RMF Engineer, Journeyman

CACI

Waipahu (HI)

On-site

USD 120,000 - 180,000

Full time

7 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

CACI is seeking an experienced RMF Engineer, Journeyman to support cybersecurity compliance and RMF implementation across the Indo-Pacific.

The RMF Engineer serves as the information security professional responsible for implementing, maintaining, and supporting the DoD Risk Management Framework (RMF) for enterprise information systems, logistics platforms, operational technologies, and mission support applications.

Qualifications

  • Minimum 5 years of information security, cybersecurity engineering, RMF implementation, or DoD compliance experience.
  • Experience supporting DoD/Joint/Combatant Command or DISA programs.
  • Experience implementing RMF, preparing authorization packages, and supporting ATO processes.
  • Experience with vulnerability management and continuous monitoring.
  • Ability to coordinate across engineering, operations, and Government stakeholders.
  • Active Secret Clearance

Responsibilities

  • Support RMF lifecycle for information systems and mission applications.
  • Develop and maintain RMF documentation (SSPs, SAPs, SARs, POA&Ms, authorization packages).
  • Implement and validate NIST SP 800-53 controls for system authorization.
  • Coordinate with ISSMs, ISSOs, AOs, and system owners throughout RMF.
  • Perform security assessments, vulnerability reviews, and risk analyses.
  • Maintain continuous monitoring and cybersecurity metrics for leadership.
  • Prepare cybersecurity reports and risk assessments.

Education

Bachelor's Degree

Tools

eMASS
ACAS
SCAP Compliance Checker (SCC)
STIG Viewer
Tenable Nessus
Microsoft 365
Power BI
SharePoint
Enterprise cybersecurity management platforms

Job description

Job Title: RMF Engineer, Journeyman

Job Category: Security

Time Type: Full time

Minimum Clearance Required to Start: Secret

Employee Type: Regular-Long Term Assignment

Percentage of Travel Required: Up to 10%

Type of Travel: Continental US

The Opportunity

CACI is seeking an experienced RMF Engineer, Journeyman to support cybersecurity compliance and Risk Management Framework (RMF) implementation across the Indo-Pacific. The RMF Engineer, Journeyman serves as CACI's information security professional responsible for implementing, maintaining, and supporting the Department of Defense Risk Management Framework (RMF) for enterprise information systems, logistics platforms, operational technologies, and mission support applications. Reporting directly to the Cybersecurity Lead, this position ensures systems are designed, configured, and maintained in accordance with DoD cybersecurity policies while supporting secure mission execution across distributed and expeditionary environments.

The RMF Engineer works closely with Government stakeholders, information system owners, cybersecurity personnel, systems engineers, network engineers, software developers, logistics planners, and mission partners to support system authorization activities, security control implementation, vulnerability remediation, and continuous monitoring. This position contributes to successful program execution by maintaining cybersecurity compliance, reducing operational risk, and enabling secure information sharing throughout the Indo-Pacific theater.

Responsibilities
  • Support implementation of the DoD Risk Management Framework (RMF) lifecycle for information systems and mission applications.
  • Develop and maintain RMF documentation, including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and authorization packages.
  • Implement and validate NIST SP 800-53 security controls supporting system authorization and accreditation activities.
  • Coordinate with Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), Authorizing Officials (AOs), and system owners throughout the RMF process.
  • Perform security control assessments, vulnerability reviews, configuration compliance checks, and cybersecurity risk analyses.
  • Support vulnerability remediation efforts using security scanning tools and coordinate corrective actions with engineering and operations teams.
  • Maintain continuous monitoring activities and track cybersecurity compliance metrics for Government leadership.
  • Support system testing, security assessments, audits, inspections, and cybersecurity readiness reviews.
  • Ensure compliance with DoD cybersecurity policies, RMF guidance, NIST standards, DISA Security Technical Implementation Guides (STIGs), and contractual requirements.
  • Prepare cybersecurity reports, executive-level briefings, risk assessments, and technical recommendations.
  • Support contingency operations, operational exercises, and technology deployments requiring secure system implementation.
  • Maintain cybersecurity documentation, configuration baselines, security artifacts, and knowledge management repositories.
  • Coordinate with network engineers, software developers, cloud administrators, and logistics personnel to integrate cybersecurity into operational systems.
  • Promote continuous monitoring, cybersecurity awareness, and continuous process improvement across enterprise systems.
  • Support geographically dispersed operations requiring secure and resilient information systems.
Qualifications
Required
  • Minimum 5 years of experience supporting information security, cybersecurity engineering, RMF implementation, system security, or cybersecurity compliance for Government or Department of Defense programs.
  • Experience supporting Department of Defense, Joint, Combatant Command, Service Component, Defense Information Systems Agency (DISA), or Special Operations organizations.
  • Experience implementing RMF, preparing authorization packages, conducting security assessments, or supporting Authority to Operate (ATO) processes.
  • Experience supporting vulnerability management, security compliance, and continuous monitoring activities.
  • Demonstrated ability to coordinate cybersecurity efforts across engineering, operations, and Government stakeholders.
  • Active Secret Clearance
Desired
  • Bachelor's Degree in Cybersecurity, Information Assurance, Computer Science, Information Technology, Systems Engineering, or a related technical field.
  • Experience supporting USSOCOM, SOCPAC, Geographic Combatant Commands, Theater Special Operations Commands (TSOCs), DISA, or Joint Task Forces.
  • Experience utilizing eMASS , ACAS, SCAP Compliance Checker (SCC), STIG Viewer, Tenable Nessus, Microsoft 365, Power BI, SharePoint, and enterprise cybersecurity management platforms.
  • Knowledge of the DoD Risk Management Framework (RMF), NIST SP 800-53, NIST SP 800-37, DoD
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

RMF Engineer - DoD Cyber Risk & Compliance
RMF Engineer - DoD Cyber Risk & Compliance

CACI • Waipahu (HI)

On-site
USD 120,000 - 180,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

P3S CORPORATION • Dayton (OH)

On-site
USD 95,000 - 120,000
RMF Information Assurance Team Lead -
RMF Information Assurance Team Lead -

Associates Systems LLC • Metairie (LA)

On-site
USD 110,000 - 165,000
RMF Cybersecurity Analyst - DoD Risk and Compliance
RMF Cybersecurity Analyst - DoD Risk and Compliance

DAn Solutions • Corridor North (MD)

On-site
USD 110,000 - 150,000
RMF Cybersecurity Analyst II - 505767
RMF Cybersecurity Analyst II - 505767

Delaware Nation Industries • Bath Township (OH)

On-site
USD 70,000 - 100,000
Benefits coverage
401K match
Disability insurance
+3
Information Security Analyst
Information Security Analyst

CALIBRE Systems Inc • Washington

Hybrid
USD 80,000 - 90,000
Systems Security Analyst
Systems Security Analyst

Magnus Management Group LLC • Guam

On-site
USD 110,000 - 140,000
401(k)
Dental insurance
Health insurance
+2
Information Systems Security Engineer (RMF)
Information Systems Security Engineer (RMF)

Saalex Corporation in • Newport (RI)

On-site
USD 60,000 - 70,000
Health insurance
Retirement plan
Paid time off
+3
Risk Management Framework Cyber SME
Risk Management Framework Cyber SME

TMC TECHNOLOGIES • Albuquerque (NM)

On-site
USD 90,000 - 130,000
Sr. Security RMF Audit Analyst
Sr. Security RMF Audit Analyst

Creative Global Consulting • United States

On-site
USD 120,000 - 170,000