via Remote Rocketship
$70K - 90K a year
Support RMF activities and manage federal cybersecurity compliance documentation for authorization packages.
Requires 5+ years IT experience with RMF, FISMA, NIST knowledge, and ability to manage multiple authorization packages and stakeholder collaboration.
Job Description: • Support RMF Steps 0–6 activities for Authorization to Operate (ATO) packages. • Assist Information System Owners (ISOs), ISSOs, and system stakeholders throughout the authorization lifecycle. • Support compliance with VA cybersecurity policies, FISMA, NIST, and agency authorization requirements. • Assist with system authorizations, continuous monitoring, annual assessments, and security reviews. • Track authorization milestones, documentation updates, and artifact expiration dates across multiple information systems. • Develop, update, and maintain System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action & Milestones (POA&Ms), Security Impact Analyses (SIAs), and other RMF documentation. • Document NIST SP 800-53 security control implementations and assist with validating compliance. • Analyze authorization documentation to identify gaps and support remediation efforts. • Maintain complete, accurate, and audit-ready security documentation throughout the system lifecycle. • Assist in identifying cybersecurity risks associated with system implementations, upgrades, and operational environments. • Support the development of mitigation strategies in collaboration with technical and business stakeholders. • Provide security guidance for system installations, major changes, cloud implementations, and application development efforts. • Support presentations of security findings and authorization status to government stakeholders. • Support assigned information systems as part of the cybersecurity team. • Participate in customer meetings involving RMF, ATO, and security compliance activities. • Collaborate with engineers, developers, project managers, system owners, and cybersecurity teams to achieve authorization objectives. • Recommend improvements to security documentation and RMF processes. • Stay current with evolving VA cybersecurity guidance, NIST publications, and Federal security requirements. Requirements: • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Electronics Engineering, or a related field with 5+ years of professional Information Technology experience; or 13+ years of professional Information Technology experience in lieu of a degree. • Experience supporting Risk Management Framework (RMF) activities and Authorization to Operate (ATO) processes. • Experience creating, updating, and maintaining FISMA security documentation and RMF artifacts. • Working knowledge of NIST SP 800-53 security controls, Risk Management Framework (RMF), FISMA, and Federal cybersecurity compliance requirements. • Experience supporting secure product implementations, system major changes, and development lifecycle security activities. • Experience analyzing authorization documentation and supporting remediation efforts. • Ability to lead or actively participate in client meetings involving RMF and ATO activities. • Strong organizational skills with the ability to manage multiple authorization packages, documentation sets, and project timelines. • Ability to obtain and maintain a VA Public Trust Clerance. • Experience using AI-assisted tools responsibly to improve cybersecurity documentation, security assessments, risk analysis, and operational efficiency. • Familiarity with AI-enabled cybersecurity capabilities while ensuring compliance with federal security and privacy requirements. Benefits: • Competitive compensation and market-leading bonus opportunities • Medical, dental and vision benefits where a significant portion of the premium is subsidized by IronArch. • For qualifying high deductible health plans, IronArch also contributes towards a Health Reimbursement Account to cover eligible medical expenses • Company-provided healthcare concierge assistance to help explain your coverage in plain language; help you find, choose, and schedule quality care; and address billing, benefit, or claims concerns, potentially saving hours of your time • 401(k) retirement plan where the company contributes dollar for dollar up to 3 percent, and 50 cents on the dollar for the 4th and 5th percent with immediate entry and immediate vesting • 20 days of PTO accumulated per calendar year • 11 paid holidays • Bereavement, jury duty, parental (maternity/paternity/adoption), and military leaves • Sabbatical programs • Company-paid short- and long-term disability • Company-paid life insurance • Voluntary life, accidental and indemnity income replacement benefits • Professional development reimbursement • Health club reimbursement • Matching donation program and annual philanthropic activities • Pet insurance • And more!
This job posting was last updated on 8/1/2026