Dahlgren, VA

Salary
$100,000–$125,000from the description
Posted
Jul 24, 2026
Location
Dahlgren, VA
Last confirmed open
Jul 25, 2026

What this job asks for AI summary

This role centers on building and maintaining Risk Management Framework Assessment and Authorization packages for government clients, including conducting security assessments to identify vulnerabilities and producing mitigation reports. The work involves coordinating with stakeholders and other developers, using tools such as eMASS and Nessus, and applying NIST cybersecurity standards within a Department of Defense research, development, test, and evaluation context. It suits candidates with hands-on RMF experience and an active Top Secret clearance.

Mid level · 3+ years · Washington-Arlington-Alexandria, DC-VA-MD-WV · Top Secret clearance · Full-time

Must have (2)
RMF A&A · 3+ yrsNessus
Nice to have (3)
eMASSSTIG ViewerVRAM

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

What the occupation pays Median $152,225 (middle half $125,286–$177,673). This posting is about at that midpoint.

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (8)

The role is specifically focused on RMF Assessment & Authorization (A&A) package development for DoD/DoN clients, with a strong GRC/compliance orientation — 15-1212 is the best fit; 15-1299 is noted as a runner-up given the specialized RDT&E/systems security framing.

eMASS and DoD/DoN IA Portfolio management are listed as 'a plus' in the qualifications section.

STIG Viewer, VRAM, and knowledge of CTOs are listed under 'Prefer' language, making them preferred rather than hard gates.

Knowledge of RDT&E/tactical systems and IATT are mentioned as preferred knowledge areas but name no specific tool or platform, so they are omitted from the skills list per extraction rules.

A Top Secret clearance is explicitly required ('Must currently hold a security clearance at the Top Secret level'); TS/SCI is not mentioned, so clearance is coded as TopSecret rather than TopSecretSci.

No degree requirement is stated anywhere in the posting.

Ignored 2 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): NIST SP 800-53, NIST SP 800-37.

Requires a Top Secret clearance — the cleared population is a small fraction of this occupation, so the real candidate pool is materially smaller than the estimate below, which does not model clearance.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