1

Cyber Security Risk Analyst Jobs in Silver Spring, MD

Program Risk Manager

Herndon, VA · On-site

$86K - $138K/yr

... analysis, mitigation planning, stakeholder facilitation, and senior-level briefings. * Technical familiarity: RMF/ATO impacts, supply chain risk, cybersecurity risk integration, and program financial ...

... analysis, mitigation planning, stakeholder facilitation, and seniorlevel briefings. * Technical familiarity: RMF/ATO impacts, supply chain risk, cybersecurity risk integration, and program financial ...

Program Risk Manager

Herndon, VA · On-site

$86K - $138K/yr

... analysis, mitigation planning, stakeholder facilitation, and seniorlevel briefings. * Technical familiarity: RMF/ATO impacts, supply chain risk, cybersecurity risk integration, and program financial ...

About the Team We are seeking a highly skilled Principal cybersecurity engineer to architect the ... Advanced Risk Modeling: Expertise in quantitative risk analysis (e.g., Monte Carlo simulations or ...

Leads governance, risk, and compliance activities supporting MODES III cybersecurity operations ... Provides senior-level risk analysis and compliance reporting to Government stakeholders, ensuring ...

next page

Showing results 1-20

Cyber Security Risk Analyst information

See Silver Spring, MD salary details

$44.5K

$102.8K

$155.1K

How much do cyber security risk analyst jobs pay per year?

As of Jun 24, 2026, the average yearly pay for cyber security risk analyst in Silver Spring, MD is $102,757.00, according to ZipRecruiter salary data. Most workers in this role earn between $82,200.00 and $119,400.00 per year, depending on experience, location, and employer.

Is 40 too old for cyber security?

Cyber Security Risk Analysts can be successful at any age, as the field values skills, experience, and continuous learning. Many professionals transition into cybersecurity later in their careers, often obtaining certifications like CISSP or CompTIA Security+ to enhance their qualifications. Age is generally not a barrier if you have relevant skills and stay current with industry developments.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role is typically considered an entry-level or early-career position in cybersecurity, often requiring foundational knowledge of security tools, monitoring, and incident response. However, some SOC roles may require prior experience or certifications like CompTIA Security+ or Cisco CCNA, depending on the organization's complexity. Advancement usually involves gaining experience and additional certifications in cybersecurity.

What are the key skills and qualifications needed to thrive in the Cyber Security Risk Analyst position, and why are they important?

A Cyber Security Risk Analyst requires a solid understanding of information security principles, risk assessment methodologies, and a relevant degree such as computer science or cybersecurity. Familiarity with tools like risk management frameworks (NIST, ISO 27001), vulnerability scanners, and certifications such as CISSP, CISM, or CRISC is common in this role. Strong analytical thinking, attention to detail, effective communication, and problem-solving skills are vital soft skills. These competencies enable analysts to accurately identify, assess, and communicate cyber risks, protecting organizations from evolving threats.

What is a Cyber Security Risk Analyst job?

A Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating cybersecurity risks within an organization. They analyze potential threats, evaluate security controls, and recommend improvements to protect sensitive data and systems. Their role often involves conducting risk assessments, ensuring compliance with industry regulations, and collaborating with IT and security teams to enhance defenses. They also monitor emerging threats and provide strategic insights to minimize vulnerabilities. Ultimately, they help organizations maintain a strong security posture against cyber threats.

What are some typical challenges faced by Cyber Security Risk Analysts on the job?

Cyber Security Risk Analysts commonly face the challenge of keeping up with constantly evolving threats and technology landscapes. They must balance the need for robust security with business objectives, often requiring nuanced decision-making and collaboration across departments. Analysts may also encounter difficulties in communicating complex technical risks to non-technical stakeholders. Successfully navigating these challenges is key to maintaining organizational security and fostering a culture of risk awareness.

What does a cybersecurity risk analyst do?

A cybersecurity risk analyst evaluates an organization’s security posture by identifying vulnerabilities, assessing potential threats, and recommending measures to mitigate risks. They often use tools like risk assessment frameworks and require knowledge of security protocols, compliance standards, and threat intelligence. Their work helps organizations protect sensitive data and maintain secure systems.

Can you make $500,000 a year in cyber security?

Cyber Security Risk Analysts typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Reaching a $500,000 salary generally requires senior roles such as Chief Information Security Officer (CISO) or executive positions, which involve broader responsibilities and leadership skills. High salaries in cybersecurity are often associated with extensive experience, advanced certifications, and strategic management roles.
What are popular job titles related to Cyber Security Risk Analyst jobs in Silver Spring, MD? For Cyber Security Risk Analyst jobs in Silver Spring, MD, the most frequently searched job titles are:
What job categories do people searching Cyber Security Risk Analyst jobs in Silver Spring, MD look for? The top searched job categories for Cyber Security Risk Analyst jobs in Silver Spring, MD are:
What cities near Silver Spring, MD are hiring for Cyber Security Risk Analyst jobs? Cities near Silver Spring, MD with the most Cyber Security Risk Analyst job openings:
Cybersecurity Lead

$112K - $151K/yr

Full-time

Posted 6 days ago


Job description

By Light Professional IT Services LLC readies warfighters and federal agencies with technology and systems engineered to connect, protect, and prepare individuals and teams for whatever comes next. Headquartered in McLean, VA, By Light supports defense, civilian, and commercial IT customers worldwide.


Our By Light team, the premier providers of innovative Information Technology (IT) services and communications support to the Department of Defense and Federal Agencies, is growing. We’re increasing our team to support the US Army Comprehensive Modernization (COMPMOD) program. The program delivers end-to-end EFIS&T services—including survey and design through installation, security, and testing. This work spans NIPR and SIPR networks, Wi-Fi, VoIP, ISP/OSP infrastructure, and voice modernization across all CONUS Army installations.

We’re looking for a Cybersecurity Lead to guide cybersecurity compliance and risk management efforts for Army network modernization initiatives. You’ll ensure systems are designed, configured, and documented to meet DoD and Army cybersecurity requirements, and you’ll lead teams through RMF and A&A activities.

You’ll work closely with engineers, program leadership, and government stakeholders to support inspections, resolve cybersecurity issues, and deliver operationally ready systems.

#compmod


  • Support preparation for and execution of Command Cyber Readiness Inspections (CCRIs)
  • Provide cybersecurity input and artifacts for Engineering Installation Plans (EIPs)
  • Ensure systems and networks are designed and configured to meet RMF requirements
  • Support Assess and Authorize (A&A) activities in compliance with DoD RMF
  • Develop and deliver required RMF artifacts, including:
    • Network device configurations
    • STIG checklists
    • Network diagrams and topologies
    • System and security documentation
    • POA&Ms
  • Support program milestone decisions through cybersecurity risk analysis and issue resolution recommendations
  • Prepare, review, and deliver required reports, plans, and briefings
  • Provide cybersecurity support for program reviews, conferences, and stakeholder meetings

  • Bachelor’s degree in Cybersecurity, Information Assurance, or a related IT field
  • Four (4) additional years of relevant experience may be substituted in lieu of a degree
  • DoD 8570 IAT Level III certification
  • 10+ years of cybersecurity or information assurance experience, including 2+ years leading cyber or IA teams
  • Experience leading teams of up to 10 personnel
  • Strong working knowledge of RMF and DoD/Army cybersecurity policies and guidance

  • Prior experience supporting the U.S. Army or other federal agencies
  • Strong communication skills with the ability to engage senior military leadership, program managers, and technical teams

  • Active TS/SCI at the time of application
  • Travel up to 25%, as required

  • Ability to lift up to 30 lbs