Talent.com
Risk Management Framework (RMF) Analyst - Top Secret Clearance | Norfolk, VA
Risk Management Framework (RMF) Analyst - Top Secret Clearance | Norfolk, VACambridge International Systems Inc • Norfolk, VA, US
Risk Management Framework (RMF) Analyst - Top Secret Clearance | Norfolk, VA

Risk Management Framework (RMF) Analyst - Top Secret Clearance | Norfolk, VA

Cambridge International Systems Inc • Norfolk, VA, US
30+ days ago
Job type
  • Full-time
Job description

Job Description

Job Description

Risk Management Framework (RMF) Analyst – Top Secret Clearance | Norfolk, VA

Cambridge International Systems, Inc.

Join a dynamic global team united by shared values : commitment, integrity, and perseverance. At Cambridge, you’ll work alongside top talent worldwide, tackling some of today’s most complex and critical challenges in defense and security.

We are currently seeking a Risk Management Framework (RMF) Analyst to support operations in Norfolk, VA. This is a full-time position requiring an active DoD TS clearance.

This position is contingent upon contract award with an expected award date of January 2026.

What You’ll Do

  • ​​​​​​​Design and maintain enterprise and systems security throughout the development lifecycle in alignment with DoD and DoN RMF guidance.
  • Conduct assessments of management, operational, and technical security controls to evaluate system compliance and risk posture
  • Maintain and update RMF and A&A documentation across the OPTEVFOR Cyber OT&E mission, including revisions in eMASS and DADMS.
  • Create, validate, and revise cybersecurity SOPs, system security plans (SSPs), contingency plans, and privacy impact assessments.
  • Review and maintain inventories of authorized software, GFE, ports, protocols, and circuit registrations (GIAP / SNAP).
  • Execute annual RMF reviews and STIG validations on systems, identifying and recommending corrective actions for non-compliance.
  • Support configuration audits, vulnerability scans, POA&Ms, SARs, test plans, and documentation of RMF lifecycle artifacts.
  • Lead semi-annual tabletop exercises and review business impact analysis and disaster recovery plans for compliance.
  • Serve on the Configuration Control Board (CCB), ensuring approved changes are reflected in security documentation.
  • Provide technical reports on system scan results, cybersecurity compliance, and configuration management.
  • Advise stakeholders on risk management, ATO strategy, and secure architecture to meet mission requirements.

What You’ll Bring

Required Qualifications :

Education & Experience :

  • Minimum 5 years of experience designing enterprise / system security throughout the development lifecycle.
  • Minimum 3 years conducting assessments of security controls and authoring RMF documentation.
  • Minimum 3 years of experience supporting RMF certification and accreditation efforts for DoD / DON systems.
  • Familiarity with eMASS, DADMS, GIAP, STIGs, and the DoDI 8510 series.
  • Strong working knowledge of NIST SP 800-series, DoD cybersecurity policies, and A&A lifecycle artifacts.
  • Must have a current and active DoD TS security clearance with the ability to obtain a SCI clearance.
  • Proficient with modern IT tools and infrastructure technologies
  • Preferred (Nice to Have) :

  • Experience supporting OT&E environments, including cyber test toolset and infrastructure validation.
  • Knowledge of network architecture, PKI, firewall and encryption methods, and multilevel / cross-domain security solutions.
  • Ability to translate technical requirements into secure designs that meet mission and compliance objectives.
  • Knowledge of PII data security, program protection planning, and enterprise security architecture frameworks.
  • Proficiency in system hardening, vulnerability remediation, and documentation for RMF artifacts.
  • Experience conducting security audits, contingency plan tests, and cloud-based system evaluations.
  • Travel & Passport

    Some overnight stays possible.

    Work Environment

    Compliance with vaccination and medical requirements for TDY / OCONUS roles as per Vaccine Recommendations by AOR | Health.mil.

    Office setting :

    Primarily an office-based role in Norfolk, VA

    Standard desk / computer work with flexibility for walking and movement on site

    Must be able to work in an office environment, sitting at a desk, looking at a computer for most of the workday.

    Work is physically comfortable; the employee has discretion about sitting, walking, standing, etc.

    May be required to travel short distances to offices / conference rooms and buildings on site.

    Background & Security

    Employment is contingent upon successful background investigation

    Drug screening may be required for federal contract compliance

    Benefits & Perks

    We believe in investing in our team—both professionally and personally :

    Medical, dental, vision, life, accident, and critical illness insurance

    401(k) immediate vesting and match

    Paid time off and company holidays

    Generous tuition & training support

    Relocation assistance

    Sign-on and performance-based bonuses

    Employee referral program

    Access to Tickets at Work, EAP, wellness initiatives, and more

    Join Us

    If you're driven by mission, technology, and teamwork—we want to hear from you. Cambridge is growing, and this position is just one of many opportunities on our global team. Know someone perfect for the role? Referrals are welcome—both employees and non-employees may qualify for a bonus.

    Apply today and help shape the future of secure cloud computing for national security.

    About Cambridge International Systems

    At Cambridge, innovation grows through diversity. We are proud to be an equal opportunity employer, committed to creating an inclusive and supportive work environment for all. Learn more at www.cbridgeinc.com.

    Powered by JazzHR

    57bIMSTgUK

    Create a job alert for this search

    Risk Management Analyst • Norfolk, VA, US

    Related jobs
    Cybersecurity Engineer - Competitive 401(k) programs

    Cybersecurity Engineer - Competitive 401(k) programs

    SimVentions, Inc - Glassdoor 4.6 • Chesapeake, VA, United States
    Full-time
    SimVentions, consistently voted one Virginia's Best Places to Work, is looking for an experienced professional to join our team! As a Blue Team Engineer, you will support Blue Team operations and c...Show more
    Last updated: 30+ days ago • Promoted
    INTELLIGENCE ANALYST

    INTELLIGENCE ANALYST

    US Army • Virginia Beach, Virginia, United States
    Full-time +1
    THIS POSITION REQUIRES AN ENLISTMENT IN THE U.As an Intelligence Analyst, you’ll be responsible for providing the Army with crucial and reliable information about enemy forces and potential areas o...Show more
    Last updated: 5 days ago • Promoted
    Cyber Warfare Technician

    Cyber Warfare Technician

    US Navy • Chesapeake, Virginia, United States
    Part-time
    Languages are more than just communication-they're cultural codes that need to be analyzed and in some cases, broken.As a Cryptologic Technician Interpretive (CTI) you're more than a linguist-you'r...Show more
    Last updated: 30+ days ago • Promoted
    Analyst, Management II

    Analyst, Management II

    AERMOR • Norfolk, VA, United States
    Full-time
    This position involves conducting in-depth data analysis, developing management models, and delivering actionable recommendations to support Government decision‑making. The individual must possess d...Show more
    Last updated: 4 days ago • Promoted
    Senior Manager, Business Controls Testing, Enterprise Services Risk

    Senior Manager, Business Controls Testing, Enterprise Services Risk

    Capital One • WILLIAMSBURG, Virginia, United States
    Full-time +1
    Senior Manager, Business Controls Testing, Enterprise Services Risk.The Enterprise Services Risk organization is expanding with a focus on attracting innovative, pioneering, collaborative, and high...Show more
    Last updated: 8 hours ago • Promoted • New!
    Penetration Tester - Employee owned company

    Penetration Tester - Employee owned company

    SimVentions, Inc - Glassdoor 4.6 • Chesapeake, VA, United States
    Full-time
    SimVentions, consistently voted one Virginia's Best Places to Work, is looking for an experienced professional to join our team! As a Red Team Penetration Tester IV, you will be responsible for le...Show more
    Last updated: 30+ days ago • Promoted
    Blue Team Engineer • •

    Blue Team Engineer • •

    SimVentions, Inc - Glassdoor 4.6 • Chesapeake, VA, United States
    Full-time
    SimVentions, consistently voted one Virginia's Best Places to Work, is looking for an experienced professional to join our team! As a Blue Team Engineer, you will support Blue Team operations and c...Show more
    Last updated: 30+ days ago • Promoted
    Analyst, Management-Mid

    Analyst, Management-Mid

    International Executive Service Corps • Norfolk, VA, United States
    Full-time
    SEA 21, NAVSEA’s Director of Surface Ship Maintenance, Modernization, and Sustainment is seeking professional support services (PSS) to support the Government's existing organization, personnel, kn...Show more
    Last updated: 22 hours ago • Promoted • New!
    Asst Director Law Admissions, Recruitment Management

    Asst Director Law Admissions, Recruitment Management

    InsideHigherEd • All Cities, Virginia, United States
    Full-time
    Position Summary : Please include a resume and cover letter to be considered.The Assistant Director of Admissions, Marketing serves as an essential member of the Law School and University team and ...Show more
    Last updated: 30+ days ago • Promoted
    Vendor Risk Management Analyst

    Vendor Risk Management Analyst

    TowneBank • Suffolk, VA, United States
    Full-time
    The Vendor Risk Analyst is responsible for the identification, assessment, monitoring, and reporting of risks associated with outsourcing products and services to third-party vendors.The Vendor Ris...Show more
    Last updated: 10 hours ago • Promoted • New!
    Travel MRI Technologist

    Travel MRI Technologist

    LeaderStat • Suffolk, VA, US
    Full-time +1
    LeaderStat is seeking a travel MRI Technologist for a travel job in Suffolk, Virginia.Job Description & Requirements.The above pay package is an estimate, please contact our team to put togethe...Show more
    Last updated: 30+ days ago • Promoted
    Secret Cleared SR. Functional Analyst

    Secret Cleared SR. Functional Analyst

    Insight Global • Norfolk, VA, United States
    Full-time
    Functional analyst to join their new award supporting the Navy at the Norfolk, VA Naval Station.Their day to day responsibilities will include preparing and analyzing functional specifications to d...Show more
    Last updated: 10 hours ago • Promoted • New!
    Travel MRI Tech in Arlington, VA

    Travel MRI Tech in Arlington, VA

    AlliedTravelCareers • Chesapeake, Virginia, US
    Full-time
    AlliedTravelCareers is working with Fusion Medical Staffing to find a qualified MRI Tech in Arlington, Virginia, 22205!.Facility in Arlington, Virginia. Fusion Medical Staffing is seeking a skilled ...Show more
    Last updated: 23 hours ago • Promoted
    Manager, Technology Risk Guide - Enterprise Services Risk

    Manager, Technology Risk Guide - Enterprise Services Risk

    Capital One • WILLIAMSBURG, Virginia, United States
    Full-time +1
    Manager, Technology Risk Guide - Enterprise Services Risk.The Enterprise Services Risk organization is expanding with a focus on attracting innovative, pioneering, collaborative, and highly skilled...Show more
    Last updated: 1 day ago • Promoted
    Risk Management Framework (RMF) Analyst – Top Secret Clearance | Norfolk, VA

    Risk Management Framework (RMF) Analyst – Top Secret Clearance | Norfolk, VA

    Cambridge International Systems Inc • Norfolk, VA, US
    Full-time
    Quick Apply
    Risk Management Framework (RMF) Analyst – Top Secret Clearance .Norfolk, VA Cambridge International Systems, Inc.Join a dynamic global team united by shared values : .At Cambridge, you...Show more
    Last updated: 30+ days ago
    Red Team Penetration Tester IV • •

    Red Team Penetration Tester IV • •

    SimVentions, Inc - Glassdoor 4.6 • Chesapeake, VA, United States
    Full-time
    SimVentions, consistently voted one Virginia's Best Places to Work, is looking for an experienced professional to join our team! As a Red Team Penetration Tester IV, you will be responsible for le...Show more
    Last updated: 30+ days ago • Promoted
    Vendor Risk Management Analyst

    Vendor Risk Management Analyst

    Towne Family of Companies • Suffolk, VA, United States
    Full-time
    The Vendor Risk Analyst is responsible for the identification, assessment, monitoring, and reporting of risks associated with outsourcing products and services to third-party vendors.The Vendor Ris...Show more
    Last updated: 1 day ago • Promoted
    Principal Associate, Business Risk Guide- Enterprise Services Risk Office

    Principal Associate, Business Risk Guide- Enterprise Services Risk Office

    Capital One • WILLIAMSBURG, Virginia, United States
    Full-time +1
    Principal Associate, Business Risk Guide- Enterprise Services Risk Office.We are hiring! The Enterprise Services Business Risk Office provides risk management support to several lines of business i...Show more
    Last updated: 1 day ago • Promoted