SAIC logo

Risk Management Framework Specialist

SAIC

Kirtland AFB, NMJobSeen 1 day agoSeen in employer's feed 1 day ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
No compensation found
Location
Kirtland AFB, NM
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

CASP+ Or Security+ Or SSCPTop Secret clearance

Job overview

SAIC seeks an experienced Risk Management Framework Specialist to support cybersecurity compliance and resilience for Department of Defense information systems. The specialist guides systems through the RMF lifecycle, advises on secure system design, assesses risks, and supports authorization and continuous monitoring. The role also manages eMASS packages, supports vulnerability identification and remediation, and contributes to audit readiness and security documentation.

Skills & qualifications

RequiredNice to have

Skills

Risk Management FrameworkCybersecurity AdvisingRisk AssessmentSecurity TestingSecurity Control ImplementationeMASSACASLog ReviewAssessment and AuthorizationPOA&M MaintenanceEvidence CollectionNIST SP 800-53Zero TrustSecurity Engineering AnalysisDevSecOpsAgileEnterprise Risk Assessment

Qualifications

Bachelor's in STEM or Equivalent Experience9+ Years Relevant ExperienceActive Top Secret or DOE Q ClearanceSCI Eligibility Within 3 Months5+ Years RMF ExperienceCASP+ or Security+ or SSCP

Full job description

Description

SAIC is seeking an experienced Risk Management Framework (RMF) Specialist to support critical national security missions by ensuring the cybersecurity compliance and resilience of complex Department of Defense (DoD) information systems. In this role, you will guide systems through the full RMF lifecycle, collaborate with mission partners, and help shape secure architectures that protect the nation’s most sensitive assets.

Responsibilities

  • Lead systems through all phases of the RMF process, including categorization, control selection, implementation, assessment, authorization, and continuous monitoring.

  • Serve as a cybersecurity advisor, connecting policy requirements with real‑world system design and implementation.

  • Conduct risk assessments, review security test results, and recommend mitigation strategies including configuration changes, tool updates, and process improvements.

  • Interpret, implement, and document security controls across networks, enclaves, and complex information systems in alignment with NIST SP 800‑53 and DoD guidance.

  • Manage eMASS packages, support ACAS vulnerability identification, and track remediation and mitigation activities.

  • Support monitoring, detection, analysis, and audit readiness through log review, security testing, and authorization documentation development.

Qualifications

  • Bachelor’s degree in a STEM field and 9+ years of relevant experience (or 4 additional years of experience in lieu of a degree).

  • Active Top Secret or DOE Q clearance with SCI eligibility (must be SCI‑eligible within the first 3 months).

  • 5+ years of experience supporting RMF activities, including categorization, control implementation, assessment, and continuous monitoring.

  • Experience supporting Assessment & Authorization (A&A) tasks such as POA&M maintenance, evidence collection, and security documentation.

  • Experience applying cybersecurity controls from NIST SP 800‑53 Rev. 5 or DoD‑specific frameworks.

  • Experience integrating Zero Trust principles into RMF packages and system architectures.

  • At least one of the following certifications: CASP+, Security+, or SSCP.

Desired Skills

  • Experience conducting security engineering analyses and advising system owners on risk impacts and mitigation strategies.

  • Familiarity integrating RMF workflows into DevSecOps or Agile environments, including sprint‑based compliance and automated monitoring processes.

  • Experience performing enterprise‑level risk assessments, documenting findings, and advising leadership on security posture and long‑term compliance strategies.

REQNUMBER: 2617697

SAIC is a premier technology integrator, solving our nation's most complex modernization and systems engineering challenges across the defense, space, federal civilian, and intelligence markets. Our robust portfolio of offerings includes high-end solutions in systems engineering and integration; enterprise IT, including cloud services; cyber; software; advanced analytics and simulation; and training. We are a team of 23,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $6.5 billion. For more information, visit saic.com. For information on the benefits SAIC offers, see Working at SAIC. EOE AA M/F/Vet/Disability

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.