Cybersecurity/RMF Specialist

Hawaii, Llp
Columbia, SC, United States
about 2 months ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Part-time / full-time
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Software Documentation Cyber Security Information Technology

Job description

Echelon Services, LLC has a need for an additional FTE to support current Risk Management Framework (RMF) tasking associated with meeting authorization requirements for penetration testing platforms. This is a surge support effort focused primarily on achieving Authorization to Operate (ATO) approvals for technical platforms.

The ideal candidate would have strong RMF experience and an interest in supporting or learning penetration testing concepts and infrastructure setup. A candidate with both RMF and penetration testing experience would be highly desired, but RMF expertise is the primary requirement. Part-time project support may also be considered, particularly for candidates who can support the ATO/RMF effort.

Duties

  • Support RMF activities required to achieve Authorization to Operate (ATO) for penetration testing platforms.

  • Draft, review, and maintain technical system documentation in support of authorization requirements.

  • Support implementation and documentation of system security controls.

  • Develop and review test plans to meet assessment and authorization requirements.

  • Coordinate with technical and cybersecurity team members to ensure RMF artifacts are complete, accurate, and aligned with customer requirements.

  • Support infrastructure setup activities, as needed.

  • Learn and support penetration testing concepts, tools, and platform requirements, if applicable.

  • Provide RMF-only support if not supporting penetration testing activities.

Requirements

  • The Cybersecurity/RMF Specialist will support JFMS Cyber Hunt in completing RMF and ATO-related tasking for penetration testing platforms. The position will focus on the full customer process required to achieve an Authorization to Operate, including technical documentation, security control implementation support, and development of assessment artifacts.

  • A strong candidate will have hands-on RMF experience and the ability to work with technical teams to document systems, controls, and test plans. Candidates with penetration testing experience are highly preferred, but candidates with strong RMF backgrounds who are willing to learn penetration testing concepts will also be considered.

  • The preferred location is Charleston, SC, with the expectation that the candidate can work in the lab space approximately 60-75% of the time. Candidates interested in RMF support only may also be considered. In that scenario, a follow-on request for dedicated penetration testing support may be pursued once the ATOs are achieved.

Requirements

  • Active TS/SCI clearance is required.

  • Strong experience supporting RMF processes and ATO efforts.

  • Experience drafting and reviewing technical cybersecurity documentation.

  • Familiarity with system security controls, assessment requirements, and authorization packages.

  • Ability to work in a lab environment in Charleston, SC, preferably 60-75% of the time.

  • Ability to support surge tasking and work collaboratively with technical teams.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:58 min

Measuring productivity gains from agent-assisted code refactoring

Dr. Alexander Wachtel Dr. Alexander Wachtel +1 · World Congress 2025

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

2:46 min

Missing equipment retrieval processes for departing employees

Jasmin Azemović Jasmin Azemović · World Congress 2026 Europe

1:32 min

The danger of unverified assumptions in critical systems

Luís Ventura Luís Ventura · World Congress 2024

Videos

See all

Related articles

See all