1

Cyber Security Policy Jobs (NOW HIRING)

System Cybersecurity

Bedford, MA · On-site

$107K - $142K/yr

Ensure that cybersecurity policy is implemented correctly on all systems. * Ensure compliance with DoD and Air Force Certification and Accreditation policies, specifically Department of Defense ...

Director of Cybersecurity - GRC

Newark, NJ

$116K - $156K/yr

NRC, SOX, DoE, NERC CIP, TSA, Internal Audits, etc.), Cybersecurity Risk, Cybersecurity Policy, Cybersecurity Awareness, and Nth Party Risk Management and Assurance. (S)he coordinates across all ...

Director of Cybersecurity - GRC

Newark, NJ · On-site

$116K - $156K/yr

NRC, SOX, DoE, NERC CIP, TSA, Internal Audits, etc.), Cybersecurity Risk, Cybersecurity Policy, Cybersecurity Awareness, and Nth Party Risk Management and Assurance. (S)he coordinates across all ...

$140K - $150K/yr

Ensure cybersecurity policies are implemented correctly, including compliance with DoD and Air Force Certification and Accreditation policies, specifically Risk Management Framework (RMF) for DoD ...

The Cybersecurity Engineers will prepare, implement, and ensure compliance with cybersecurity policy, to include Assessment and Authorization requirements. Job Responsibilities Include: * Plan ...

next page

Showing results 1-20

Cyber Security Policy information

See salary details

$57K

$133K

$186K

How much do cyber security policy jobs pay per year?

As of Jun 12, 2026, the average yearly pay for cyber security policy in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

How much does a cyber policy analyst make?

A cyber policy analyst typically earns between $70,000 and $110,000 annually, depending on experience, location, and certifications. Strong knowledge of cybersecurity policies, risk management, and relevant tools can influence salary levels.

What are the key skills and qualifications needed to thrive in Cyber Security Policy, and why are they important?

To thrive in Cyber Security Policy, you need a solid understanding of information security principles, risk assessment, compliance frameworks, and typically a degree in cybersecurity, information technology, or a related field. Familiarity with standards such as NIST, ISO 27001, and government regulations, along with certifications like CISSP or CISM, is highly valued. Strong analytical thinking, communication, and collaboration skills help you interpret technical information and craft effective policies. These competencies ensure organizations can mitigate cyber risks, comply with regulations, and maintain robust security postures.

How to get into cyber security policy?

To enter a cyber security policy role, develop a strong understanding of cybersecurity principles, regulations, and risk management. Obtain relevant certifications such as CISSP or CISM, and gain experience through roles in cybersecurity, compliance, or IT governance. Strong communication skills and knowledge of legal and regulatory frameworks are also important for shaping security policies.

What is the difference between Cyber Security Policy vs Cyber Security Analyst?

AspectCyber Security PolicyCyber Security Analyst
Primary FocusDeveloping, implementing, and maintaining security policies and proceduresMonitoring, analyzing, and responding to security threats and incidents
Required CredentialsKnowledge of security frameworks, policies, and compliance standardsCertifications like CISSP, CEH, or Security+; technical skills
Work EnvironmentPolicy development teams, compliance departments, managementSecurity operations centers, IT teams, incident response teams
Industry UsageUsed across organizations to establish security standardsUsed to identify and mitigate security threats

While a Cyber Security Policy focuses on creating and maintaining security guidelines, a Cyber Security Analyst actively monitors and responds to security threats. Both roles are essential for a comprehensive security strategy, with policies providing the framework and analysts ensuring its enforcement and effectiveness.

What are some common challenges faced by professionals working in Cyber Security Policy roles?

Professionals in Cyber Security Policy often navigate the challenge of balancing organizational security needs with regulatory compliance and user privacy requirements. They must stay updated on rapidly evolving cyber threats and policy frameworks while ensuring that policies are practical for technical teams to implement. Additionally, they frequently collaborate with legal, IT, and executive departments, requiring strong communication and negotiation skills to align diverse stakeholder interests. Adapting policies to different business units and staying proactive against emerging risks are also key aspects of the role.

Is 40 too old for cyber security?

Cyber security professionals can succeed at any age, including 40 and older, as the field values experience, problem-solving skills, and continuous learning. Many roles require certifications like CISSP or CompTIA Security+ and staying current with evolving threats, which are achievable regardless of age.

Can you make $500,000 a year in cyber security?

Cyber security professionals, especially those in senior roles such as security architects or chief information security officers, can earn $500,000 or more annually, often through a combination of base salary, bonuses, and stock options. Achieving this level typically requires extensive experience, advanced certifications like CISSP or CISM, and working in high-demand industries or organizations with large security budgets.

What is cyber security policy?

A cyber security policy is a set of guidelines, rules, and procedures that organizations create to protect their digital assets and sensitive information from cyber threats. The policy outlines acceptable use of technology, roles and responsibilities, and protocols for responding to security incidents. It helps ensure that everyone in the organization understands how to safeguard data, comply with regulations, and reduce the risk of cyberattacks. A strong cyber security policy is essential for maintaining business continuity, legal compliance, and customer trust.
More about Cyber Security Policy jobs
What cities are hiring for Cyber Security Policy jobs? Cities with the most Cyber Security Policy job openings:
What states have the most Cyber Security Policy jobs? States with the most job openings for Cyber Security Policy jobs include:
Infographic showing various Cyber Security Policy job openings in the United States as of June 2026, with employment types broken down into 86% Full Time, and 14% Contract. Highlights an 86% In-person, and 14% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Cybersecurity Systems Analyst - Intermediate, Policy and Training

