Secret RMF Engineer

Post Date

Mar 06, 2026

Location

San Diego,
California

ZIP/Postal Code

92106
US
May 10, 2026 Insight Global

Job Type

Contract-to-perm

Category

Computer Engineering

Req #

SDG-2a3169ff-bdef-4fec-9663-25220d1303b1

Pay Rate

$52 - $65 (hourly estimate)

Job Description

Insight Global is seeking an RMF Engineer to support a large government customer. This person needs strong experience in Risk Management Framework (RMF) and Assessment & Authorization (A&A) processes to serve as the primary cybersecurity resource supporting a system Authority to Operate (ATO). This role operates independently with minimal direct supervision and is responsible for managing day-to-day RMF execution activities. The engineer will have local reach back support to a broader cybersecurity team but will function as the primary practitioner for ATO lifecycle activities.

Full responsibilities include:

Primary RMF / A&A Execution

• Execute RMF activities in accordance with NIST SP 800-37, DoDI 8510.01, and Navy RMF guidance.

• Develop, update, and maintain A&A documentation including System Security Plans (SSP), Security Control Traceability Matrices (SCTM), POA&Ms, and supporting artifacts.

• Manage and maintain eMASS packages through authorization and continuous monitoring phases.

• Coordinate directly with Authorizing Officials (AOs), Security Control Assessors (SCAs), ISSMs, ISSOs, and system engineers.

• Prepare systems for ATO, ATO renewal, and interim authorization milestones.

• Independently track package status, milestones, and required artifacts to ensure timely authorization.

Security Control Implementation & Validation

• Validate implementation of NIST SP 800-53 security controls.

• Support DISA STIG implementation and remediation tracking.

• Review system configurations, architecture diagrams, and data flows for security compliance.

• Analyze ACAS, SCAP, or equivalent vulnerability scan results and document corrective actions.

• Maintain accurate and actionable POA&Ms.

Continuous Monitoring & Risk Management

• Develop and maintain continuous monitoring strategies and documentation.

• Track cybersecurity posture and risk metrics for reporting to government stakeholders.

• Support impact analysis for system changes and configuration updates.

• Ensure alignment with enclave-specific requirements.

Collaboration & Advisory Support

• Provide cybersecurity guidance to system, network, and cloud engineers.

• Identify security gaps and recommend risk mitigation strategies.

• Coordinate with enterprise cybersecurity teams for policy alignment and reachback support.

• Support audit readiness and inspection activities.

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.

Required Skills & Experience

Active Secret Clearance or higher
IAM LVL II
5+ years of experience supporting RMF and A&A processes in DoD environments.
2+ years of experience working with cyber artifcacts/EMASS
2+ Years of experience participating in the ATO renewal process
Familiarity with ACAS, SCAP, or other vulnerability management tools.

Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.