> Markdown version of [/jobs/ext/1224224-cybersecurity-rmf-specialist](https://www.wearedevelopers.com/jobs/ext/1224224-cybersecurity-rmf-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity/RMF Specialist - **Company:** Hawaii, Llp - **Location:** Columbia, SC, United States - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Software Documentation, Cyber Security, Information Technology - **Published:** July 10, 2026 - **Apply:** https://www.juju.com/job/00000000gf3yec ## About the Role + The Cybersecurity/RMF Specialist will support JFMS Cyber Hunt in completing RMF and ATO-related tasking for penetration testing platforms. The position will focus on the full customer process required to achieve an Authorization to Operate, including technical documentation, security control implementation support, and development of assessment artifacts. + A strong candidate will have hands-on RMF experience and the ability to work with technical teams to document systems, controls, and test plans. Candidates with penetration testing experience are highly preferred, but candidates with strong RMF backgrounds who are willing to learn penetration testing concepts will also be considered. + The preferred location is Charleston, SC, with the expectation that the candidate can work in the lab space approximately 60-75% of the time. Candidates interested in RMF support only may also be considered. In that scenario, a follow-on request for dedicated penetration testing support may be pursued once the ATOs are achieved. Requirements + Active TS/SCI clearance is required. + Strong experience supporting RMF processes and ATO efforts. + Experience drafting and reviewing technical cybersecurity documentation. + Familiarity with system security controls, assessment requirements, and authorization packages. + Ability to work in a lab environment in Charleston, SC, preferably 60-75% of the time. + Ability to support surge tasking and work collaboratively with technical teams. ## Description Echelon Services, LLC has a need for an additional FTE to support current Risk Management Framework (RMF) tasking associated with meeting authorization requirements for penetration testing platforms. This is a surge support effort focused primarily on achieving Authorization to Operate (ATO) approvals for technical platforms. The ideal candidate would have strong RMF experience and an interest in supporting or learning penetration testing concepts and infrastructure setup. A candidate with both RMF and penetration testing experience would be highly desired, but RMF expertise is the primary requirement. Part-time project support may also be considered, particularly for candidates who can support the ATO/RMF effort. Duties + Support RMF activities required to achieve Authorization to Operate (ATO) for penetration testing platforms. + Draft, review, and maintain technical system documentation in support of authorization requirements. + Support implementation and documentation of system security controls. + Develop and review test plans to meet assessment and authorization requirements. + Coordinate with technical and cybersecurity team members to ensure RMF artifacts are complete, accurate, and aligned with customer requirements. + Support infrastructure setup activities, as needed. + Learn and support penetration testing concepts, tools, and platform requirements, if applicable. + Provide RMF-only support if not supporting penetration testing activities. ## Related Videos - [Humanizing Your Documentation](https://www.wearedevelopers.com/videos/476-humanizing-your-documentation) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Why Is Software Documentation Still Static – And Why Modern Browsers Deserve Better](https://www.wearedevelopers.com/videos/2054-why-is-software-documentation-still-static-and-why-modern-browsers-deserve-better) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Top 6 Hackathons for Developers in 2023](https://www.wearedevelopers.com/magazine/263-top-6-hackathons-for-developers-in-2023) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)