Risk Management Framework (RMF) Specialist

NV5, Inc.

Belleville (IL)

On-site

USD 80,000 - 110,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical insurance
Dental insurance
401(k)
Professional development opportunities

Job summary

NV5, Inc. is seeking a dedicated Risk Management Framework (RMF) Specialist to oversee cybersecurity processes at Scott Air Force Base in Belleville, IL. This role involves ensuring compliance with DoD and Air Force policies and safeguarding the Air Force's information systems by identifying and mitigating security risks.

The ideal candidate will have a Bachelor’s degree in Cybersecurity with 5+ years of experience in the field and strong RMF process knowledge. Benefits include a competitive compensation package and opportunities for professional development.

Qualifications

  • Minimum of 5 years of experience in cybersecurity, with 3 years in RMF processes.
  • Proficiency in RMF tools and technologies.
  • Strong verbal and written communication skills.

Responsibilities

  • Lead the implementation of the RMF for Air Force information systems.
  • Conduct security control assessments and validate implemented controls.
  • Perform risk assessments to identify vulnerabilities and recommend mitigation strategies.

Skills

Problem-solving skills
Excellent communication
Analytical skills
Collaboration skills

Education

Bachelor’s degree in Cybersecurity or related field

Tools

eMASS
Nessus
ACAS
SCAP

Job description

Overview

Seeking a dedicated and experienced Risk Management Framework (RMF) Specialist to oversee and manage cybersecurity processes, ensuring compliance with DoD and Air Force policies. The RMF Specialist will play a critical role in safeguarding the Air Force’s information systems by identifying, assessing, and mitigating security risks. This position requires a deep understanding of the RMF lifecycle and its application in a military context.

Work Environment:

  • Location: Scott Air Force Base - Belleville, IL (This is not a remote position)
  • Security Clearance: Must possess or be able to obtain and maintain a Top Secret/SCI clearance.
  • Travel < 20% of the time
Responsibilities
  • RMF Implementation: Lead the implementation of the Risk Management Framework (RMF) for Air Force information systems, ensuring compliance with DoD and Air Force cybersecurity policies.
  • Security Control Assessment: Conduct security control assessments and validate the effectiveness of implemented controls for information systems.
  • Risk Analysis: Perform risk assessments to identify vulnerabilities, threats, and risks to information systems, and recommend appropriate mitigation strategies.
  • Documentation: Prepare and maintain RMF documentation, including System Security Plans (SSPs), Plan of Action and Milestones (POA&Ms), and Risk Assessment Reports.
  • Continuous Monitoring: Implement and manage continuous monitoring strategies to ensure ongoing assessment and authorization of information systems.
  • Collaboration: Work closely with system owners, developers, and other stakeholders to ensure security requirements are integrated throughout the system development lifecycle.
  • Audit Support: Support internal and external audits, reviews, and inspections related to information system security.
  • Policy and Compliance: Ensure alignment with current Air Force cybersecurity policies, standards, and regulations, and recommend updates to cybersecurity policies as needed.
Qualifications

Requirements

  • Education: Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • Experience: Minimum of 5 years of experience in cybersecurity, with at least 3 years specializing in RMF processes and DoD information systems.
  • Certifications: Must possess or be willing to obtain relevant cybersecurity certifications such as Certified Information Systems Security Professional (CISSP), Certified Authorization Professional (CAP), or equivalent.
  • Security Clearance: Ability to obtain and maintain a Top Secret/SCI security clearance.
  • Technical Skills: Proficiency in RMF tools and technologies, such as eMASS (Enterprise Mission Assurance Support Service) and vulnerability assessment tools (e.g., Nessus, ACAS, SCAP).
  • Knowledge: In-depth knowledge of NIST Special Publications (SP) 800-37, 800-53, and 800-171, as well as DoD Instruction 8510.01 and related guidelines.
  • Communication: Strong verbal and written communication skills, with the ability to effectively convey complex cybersecurity concepts to both technical and non-technical audiences.
  • Analytical Skills: Excellent analytical and problem-solving skills, with a keen attention to detail and a proactive approach to identifying and addressing security risks.

Competencies & Skills

  • Strong problem-solving skills and the ability to troubleshoot database issues effectively.
  • Excellent communication and collaboration skills for cross-team efforts.

Employment is contingent upon successful completion of a background check and drug screening.

NV5 offers a competitive compensation and benefits package including medical, dental, life insurance, FTO, 401(k) and professional development/advancement opportunities.

NV5 provides equal employment opportunities (EEO) to all applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. NV5 complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DoD RMF Specialist: Cybersecurity Expert
DoD RMF Specialist: Cybersecurity Expert

NV5, Inc. • Belleville (IL)

On-site
USD 80,000 - 110,000
Medical insurance
Dental insurance
401(k)
+1
Risk Management Framework Cyber SME
Risk Management Framework Cyber SME

TMC TECHNOLOGIES • Albuquerque (NM)

On-site
USD 90,000 - 130,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

P3S CORPORATION • Dayton (OH)

On-site
USD 95,000 - 120,000
Risk Management Framework (RMF) Analyst
Risk Management Framework (RMF) Analyst

FEDITC • Shiloh (IL)

On-site
USD 95,000 - 105,000
Medical
Vision
401K with 4% match
+9
Risk Management Framework Specialist (Onsite)St. Louis, Missouri
Risk Management Framework Specialist (Onsite)St. Louis, Missouri

Geospatial Consulting Group International, LLC (geocgi) • St. Louis (MO)

On-site
USD 80,000 - 100,000
Competitive salary
401(k) plan
Training & certifications
+2
Risk Management Framework (RMF) Lead
Risk Management Framework (RMF) Lead

Abacus Technology Corporation • Bedford (MA)

On-site
USD 149,000 - 167,000
Health and Dental Insurance
401(k) with Matching
Life Insurance
+4
Mid-level Cybersecurity Engineer / RMF Specialist
Mid-level Cybersecurity Engineer / RMF Specialist

Talanto • Northern (KY)

Hybrid
USD 120,000 - 150,000
Sr. RMF Security Engineer
Sr. RMF Security Engineer

Leidos Inc • San Diego (CA)

On-site
USD 131,000 - 238,000
Cyber Analyst-RMF Specialist
Cyber Analyst-RMF Specialist

Saic • Colorado Springs (CO)

On-site
USD 120,000 - 160,000
Cybersecurity and RMF Engineer, Mid
Cybersecurity and RMF Engineer, Mid

Booz Allen Hamilton • Arlington (VA)

On-site
USD 69,400 - 158,000