RMF Engineer, Journeyman
The Opportunity:
CACI is seeking an experienced RMF Engineer, Journeyman to support cybersecurity compliance and Risk Management Framework (RMF) implementation across the Indo-Pacific. The RMF Engineer, Journeyman serves as CACI's information security professional responsible for implementing, maintaining, and supporting the Department of Defense Risk Management Framework (RMF) for enterprise information systems, logistics platforms, operational technologies, and mission support applications. Reporting directly to the Cybersecurity Lead, this position ensures systems are designed, configured, and maintained in accordance with DoD cybersecurity policies while supporting secure mission execution across distributed and expeditionary environments.
The RMF Engineer works closely with Government stakeholders, information system owners, cybersecurity personnel, systems engineers, network engineers, software developers, logistics planners, and mission partners to support system authorization activities, security control implementation, vulnerability remediation, and continuous monitoring. This position contributes to successful program execution by maintaining cybersecurity compliance, reducing operational risk, and enabling secure information sharing throughout the Indo-Pacific theater.
Responsibilities:
Support implementation of the DoD Risk Management Framework (RMF) lifecycle for information systems and mission applications.
Develop and maintain RMF documentation, including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and authorization packages.
Implement and validate NIST SP 800-53 security controls supporting system authorization and accreditation activities.
Coordinate with Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), Authorizing Officials (AOs), and system owners throughout the RMF process.
Perform security control assessments, vulnerability reviews, configuration compliance checks, and cybersecurity risk analyses.
Support vulnerability remediation efforts using security scanning tools and coordinate corrective actions with engineering and operations teams.
Maintain continuous monitoring activities and track cybersecurity compliance metrics for Government leadership.
Support system testing, security assessments, audits, inspections, and cybersecurity readiness reviews.
Ensure compliance with DoD cybersecurity policies, RMF guidance, NIST standards, DISA Security Technical Implementation Guides (STIGs), and contractual requirements.
Prepare cybersecurity reports, executive-level briefings, risk assessments, and technical recommendations.
Support contingency operations, operational exercises, and technology deployments requiring secure system implementation.
Maintain cybersecurity documentation, configuration baselines, security artifacts, and knowledge management repositories.
Coordinate with network engineers, software developers, cloud administrators, and logistics personnel to integrate cybersecurity into operational systems.
Promote continuous monitoring, cybersecurity awareness, and continuous process improvement across enterprise systems.
Support geographically dispersed operations requiring secure and resilient information systems.
Qualifications:
Required:
Minimum 5 years of experience supporting information security, cybersecurity engineering, RMF implementation, system security, or cybersecurity compliance for Government or Department of Defense programs.
Experience supporting Department of Defense, Joint, Combatant Command, Service Component, Defense Information Systems Agency (DISA), or Special Operations organizations.
Experience implementing RMF, preparing authorization packages, conducting security assessments, or supporting Authority to Operate (ATO) processes.
Experience supporting vulnerability management, security compliance, and continuous monitoring activities.
Demonstrated ability to coordinate cybersecurity efforts across engineering, operations, and Government stakeholders.
Active Secret Clearance
Desired:
Bachelor's Degree in Cybersecurity, Information Assurance, Computer Science, Information Technology, Systems Engineering, or a related technical field.
Experience supporting USSOCOM, SOCPAC, Geographic Combatant Commands, Theater Special Operations Commands (TSOCs), DISA, or Joint Task Forces.
Experience utilizing eMASS, ACAS, SCAP Compliance Checker (SCC), STIG Viewer, Tenable Nessus, Microsoft 365, Power BI, SharePoint, and enterprise cybersecurity management platforms.
Knowledge of the DoD Risk Management Framework (RMF), NIST SP 800-53, NIST SP 800-37, DoDI 8510.01, DISA STIGs, CMMC, and cybersecurity best practices.
Professional certifications such as CompTIA Security+ CE (DoD 8140/8570 compliant), ISC2 Certified Information Systems Security Professional (CISSP), Certified Authorization Professional (CAP), CompTIA CySA+, or equivalent cybersecurity certifications are preferred.
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.
Pay Range:
There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.
Since this position can be worked in more than one location, the range shown is the national average for the position.
The proposed salary range for this position is:
$63,300-$129,700CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
More jobs at Caci
- Release Train Engineer (RTE) — Chantilly, VA, US
- Sensor Integration Engineer, Senior — Camp Smith, HI, US
- Software Test Lead — Denver, CO, US
- Civil Engineering, Senior — Camp Smith, HI, US
Similar roles
- Cybersecurity Systems Analyst, Senior at Pae
- Cybersecurity Lead at Pingwind
- Journeyman Full Stack Developer at Leidos
- Cyber Systems Engineer – Level 2 or Level 3 (AHT) at Ngc