1

Cyber Security Risk Assessment Jobs in Virginia (NOW HIRING)

Cybersecurity Engineer

Dahlgren, VA · On-site

$100 - $156/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Plan, execute and document risk assessments against known vulnerabilities. * Identify and perform ... Conduct cybersecurity related research, analysis and coordination activities insupport of DOD cyber ...

Sr. Cyber Analyst

Hampton, VA

$97K - $125K/yr

Provides recommendations to activity leadership on processes and methodologies to assess cybersecurity risk on information systems. Works with other Cyber Analysts, SMEs, and SCA-Rs to ensure that ...

... risk assessment analysis and risk mitigation plans for combat systems. · Develop documentation of cybersecurity requirements, gap analysis, threat analysis, system engineering, risk assessment and ...

Cybersecurity Engineer

Virginia Beach, VA · On-site

$100 - $115/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Ensure security requirements are integrated into the system architecture, design, development, testing, assessment, authorization, delivery, and sustainment. * Apply the cybersecurity risk management ...

Showing results 41-60

Cyber Security Risk Assessment information

See Virginia salary details

$56.5K

$131.8K

$184.4K

How much do cyber security risk assessment jobs pay per year?

As of Aug 14, 2026, the average yearly pay for cyber security risk assessment in Virginia is $131,822.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,000.00 and $148,700.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in cyber security risk assessment, and why are they important?

To excel in Cyber Security Risk Assessment, you need a solid understanding of information security principles, risk management frameworks, and often a degree in cybersecurity, IT, or related fields. Familiarity with tools like vulnerability scanners, SIEM systems, and certifications such as CISSP or CISM are commonly required. Analytical thinking, attention to detail, and strong communication skills help professionals effectively assess risks and convey findings to stakeholders. These skills are crucial for identifying vulnerabilities, prioritizing threats, and ensuring the organization’s data and systems are adequately protected.

What is the difference between Cyber Security Risk Assessment vs Cyber Security Analyst?

AspectCyber Security Risk AssessmentCyber Security Analyst
Primary FocusIdentifying and evaluating security risks and vulnerabilitiesMonitoring, analyzing, and responding to security threats
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment teams, consulting firms, security departmentsSecurity operations centers, IT departments, incident response teams

While both roles require similar certifications and work within cybersecurity, a Cyber Security Risk Assessment focuses on evaluating potential vulnerabilities and risks to an organization’s assets. In contrast, a Cyber Security Analyst actively monitors and responds to security threats, ensuring ongoing protection. Understanding these differences helps organizations assign the right responsibilities to each role.

What are some common challenges faced by professionals conducting cyber security risk assessments?

Professionals in cyber security risk assessment often face challenges such as keeping up with rapidly evolving threats, effectively communicating technical risks to non-technical stakeholders, and ensuring comprehensive coverage across complex IT environments. Balancing thoroughness with tight deadlines can also be demanding, as assessments must be both detailed and timely. Collaborating with various departments to gather accurate information and maintain up-to-date asset inventories is crucial for effective risk analysis and mitigation.

What is a cyber security risk assessment?

A cyber security risk assessment is a process used to identify, evaluate, and prioritize potential threats and vulnerabilities that could negatively impact an organization's information systems. By analyzing assets, threats, vulnerabilities, and impacts, organizations can determine the likelihood and consequences of cyber incidents. The goal is to implement appropriate measures to reduce risks to acceptable levels, ensuring data protection and regulatory compliance. Regular risk assessments help organizations stay ahead of evolving cyber threats and make informed security decisions.

What job categories do people searching Cyber Security Risk Assessment jobs in Virginia look for?

The top searched job categories for Cyber Security Risk Assessment jobs in Virginia are:

Infographic showing various Cyber Security Risk Assessment job openings in Virginia as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $131,822 per year, or $63.4 per hour.

Senior Cybersecurity Engineer

Imagine One Technology & Management Ltd

Arlington, VA • On-site

Other

Medical, Dental, Vision, Retirement

Posted 8 days ago


Job description

This position requires U.S. citizenship and an active U.S. DoD clearance.

Candidates who are not U.S. citizens are not eligible for this role.

Imagine One Technology & Management, Ltd. is seeking four (4) Senior Cybersecurity Engineers. These positions are contingent upon award of the associated work and will be performed in Dahlgren, Virginia.

Desired Experience:

  • Five (5) years of program-specific security engineering experience working with Navy afloat/tactical combat systems -or- ten (10) years general security engineering experience.
  • Possess an understanding of cybersecurity, military system specifications, DoD Information Assurance (IA) policies for both Land Based and afloat/tactical systems, and the ability to communicate clearly and succinctly in written and oral presentations.
  • Noted experience in cybersecurity requirements development, cyber threat analysis, cyber engineering, cyber systems architecture development or cybersecurity policy development experience. Examples include:
    1. Developing cybersecurity requirements, policy standards, best practices, and guidance and procedures for combat systems.
    2. Conducting cybersecurity related research, analysis and coordination activities in support of DOD cyber assurance and policy efforts are multiple classification levels. Lead working groups to develop cybersecurity strategies to meet emerging threats.
    3. Performing analysis of cybersecurity, intelligence and information technology policy gaps for combat systems.
    4. Performing cybersecurity system engineering design, analysis and documentation of combat systems.
    5. Developing cybersecurity risk assessment analysis and risk mitigation plans for combat systems.
    6. Developing documentation of cybersecurity requirements, gap analysis, threat analysis, system engineering, risk assessment and mitigation for combat systems.
    7. Developing or using MBSE models to perform cybersecurity analysis.

Educational Requirements:

  • Minimum certification as IAT Level II or higher per DoD 8570.01, or successor
  • Bachelor’s degree desired

Security Requirements:

  • Active DoD Secret clearance required

Imagine One Technology & Management, Ltd., offers a full package of benefits and competitive salary, excellent group medical, vision, and dental programs. 401K savings plan; $4K annual tuition reimbursement ($5K if pursuing master’s degree); employee training, development, and education programs; profit sharing; advancement opportunities; and much more!

ISO 9001:2015, ISO 20000-1:2018, ISO 27001:2013
CMMI Development and Services - Maturity Level 3
An Employee-Owned Business

EEO/Veterans/Disabled