, update and maintain continuous monitoring records in eMASS for RMF.
  • Manage admin-level access to enterprise systems to run ACAS/SCAP scans and ensure STIG compliance.
  • Analyze scan results and drive remediation to maintain patching and STIG compliance.
  • Lead CTASKORD responses and track remediation milestones.

Skills

Active TS/SCI security clearance
5+ years IT/cybersecurity experience
2+ years ISSO for DoD systems
RMF/eMASS/STIG experience

Education

BS or equivalent in Information Assurance/Cybersecurity

Tools

STIG Viewer
SCAP tools / EvaluateSTIG

Job description

Description

Join our team and play a pivotal role in defending North America. We are seeking a highly skilled Cyber Analyst - RMF Specialist in Colorado Springs, CO to support the critical North American Aerospace Defense Command and United States Northern Command (N&NC) Information Technology Enterprise Services (NITES) contract in Colorado Springs, CO.

In this role, you will act as a key technical compliance specialist. You will hold administrator-level access to information systems to perform advanced vulnerability and compliance scanning and manage Security Technical Implementation Guide (STIG) compliance. Crucially, you will bridge the gap between technical operations and cyber governance by directly supporting the Risk Management Framework (RMF) team, maintaining up-to-date system records in Enterprise Mission Assurance Support Service (eMASS), and executing rapid response protocols to downward-directed Cyber Tasking Orders (CTASKORDs).

Responsibilities
  • Directly support the Risk Management Framework (RMF) team by registering, updating, and maintaining continuous monitoring records within the eMASS.
  • Maintain administrator-level access to enterprise information systems to configure, manage, and perform regular Assured Compliance Assessment Solution (ACAS) and Security Content Automation Protocol (SCAP) compliance scans.
  • Analyze scan results to ensure continuous patching and STIG compliance.
  • Implement, track, and validate system hardening measures across Windows, Linux, and network enclaves.
  • Lead the execution, tracking, and operational response to Cyber Tasking Orders (CTASKORDs) and other downward-directed orders when STIG compliance gaps must be urgently addressed.
  • Translate technical scan findings and non-compliant STIG items into actionable Plan of Action and Milestones (POA&M), maintaining accurate tracking of remediation milestones.
  • Maintain continuous cyber security posture and system hygiene to ensure systems remain in a Cyber Operational Readiness Assessment (CORA) ready state.
  • Provide clear vulnerability status updates, technical mitigations, and compliance roadmaps to System Owners, technical administration teams, and leadership.
Qualifications
Required Qualifications
  • Active TS/SCI security clearance.
  • Certification required per DoDD 8140.03, Intermediate Level (e.g., CompTIA CySA+, Security+ CE, GSEC, or equivalent).
  • BS or equivalent work experience in the Information Assurance, Cybersecurity, or Systems Administration field.
  • 5+ years of overall IT and cybersecurity experience.
  • Demonstrated experience with defending identity services, domain environments, Active Directory, and Windows/Linux server systems.
  • 2+ years of experience as an ISSO for DoD systems.
  • Experience using STIG Viewer and SCAP tools, such as EvaluateSTIG.
Desired Qualifications
  • Familiarity with enterprise vulnerability scanners and continuous network monitoring tools.
  • Previous experience operating in a highly complex, metrics-driven DoD cybersecurity environment.
  • Familiarity with the use of eMASS as a central repository for RMF artifacts.

Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.


Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

RMF Cyber Analyst - STIG & Compliance Lead
RMF Cyber Analyst - STIG & Compliance Lead

Saic • Colorado Springs (CO)

On-site
USD 120,000 - 160,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

P3S CORPORATION • Dayton (OH)

On-site
USD 95,000 - 120,000
RMF Cyber Security Analyst - 306210
RMF Cyber Security Analyst - 306210

DNI (Delaware Nation Industries) • Virginia Beach (VA)

On-site
USD 110,000 - 115,000
Covers 100% of employee premiums (Medi
Matching 401K
Short- and Long-Term Disability
+3
Risk Management Framework Cyber SME
Risk Management Framework Cyber SME

TMC TECHNOLOGIES • Albuquerque (NM)

On-site
USD 90,000 - 130,000
RMF Cyber Security Analyst Senior
RMF Cyber Security Analyst Senior

Saic • Quantico (VA)

On-site
USD 120,000 - 160,000
Information Security Analyst
Information Security Analyst

Caliber Systems Inc. • Washington, Northern (KY)

Hybrid
USD 89,000 - 110,000
Cybersecurity Specialist
Cybersecurity Specialist

Career Listings • Fort Belvoir (VA)

On-site
USD 110,000 - 170,000
401(k)
401(k) matching
Dental insurance
+6
Cybersecurity Specialist (RMF)
Cybersecurity Specialist (RMF)

New Directions Technologies, Inc • Port Hueneme (CA)

On-site
USD 75,000 - 94,000
RMF Cybersecurity Analyst II - 505767
RMF Cybersecurity Analyst II - 505767

Delaware Nation Industries • Bath Township (OH)

On-site
USD 70,000 - 100,000
Benefits coverage
401K match
Disability insurance
+3
Cybersecurity Operations Analyst
Cybersecurity Operations Analyst

Saic • Colorado Springs (CO)

On-site
USD 80,000 - 120,000