1

Cybersecurity Policy Jobs (NOW HIRING)

AGE Solutions is looking for a Cybersecurity Policy Analyst to leads the review, consolidation, and development of cybersecurity policies in alignment with government standards. Ensures that these ...

AGE Solutions is looking for a Cybersecurity Policy Analyst to leads the review, consolidation, and development of cybersecurity policies in alignment with government standards. Ensures that these ...

Cybersecurity Policy Lead Location: Washington, DC Clearance: Secret Duties and Responsibilities The Cybersecurity Policy Lead will oversee research on cybersecurity policies, address inquiries, and ...

AGE Solutions is looking for a Cybersecurity Policy Analyst to leads the review, consolidation, and development of cybersecurity policies in alignment with government standards. Ensures that these ...

Cybersecurity Policy Analyst Annual Policy Review Prudent Technology is seeking a Cybersecurity Policy Analyst Annual Policy Review who will support the Federal client's Annual Policy Review work ...

next page

Showing results 1-20

Cybersecurity Policy information

See salary details

$57K

$133K

$186K

How much do cybersecurity policy jobs pay per year?

As of Jul 27, 2026, the average yearly pay for cybersecurity policy in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What are the typical daily responsibilities for someone working in Cybersecurity Policy?

Professionals in Cybersecurity Policy typically spend their days developing, reviewing, and updating security policies and procedures to keep pace with emerging threats and regulatory requirements. They collaborate closely with IT, legal, and business teams to ensure comprehensive risk management and compliance throughout the organization. Regular activities also include conducting policy audits, preparing compliance documentation, and providing internal training or guidance on policy-related matters. This role requires balancing technical knowledge with organizational priorities, making it both dynamic and impactful.

What is a Cybersecurity Policy job?

A Cybersecurity Policy job involves developing, implementing, and maintaining security policies to protect an organization's digital assets and data. Professionals in this role ensure compliance with regulations, assess security risks, and create guidelines for safe computing practices. They often collaborate with IT, legal, and executive teams to address security threats and policy updates. This role requires knowledge of cybersecurity frameworks, risk management, and regulatory standards like NIST, ISO 27001, or GDPR.

What are the key skills and qualifications needed to thrive in the Cybersecurity Policy position, and why are they important?

Thriving in a Cybersecurity Policy role requires a strong grasp of information security principles, risk assessment frameworks, and relevant legal and regulatory standards, often backed by a degree in cybersecurity, information technology, or a related field. Familiarity with common cybersecurity tools (such as GRC platforms), industry certifications like CISSP or CISA, and experience with compliance management systems is highly valued. Excellent analytical thinking, written communication, and stakeholder collaboration skills help bridge technical requirements with organizational objectives. These skills ensure that policies are both practical and compliant, effectively reducing cyber risks in a constantly evolving threat landscape.

More about Cybersecurity Policy jobs
What cities are hiring for Cybersecurity Policy jobs? Cities with the most Cybersecurity Policy job openings:
What are the most commonly searched types of Cybersecurity Policy jobs? The most popular types of Cybersecurity Policy jobs are:
What states have the most Cybersecurity Policy jobs? States with the most job openings for Cybersecurity Policy jobs include:
Infographic showing various Cybersecurity Policy job openings in the United States as of July 2026, with employment types broken down into 92% Full Time, 5% Part Time, and 3% Contract. Highlights an 82% Physical, 6% Hybrid, and 12% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Cybersecurity Policy Analyst

Career Listings

Columbus, OH โ€ข On-site

Full-time

Medical, Dental, Retirement, PTO

Posted 2 days ago


Job description

Benefits:
  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Health insurance
  • Paid time off
  • Profit sharing
  • Training & development
  • Tuition assistance
  • Vision insurance

