1

Cybersecurity Policy Jobs in Baltimore, MD (NOW HIRING)

Cybersecurity Policy Analyst Annual Policy Review Prudent Technology is seeking a Cybersecurity Policy Analyst Annual Policy Review who will support the Federal client's Annual Policy Review work ...

Maintain in-depth knowledge and understanding of the DOD cybersecurity policies and the Risk Management Framework * With no guidance, conduct cybersecurity engineering research and analysis, provide ...

Maintain in-depth knowledge and understanding of the DOD cybersecurity policies and the Risk Management Framework * With no guidance, conduct cybersecurity engineering research and analysis, provide ...

Maintain in-depth knowledge and understanding of the DOD cybersecurity policies and the Risk Management Framework * With no guidance, conduct cybersecurity engineering research and analysis, provide ...

Maintain thorough knowledge and understanding of the DOD cybersecurity policies and the Risk Management Framework * Initiate actions to conduct cybersecurity engineering research and analysis and ...

next page

Showing results 1-20

Cybersecurity Policy information

See Baltimore, MD salary details

$56.6K

$132.1K

$184.8K

How much do cybersecurity policy jobs pay per year?

As of Aug 27, 2026, the average yearly pay for cybersecurity policy in Baltimore, MD is $132,116.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,300.00 and $149,000.00 per year, depending on experience, location, and employer.

What is a cybersecurity policy?

A Cybersecurity Policy job involves developing, implementing, and maintaining security policies to protect an organization's digital assets and data. Professionals in this role ensure compliance with regulations, assess security risks, and create guidelines for safe computing practices. They often collaborate with IT, legal, and executive teams to address security threats and policy updates. This role requires knowledge of cybersecurity frameworks, risk management, and regulatory standards like NIST, ISO 27001, or GDPR.

What does a cybersecurity policy professional do?

Professionals in Cybersecurity Policy typically spend their days developing, reviewing, and updating security policies and procedures to keep pace with emerging threats and regulatory requirements. They collaborate closely with IT, legal, and business teams to ensure comprehensive risk management and compliance throughout the organization. Regular activities also include conducting policy audits, preparing compliance documentation, and providing internal training or guidance on policy-related matters. This role requires balancing technical knowledge with organizational priorities, making it both dynamic and impactful.

What are the key skills and qualifications needed to thrive in cybersecurity policy?

Thriving in a Cybersecurity Policy role requires a strong grasp of information security principles, risk assessment frameworks, and relevant legal and regulatory standards, often backed by a degree in cybersecurity, information technology, or a related field. Familiarity with common cybersecurity tools (such as GRC platforms), industry certifications like CISSP or CISA, and experience with compliance management systems is highly valued. Excellent analytical thinking, written communication, and stakeholder collaboration skills help bridge technical requirements with organizational objectives. These skills ensure that policies are both practical and compliant, effectively reducing cyber risks in a constantly evolving threat landscape.

What are the most commonly searched types of Cybersecurity Policy jobs in Baltimore, MD?

The most popular types of Cybersecurity Policy jobs in Baltimore, MD are:

What are popular job titles related to Cybersecurity Policy jobs in Baltimore, MD?

For Cybersecurity Policy jobs in Baltimore, MD, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Policy jobs in Baltimore, MD look for?

The top searched job categories for Cybersecurity Policy jobs in Baltimore, MD are:

What cities near Baltimore, MD are hiring for Cybersecurity Policy jobs?

Cities near Baltimore, MD with the most Cybersecurity Policy job openings:

Infographic showing various Cybersecurity Policy job openings in Baltimore, MD as of August 2026, with employment types broken down into 1% As Needed, 81% Full Time, 17% Part Time, and 1% Contract. Highlights an 94% Physical, 1% Hybrid, and 5% Remote job distribution, with an average salary of $132,116 per year, or $63.5 per hour.

Cybersecurity Policy Analyst

FedTec LLC

Woodlawn, MD • On-site

Other

Medical, Dental, Vision, Retirement, PTO

Re-posted 12 days ago


Job description

Cybersecurity Policy Analyst Annual Policy Review
Prudent Technology is seeking a Cybersecurity Policy Analyst Annual Policy Review who will support the Federal client's Annual Policy Review work activity by reviewing, validating, analyzing, and updating cybersecurity policy and supplemental documentation to ensure continued alignment with NIST, OMB, FISMA, and other federal requirements, while helping maintain the broader security policy ecosystem.


Location : Woodlawn, MD (Onsite)

Responsibilities-

  • Review, research, analyze, and validate existing written cybersecurity policies and standards, including the ISP, POMS, CUI, AIMS, and related supplemental documentation.
  • Conduct annual reviews of POMS and CUI documentation to identify gaps, discrepancies, redundancies, and needed updates in alignment with federal mandates and client-specific requirements.
  • Perform ongoing analysis and review of security policies and standards to ensure accuracy, completeness, and consistency with NIST 800-53, NIST CSF, OMB guidance, FISMA, and other applicable mandates.
  • Review documents within the security policy ecosystem to confirm ownership, relevance, validity, retirement status, and required updates.
  • Support policy and standards of maintenance by preparing draft updates, corrective recommendations, briefing materials, and related correspondence.
  • Assist with policy waiver lifecycle support by attending SRB meetings, recording meeting minutes, documenting action items, and maintaining supporting records.
  • Support acquisition and procurement activities by researching federal acquisition requirements and helping compile standard information security and supply chain risk language.
  • Contribute to weekly status meetings, project updates, and quarterly reporting support for senior management and stakeholders.
  • Use collaboration and document management tools to track actions, maintain records, and support policy review workflows.


Required Qualifications:

  • Bachelor's degree in cybersecurity, information systems, business, or a related discipline.
  • Experience reviewing and validating existing written policy, standards, procedures, or governance documentation in a federal or regulated environment.
  • Working knowledge of risk management processes and federal cybersecurity and privacy requirements, including NIST CSF, NIST 800-53, FISMA, FedRAMP, OMB guidance, RMF, FIPS, and related laws, regulations, and policies.
  • Ability to analyze policies and supplemental documentation for gaps, inconsistencies, outdated language, and compliance impacts, and develop recommended revisions.
  • Experience preparing drafts, technical reports, plans, meeting notes, and related correspondence.
  • Strong written and verbal communication skills, with the ability to support reviews, meetings, and policy coordination activities.
  • Strong organizational and analytical skills, including the ability to manage multiple review actions and maintain accuracy across a policy ecosystem.
  • Experience using Jira, Confluence, ServiceNow, and the Microsoft 365 Office Suite, including Teams, Word, Excel, PowerPoint, and SharePoint.
  • Must be able to hold a position in Public Trust.

Additional Requirements:

  • Experience supporting information security policy programs, annual policy reviews, or policy ecosystem management in a federal agency.
  • Familiarity with policy waiver tracking, SRB support, acquisition of security language, and CUI documentation reviews.
  • Experience supporting cybersecurity policy updates tied to emerging federal mandates and external oversight requirements.
  • Knowledge of document lifecycle governance, version control, and policy publication practices.
  • Relevant certifications such as Security+, CGRC, CISSP, PMP, or policy/governance-related training.

Prudent Technology LLC is a Women Owned Small Business company providing innovative IT Automation and Data solutions to our federal clients. We are a team of self-starters, innovators and consultants providing cutting edge technologies for the federal government. We help our clients achieve their business and operational goals by solving complex problems through experience and intellect and build sustainable solutions that last.

At , we value our employees and are committed to supporting their professional growth, well-being, and work-life balance. We offer a competitive benefits package that may include comprehensive medical, dental, and vision coverage, 401(k) retirement plans with company support, paid time off, paid holidays, training and certification opportunities, career advancement programs, and flexible work arrangements based on program needs. Our collaborative and employee-focused culture empowers team members to grow their careers while contributing to meaningful federal and commercial technology initiatives.

Commitment to Non-Discrimination

As an Equal Opportunity Employer, we consider all qualified applicants without regard to disability, protected veteran status, or any other status protected by law. We are committed to a fair and inclusive workplace where advancement is based on merit, skills, and contributions.

If you feel that your qualifications, talents, and values align with our culture, we welcome you to apply by submitting your resume today!

No Agencies Please