RMF Validator
Listed on 2026-09-01
-
IT/Tech
Cybersecurity, IT Consultant, Information Security & Data Protection
Certified RMF Validator
COLSA is seeking a Certified RMF Validator to join our team and play a critical role in supporting cybersecurity and Risk Management Framework (RMF) activities. This position will provide expertise throughout the validation process, assessing security controls, documenting assessment results, and ensuring validation activities are performed in accordance with applicable policies and guidance. This position is contingent upon contract award, with work anticipated to begin in March 2027.
The selected candidate will be proposed as Key Personnel in accordance with proposal requirements.
Responsibilities include:
- Responsible for performing validation/auditing of Unclassified RMF authorization requirements in accordance with Assessment and Authorization Processes
- Provides independent verification and validation (IV&V) of system's security controls and safeguards designed through the security engineering process
- Develops the Security Assessment Report (SAR) and other validation support requirements as required by DoW policies and guidance for the assigned system(s)
- Facilitates the coordination of the Program Manager, ISSM/ISSO, User Representative, and client agreement of the documentation
- Develops and report metrics that include the percentages of completion in every step of the validation process
- Provides network and security operations technical analysis, assessment, and recommendations to senior personnel.
- Provides recommendations for protecting networks, workstations, servers, and IT assets.
- Conducts audits to ensure information systems security policies and procedures are implemented as defined in security plans and best practices.
- Participates in response teams to ensure any anomalies are corrected in accordance with government or industry standards.
Required Experience:
- Bachelor's Degree (or higher) in Cybersecurity, Information Technology, or a related field or equivalent experience
- Minimum of 5 years of related experience
- Hands-on experience with security control assessment, validation/IV&V, and RMF documentation, including development of Security Assessment Reports (SARs).
- Experience supporting cybersecurity incident response, anomaly investigation, and remediation in accordance with DoD policies and industry best practices.
- Strong written and verbal communication skills.
- DoD Secret security clearance; US Citizenship required
Preferred Qualifications:
- DoD 8570/8140-compliant certification such as Security+, CGRC (formerly CAP), or equivalent
Applicant selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. COLSA Corporation is an Equal Opportunity Employer, Minorities/Females/Veterans/Disabled. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).