> Markdown version of [/jobs/ext/731694-cybersecurity-specialist-rmf](https://www.wearedevelopers.com/jobs/ext/731694-cybersecurity-specialist-rmf). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Specialist (RMF) - **Company:** New Directions Technologies, Inc. - **Location:** Port Hueneme, CA, United States - **Experience:** Starter - **Salary:** $74,880.0 - $93,600.0 - **Contract:** Permanent contract - **Skills:** CompTIA Security+, Cyber Security, Information Systems, Scap Compliance Checker - **Published:** June 29, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=50802f14080d628d ## About the Role Do you have experience in Vuls?, Do you have a Associate's degree?, Due to Customer requirements, U.S Citizenship is required. Must be able to obtain and maintain a DoD Security Clearance for duration of employment. Associate Degree from accredited University or CNSSI 4011 Certificate or successful completion of military training course: CIN J-3B-0440 (IP BASIC) (or DOD Service equivalent) A CompTIA Security + (CE) certification is required. Validated 1-3 years specialized entry level experience in Specialty Area 72 (Information Systems Security Management) As a member of Cybersecurity Workforce individual will need to maintain a minimum of 40 continuing education hours per year. ## Description Responsible for IT hardening and creating RMF packages in Enterprise Mission Assurance Support Service (eMASS). Support includes ACAS, SCAP Compliance Checker, DISA STIGS, SRR (scripts) and VRAM., * Knowledge with RMF Process, DoDI 8510.01 and DoDI 8500.2 (IA Controls), capable of performing Test and Evaluation (T&E), parsing scan results, assessing IA Controls, and producing Plan of Action and Milestones (POAM). * Creates RMF packages in Enterprise Mission Assurance Support Service (eMASS). * Evaluates technical / non-technical features of an information system for a Designated Approving Authority (DAA) to assess if a system is approved to operate at an acceptable level of (residual) risk based on implementation of an approved set of technical, managerial, and procedural safeguards. * Facilitates or supports A&A activities to include the Pre-certification, Certification, and Accreditation activities. ECraft ISSM1 ## Related Videos - [Microservices? Monoliths? An Annoying Discussion!](https://www.wearedevelopers.com/videos/970-microservices-monoliths-an-annoying-discussion) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Giving AI eyes: How to build a dashboard you can't see](https://www.wearedevelopers.com/videos/100193-giving-ai-eyes-how-to-build-a-dashboard-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)