1

Cyber Security Policy Jobs in Silver Spring, MD (NOW HIRING)

Cybersecurity Policy Lead Location: Washington, DC Clearance: Secret Duties and Responsibilities The Cybersecurity Policy Lead will oversee research on cybersecurity policies, address inquiries, and ...

Cybersecurity Policy Analyst Annual Policy Review Prudent Technology is seeking a Cybersecurity Policy Analyst Annual Policy Review who will support the Federal client's Annual Policy Review work ...

Cybersecurity Engineer

Mclean, VA · On-site

$140K - $200K/yr

Support the overall DoD implementation of its authorization process, including cybersecurity policy and procedures. * Authorize information systems or serve as a SME for systems undergoing ...

Cybersecurity Engineer

Mclean, VA · On-site

$140K - $200K/yr

Support the overall DoD implementation of its authorization process, including cybersecurity policy and procedures. * Authorize information systems or serve as a SME for systems undergoing ...

Cybersecurity Engineer

Mclean, VA · On-site

$140K - $200K/yr

Support the overall DoD implementation of its authorization process, including cybersecurity policy and procedures. * Authorize information systems or serve as a SME for systems undergoing ...

It supports the implementation of RMF by developing documentation and updating policies, procedures, and processes as assigned. The Cybersecurity Analyst will assess and mitigates system security ...

It supports the implementation of RMF by developing documentation and updating policies, procedures, and processes as assigned. The Cybersecurity Analyst will assess and mitigates system security ...

next page

Showing results 1-20

Cyber Security Policy information

See Silver Spring, MD salary details

$59K

$137.7K

$192.7K

How much do cyber security policy jobs pay per year?

As of Jul 28, 2026, the average yearly pay for cyber security policy in Silver Spring, MD is $137,717.00, according to ZipRecruiter salary data. Most workers in this role earn between $115,000.00 and $155,400.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in Cyber Security Policy, and why are they important?

To thrive in Cyber Security Policy, you need a solid understanding of information security principles, risk assessment, compliance frameworks, and typically a degree in cybersecurity, information technology, or a related field. Familiarity with standards such as NIST, ISO 27001, and government regulations, along with certifications like CISSP or CISM, is highly valued. Strong analytical thinking, communication, and collaboration skills help you interpret technical information and craft effective policies. These competencies ensure organizations can mitigate cyber risks, comply with regulations, and maintain robust security postures.

What is the difference between Cyber Security Policy vs Cyber Security Analyst?

AspectCyber Security PolicyCyber Security Analyst
Primary FocusDeveloping, implementing, and maintaining security policies and proceduresMonitoring, analyzing, and responding to security threats and incidents
Required CredentialsKnowledge of security frameworks, policies, and compliance standardsCertifications like CISSP, CEH, or Security+; technical skills
Work EnvironmentPolicy development teams, compliance departments, managementSecurity operations centers, IT teams, incident response teams
Industry UsageUsed across organizations to establish security standardsUsed to identify and mitigate security threats

While a Cyber Security Policy focuses on creating and maintaining security guidelines, a Cyber Security Analyst actively monitors and responds to security threats. Both roles are essential for a comprehensive security strategy, with policies providing the framework and analysts ensuring its enforcement and effectiveness.

What are some common challenges faced by professionals working in Cyber Security Policy roles?

Professionals in Cyber Security Policy often navigate the challenge of balancing organizational security needs with regulatory compliance and user privacy requirements. They must stay updated on rapidly evolving cyber threats and policy frameworks while ensuring that policies are practical for technical teams to implement. Additionally, they frequently collaborate with legal, IT, and executive departments, requiring strong communication and negotiation skills to align diverse stakeholder interests. Adapting policies to different business units and staying proactive against emerging risks are also key aspects of the role.

What is cyber security policy?

A cyber security policy is a set of guidelines, rules, and procedures that organizations create to protect their digital assets and sensitive information from cyber threats. The policy outlines acceptable use of technology, roles and responsibilities, and protocols for responding to security incidents. It helps ensure that everyone in the organization understands how to safeguard data, comply with regulations, and reduce the risk of cyberattacks. A strong cyber security policy is essential for maintaining business continuity, legal compliance, and customer trust.
What are popular job titles related to Cyber Security Policy jobs in Silver Spring, MD? For Cyber Security Policy jobs in Silver Spring, MD, the most frequently searched job titles are:
What job categories do people searching Cyber Security Policy jobs in Silver Spring, MD look for? The top searched job categories for Cyber Security Policy jobs in Silver Spring, MD are:
Infographic showing various Cyber Security Policy job openings in Silver Spring, MD as of July 2026, with employment types broken down into 87% Full Time, and 13% Contract. Highlights an 84% In-person, and 16% Remote job distribution, with an average salary of $137,717 per year, or $66.2 per hour.
Cybersecurity Policy Lead

Cybersecurity Policy Lead

gTANGIBLE

Washington, DC

Full-time

Posted 8 days ago


Job description

gTANGIBLE Corporation (gTC), www.gtangible.com, is a C corporation and a registered Government contractor that provides services and solutions in:

  • National Security Programs
  • Professional, Administrative, and Management Support
  • Mission and Warfighter Support

We are a Service Disabled Veteran Owned Small Business (SDVOSB) and the founder has years of successful experience in the Government contracting arena. Our leadership team is an exceptional group of Government contracting professionals. gTANGIBLE is in the process of identifying candidates for the following position.

Requisition Type: Full Time

Position Status: Contingent

Position Title: Cybersecurity Policy Lead

Location: Washington, DC

Clearance: Secret

Duties and Responsibilities

The Cybersecurity Policy Lead will oversee research on cybersecurity policies, address inquiries, and assist TSA in updating relevant policies and procedures to ensure polices are update to date with latest guidance from National Institute of Standards and Technology (NIST), DHS, or TSA. Duties include the following:

  • Manage the policy inquiry/intake mailbox or policy help desk:
    • Track and resolve cybersecurity policy related questions
    • Conduct internal and external policy research to support help desk policy inquiries using various sources and approved documentation.
  • Review, interpret, edit, create, and update cybersecurity policy related documents:
    • Create new cybersecurity policy documents as needed to address identified gaps or changes emanating from NIST, DHS, or TSA mandates
    • Review DHS 4300A related documentation and provide inputs to management as needed
    • Assist in providing inputs to management regarding the TSA Information Assurance (IA) Handbook
    • Update TSA 1400.3 and IA Handbook annually
    • Modify/update existing Information Assurance and Cybersecurity Division (IAD) cybersecurity-related policy standard operating procedures (SOPs), technical standards (TSs), management directives (MDs), Cybersecurity Cloud Security Handbook (CCSH), TSA Forms, Open Source Software (OSS) guide, SSI Program and Privacy Office related document reviews, and related Notification Memos capturing summary of changes
    • Assist with reviewing and interpreting Executive Orders (EOs), OMB memos, Public Law (PL), DHS directives such as Binding Operational Directives (BODs), DHS Undersecretary Memos, NIST SPs, recommended best practices or other external source documents
    • Assist management in providing inputs for risk assessment memos
    • Meet with Subject Matter Experts (SMEs) to discuss and create and modify applicable policy documentation language.
  • Review ITAR/PR packages and contracts to ensure appropriate IT security language is included.

Knowledge and Qualifications

  • A Bachelor of Science (BS) or Bachelor of Arts (BA) from an accredited school.
  • A minimum of 15 years of IT cybersecurity experience, including direct support for the US Government and 7 years serving as a Policy Analyst for an enterprise IT systems OR a relevant Master's Degree in IT, Computer Science, Business, or Engineering and 10 years' of IT cybersecurity experience including direct support for the US Government and 5 years serving as a Policy Analyst
  • At least one of the following security certifications: Certified Authorization Professional (CAP), Certified Information Systems Security Officer (CISSO), Certified Information Security Manager (CISM), or Certified Information Systems Security Professional (CISSP)
  • Knowledge of NIST Guidelines and FISMA Cybersecurity compliance requirements
  • Technical knowledge of complex enterprise IT systems
  • Knowledge and skill with Microsoft Suite such as Word, Excel, PowerPoint, Outlook and SharePoint management
  • Experience communicating effectively, both oral and written, with technical, non-technical, and executive-level customers.

gTANGIBLE Corporation is an equal opportunity employer and does not discriminate against any employee or applicant because of race, age, sex, color, physical or mental disability, religion, sexual orientation, marital status, national origin, or political affiliation.

Employment Type: Full-Time