All roles

Cybersecurity Assessment / Authorization Specialist NIST RMF / Federal Compliance

Remote · USA Full-time New today

Dragonfli Group is a cybersecurity and IT consulting firm providing specialized support to both federal agencies and large commercial enterprises. We are seeking an experienced Cybersecurity Assessment & Authorization Specialist (NIST RMF & Federal Compliance) to join the Risk Portfolio’s Assessment and Authorization program for a large federal agency. In this role, you will lead and manage the execution of security assessments for a variety of applications and domains, including cloud computing, ensuring compliance with NIST Risk Management Framework (RMF), ISO standards, and organizational A&A policies. You will be responsible for evaluating, validating, and documenting security controls to meet information assurance (IA) and regulatory requirements. You will collaborate with technical and business stakeholders to develop secure IT architecture designs, actionable security blueprints, and operational security guidelines that reduce risk and enhance enterprise resilience. You will leverage Governance, Risk, and Compliance (GRC) tools to manage the A&A process efficiently, provide subject matter expertise (SME) guidance, and help shape the future of enterprise cybersecurity posture. General Responsibilities:

  • Manage security assessments for multiple IT applications, domains, and cloud environments.
  • Coordinate and oversee complex projects with high visibility, scope, and risk.
  • Serve as the primary SME for the A&A process, guiding internal teams and new resources.
  • Collaborate with stakeholders, business units, and executives to ensure security requirements are met.
  • Develop and maintain project schedules, step-by-step action plans, and deliverable timelines.
  • Deliver executive-level briefings and risk reports in a clear, actionable format. Technical Responsibilities:
  • Implement, validate, and document security controls in alignment with NIST RMF and ISO standards.
  • Conduct risk assessments and ensure compliance with organizational IA policies.
  • Evaluate and maintain security architecture principles, models, and design standards.
  • Perform vulnerability and network scanning using industry-standard tools.
  • Utilize Governance, Risk, and Compliance (GRC) platforms to manage the A&A lifecycle.
  • Support enterprise security design efforts to ensure consistent, usable, and secure IT infrastructures.
  • Ensure appropriate risk treatment, compliance, and assurance from internal and external perspectives.
  • Ability to manage security assessments for multiple applications and domains, including cloud computing environments.
  • Experience managing large, complex, and high-risk projects or initiatives.
  • Demonstrated proficiency in: Implementing security controls; Conducting risk assessments; Documenting compliance measures based on NIST Risk Management Framework (RMF) and ISO standards.
  • Experience evaluating, supporting, and documenting validation and accreditation processes to ensure new and existing IT systems meet information assurance (IA) and security requirements.
  • Ability to ensure appropriate risk treatment, compliance, and assurance from both internal and external perspectives.
  • Experience developing security blueprints, principles, models, designs, standards, and guidelines to support secure and consistent enterprise IT architecture.
  • Experience with network and vulnerability scanning tools and technologies for system interrogation and configuration/status assessment.
  • In-depth understanding of security architecture principles and best practices to design, implement, and maintain secure IT infrastructures in alignment with A&A policies.
  • Proficiency in using Governance, Risk, and Compliance (GRC) tools to manage Assessment and Authorization (A&A) processes.
  • Ability to serve as a subject matter expert (SME) for the A&A process, providing guidance to stakeholders, business units, and new A&A resources.
  • Strong organizational skills to develop and maintain schedules and step-by-step action plans.
  • Effective communication and collaboration skills to work with cross-functional teams, brief executives, and engage with stakeholders at all levels.
  • Insurance – health, dental, and vision
  • Paid Time Off (PTO) and 11 Federal Holidays
  • 401(k) employer match Original job Cybersecurity Assessment / Authorization Specialist NIST RMF / Federal Compliance posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs. Apply tot his job Apply tot his job Apply tot his job

Apply tot his job Apply To this Job

Related roles

Security and Compliance Analyst

Remote · USA Full-time

Cybersecurity Solutions Architect

Remote · USA Full-time

Lead IT Auditor & Tech Risk Expert - H/F/X

Remote · USA Full-time

Security GRC Analyst

Remote · USA Full-time

Solution Specialist (Security and Compliance)

Remote · USA Full-time

Client Director - Cyber Security

Remote · USA Full-time

Director of Information & Cybersecurity Compliance (HYRBID)

Remote · USA Full-time

Security & Compliance Analyst (for Proposal bid)

Remote · USA Full-time

Cyber Security Consulting Lead | Sun Prairie, WI, USA | Remote

Remote · USA Full-time

Director of Cybersecurity - National Security and Defense

Remote · USA Full-time

Workers Compensation Claims Team Lead | New York Jurisdiction

Remote · USA Full-time

Neuropathy Care Specialist - Clinic Ownership Required - Remote Telehealth

Remote · USA Full-time

Vertex Summer 2026 Intern, Preclinical Modeling and Simulation, DMPK

Remote · USA Full-time

Experienced Data Entry Clerk – Entry-Level Opportunity for Remote Work at arenaflex

Remote · USA Full-time

Social Media Specialist, Facebook & Instagram (Remote)

Remote · USA Full-time

Field Service Technician

Remote · USA Full-time

Entry-Level Remote Live Chat Support Specialist – Customer Engagement, Issue Resolution, and Product Education – $25‑$35/hr (Flexible Hours, No Experience Required)

Remote · USA Full-time

Scheduler (40 hours)

Remote · USA Full-time

Director, Solutions Engineering (USA Remote)

Remote · USA Full-time

Territory Manager, 12-month contract (GTA West/Waterloo) Territory Manager, 12-month contract (GTA West/Waterloo)

Remote · USA Full-time