Amentum

Tampa, FL • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 26 days ago


Job description

Description -
The Contractor shall develop, publish, and review Cybersecurity policies, plans, and procedures, to include Standard Operating Procedures (SOPs), Tactics, Techniques, and Procedures (TTPs), policy memorandums, directives, instructions, manuals, Task Orders, Concepts of Operation (CONOPs), Continuity of Operations Plans (COOPs), Interconnection Security Agreements (ISAs), Memorandums of Agreement (MOAs), Memorandums of Understanding (MOUs), reports, and products that support situational awareness, planning, operations, and response actions.
The tasks in this area include:
  • Provide dedicated, on-site support for Cybersecurity policy, plans, and procedures.
  • Develop, publish and review Cybersecurity policy and guidance, to include SOPs, TTPs, policy memorandums, directives, instructions, manuals, Task Orders, CONOPs, COOPs, ISAs, MOAs, and MOUs.
  • Notify the appropriate USSOCOM, Component Command, TSOC and deployed forces' Government personnel about Cybersecurity-related incidents, threats, and other general information (e.g., fake web sites, banking and phishing scams) in a timely manner.
  • Provide Cybersecurity subject matter expertise for planning, current operations, and security engineering activities.
  • Maintain currency with Cybersecurity trends, threats, common exploits, policies, procedures, and industry best practices.
  • Manage Cybersecurity information in a way that provides ready access for rapid correlation, analysis, and dissemination.
  • Assist USSOCOM, its Component Commands, TSOCs, and deployed forces with collaborative Cybersecurity planning and operations.
  • Disseminate Cybersecurity information to decision makers, as well as to the Computer Network Defense (CND), Network Operations (NetOps), and information operations communities, to support planning, operations, and other related activities.
  • Evaluate guidance from higher headquarters, coordinate applicable implementation by USSOCOM, its Component Commands, TSOCs and deployed forces, and draft recommended direction (e.g., USSOCOM Task Orders (TASKORDs)).
  • Ensure the policies, directives, OPORDs, TTPs, SOPs, and CONOPs of USSOCOM, its Component Commands, TSOCs, and deployed forces are updated based on higher headquarters' guidance and within the timeframe directed by relevant guidance or the Government organization supported by the Contractor.

Qualifications -
  • Knowledge, Skills and Abilities:
  • Experience with the US Combatant Commands (USCENTCOM/USSOCOM) is desired
  • Technical background with system administration experience, architecture and engineering preferred
  • Technical background in networking, identity management, Microsoft and Linux operating systems, database, and mobility
  • Working knowledge of the RMF.
  • Knowledge of the Telos Xacta or Enterprise Mission Assurance Support Services (eMASS) system is desired.
  • Must have excellent communications skill (written and oral) and interpersonal skills.
  • Knowledge and experience with DoD IA processes and policies (e.g., DODI 8510.01, NIST, CNSS and other cybersecurity policies, Chairman of the Joint Chiefs of Staff Manual (CJCSM) 65101.01, Incident Response and other IA policies).
  • Active TS/SCI clearance required.

Experience, Education, & Certification Requirements:
  • Years of Experience Required: 5+ yrs
  • Education Required: BA/BS
  • Certification Required: Current DoD 8570.01- M, IAT- Level III or IAM Level III.
  • Example Certs: CISSP (or Associate), CASP+CE, CISA, CISM, CCISO, GCED, GCIH, CCSP, or GSLC
  • Physical Requirements: May include lifting of weight up to forty (20) pounds as necessary
  • Work Environment: Can involve inside or outside work depending on the task. An inside environment may be a cubicle
  • (considerations: close quarters, low to moderate noise, bright or dim lighting). Outside work may include various
  • environmental conditions including warm and cold climates. Needs to be able to work well with co-workers and all levels
  • of management. No hazards on job or unusual environmental conditions.
  • Equipment and Machines: Ability to operate office equipment such as a personal computer, printer, copy machine,
  • telephone, fax machine and other equipment including desk supplies and other work-related tools as required. Possess
  • heavy and light equipment licenses, or the ability to obtain the necessary licenses.
  • Attendance: Normal hours are Monday - Friday between 6:00am to 4:00pm. With the exception of STD/LTD/FMLA & approved
  • time off, attendance is considered essential.
  • Other Essential Functions:
  • Must demonstrate professional behavior at all times when dealing with customers, management, and co-workers. Must have clear, concise and accurate communications skills in English, both verbal and written.
  • Grooming and dress must be appropriate for the position and must not impose a safety risk to employees or others.
  • Must maintain a positive work atmosphere by behaving and communicating in a professional manner.
  • Independent personal transportation to office or work site is required. Travel (up to 10%) to and from customer locations and test locations (government and vendor) may be required to support projects. This may involve airline travel. In some cases, accommodations can possibly be made for POV, if necessary.
  • When operating any vehicle for work purposes, must wear seat belt and in addition, no cellular devices are to be used when vehicle is in motion

Compensation Details:
$75K to $82K
The compensation range or hourly rate listed for this position is provided as a good-faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws.
Benefits Overview:
Our health and welfare benefits are designed to support you and your priorities. Offerings include:
  • Health, dental, and vision insurance
  • Paid time off and holidays
  • Retirement benefits (including 401(k) matching)
  • Educational reimbursement
  • Parental leave
  • Employee stock purchase plan
  • Tax-saving options
  • Disability and life insurance
  • Pet insurance

Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.
Original Posting:
04/30/2026 - Until Filled
Amentum anticipates this job requisition will remain open for at least three days, with a closing date no earlier than three days after the original posting. This timeline may change based on business needs.
Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed, marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters.