> Markdown version of [/jobs/ext/1697591-rmf-security-analyst](https://www.wearedevelopers.com/jobs/ext/1697591-rmf-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # RMF Security Analyst - **Company:** Leidos, Inc. - **Location:** Odenton, MD, United States - **Experience:** Experienced - **Salary:** $69,550.0 - $125,725.0 - **Contract:** Temporary contract - **Skills:** Microsoft Access, User Authentication, Cyber Security, Information Technology Audit, Interoperability, Intrusion Detection Systems, Virtual Private Networks (VPN), Virtualization Technology, Scripting, Firewalls (Computer Science), Information Technology, Plan of Action and Milestones - **Published:** July 2, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9007844/rmf-security-analyst ## About the Role * Active DoD Secret clearance. * Bachelor's Degree in a related discipline as well as professional, directly relevant experience depending on job level (Level II: 2+ years of experience, Level III: 4+ years of experience). Additional years of professional and/or military experience may be substituted in lieu of degree. * Must possess DoD 8140 (formerly 8570) IAT Level II certification (e.g., Security+) prior to start date., * Experience with Cross Domain Solutions and Secret and Below Interoperability (SABI) framework, process and implementation * Experience in performing risk assessment, IT audits, security planning, systems accreditation and policy development. * Experience complying with USG, DoD, and DA regulations and preparing for responding to information security audits and questionnaires. * Understanding of related information technology (e.g. firewalls, VPN, virtualization, DLP, etc) and physical security assets. * Knowledge of domain structures, user authentication, data encryption, access audits and end-user security best practices. * Experience with UNIX/LINUX OS and any scripting language. * Experience working with IDS/IPS and processes. ## Description Leidos has an upcoming opportunity for a cyber professional to join our team at Fort Meade in Maryland. This is a hybrid position based primarily on-site, with opportunity for 1-2 remote days per week depending on mission needs. Our recruiting team will contact applicants as positions become available - we expect to begin onboarding in late summer 2026., * Support the Assessment and Authorization of DoD systems, software, and networks in accordance with the Risk Management Framework (RMF), utilizing the Enterprise Mission Assurance Support Service (eMASS) system. * Provide professional security services for IA/Cybersecurity in accordance with US Government (USG), Department of Defense (DoD) and National Security Agency (NSA) policies and guidelines. * Provide the necessary support to monitor and ensure compliance with information security policies, procedures and regulatory requirements including assistance with internal auditing, reporting, technical reviews, and identification of security risks.- Assist with drafting, reviewing, editing, and recommending guidance for Standard Operating Procedures (SOP), Tactics, Techniques, & Procedures (TTP), System Security Plans (SSP), Plan Of Action and Milestones (POA&M), and Federal Information Security Management Act (FISMA). * Support the implementation and administration of information security policies, procedures, and technologies to ensure the protection of systems, applications, and data on tactical and development networks by working hand and hand with technical SMEs, systems administrators and engineers. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Blazing Accessibility Basics](https://www.wearedevelopers.com/videos/568-blazing-accessibility-basics) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)