Science Applications International Corp logo

Risk Management Framework Analyst

Science Applications International Corp
  • Colorado Springs, CO
  • $80,001–$120,000 Per Year
3 days ago
Science Applications International Corp

Job Description

Risk Management Framework Analyst

Job ID: 2617151

Location: Colorado Springs, CO, United States

Date Posted: Sep 24, 2026

Category: Cyber

Subcategory: Cybersecurity Spec

Schedule: Full-Time

Shift: Day Job

Travel: No

Minimum Clearance Required: TS/SCI

Clearance Level Must Be Able to Obtain: None

Potential for Remote Work: On-Site

Benefits: Click here

Share: mail

Apply Now >

Apply Now >

Job Description

Description

SAIC is seeking a Risk Management Framework (RMF) Analyst for an Information Systems Security Officer (ISSO) position supporting the RMF requirements of the North American Aerospace Defense Command and United States Northern Command (NORAD/USNORTHCOM) Information Technology (IT) Enterprise Services (NITES) contract. The primary work location is onsite in Colorado Springs.

Responsibilities:

  • Supporting and executing the RMF process across multiple enterprise systems and enclaves by maintaining system registrations, security baselines, and evidentiary records within the Enterprise Mission Assurance Support Service (eMASS).
  • Operating with ISSO-level ownership to independently drive continuous monitoring and Authority to Operate (ATO) sustainment, ensuring an uninterrupted and robust security posture.
  • Ensuring cybersecurity standards and operational hygiene are consistently maintained to support a Cyber Operational Readiness Assessment (CORA)-ready posture.
  • Managing the continuous cybersecurity posture of enterprise systems and identifying mitigations necessary to meet Department of Defense Directive (DoDD) 8500.01, Department of Defense Instruction (DoDI) 8510.01, DoDD 8140.01, and National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 requirements.
  • Analyzing and correlating scan results from the Assured Compliance Assessment Solution (ACAS), Security Content Automation Protocol (SCAP), and other approved tools to evaluate system risk, determine security posture, and maintain ATO and Assess Only authorizations.
  • Assisting with system categorization in accordance with Committee on National Security Systems Instruction (CNSSI) 1253, including confidentiality, integrity, and availability impact levels, as information types, mission profiles, and system interconnections evolve.
  • Leading the development, maintenance, and technical validation of System Security Plans (SSPs), ensuring evidentiary artifacts accurately reflect current technical architectures and that applicable Security Technical Implementation Guides (STIGs) are implemented.
  • Exercising end-to-end ownership of Plans of Action and Milestones (POA&Ms) by systematically evaluating deficiencies, determining risk impacts, and coordinating with technical stakeholders to drive findings to timely closure.
  • Collaborating proactively with system administrators, network engineers, and leadership to remediate STIG findings, vulnerability scan results, and architectural deficiencies.
  • Providing strategic cybersecurity guidance, risk assessments, and status updates to system owners and leadership.
  • Providing weekly status reports that summarize accomplishments across assigned packages, risk posture, issues, and paths forward.
  • Creating, refining, and enforcing the operational policies, procedures, and artifacts necessary to ensure security controls are fully implemented and audit-ready.

Qualifications

Required Qualifications:

  • Certification required in accordance with DoD Manual (DoDM) 8140.03 at the Intermediate level, such as CompTIA Security+ or an equivalent certification.

  • Bachelor's degree in information assurance, cybersecurity, or a related field, plus 3-5 years of relevant experience; or a high school diploma or equivalent plus 7-10 years of relevant information assurance or cybersecurity experience.

  • At least 2 years of direct experience serving as an ISSO or cybersecurity practitioner supporting DoD systems, including:

  • Direct experience managing RMF lifecycle artifacts and end-to-end eMASS package management across multiple concurrent systems.

  • Proven experience authoring, tracking, and coordinating technical remediation to drive POA&Ms to validated completion.

  • Active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance.

  • Demonstrated ability to operate with a high degree of autonomy, self-direct work, and lead cross-functional technical teams through complex authorization lifecycles.

Desired Qualifications:

  • Ability to work effectively in a team-focused, dynamic, high-tempo operational environment.
  • Experience using STIG Viewer and automated compliance tools.
  • Prior experience participating in Change Advisory Boards (CABs).

Target salary range: $80,001 - $120,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

Overview

SAIC accepts applications on an ongoing basis and there is no deadline.

SAIC is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.

We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

Share: mail

Apply Now >

Numbers & Facts

LocationColorado Springs, CO
IndustryComputer/IT Services
Salary$80,001–$120,000 Per Year
Company Size10,000 employees or more
Year Founded2013
Websitehttps://jobs.saic.com/

About Company

SAIC is a premier Fortune 500® technology integrator driving our nation's digital transformation. Our robust portfolio of offerings across the defense, space, civilian, and intelligence markets includes secure high-end solutions in engineering, IT modernization, and mission solutions. Using our expertise and understanding of existing and emerging technologies, we integrate the best components from our own portfolio and our partner ecosystem to deliver innovative, effective, and efficient solutions that are critical to achieving our customers' missions. We are a team of 26,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.1 billion. For more information, visit saic.com.

Skills

  • Aerospace and Defenseunmatched
  • Architectural Servicesunmatched
  • Automationunmatched
  • Computer Securityunmatched
  • Cross-Functionalunmatched
  • Customer Support/Serviceunmatched
  • Emerging Technologyunmatched
  • High School Diplomaunmatched
  • Information Technology & Information Systemsunmatched
  • Information/Data Security (InfoSec)unmatched
  • Internet Securityunmatched
  • Leadershipunmatched
  • NORAD - North American Aerospace Defense Commandunmatched
  • Network Architecture/Engineeringunmatched
  • Operational Auditunmatched
  • Operational Supportunmatched
  • Operations Processesunmatched
  • Professional Servicesunmatched
  • Publicationsunmatched
  • Riskunmatched
  • Risk Analysisunmatched
  • Risk Management Framework (RMF)unmatched
  • Security Protocolsunmatched
  • Sensitive Compartmented Information (SCI)unmatched
  • Status Reportsunmatched
  • System Validationunmatched
  • Systems Administration/Managementunmatched
  • Systems Analysisunmatched
  • Systems Maintenanceunmatched
  • Team Lead/Managerunmatched
  • Team Playerunmatched
  • Technical Leadershipunmatched
  • Time Managementunmatched
  • Top Secret Clearanceunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • United States Department of Defense (DoD)unmatched
  • Vulnerability Scannersunmatched
  • Work From Homeunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder