1

Cyber Security Policy Jobs (NOW HIRING)

Ensure cybersecurity policies are implemented correctly, including compliance with DoD and Air Force Certification and Accreditation policies, specifically Risk Management Framework (RMF) for DoD ...

Minimum 5 years of direct experience in Cybersecurity Policy Development and Authoring. (Incumbent must be able to contribute immediately with zero training). * Deep, practical knowledge of NIST 800 ...

Support the organization's Cybersecurity Strategy. * Analyze internal documents and external issuances (e.g., IC/DoW policy, Executive Orders) to identify policy impacts, conflicts, or gaps.

Cybersecurity Analyst (CDAP) - Senior

Fairfax, VA · On-site

$99K - $128K/yr

... ARNG cybersecurity policy compliance. Please Note: This position is contingent upon contract award. Responsibilities * Monitor and analyze CDAP security telemetry to identify potential threats ...

Lead the development, review, and coordination of corporate, IT service, and cybersecurity/information assurance policies to ensure enterprise-wide alignment. * Direct the creation of SME self ...

Lead the development, review, and coordination of corporate, IT service, and cybersecurity/information assurance policies to ensure enterprise-wide alignment. * Direct the creation of SME self ...

The Policy Analyst advises, assists, leads, manages, and works all policy development, review ... Lead the development, review, and coordination of corporate, IT service, and cybersecurity ...

next page

Showing results 1-20

Cyber Security Policy information

See salary details

$57K

$133K

$186K

How much do cyber security policy jobs pay per year?

As of Jun 12, 2026, the average yearly pay for cyber security policy in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

How much does a cyber policy analyst make?

A cyber policy analyst typically earns between $70,000 and $110,000 annually, depending on experience, location, and certifications. Strong knowledge of cybersecurity policies, risk management, and relevant tools can influence salary levels.

What are the key skills and qualifications needed to thrive in Cyber Security Policy, and why are they important?

To thrive in Cyber Security Policy, you need a solid understanding of information security principles, risk assessment, compliance frameworks, and typically a degree in cybersecurity, information technology, or a related field. Familiarity with standards such as NIST, ISO 27001, and government regulations, along with certifications like CISSP or CISM, is highly valued. Strong analytical thinking, communication, and collaboration skills help you interpret technical information and craft effective policies. These competencies ensure organizations can mitigate cyber risks, comply with regulations, and maintain robust security postures.

How to get into cyber security policy?

To enter a cyber security policy role, develop a strong understanding of cybersecurity principles, regulations, and risk management. Obtain relevant certifications such as CISSP or CISM, and gain experience through roles in cybersecurity, compliance, or IT governance. Strong communication skills and knowledge of legal and regulatory frameworks are also important for shaping security policies.

What is the difference between Cyber Security Policy vs Cyber Security Analyst?

AspectCyber Security PolicyCyber Security Analyst
Primary FocusDeveloping, implementing, and maintaining security policies and proceduresMonitoring, analyzing, and responding to security threats and incidents
Required CredentialsKnowledge of security frameworks, policies, and compliance standardsCertifications like CISSP, CEH, or Security+; technical skills
Work EnvironmentPolicy development teams, compliance departments, managementSecurity operations centers, IT teams, incident response teams
Industry UsageUsed across organizations to establish security standardsUsed to identify and mitigate security threats

While a Cyber Security Policy focuses on creating and maintaining security guidelines, a Cyber Security Analyst actively monitors and responds to security threats. Both roles are essential for a comprehensive security strategy, with policies providing the framework and analysts ensuring its enforcement and effectiveness.

What are some common challenges faced by professionals working in Cyber Security Policy roles?

Professionals in Cyber Security Policy often navigate the challenge of balancing organizational security needs with regulatory compliance and user privacy requirements. They must stay updated on rapidly evolving cyber threats and policy frameworks while ensuring that policies are practical for technical teams to implement. Additionally, they frequently collaborate with legal, IT, and executive departments, requiring strong communication and negotiation skills to align diverse stakeholder interests. Adapting policies to different business units and staying proactive against emerging risks are also key aspects of the role.

Is 40 too old for cyber security?

Cyber security professionals can succeed at any age, including 40 and older, as the field values experience, problem-solving skills, and continuous learning. Many roles require certifications like CISSP or CompTIA Security+ and staying current with evolving threats, which are achievable regardless of age.

Can you make $500,000 a year in cyber security?

Cyber security professionals, especially those in senior roles such as security architects or chief information security officers, can earn $500,000 or more annually, often through a combination of base salary, bonuses, and stock options. Achieving this level typically requires extensive experience, advanced certifications like CISSP or CISM, and working in high-demand industries or organizations with large security budgets.

What is cyber security policy?

A cyber security policy is a set of guidelines, rules, and procedures that organizations create to protect their digital assets and sensitive information from cyber threats. The policy outlines acceptable use of technology, roles and responsibilities, and protocols for responding to security incidents. It helps ensure that everyone in the organization understands how to safeguard data, comply with regulations, and reduce the risk of cyberattacks. A strong cyber security policy is essential for maintaining business continuity, legal compliance, and customer trust.
More about Cyber Security Policy jobs
What cities are hiring for Cyber Security Policy jobs? Cities with the most Cyber Security Policy job openings:
What states have the most Cyber Security Policy jobs? States with the most job openings for Cyber Security Policy jobs include:
Infographic showing various Cyber Security Policy job openings in the United States as of June 2026, with employment types broken down into 86% Full Time, and 14% Contract. Highlights an 86% In-person, and 14% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Senior Systems Cybersecurity

ASTRION, INC.

Bedford, MA • On-site

Other

Posted 9 days ago


Job description

Overview

Senior Systems Cybersecurity

LOCATION: Hanscom AFB, Bedford MA

Salary Range: $140-$150,000 annually

JOB STATUS:Full-time

CLEARANCE: Secret

CERTIFICATION: ISSE

TRAVEL:Limited, as needed

Astrion has an exciting opportunity for a Senior Systems Cybersecurity professional in the Enterprise IT and Cyber Infrastructure directorate working on Cloud One programs. Cloud One (C1) is the Air Force evolution to standardized platforms and application support services providing secure cloud environments, engineered environments, and cyber security solutions located at Hanscom AFB in Bedford Massachusetts.

REQUIRED QUALIFICATIONS / SKILLS:

  • Master's or Doctorate Degree in a related field and ten years of experience in the respective technical / professional discipline being performed, five years of which must be in the DoD
  • OR, Bachelor's Degree in a related field and 12 years of experience in the respective technical/professional discipline being performed, five of which must be in the DoD
  • OR, 15 years of directly related experience with proper certifications, eight of which must be in the DoD.
  • Must possess ISSE level or higher certification

RESPONSIBILITIES:

  • Ensure all assigned system and application deliverables meet the requirements of all DoD and Air Force Cyber Security policies.
  • Ensure system deliverables comply with DoD and Air Force Cyber Security policy, specifically DoDI 8500.01, Cyber Security, and AFI 33-200, Air Force Cybersecurity Program Management
  • Ensure cybersecurity policies are implemented correctly, including compliance with DoD and Air Force Certification and Accreditation policies, specifically Risk Management Framework (RMF) for DoD Information Technology, and AFI 33-210, The Risk Management Framework (RMF) for Air Force Information Technology.
  • The successful candidate will also support activities and meet the requirements of DoDI 8520.02, Public Key Infrastructure (PKI) and Public Key (PK) Enabling, in order to achieve standardized, PKI- supported capabilities for biometrics, digital signatures, encryption, identification and authentication.
  • Develop, review, and approve plans, schedules, and other technical documentation.