1

Cybersecurity Manager Jobs in Virginia (NOW HIRING)

Cybersecurity Director

Arlington, VA · On-site

$127K - $172K/yr

Active Secret As a Cybersecurity Director, you will serve as a senior leader responsible for ... This role combines deep expertise in cyber governance, risk management, and compliance with ...

Cybersecurity Lead

Quantico, VA

$117K - $158K/yr

Manage incident handling and COOP/DR cyber readiness. Core Competencies: Cybersecurity program management | Risk & vulnerability assessment | Compliance & accreditation | Incident response ...

Oversee vulnerability management activities including vulnerability scanning, remediation tracking ... Produce and deliver executive cybersecurity briefings for the EOIR CIO and CISO. * Support daily ...

New

Showing results 21-40

Cybersecurity Manager information

See Virginia salary details

$56.5K

$131.8K

$184.4K

How much do cybersecurity manager jobs pay per year?

As of Sep 15, 2026, the average yearly pay for cybersecurity manager in Virginia is $131,822.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,000.00 and $148,700.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a cybersecurity manager?

To thrive as a Cybersecurity Manager, you need a deep understanding of information security principles, risk management, and network security, usually backed by a degree in computer science or a related field. Familiarity with security frameworks (such as NIST or ISO 27001), incident response tools, and certifications like CISSP or CISM is highly valued. Strong leadership, analytical thinking, and effective communication skills enable you to manage teams and convey complex threats to stakeholders. These skills are essential to protect organizational assets, ensure regulatory compliance, and respond swiftly to evolving cyber threats.

What are some of the main challenges cybersecurity managers face when leading a security team?

Cybersecurity Managers often encounter challenges such as balancing proactive threat mitigation with responding to real-time incidents, managing a diverse team with varying skill levels, and staying updated on rapidly evolving cyber threats. They must also effectively communicate risks and security needs to non-technical stakeholders and ensure compliance with industry regulations. Building collaboration between IT, development teams, and executive leadership is essential to create a unified security strategy.

What is the difference between Cybersecurity Manager vs Security Analyst?

AspectCybersecurity ManagerSecurity Analyst
CertificationsCISSP, CISM, CompTIA Security+CompTIA Security+, GIAC Security Essentials
Work EnvironmentOversees security teams, strategic planningMonitors security systems, analyzes threats
Employer & Industry UsageUsed in organizations with dedicated security teamsCommon in security operations centers (SOCs)

The main difference is that a Cybersecurity Manager focuses on managing security teams and developing security strategies, while a Security Analyst primarily monitors systems and responds to security incidents. Both roles require similar certifications but differ in responsibilities and scope within the cybersecurity field.

How much do cybersecurity managers earn?

Cybersecurity managers typically earn a median annual salary ranging from $100,000 to $150,000, depending on experience, certifications, and location. They often oversee security teams, implement security protocols, and use tools like firewalls and intrusion detection systems, with higher salaries for those with advanced certifications such as CISSP or CISM.

What does a cybersecurity manager do?

A cybersecurity manager oversees an organization’s security strategy, manages security teams, and implements policies to protect information systems from cyber threats. They analyze security risks, coordinate incident response, and often use tools like firewalls and intrusion detection systems, typically requiring certifications such as CISSP or CISM. Their role involves ensuring compliance with security standards and continuously improving security measures.

What are the most commonly searched types of Cybersecurity jobs in Virginia?

The most popular types of Cybersecurity jobs in Virginia are:

What are popular job titles related to Cybersecurity Manager jobs in Virginia?

For Cybersecurity Manager jobs in Virginia, the most frequently searched job titles are:

What cities in Virginia are hiring for Cybersecurity Manager jobs?

Cities in Virginia with the most Cybersecurity Manager job openings:

Infographic showing various Cybersecurity Manager job openings in Virginia as of August 2026, with employment types broken down into 80% Full Time, 19% Part Time, and 1% Contract. Highlights an 81% Physical, 2% Hybrid, and 17% Remote job distribution, with an average salary of $131,822 per year, or $63.4 per hour.

Manager, Cyber Security with Security Clearance

Reston, VA • On-site

$115K - $156K/yr

Other

Re-posted 5 days ago


Key responsibilities

  • Lead cybersecurity governance and RMF coordination across a complex federal technology services environment.

  • Develop, maintain, and coordinate cybersecurity assessment documentation, including FIPS 199 analyses, E-Authentication Risk Assessments, security control implementation statements, and supporting control artifacts.

  • Support system teams, product teams, security assessors, and client stakeholders in preparing and maintaining cybersecurity evidence and compliance documentation.


Job description

Description This role is contingent upon a contract award . ICF is seeking an experienced Cybersecurity Manager to lead cybersecurity governance, risk management, compliance coordination, and security integration for a complex federal technology services program. This role will be responsible for ensuring cybersecurity requirements are addressed across systems, applications, integrations, cloud services, product delivery, and operational support functions. The ideal candidate has demonstrated experience supporting federal cybersecurity programs that require RMF alignment, assessment documentation, POA&M management, contingency planning, vulnerability coordination, cybersecurity reporting, and integration with engineering and product delivery teams. This role requires strong knowledge of federal cybersecurity requirements, practical risk management judgment, and the ability to coordinate across technical, program, operations, assessor, and client stakeholder groups. Job Location: This position is remote within the United States. Please note that ICF monitors employee work locations, restricts access from foreign locations and IP addresses, and prohibits the use of personal VPN connections. What You'll Be Doing * Lead cybersecurity governance and RMF coordination across a complex federal technology services environment.
* Develop, maintain, and coordinate cybersecurity assessment documentation, including FIPS 199 analyses, E-Authentication Risk Assessments, security control implementation statements, and supporting control artifacts.
* Support system teams, product teams, security assessors, and client stakeholders in preparing and maintaining cybersecurity evidence and compliance documentation.
* Evaluate cybersecurity risks associated with new capabilities, including applications, integrations, plug-ins, software tools, system connections, and platform changes.
* Track system security deficiencies, remediation activities, and Plans of Action and Milestones through closure.
* Lead or support development, maintenance, and testing of contingency plans for systems and services within program scope.
* Develop and maintain cybersecurity governance standard operating procedures, workflows, templates, and reporting mechanisms.
* Coordinate cybersecurity inputs into engineering, product delivery, architecture, DevSecOps, cloud, data, and service operations activities.
* Support vulnerability management, incident response coordination, risk reviews, control evidence collection, and security-related data calls.
* Partner with service operations, identity, device, network, platform, and application teams to ensure cybersecurity responsibilities are clear and evidence is maintained.
* Monitor cybersecurity risks, issues, dependencies, and compliance gaps, and escalate items requiring leadership attention.
* Translate cybersecurity requirements and risks into practical guidance for technical teams, program leadership, and client stakeholders. What You Must Have * Bachelor's Degree
* U.S. Citizenship required due to federal contract requirements.
* Must be able to obtain and maintain a Federal Public Trust clearance.
* 10+ years of experience supporting cybersecurity, information assurance, security governance, risk management, compliance, or RMF activities in federal or regulated environments.
* Active CISSP, CISM, CAP, Security+, GSEC, or equivalent cybersecurity certification. Preferred Qualifications * 7+ years of experience supporting federal cybersecurity requirements, including FISMA, NIST 800-53, RMF, POA&M management, system assessment, or authorization activities.
* 5+ years of experience developing or maintaining cybersecurity assessment documentation, control implementation statements, security plans, contingency plans, risk assessments, or security artifacts.
* 5+ years of experience coordinating with system owners, security assessors, engineering teams, product teams, operations teams, or federal cybersecurity stakeholders.
* 5+ years of experience supporting vulnerability management, incident response coordination, remediation tracking, control evidence collection, or cybersecurity reporting.
* 3+ years of experience evaluating cybersecurity risks for new technologies, applications, integrations, SaaS platforms, cloud services, or system connections.
* 3+ years of experience supporting cybersecurity governance for cloud, SaaS, application modernization, DevSecOps, data, or enterprise platform environments.
* Experience supporting HHS, NIH, FDA, CMS, CDC, or other health-focused federal environments.
* Experience with Zero Trust, identity and access management, endpoint security, secure cloud architecture, secure SaaS governance, TIC 3.0, or continuous monitoring.
* Experience integrating cybersecurity requirements into Agile, DevSecOps, CI/CD, product delivery, and application modernization workflows.
* Experience supporting ATO packages, security assessment activities, security control validation, audit responses, and independent verification or validation reviews.
* Experience with cybersecurity tools and repositories used for POA&M tracking, vulnerability management, audit evidence, incident coordination, SIEM/SOAR, or continuous monitoring.
* Experience aligning cybersecurity activities with NIST 800-53 Rev. 5, NIST 800-37, NIST 800-61, NIST 800-34, FedRAMP, FISMA, CISA guidance, or HHS security policy.
* Experience developing cybersecurity dashboards, executive risk reporting, compliance scorecards, and metrics-based security governance materials.
* Additional cybersecurity, cloud security, Agile, ITIL, AWS, Azure, Google Cloud, or project management certification. Bot and Third-Party Applications Please note that this application must be submitted directly by the applicant for consideration. Failure to do so may result in the application being excluded for consideration . Applicants needing an accommodation for disability or religious purposes in connection with the application process should contact for assistance. Working at ICF ICF is a global advisory and technology services provider, but we're not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future. We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer . Together, our employees are empowered to share their expertise and collaborate with others to achieve personal and professional goals. For more information, please read our EEO policy. We will consider for employment qualified applicants with arrest and conviction records. Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process. To request an accommodation, please email and we will be happy to assist . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. Read more about workplacediscriminationrigh t s or our benefit offerings which are included in the Transparency in (Benefits) Coverage Act. Candidate AI Usage Policy At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate or assist with responses during interviews (whether in-person or virtual) is not permitted . This policy is in place to maintain the integrity and authenticity of the interview process. However, we understand that some candidates may require accommodation that involves the use of AI. If such an accommodation is needed, candidates are instructed to contact us in advance at . We are dedicated to providing the necessary support to ensure that all candidates have an equal opportunity to succeed. Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position. The pay range for this position based on full-time employment is :
$158,819.00 - $269,993.00 Nationwide Remote Office (US99)