1

Cybersecurity Policy Jobs in Virginia (NOW HIRING)

Policy Analyst, Mid

Springfield, VA · On-site

$62.50 - $72.12/hr

Support policy development, review, coordination, and compliance for corporate policies, IT services policies, cybersecurity, and information assurance policies. * Support the development of SME self ...

Policy Analyst, Mid

Springfield, VA · On-site

$62.50 - $72.12/hr

Support policy development, review, coordination, and compliance for corporate policies, IT services policies, cybersecurity, and information assurance policies. * Support the development of SME self ...

Policy Analyst, Mid

Springfield, VA · On-site

$62.50 - $72.12/hr

Support policy development, review, coordination, and compliance for corporate policies, IT services policies, cybersecurity, and information assurance policies. * Support the development of SME self ...

Policy Analyst

Springfield, VA · On-site

$119K - $199K/yr

Lead the development, review, and coordination of corporate, IT service, and cybersecurity/information assurance policies to ensure enterprise-wide alignment. * Direct the creation of SME self ...

Lead the development, review, and coordination of corporate, IT service, and cybersecurity/information assurance policies to ensure enterprise-wide alignment. * Direct the creation of SME self ...

Policy Analyst

Springfield, VA · On-site

$119K - $199K/yr

Lead the development, review, and coordination of corporate, IT service, and cybersecurity/information assurance policies to ensure enterprise-wide alignment. * Direct the creation of SME self ...

Support policy development, review, coordination, and compliance for corporate policies, IT services policies, cybersecurity, and information assurance policies. * Support the development of SME self ...

Policy Analyst

Springfield, VA · On-site

$119K - $199K/yr

Lead the development, review, and coordination of corporate, IT service, and cybersecurity/information assurance policies to ensure enterprise-wide alignment. * Direct the creation of SME self ...

Policy Analyst

Springfield, VA · On-site

$119K - $199K/yr

Lead the development, review, and coordination of corporate, IT service, and cybersecurity/information assurance policies to ensure enterprise-wide alignment. * Direct the creation of SME self ...

Policy Analyst

Springfield, VA · On-site

$119K - $199K/yr

Lead the development, review, and coordination of corporate, IT service, and cybersecurity/information assurance policies to ensure enterprise-wide alignment. * Direct the creation of SME self ...

Tau Six, an agile small company delivering cybersecurity and systems integration services to the US National Security market, has an immediate need for a Senior Information Technology Policy Analyst ...

Tau Six, an agile small company delivering cybersecurity and systems integration services to the US National Security market, has an immediate need for a Senior Information Technology Policy Analyst ...

Showing results 21-40

Cybersecurity Policy information

See Virginia salary details

$56.5K

$131.8K

$184.4K

How much do cybersecurity policy jobs pay per year?

As of Aug 7, 2026, the average yearly pay for cybersecurity policy in Virginia is $131,822.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,000.00 and $148,700.00 per year, depending on experience, location, and employer.

What do cybersecurity policies do?

Cybersecurity policies define the rules and procedures that organizations follow to protect their information systems and data. They establish security standards, guide employee behavior, and help ensure compliance with regulations, supporting cybersecurity professionals in maintaining a secure environment. These policies are essential for risk management and incident response planning.

How to get into cybersecurity policy?

To enter cybersecurity policy, develop a strong understanding of cybersecurity principles, laws, and regulations, often through a degree in cybersecurity, computer science, or public policy. Gaining experience with policy analysis, cybersecurity frameworks, and relevant certifications like CISSP or CIPP can enhance your qualifications. Internships or entry-level roles in government agencies, think tanks, or private firms also provide valuable experience in this field.

What does a cybersecurity policy professional do?

Professionals in Cybersecurity Policy typically spend their days developing, reviewing, and updating security policies and procedures to keep pace with emerging threats and regulatory requirements. They collaborate closely with IT, legal, and business teams to ensure comprehensive risk management and compliance throughout the organization. Regular activities also include conducting policy audits, preparing compliance documentation, and providing internal training or guidance on policy-related matters. This role requires balancing technical knowledge with organizational priorities, making it both dynamic and impactful.

What is a cybersecurity policy?

A Cybersecurity Policy job involves developing, implementing, and maintaining security policies to protect an organization's digital assets and data. Professionals in this role ensure compliance with regulations, assess security risks, and create guidelines for safe computing practices. They often collaborate with IT, legal, and executive teams to address security threats and policy updates. This role requires knowledge of cybersecurity frameworks, risk management, and regulatory standards like NIST, ISO 27001, or GDPR.

What are the key skills and qualifications needed to thrive in cybersecurity policy?

Thriving in a Cybersecurity Policy role requires a strong grasp of information security principles, risk assessment frameworks, and relevant legal and regulatory standards, often backed by a degree in cybersecurity, information technology, or a related field. Familiarity with common cybersecurity tools (such as GRC platforms), industry certifications like CISSP or CISA, and experience with compliance management systems is highly valued. Excellent analytical thinking, written communication, and stakeholder collaboration skills help bridge technical requirements with organizational objectives. These skills ensure that policies are both practical and compliant, effectively reducing cyber risks in a constantly evolving threat landscape.

What are the most commonly searched types of Cybersecurity Policy jobs in Virginia? The most popular types of Cybersecurity Policy jobs in Virginia are:
What are popular job titles related to Cybersecurity Policy jobs in Virginia? For Cybersecurity Policy jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Policy jobs in Virginia look for? The top searched job categories for Cybersecurity Policy jobs in Virginia are:
What cities in Virginia are hiring for Cybersecurity Policy jobs? Cities in Virginia with the most Cybersecurity Policy job openings:
Infographic showing various Cybersecurity Policy job openings in Virginia as of July 2026, with employment types broken down into 84% Full Time, 6% Part Time, and 10% Contract. Highlights an 94% In-person, and 6% Hybrid job distribution, with an average salary of $131,822 per year, or $63.4 per hour.

Policy Analyst with Security Clearance

MANTECH

Springfield, VA • On-site

Other

Re-posted 14 hours ago


ManTech rating

9.0

Company rating: 9.0 out of 10

Based on 14 frontline employees who took The Breakroom Quiz

33rd of 242 rated software companies


Job description

MANTECH seeks a motivated, career and customer-oriented Policy Analyst to join our team in Springfield, VA. This role is 100% on-site. The Policy Analyst advises, assists, leads, manages, and works all policy development, review, coordination, adjudication, promulgation, communication, and compliance in accordance with NGA's Policy Life Cycle Management (PLCM) process. This role supports Subject Matter Expert (SME) development, coordination, and maintenance of all assigned policies, self-inspection checklists, and gap analyses. Responsibilities include but are not limited to: * Lead the development, review, and coordination of corporate, IT service, and cybersecurity/information assurance policies to ensure enterprise-wide alignment.
* Direct the creation of SME self-inspection checklists to facilitate rigorous monitoring, implementation tracking, and regulatory adherence.
* Lead specialized SME analysis to identify policy gaps, conducting deep-dive assessments to drive data-informed revisions and updates.
* Execute IV&V protocols to ensure all policy issuances are fact-based, accurate, and consistent with strategic planning and external mandates.
* Support the design and implementation of optimized policy workflows to enhance administrative efficiency and organizational agility.
* Manage the tracking and reporting of policy-related metrics and business analytics to measure the effectiveness of governance initiatives.
* Align internal policy frameworks with the organization's overarching Cybersecurity Strategy to fortify information assurance.
* Analyze internal documentation and external issuances-including Executive Orders and IC/DoD policies-to proactively mitigate conflicts and address emerging impacts. Minimum Qualifications: * 7+ years of demonstrated experience leading, managing, and working policies in accordance with a Policy Life Cycle Management (PLCM) process
* Bachelor's Degree in Computer Science, Systems Engineering, Cybersecurity, International Affairs, Policy, or a related field. In lieu of a degree, 10+ years of experience is required.
* 2+ years of demonstrated experience tracking and managing formal taskers.
* 2+ years of demonstrated experience in coordinating and collaborating on agency-level support agreements.
* 2+ years of demonstrated experience reviewing and analyzing high-level governance documents (e.g., agency directives, statutes, Executive Orders).
* Demonstrated understanding of NIST 800-53 controls, cybersecurity frameworks, and high-level cybersecurity policy.
* Proven expertise in policy lifecycle management, including the orchestration of strategic agendas, the maintenance of policy compendiums, and the resolution of regulatory gaps and rescissions Clearance Requirements: * Must have a current/active TS/SCI security clearance and be able to obtain a polygraph. Physical Requirements: * The person in this position must be able to remain in a stationary position 50% of the time. Occasionally move about inside the office to access file cabinets, office machinery, or to communicate with co-workers, management, and customers, via email, phone, and or virtual communication, which may involve delivering presentations.

What ManTech employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom