1

Cybersecurity Policy Jobs in Virginia (NOW HIRING)

It supports the implementation of RMF by developing documentation and updating policies, procedures, and processes as assigned. The Cybersecurity Analyst will assess and mitigates system security ...

It supports the implementation of RMF by developing documentation and updating policies, procedures, and processes as assigned. The Cybersecurity Analyst will assess and mitigates system security ...

Support the organization's Cybersecurity Strategy. * Analyze internal documents and external issuances (e.g., IC/DoW policy, Executive Orders) to identify policy impacts, conflicts, or gaps. Required ...

Policy Analyst, Mid

Springfield, VA · On-site

$62.50 - $72.12/hr

Support policy development, review, coordination, and compliance for corporate policies, IT services policies, cybersecurity, and information assurance policies. * Support the development of SME self ...

next page

Showing results 1-20

Cybersecurity Policy information

See Virginia salary details

$56.5K

$131.8K

$184.4K

How much do cybersecurity policy jobs pay per year?

As of Aug 28, 2026, the average yearly pay for cybersecurity policy in Virginia is $131,822.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,000.00 and $148,700.00 per year, depending on experience, location, and employer.

What is a cybersecurity policy?

A Cybersecurity Policy job involves developing, implementing, and maintaining security policies to protect an organization's digital assets and data. Professionals in this role ensure compliance with regulations, assess security risks, and create guidelines for safe computing practices. They often collaborate with IT, legal, and executive teams to address security threats and policy updates. This role requires knowledge of cybersecurity frameworks, risk management, and regulatory standards like NIST, ISO 27001, or GDPR.

What does a cybersecurity policy professional do?

Professionals in Cybersecurity Policy typically spend their days developing, reviewing, and updating security policies and procedures to keep pace with emerging threats and regulatory requirements. They collaborate closely with IT, legal, and business teams to ensure comprehensive risk management and compliance throughout the organization. Regular activities also include conducting policy audits, preparing compliance documentation, and providing internal training or guidance on policy-related matters. This role requires balancing technical knowledge with organizational priorities, making it both dynamic and impactful.

What are the key skills and qualifications needed to thrive in cybersecurity policy?

Thriving in a Cybersecurity Policy role requires a strong grasp of information security principles, risk assessment frameworks, and relevant legal and regulatory standards, often backed by a degree in cybersecurity, information technology, or a related field. Familiarity with common cybersecurity tools (such as GRC platforms), industry certifications like CISSP or CISA, and experience with compliance management systems is highly valued. Excellent analytical thinking, written communication, and stakeholder collaboration skills help bridge technical requirements with organizational objectives. These skills ensure that policies are both practical and compliant, effectively reducing cyber risks in a constantly evolving threat landscape.

What are the most commonly searched types of Cybersecurity Policy jobs in Virginia?

The most popular types of Cybersecurity Policy jobs in Virginia are:

What are popular job titles related to Cybersecurity Policy jobs in Virginia?

For Cybersecurity Policy jobs in Virginia, the most frequently searched job titles are:

What cities in Virginia are hiring for Cybersecurity Policy jobs?

Cities in Virginia with the most Cybersecurity Policy job openings:

Infographic showing various Cybersecurity Policy job openings in Virginia as of August 2026, with employment types broken down into 1% As Needed, 82% Full Time, 15% Part Time, and 2% Contract. Highlights an 94% Physical, 1% Hybrid, and 5% Remote job distribution, with an average salary of $131,822 per year, or $63.4 per hour.

Cyber Security Policy Analyst

Marathon TS

Springfield, VA • On-site

Full-time

Re-posted 13 days ago


Job description

Job Summary:
Marathon TS is seeking a Cyber Security Policy Analyst to advise, assist, lead all CIO-TES Cybersecurity Policy development, review, coordination, adjudication, promulgation, communication, and compliance. This role involves supporting SME development and maintaining all assigned NGA-wide Policy while ensuring compliance with the Policy Life Cycle Management.
Responsibilities:
• Lead, manage, work and/or support Policy development, review, coordination, adjudication, promulgation, communication, and compliance in accordance with CIO-T's PLCM for assigned NGA-wide Corporate Policies, IT Services Policies for daily IT Operations, CIO Enterprise Policies, Cyber Security, Information Assurance, Section 508, etc. Policies.
• Lead, manage, oversee, and support SME development of SME Self-Inspection Compliance Checklists to ensure policy implementation, monitoring and tracking of compliance.
• Lead, manage, oversee, and support SME analysis and compliance determinations for Gap Analysis, and Policy revisions/updates as/if required.
• Conduct independent verification and validation to ensure NGA CIO-TES are clear, fact-based, accurate, outcome-driven, consistent with external guidance, and reflective of NGA strategic planning.
• Advise and assist the NGA SPP for CIO-TES in fulfilling his role and responsibilities in accordance with the NGA Corporate Policy Program.
• Support implementation of Policy Business Process Improvements.
• Support tracking and reporting of Policy Business Analytics.
• Support tracking and reporting of metrics and Policy Performance Measures.
Qualifications:
Required:
• Demonstrated experience leading, managing and working DoD Policies in accordance with Policy Life Cycle Management (PLCM) process and procedures, and self-inspection checklist.
• Demonstrated experience as Policy Officers for their assigned policy functional areas.
• Bachelor's Degree and 11-14 years equivalent experience or experience within computer science, system engineering or other cyber security related field.
Company:
Marathon TS provides a full range of consulting & manpower services for clients that needs support from skilled and experienced individuals. Founded in 2009, the company is headquartered in Sterling, USA, with a team of 51-200 employees. The company is currently Growth Stage.

Marathon TS logo

About Marathon TS

Sourced by ZipRecruiter

Marathon TS provides a full range of professional services for clients that require support from professionals with specialized skills and experience in a specific technical area or subject matter. Marathon TS also provides IT solutions, including strategy, operations, transformation and mission support.

Industry

It services

Company size

51 - 200 Employees

Headquarters location

Sterling, VA, US

Year founded

2009

Social media