Information System Security Officer, RMF Specialist

Boston Government Services LLC

$136K — $160K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent in relevant field.
  • Experience with RMF, A&A, FISMA, NIST 800-53 Rev. 5, and documentation processes.
  • Strong collaboration skills with system owners and technical teams.
  • Detail-oriented with a focus on high-quality authorization documentation.
  • Familiarity with federal security tools and GRC systems is required.
  • U.S. citizenship is mandatory for this role.
  • Eligibility for security clearance and successful drug screening are required.

Responsibilities

  • Develop and maintain RMF authorization artifacts like SSPs and system diagrams.
  • Assist in control scoping, tailoring, and evidence collection for systems.
  • Validate system-level evidence for compliance and accuracy.
  • Support the creation of CPs, IRPs, and RMF process documentation.
  • Track POA&Ms and guide stakeholders on remediation efforts.
  • Assist with FedRAMP package reviews for cloud compliance.
  • Maintain internal RMF content and training materials.

Benefits

  • Health, Dental, and Vision Insurance provided.
  • Life Insurance coverage included.
  • Paid Vacation time offered to employees.
  • 401K plan available for retirement savings.
  • Long and Short-Term Disability insurance included.
Full Job Description
Responsibilities:

The Information System Security Officer / RMF Specialist supports client system owners and business stakeholders through the RMF lifecycle, including system authorization package development, security control documentation, evidence validation, continuous monitoring, POA&M tracking, and ongoing ATO maintenance.
  • Develop, update, and maintain RMF authorization artifacts including SSPs, BIAs, FIPS 199 categorizations, PTAs/PIAs, CMPs, e-Authentication documentation, boundary memoranda, system architecture diagrams, and network diagrams.
  • Assist system owners with control scoping, tailoring, overlay identification, inheritance mapping, and control evidence collection.
  • Validate system-level evidence such as screenshots, logs, scan results, configuration records, and policy artifacts for accuracy and applicability.
  • Support development of CPs, IRPs, ConMon Plans, CP/IRP test documentation, RMF templates, checklists, and user guides.
  • Track POA&Ms, monitor remediation progress, and advise stakeholders on corrective actions to reduce authorization risk.
  • Support FedRAMP package reviews and identify customer responsibilities for cloud systems.
  • Maintain RMF content, process guides, SharePoint materials, office-hour content, and training materials.

Requirements:
  • Bachelor's degree or equivalent.
  • Experience with RMF, A&A, FISMA, NIST 800-53 Rev. 5, SSP development, POA&M tracking, and security documentation.
  • Ability to work directly with system owners, technical teams, ISSOs, privacy stakeholders, and compliance teams.
  • Strong attention to detail and ability to produce high-quality authorization documentation.
  • Familiarity with federal security tools, GRC systems, ticketing systems, artifact repositories, and evidence management.
  • Must be a U.S. citizen.
  • Successful drug screening.
  • Must be eligible to obtain and maintain a security or clearance badge.


Preferred Qualifications:
  • Security+, CISSP, CAP/CGRC, CISA, CISM, or equivalent RMF/security certification.


Location/Work Arrangement:
  • Schedule is full-time, Monday - Friday 40-hour week, 4/10's, or 9/80's and may require on call or overnight shifts depending on contract needs.
  • This position may be fully onsite or hybrid/remote depending on the needs of the specific contract


Benefits:

BGS offers a competitive total compensation package to eligible employees. Benefits include Health, Dental, Vision, Life Insurance, Paid Vacation, 401K, Long and Short-Term Disability.

Starting compensation for this role typical salary ranges between $136,849 - $160,999 annually is commensurate with experience relative to the position and may vary based on candidate geographical location.

Exclusive Agreement Disclaimer:

BGS has standing contracts with federal agencies throughout the United States. We require an affirmative exclusive agreement to represent all candidates to our clients. By submitting this application, you are consenting to allow BGS to represent you as a candidate for the role in which you are applying.
Schedule is full-time, Monday - Friday 40-hour week, 4/10's, or 9/80's and may require on call or overnight shifts depending on contract needs.

Similar Jobs

More Jobs at Boston Government Services LLC

More Information Technology Jobs

Find similar Information System Security Officer, RMF Specialist jobs: