1

Cyber Security Program Manager Jobs in Virginia (NOW HIRING)

Cyber Security Program Manager

Arlington, VA ยท On-site

$127K - $172K/yr

The Program Manager will be responsible for executing and overseeing cyber contracts and resources on cyber projects and ensuring high performance for our federal customers. In addition, the Program ...

Cyber Security Program Manager

Arlington, VA ยท On-site

$127K - $172K/yr

The Program Manager will be responsible for executing and overseeing cyber contracts and resources on cyber projects and ensuring high performance for our federal customers. In addition, the Program ...

Cyber Security Program Manager

Arlington, VA ยท On-site

$127K - $172K/yr

The Program Manager will be responsible for executing and overseeing cyber contracts and resources on cyber projects and ensuring high performance for our federal customers. In addition, the Program ...

Cybersecurity GRC Program Manager

Arlington, VA ยท On-site

$148K - $180K/yr

Guidehouse is seeking an experienced Cybersecurity Governance, Risk, and Compliance (GRC) Program Manager to lead a large, complex federal cybersecurity program supporting enterprise security ...

Cybersecurity GRC Program Manager

Arlington, VA ยท On-site

$148K - $180K/yr

Guidehouse is seeking an experienced Cybersecurity Governance, Risk, and Compliance (GRC) Program Manager to lead a large, complex federal cybersecurity program supporting enterprise security ...

Cybersecurity Program Analyst

Richmond, VA ยท On-site

$77K - $117K/yr

In this role, you will support the governance and operational management of the cybersecurity program. Working closely with cybersecurity leaders and team members, you will help coordinate program ...

New

Deputy Program Manager

Sterling, VA ยท On-site

$115K/yr

The Deputy Program Manager shall have: * at least eight (8) years of experience in cybersecurity program management. * a Bachelor?s Degree in Computer Science, Information Technology, Cybersecurity ...

Deputy Program Manager

Sterling, VA ยท On-site

$115K/yr

The Deputy Program Manager shall have: at least eight (8) years of experience in cybersecurity program management. a Bachelors Degree in Computer Science, Information Technology, Cybersecurity, or ...

next page

Showing results 1-20

Cyber Security Program Manager information

What is the difference between Cyber Security Program Manager vs Cyber Security Analyst?

AspectCyber Security Program ManagerCyber Security Analyst
Certifications PMP, CISSP, CISM CompTIA Security+, CISSP, GIAC
Work Environment Oversees security programs, manages teams, strategic planning Monitors security systems, analyzes threats, implements security measures
Employer & Industry Usage Used in organizations with security programs, government, finance Used across all industries for security monitoring and analysis

The Cyber Security Program Manager focuses on managing security initiatives, coordinating teams, and aligning security strategies with organizational goals. In contrast, the Cyber Security Analyst primarily monitors security systems, analyzes threats, and implements security measures. Both roles require relevant certifications and are essential in maintaining organizational security, but they differ in scope and responsibilities.

What does a cybersecurity program manager do?

A cybersecurity program manager oversees an organization's cybersecurity initiatives, coordinating security policies, risk management, and incident response efforts. They develop and implement security strategies, manage teams, and ensure compliance with industry standards and regulations, often using tools like security information and event management (SIEM) systems. Strong leadership, communication skills, and relevant certifications such as CISSP or CISM are typically required.

What cities in Virginia are hiring for Cyber Security Program Manager jobs?

Cities in Virginia with the most Cyber Security Program Manager job openings:

Infographic showing various Cyber Security Program Manager job openings in Virginia as of August 2026, with employment types broken down into 1% As Needed, 72% Full Time, 24% Part Time, and 3% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution.

Cybersecurity Program Manager - Controls Testing

Richmond, VA โ€ข On-site

$109K - $148K/yr

Other

Posted 12 days ago


Key responsibilities

  • Oversee and coordinate controls testing and penetration testing activities to evaluate the client's security posture.

  • Ensure compliance with NIST 800-53, NIST 800-37, and FISMA requirements throughout the program lifecycle.

  • Supervise penetration testing activities, including scoping, execution, and reporting, to identify vulnerabilities.


Job description

Position Summary

The Cybersecurity Program Manager will oversee and coordinate the execution of a cybersecurity program focused on both controls testing and penetration testing for a government client. This role requires extensive experience in managing programs aligned with NIST 800-53, NIST 800-37, and FISMA requirements. The ideal candidate will bring 10+ years of experience in cybersecurity program management, with expertise in managing control assessments, penetration testing, and overall security evaluations. Strong leadership, communication, and organizational skills are essential, as well as a deep understanding of federal cybersecurity compliance.

Key Responsibilities
  • Lead and manage a cybersecurity program that encompasses controls testing and penetration testing to evaluate the clientโ€™s security posture comprehensively.
  • Ensure compliance with NIST 800-53 v5, NIST 800-37, and FISMA requirements throughout the program lifecycle.
  • Oversee the Risk Management Framework (RMF) process and Security Assessment and Authorization (SA&A), ensuring timely and accurate documentation.
  • Supervise and support penetration testing activities, including scoping, execution, and reporting, to uncover vulnerabilities in applications, networks, and systems.
  • Develop and maintain the program schedule, ensuring tasks are completed on time and deliverables meet quality standards.
  • Act as the primary point of contact for the client, providing regular updates, addressing concerns, and managing expectations.
  • Oversee the creation and delivery of key artifacts such as System Security Plans (SSPs), Security Assessment Reports (SARs), penetration testing reports, and Plan of Action and Milestones (POA&Ms).
  • Provide strategic guidance on risk mitigation, remediation planning, and improving the clientโ€™s cybersecurity posture.
  • Monitor program performance, track milestones, and deliver comprehensive progress reports to stakeholders.
  • Stay current on regulatory changes, cybersecurity standards, and emerging threats to ensure the program remains effective and up to date.
Qualifications

Required Experience and Skills:

  • MUST BE A U.S. CITIZEN
  • 10+ years of experience in program or project management within the cybersecurity field, particularly in federal government environments.
  • Proven ability to manage both controls testing and penetration testing programs, ensuring alignment with NIST and federal requirements.
  • Extensive knowledge of NIST 800-53 v5, NIST 800-37, and FISMA requirements.
  • Demonstrated experience in managing the Risk Management Framework (RMF) process and Security Assessment and Authorization (SA&A) lifecycle.
  • Strong understanding of penetration testing methodologies and tools, including PTES, NIST 800-115, and automated/manual testing techniques.
  • Ability to manage large-scale cybersecurity programs, including resource allocation, risk management, and stakeholder engagement.
  • Exceptional organizational and leadership skills with the ability to manage multiple priorities and meet tight deadlines.
  • Strong verbal and written communication skills, including experience briefing senior executives and government stakeholders.
  • Bachelorโ€™s degree in Cybersecurity, Information Technology, Business Administration, or a related field.

Preferred Qualifications:

  • Certifications such as PMP, CISSP, CISM, OSCP, or CEH.
  • Experience managing cybersecurity programs for federal clients, particularly within defense, financial, or regulatory environments.
  • Familiarity with privacy regulations and their integration with security controls and penetration testing programs.
#J-18808-Ljbffr