1

Cyber Policy Analyst Jobs in California (NOW HIRING)

Analyze evaluation results and communicate findings clearly to the team and to stakeholders * Design, prototype, and tune detection probes for cyber misuse * Work with the cyber policy team to turn ...

Analyze evaluation results and communicate findings clearly to the team and to stakeholders * Design, prototype, and tune detection probes for cyber misuse * Work with the cyber policy team to turn ...

The Cyber Analysis Lead will direct the team responsible for identifying cyber threats, analyzing ... Ensure analytical activities align with DoD cybersecurity policies, Risk Management Framework (RMF ...

Analyze red-teaming results, deployment data, model failures, over-refusals, and ambiguous edge cases to improve policy and evaluation quality over time. * Identify emerging cyber capability areas ...

CLASSIFIED CYBER ASSURANCE ANALYST SpaceX is seeking a classified cyber assurance practitioner to ... Ensure compliance with existing regulatory, policy, and contractual requirements as they pertain to ...

CLASSIFIED CYBER ASSURANCE ANALYST SpaceX is seeking a classified cyber assurance practitioner to ... Ensure compliance with existing regulatory, policy, and contractual requirements as they pertain to ...

next page

Showing results 1-20

Cyber Policy Analyst information

See California salary details

$43.9K

$106.1K

$149K

How much do cyber policy analyst jobs pay per year?

As of Sep 6, 2026, the average yearly pay for cyber policy analyst in California is $106,114.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,300.00 and $124,800.00 per year, depending on experience, location, and employer.

What does a Cyber Policy Analyst do?

A Cyber Policy Analyst evaluates, develops, and advises on policies related to cybersecurity and information security. They analyze current laws, regulations, and emerging threats to recommend strategies that protect organizations or government agencies from cyber risks. Their work often involves preparing reports, briefing stakeholders, and ensuring that cyber policies align with organizational goals and compliance standards. Cyber Policy Analysts play a key role in shaping the digital security landscape and responding to new technological challenges.

What are the key skills and qualifications needed to thrive as a Cyber Policy Analyst, and why are they important?

To thrive as a Cyber Policy Analyst, you need expertise in cybersecurity principles, policy analysis, and risk assessment, often supported by a degree in cybersecurity, public policy, or a related field. Familiarity with cybersecurity frameworks (like NIST or ISO), legal regulations, and tools for policy research or threat intelligence is typically required. Strong analytical thinking, written communication, and the ability to collaborate across technical and non-technical teams are standout soft skills. These competencies are essential for developing effective cyber policies that protect organizations from evolving threats and ensure regulatory compliance.

What are some common challenges Cyber Policy Analysts face when balancing technical and policy considerations?

Cyber Policy Analysts often encounter the challenge of translating complex technical risks and cybersecurity concepts into clear, actionable policies that non-technical stakeholders can understand. They must stay current with evolving cyber threats while ensuring that policy recommendations are practical, enforceable, and align with organizational or governmental objectives. Effective collaboration with IT, legal, and executive teams is essential, as is the ability to anticipate the broader implications of both technology and regulation changes. This balance requires strong communication skills and a proactive approach to keeping pace with the rapidly changing cyber landscape.

What are popular job titles related to Cyber Policy Analyst jobs in California?

For Cyber Policy Analyst jobs in California, the most frequently searched job titles are:

What job categories do people searching Cyber Policy Analyst jobs in California look for?

The top searched job categories for Cyber Policy Analyst jobs in California are:

Infographic showing various Cyber Policy Analyst job openings in California as of August 2026, with employment types broken down into 1% As Needed, 78% Full Time, 18% Part Time, and 3% Contract. Highlights an 94% Physical, 1% Hybrid, and 5% Remote job distribution, with an average salary of $106,114 per year, or $51 per hour.

Safeguards Policy Analyst, Cyber Harms

Anthropic

San Francisco, CA • On-site

Full-time

Posted 16 days ago


Job description

About the role

We're looking for an analyst to support the team's cyber product policy work: the usage policy language, help-center and enforcement guidance, and launch policy notes that say what Anthropic permits and prohibits for cyber-relevant use, kept consistent with the constitution and our access tiers. You'll analyze the constitution and usage policies to check that enforcement matches them, work with the threat intelligence and enforcement teams to make sure our safety standards are met, and coordinate cyber policy inputs to model releases and regulatory requirements alongside the Senior Cyber Policy Lead. You'll also help maintain our controlled-access framework and help keep our cyber-related policy commitments current as standards shift. 

You don't need to write code in this role, but you should be comfortable engaging deeply with technical material - probes, classifiers, and trusted-access programs - and translating it into policy that holds up under scrutiny.

Key responsibilities
  • Contribute to the team's cyber product policy artifacts (usage policy language, help-center and enforcement guidance, launch policy notes) and help keep them consistent with the constitution and access tiers

  • Analyze Anthropic's constitution and cyber-related usage policies, and check that enforcement decisions and safeguards match what they say; maintain a running gap log and propose text fixes

  • Work with the threat intelligence and enforcement teams to ensure cyber safety standards are met; review a sample of enforcement decisions against policy text on a regular cadence and report drift

  • Coordinate cyber policy inputs to model releases and to regulatory requirements: prepare the cyber policy section of launch/model-card reviews and regulator pre-briefs, in support of the Senior Cyber Policy Lead

  • Support Anthropic's access-requirements policy and contribute to consolidation of the controlled-access framework across existing and emerging access programs

  • Help keep Anthropic's cyber-related policy commitments current with shifting industry and regulatory standards, and ensure they map cleanly to our technical safeguards

  • Draft inputs to reporting for partners and regulators

  • Help translate technical evaluation and safeguard work into policy positions and internal guidance

  • Engage closely with technical teams to understand the capabilities of probes and classifiers relevant to access policy

Minimum qualifications
  • Demonstrated ability to write clear policy analysis (professional or academic)

  • Familiarity with how AI developers or platforms enforce usage policies, or with cybersecurity policy, standards, or regulatory frameworks (e.g., usage policies/AUPs, trust and safety enforcement, NIST CSF, CVD)

  • Ability to read and interpret technical security material, such as vulnerability reports or threat assessments

  • Ability to work across teams (threat intelligence, enforcement, engineering, policy) and communicate clearly in writing

Preferred qualifications
  • Experience in cybersecurity policy, including familiarity with coordinated vulnerability disclosure

  • Exposure to government information-sharing and incident-notification frameworks

  • Experience supporting engagement with government agencies, regulators, or standards bodies on cybersecurity or AI matters

  • Experience with legal, technical, or policy aspects of vulnerabilities and disclosure

  • Experience with model-release or product-launch review processes

  • Familiarity with trust-and-safety or product-policy work at a platform (usage policies, enforcement appeals, policy communications)