×
Register Here to Apply for Jobs or Post Jobs. X

RMF Analyst

Job in Colorado Springs, El Paso County, Colorado, 80509, USA
Listing for: Saic
Full Time position
Listed on 2026-01-28
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security, IT Consultant
Salary/Wage Range or Industry Benchmark: 80001 - 120000 USD Yearly USD 80001.00 120000.00 YEAR
Job Description & How to Apply Below

Job
Location: COLORADO SPRINGS, CO, United States
Date Posted: Nov 26, 2025
Category: Cyber
Subcategory: Cyber Engineer
Schedule: Full-time
Shift: Day Job
Travel: No
Minimum

Clearance Required:

TS/SCI
Clearance Level Must Be Able to Obtain: None
Potential for Remote Work: On-Site
Benefits:

SAIC accepts applications on an ongoing basis and there is no deadline.

SAIC® is a premier Fortune 500® mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, civilian and intelligence markets includes secure high-end solutions in mission IT, enterprise IT, engineering services and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.

We are approximately 24,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.5 billion. For more information, visit  . For ongoing news, please visit our newsroom .

Job Description

SAIC is seeking qualified applicants for the role of Risk Management Framework (RMF) Analyst. This position provides information assurance and cybersecurity support for the North American Aerospace Defense Command (NORAD) and United States Northern Command (USNORTHCOM) (N&NC) Information Technology (IT) Enterprise Services (NITES) contract. The primary work location for this role is onsite in Colorado Springs.

The candidate selected for this position will:

  • Oversee system registration and record-keeping within eMASS to support the RMF process and authorization for the N&NC Enterprise, ensuring compliance and risk mitigation.
  • Ensure standards are met and exceeded to minimize risks and maintain Cyber Operational Readiness Assessment (CORA) status.
  • Manage the continuous cybersecurity posture of enterprise systems and identify mitigations to comply with DoDD 8500.01, DoDI 8510.01, DoDD 8140.01, and NIST SP800-53.
  • Analyze scans from ACAS, SCAP, and other approved tools to determine the security posture of systems and develop/maintain Authority to Operate (ATO) for systems and enclaves.
  • Refine system categorization determinations according to CNSSI 1253, considering Confidentiality, Integrity, and Availability as information types and system interconnections evolve.
  • Oversee the development and maintenance of System Security Plans (SSPs), ensuring the appropriate Security Technical Implementation Guides (STIGs) are applied to each system and enclave.
  • Ensure that all findings are properly documented in the Plan of Action and Milestones (POA&M) on an on-going basis.
  • Create and refine correct policies, procedures, and artifacts necessary to ensure security controls are being met.
Qualifications

Required:

  • Certification required per DoDD 8570, Security+.
  • Preferred certification is Security

    X.
  • Bachelor’s degree plus 5 years of experience, or equivalent work experience in the Information Assurance / Cybersecurity field.
  • 2+ years of experience preferred as a primary ISSO or security compliance lead for an IT system.
  • Direct experience in RMF artifacts and eMASS tracking of records.
  • Experience creating, tracking, and completion of POA&Ms for resolving security control deficiencies.
  • TS/SCI security clearance.
  • Ability to guide working groups and teams for milestone reviews, configuration management changes, etc.
  • Prepare and conduct cybersecurity presentations, making cybersecurity risk recommendations.
  • Provide status updates to System Owners and leadership.
  • Provide monthly status report to reflect the activities accomplished, issues, and pathway forward.
  • Experience with Security Information and Event Management (SIEM) solutions.
  • Ability to work in a team-focused, dynamic environment.
  • Experience certifying Cross Domain Solutions.
  • Must be flexible, independent, and self-motivated.
  • Must be punctual with regular and consistent attendance.

Desired:

  • Experience with Security Information and Event Management (SIEM) solutions.
  • Ability to work in a team-focused, dynamic environment.
  • Experience certifying Cross Domain Solutions.
  • Must be flexible, independent, and self-motivated.
  • Must be punctual with regular and consistent attendance.

Target salary range: $80,001 - $120,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

Please apply through the internal career site here >

#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary