Sr. RMF Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+12 more
Job description
has a new and exciting opportunity for a Sr. RMF Security Engineer in our . Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO), Mission Software, Analytical Methods and Modeling, Signals Intelligence (SIGINT), and Cryptographic Key Management. At , we offer , including Paid Time Off, 11 paid Holidays, 401K with a 6% company match and immediate vesting, Flexible Schedules, Discounted Stock Purchase Plans, Technical Upskilling, Education and Training Support, Parental Paid Leave, and much more.
Leidos is seeking a Sr. Risk Management Framework (RMF) Security Engineer to support a project at a Navy base in San Diego. This position will play a critical role in ensuring that information systems comply with federal cybersecurity standards, particularly within the U.S. Department of Defense (DoD) cyber community. The RMF Security Engineer will guide the project through the RMF lifecycle, which includes categorizing information systems based on risk, selecting and implementing appropriate security controls (per NIST SP 800-53 or DoD-specific requirements), and assessing those controls for effectiveness. The RMF Security Engineer will conduct continuous monitoring, identify vulnerabilities, address compliance gaps, recommend useful vulnerability mitigations, and ensure systems remain secure against evolving threats.
The RMF Security Engineer will act as a technical advisor and problem solver, bridging the gap between cybersecurity policy and system implementation. Will perform risk assessments, analyze security test results, and recommend mitigation strategies to address findings, whether through configuration changes, tool updates, or process improvements., * Experience preparing System Security Plans (SSP), Security Assessment Reports (SAR), and Plan of Action & Milestones (POA&M).
- Conducting risk assessments, vulnerability scans, and penetration testing .
- eMASS (Enterprise Mission Assurance Support Service)
- SCAP tools (e.g., Nessus, Tenable.sc, OpenSCAP).
- STIG compliance (DISA STIGs, SCAP benchmarks)
- Find and address vulnerabilities in code base using:
- SAST tools - identify and verify structural flaws
-
DAST tools - identify and verify runtime and environment misconfigurations with running code
- At least one for automation: Python, Javascript, Typescript, Bash, Rust, PowerShell
- Experience leveraging AI agentic workflows that incorporate with the NIST RMF to analyze one or more code bases to provide security compliance coverage and mitigate vulnerabilities per the applicable 800-53 STIG and SRG requirements.
- Zero Trust Integration: Understanding NIST SP 800-207 (Zero Trust Architecture) and how it intersects with RMF.
- CMMC 2.0.
- COMSEC Understanding
- CISSP Certification
- Experience with log/SIEM and health monitoring tools (e.g., Splunk, ArcSight). Experience with High Assurance / Type 1 security evaluation processes
If youāre looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. Weāre not hiring followers. Weāre recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. Weāre already at step 30 - and moving faster than anyone else dares. July 17, 2026
Requirements
- Bachelorās degree in Cybersecurity, Information Assurance, Computer Science or related field. BS with 12+ yearsā experience or MS with 10+ yearsā experience. Will consider work experience in lieu of a degree.
- DoD 8570 approved security certification (i.e., Security +) (Will be required 90 days after hire).
- Position requires US citizenship and an active Secret DoD security clearance.
- RMF Compliance Expertise: Deep knowledge of NIST SP 800-37, NIST SP 800-53, NIST SP 800-171, FedRAMP, and DoD Instruction 8510.01 (DIARMF).
Benefits & conditions
This position is 100% on site at the Navy base.
About the company
For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range $131,300.00 - $237,350.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com .
Pay and benefits are fundamental to any career decision. Thatās why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits .
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.clearancejobs.comGood distractions
Talks and stories from around this role ā technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Dev Digest 191: Malware interviews, EU ā¤ļø Open Source and Skilled Agents
9 Ways to Make Money Hacking
Whatās the Difference between a Junior, Mid, and Senior Developer?