Cybersecurity RMF Specialist
Listed on 2026-03-02
-
IT/Tech
Cybersecurity, IT Consultant
Description
The Digital Modernization Sector at Leidos is seeking an experienced Cybersecurity Risk Management Framework (RMF) Specialist to join the DISA Defense Red Switch Network (DRSN) team in support of an enterprise VoIP management system - GSM-O II contract at Fort Meade, MD. The ideal candidate will have a background in guiding systems through the Assessment and Authorization (A&A) lifecycle and be responsible for maintaining the XACTA package and associated security documentation on a high-paced, fast-moving program.
The candidate will be a member of a team that interacts with technical and non-technical individuals including customers and vendors, but primarily with our subject matter expert teammates. In this role, the candidate will provide expertise on security related questions and coordinate with system owners, ISSMs, and Authorizing Officials (AOs) throughout the ATO process.
- Serve as the subject matter expert on the RMF process
- Lead the development, service, and annual sustainment of the Security Control Policy Plan in areas such as Control Implementation, Assessment and Monitoring, Mitigation Plans, Training and Awareness
- Assist the government with development, service, and annual sustainment of the Security Control Policy Plans for Contingency and Incident Response, Security Control Assessments, Roles and Responsibilities, and Compliance Requirements
- Provide strategic guidance to engineering and security teams regarding security controls and compliance requirements
- Coordinate with system owners, ISSOs, ISSMs, and AOs throughout the A&A process
- Support vulnerability assessments and security control testing in alignment with NIST SP 800-53 and organizational policies
- Track and manage remediation of identified risks and vulnerabilities
- Maintain continuous monitoring activities and support ongoing authorization initiatives
- Stay current on evolving federal cybersecurity mandates, policies, and technologies
- Maintain and update POAMs and waivers
- Bachelor's degree and 5+ years of experience in cybersecurity with at least 3 years in RMF
- Demonstrated experience leading ATO efforts
- Strong working knowledge of:
- NIST SP 800-37, 800-53, 800-127
- FIPS 199/200
- XACTA, eMASS
- Excellent communication skills (written and verbal)
- Excellent technical writing and documentation skills
- Capable of translating technical risk to impacts for non-technical stakeholders
- Detail-oriented
- Familiarity with a broad range of tools supporting cybersecurity and assessments inc
- Active SCI clearance or Top Secret (eligible for SCI) clearance
- Security + is REQUIRED
- All candidates must be US CITIZENS to be considered for the position
- CISSP, CAP, CISM or equivalent cyber security certifications
- Experience supporting DoD, DHS, or IC RMF processes
- Familiarity with SIEMS and logging tools
- Experience with configuration management tools (e.g., Ansible, Chef, SCCM)
- Local to Ft. Meade, MD
If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.
Pay RangePay Range $87,100.00 - $
Original Posting:
February 25, 2026
Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit
Pay and BenefitsPay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at
Securing Your DataBeware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).