RMF Engineer, Journeyman

CACI International Inc

Hawaii

On-site

USD 63,000 - 130,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

CACI International Inc seeks an experienced RMF Engineer, Journeyman to lead RMF implementation across enterprise systems and mission applications in support of Indo-Pacific operations. You will craft and maintain SSPs, SAPs, SARs, and POA&Ms, align with DoD policies, and coordinate with ISSMs, ISSOs, AOs and stakeholders.

The role emphasizes risk analysis, vulnerability management, continuous monitoring, and secure deployments in distributed environments, with up to 10% travel and Secret

Qualifications

  • Minimum 5 years of experience in information security, cybersecurity engineering or RMF implementation for DoD programs.
  • Experience supporting DoD/Joint/Combatant Commands or DISA.
  • Experience in RMF, authorization packages, security assessments, or ATO processes.
  • Experience with vulnerability management and continuous monitoring.

Responsibilities

  • Support RMF lifecycle for information systems and mission applications.
  • Develop SSPs, SAPs, SARs, POA&Ms, and authorization packages.
  • Implement and validate NIST SP 800-53 controls for system authorization.
  • Coordinate with ISSMs, ISSOs, AOs, and system owners during RMF.
  • Perform security control assessments, vulnerability reviews, and risk analyses.
  • Support remediation with scanning tools and coordinate actions with teams.
  • Maintain continuous monitoring and cybersecurity metrics for leadership.
  • Support testing, assessments, audits, and readiness reviews.
  • Ensure compliance with DoD policies, RMF guidance, NIST standards and STIGs.
  • Prepare cybersecurity reports and executive briefings.
  • Support contingency operations and secure deployments.
  • Maintain documentation, baselines, artifacts and knowledge repositories.
  • Coordinate with network engineers, developers, cloud admins and logisticia personnel to integrate cybersecurity.

Skills

RMF implementation
Security compliance
Stakeholder coordination
Vulnerability analysis

Education

Bachelor's Degree in Cybersecurity

Tools

eMASS
ACAS
SCAP Compliance Checker
STIG Viewer
Tenable Nessus
Power BI
SharePoint

Job description

Job Title: RMF Engineer, Journeyman

Job Category: Security

Time Type: Full time

Minimum Clearance Required to Start: Secret

Employee Type: Regular-Long Term Assignment

Percentage of Travel Required: Up to 10%

Type of Travel: Continental US

* * *

The Opportunity

CACI is seeking an experienced RMF Engineer, Journeyman to support cybersecurity compliance and Risk Management Framework (RMF) implementation across the Indo-Pacific.

The RMF Engineer, Journeyman serves as CACI's information security professional responsible for implementing, maintaining, and supporting the Department of Defense Risk Management Framework (RMF) for enterprise information systems, logistics platforms, operational technologies, and mission support applications. Reporting directly to the Cybersecurity Lead, this position ensures systems are designed, configured, and maintained in accordance with DoD cybersecurity policies while supporting secure mission execution across distributed and expeditionary environments.

Responsibilities
  • Support implementation of the DoD Risk Management Framework (RMF) lifecycle for information systems and mission applications.
  • Develop and maintain RMF documentation, including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and authorization packages.
  • Implement and validate NIST SP 800-53 security controls supporting system authorization and accreditation activities.
  • Coordinate with Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), Authorizing Officials (AOs), and system owners throughout the RMF process.
  • Perform security control assessments, vulnerability reviews, configuration compliance checks, and cybersecurity risk analyses.
  • Support vulnerability remediation efforts using security scanning tools and coordinate corrective actions with engineering and operations teams.
  • Maintain continuous monitoring activities and track cybersecurity compliance metrics for Government leadership.
  • Support system testing, security assessments, audits, inspections, and cybersecurity readiness reviews.
  • Ensure compliance with DoD cybersecurity policies, RMF guidance, NIST standards, DISA Security Technical Implementation Guides (STIGs), and contractual requirements.
  • Prepare cybersecurity reports, executive-level briefings, risk assessments, and technical recommendations.
  • Support contingency operations, operational exercises, and technology deployments requiring secure system implementation.
  • Maintain cybersecurity documentation, configuration baselines, security artifacts, and knowledge management repositories.
  • Coordinate with network engineers, software developers, cloud administrators, and logistics personnel to integrate cybersecurity into operational systems.
  • Promote continuous monitoring, cybersecurity awareness, and continuous process improvement across enterprise systems.
  • Support geographically dispersed operations requiring secure and resilient information systems.
Qualifications
Required:
  • Minimum 5 years of experience supporting information security, cybersecurity engineering, RMF implementation, system security, or cybersecurity compliance for Government or Department of Defense programs.
  • Experience supporting Department of Defense, Joint, Combatant Command, Service Component, Defense Information Systems Agency (DISA), or Special Operations organizations.
  • Experience implementing RMF, preparing authorization packages, conducting security assessments, or supporting Authority to Operate (ATO) processes.
  • Experience supporting vulnerability management, security compliance, and continuous monitoring activities.
  • Demonstrated ability to coordinate cybersecurity efforts across engineering, operations, and Government stakeholders.
  • Active Secret Clearance
Desired
  • Bachelor's Degree in Cybersecurity, Information Assurance, Computer Science, Information Technology, Systems Engineering, or a related technical field.
  • Experience supporting USSOCOM, SOCPAC, Geographic Combatant Commands, Theater Special Operations Commands (TSOCs), DISA, or Joint Task Forces.
  • Experience utilizing eMASS, ACAS, SCAP Compliance Checker (SCC), STIG Viewer, Tenable Nessus, Microsoft 365, Power BI, SharePoint, and enterprise cybersecurity management platforms.
  • Knowledge of the DoD Risk Management Framework (RMF), NIST SP 800-53, NIST SP 800-37, DoDI 8510.01, DISA STIGs, CMMC, and cybersecurity best practices.
  • Professional certifications such as CompTIA Security+ CE (DoD 8140/8570 compliant), ISC2 Certified Information Systems Security Professional (CISSP), Certified Authorization Professional (CAP), CompTIA CySA+, or equivalent cybersecurity certifications are preferred.

This position is contingent on funding and may not be filled immediately. However, this position is representative of positions within CACI that are consistently available. Individuals who apply may also be considered for other positions at CACI.

What You Can Expect
A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.

Pay Range

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The Proposed Salary Range For This Position Is

$63,300-$129,700

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

CACI International Inc. • North Charleston (SC)

On-site
USD 72,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

CACI International Inc • Austin (TX)

On-site
USD 108,000 - 228,000
Cyber Security Engineer
Cyber Security Engineer

CACI International Inc • North Charleston (SC)

On-site
USD 72,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

Caci • North Charleston (SC)

On-site
USD 78,000 - 164,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

CACI International Inc. • O'Fallon (IL)

On-site
USD 75,000 - 158,000
Cyber Security Engineering Lead
Cyber Security Engineering Lead

CACI International Inc • North Charleston (SC)

On-site
USD 86,000 - 180,000
Information System Security Officer
Information System Security Officer

CACI • United States

On-site
USD 83,000 - 174,000
Information System Security Manager
Information System Security Manager

CACI International Inc • Florham Park (NJ)

On-site
USD 104,000 - 218,000
Information System Security Manager
Information System Security Manager

CACI • United States

On-site
USD 104,000 - 218,000
Flexible time off
Learning resources
Health benefits
Information Systems Security Engineer
Information Systems Security Engineer

CACI International Inc. • Chantilly (VA)

On-site
USD 109,000 - 182,000