SarelaTech is seeking a Cybersecurity Policy Analyst to support the Defense Logistics Agency (DLA) Enterprise Cyber Security Service Provider (CSSP). The selected candidate will provide technical expertise in the development, review, implementation, and maintenance of cybersecurity policies, procedures, and governance supporting enterprise cyber defense and Incident Response operations.
Working closely with government stakeholders, cybersecurity engineers, compliance personnel, and incident response teams, the Cybersecurity Policy Analyst will ensure cybersecurity policies, operational procedures, and documentation remain aligned with Department of Defense (DoD), Defense Logistics Agency (DLA), Risk Management Framework (RMF), and Cyber Defense requirements. This position also supports CSSP assessments, compliance reporting, cybersecurity exercises, audit readiness, and the development and delivery of cybersecurity training.
Primary Responsibilities
  • Develop, review, maintain, and update cybersecurity policies, Standard Operating Procedures (SOPs), Tactics, Techniques, and Procedures (TTPs), and operational guidance supporting DLA Enterprise Cyber Security Service Provider (CSSP) operations and Incident Response activities.
  • Ensure cybersecurity policies and documentation comply with DoD, DLA, NIST, RMF, and applicable cybersecurity directives, standards, and regulatory requirements.
  • Support CSSP assessments, inspections, audits, and compliance activities by preparing documentation, tracking metrics, compiling required artifacts, and coordinating with government stakeholders.
  • Assist DLA programs with the development and maintenance of Risk Management Framework (RMF) documentation and cybersecurity compliance packages.
  • Plan, coordinate, and support cybersecurity tabletop exercises; develop After Action Reports (AARs), lessons learned, and process improvement recommendations.
  • Develop and deliver cybersecurity training, presentations, and briefings on Incident Response policies, procedures, and compliance requirements for government personnel.
  • Prepare technical documentation, executive briefings, compliance reports, meeting minutes, and status updates to support cybersecurity governance and operational readiness.
  • Collaborate with cybersecurity operations, incident response teams, engineers, and government leadership to implement policy updates and improve enterprise cybersecurity processes.
Required Qualifications

  • Top Secret security clearance with SCI eligibility
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Assurance, or related technical discipline.
  • Seven (7) or more years of experience supporting cybersecurity policy, governance, compliance, security operations, or Incident Response programs within a DoD or Federal environment.
  • Experience developing and maintaining cybersecurity policies, SOPs, TTPs, technical documentation, or operational procedures.
  • Knowledge of DoD cybersecurity policies, Risk Management Framework (RMF), NIST guidance, and cybersecurity compliance requirements.
  • Experience supporting cybersecurity compliance activities, inspections, audits, or assessment programs.
  • Strong technical writing, documentation, analytical, and presentation skills.
  • Ability to communicate effectively with technical teams, cybersecurity leadership, and government stakeholders.
Desired Qualifications

  • Experience supporting the Defense Logistics Agency (DLA), DISA, or other DoD organizations.
  • Experience supporting Cyber Security Service Provider (CSSP) operations or assessments.
  • Knowledge of NIST SP 800-53, NIST SP 800-61, DoDI 8500.01, DoDI 8510.01 (RMF), DISA STIGs, and related cybersecurity standards.
  • Experience preparing RMF documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and other authorization artifacts.
  • Experience planning or supporting cybersecurity exercises and developing After Action Reports (AARs).
  • Experience developing and delivering cybersecurity training, briefings, or awareness materials.
  • Professional cybersecurity certifications such as Security+, CySA+, CASP+, CISSP, CISM, GSLC, or equivalent.
Preferred Skills

  • Cybersecurity policy and governance
  • Incident Response policy and procedures
  • Risk Management Framework (RMF)
  • Cybersecurity compliance and audit support
  • CSSP operations and assessment support
  • SOP and TTP development
  • Technical writing and documentation
  • Executive briefings and reporting
  • NIST and DoD cybersecurity standards
  • Microsoft Office Suite (Word, Excel, PowerPoint, Visio)
  • SharePoint and collaboration platforms