> Markdown version of [/jobs/ext/2024262-senior-cybersecurity-rmf-analyst-navy-validator](https://www.wearedevelopers.com/jobs/ext/2024262-senior-cybersecurity-rmf-analyst-navy-validator). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cybersecurity RMF Analyst / Navy Validator - **Company:** Saliense Consulting - **Location:** McLean, VA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems, Identity and Access Management, Information Management, Security Support Provider Interface, Automated Information System (AIS) - **Published:** August 11, 2026 - **Apply:** https://www.juju.com/job/00000000gmoixj ## About the Role + Active Secret Clearance + Bachelor's degree from an accredited institution + Meets 8570 IAM Level II requirements (e.g., CISSP, CASP+, CAP, CISSM) + Navy Qualified Validator (NQV) Level II or higher + 10 + years relevant experience + 3+ years' experience as an RMF Validator preferred + Prior experience working with the NAO preferred ## Description Provides Information Assurance (IA) support for the Office of Naval Research (ONR) in the area of Assessment and Authorization of ONR systems and networks. + Implements Navy Risk Management Framework (RMF) Implementation Plan IAW DODI 8510.01. + Develops, coordinates, and reviews detailed Assessment and Authorization documentation in accordance with DoD Instruction 8510.01 - DoD Information Assurance Assessment and Authorization (A&A) Process (RMF) + Ensures current networks and systems maintain certification and full authority to operate as they are modified to meet operational requirements. The standard to be maintained is defined by the Naval Network Warfare Command (NNWC) and the RMF process. + Performs Assessment and Authorization for ONR applications, systems and networks fielded or supported by ONR Performance Improvement and Information Management (PIIM) staff IAW NNWC and RMF requirements. + Reviews and supports A&A for ONR systems and networks fielded or supported by ONR PIIM staff directorates and other offices. + Completes security documentation and security analysis for major applications, hardware and support systems IAW RMF standards. + Serves as IA the point of contact for promotional, test, new, replacement and/or contractor equipment brought into the purview of the ONR type accreditation. Once equipment is identified, ensures the owners of the equipment provide proper accreditation documentation and make necessary changes/additions to the RMF Implementation Plan (DIP). + Performs Automated Information Systems (AIS) security inspections and audits periodically for ONR PIIM managed systems, no less than annually, in order to ensure the accuracy of the DIP. + Provides A&A accreditation/AIS security support and guidance to the ONR Designated Approval Authority (DAA) and Information Assurance Manager (IAM) about risks and control measures associated with new and emerging information systems technologies. + Assists in the preparation of information assurance policies, standards, and/or other technical requirement documents needed to advance information security at ONR. ## Related Videos - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [How to Navigate Professional Relationships in the Tech Industry](https://www.wearedevelopers.com/videos/1276-how-to-navigate-professional-relationships-in-the-tech-industry) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Microservices? Monoliths? An Annoying Discussion!](https://www.wearedevelopers.com/videos/970-microservices-monoliths-an-annoying-discussion) - [APItoolkit: Using Merkle Trees and LLMs to Detect the UnDetectable in Software Monitoring](https://www.wearedevelopers.com/videos/1639-apitoolkit-using-merkle-trees-and-llms-to-detect-the-undetectable-in-software-monitoring) - [Empowering Retail Through Applied Machine Learning](https://www.wearedevelopers.com/videos/976-empowering-retail-through-applied-machine-learning) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)