1

Cybersecurity Policy Jobs in Reston, VA (NOW HIRING)

Policy Analyst

Springfield, VA · On-site

$96K - $118K/yr

The role's breadth is demonstrated through various specializations, including high-level strategic planning and business analysis for executive management; detailed IT and cybersecurity policy ...

New

Support the organization's Cybersecurity Strategy. * Analyze internal documents and external issuances (e.g., IC/DoW policy, Executive Orders) to identify policy impacts, conflicts, or gaps. * Other ...

New

Cybersecurity Analyst

Mclean, VA · On-site

$125 - $150/hr

It supports the implementation of RMF by developing documentation and updating policies, procedures, and processes as assigned. The Cybersecurity Analyst will assess and mitigate system security ...

It supports the implementation of RMF by developing documentation and updating policies, procedures, and processes as assigned. The Cybersecurity Analyst will assess and mitigates system security ...

Showing results 21-40

Cybersecurity Policy information

See Reston, VA salary details

$59.3K

$138.3K

$193.5K

How much do cybersecurity policy jobs pay per year?

As of Sep 7, 2026, the average yearly pay for cybersecurity policy in Reston, VA is $138,328.00, according to ZipRecruiter salary data. Most workers in this role earn between $115,500.00 and $156,100.00 per year, depending on experience, location, and employer.

What is a cybersecurity policy?

A Cybersecurity Policy job involves developing, implementing, and maintaining security policies to protect an organization's digital assets and data. Professionals in this role ensure compliance with regulations, assess security risks, and create guidelines for safe computing practices. They often collaborate with IT, legal, and executive teams to address security threats and policy updates. This role requires knowledge of cybersecurity frameworks, risk management, and regulatory standards like NIST, ISO 27001, or GDPR.

What does a cybersecurity policy professional do?

Professionals in Cybersecurity Policy typically spend their days developing, reviewing, and updating security policies and procedures to keep pace with emerging threats and regulatory requirements. They collaborate closely with IT, legal, and business teams to ensure comprehensive risk management and compliance throughout the organization. Regular activities also include conducting policy audits, preparing compliance documentation, and providing internal training or guidance on policy-related matters. This role requires balancing technical knowledge with organizational priorities, making it both dynamic and impactful.

What are the key skills and qualifications needed to thrive in cybersecurity policy?

Thriving in a Cybersecurity Policy role requires a strong grasp of information security principles, risk assessment frameworks, and relevant legal and regulatory standards, often backed by a degree in cybersecurity, information technology, or a related field. Familiarity with common cybersecurity tools (such as GRC platforms), industry certifications like CISSP or CISA, and experience with compliance management systems is highly valued. Excellent analytical thinking, written communication, and stakeholder collaboration skills help bridge technical requirements with organizational objectives. These skills ensure that policies are both practical and compliant, effectively reducing cyber risks in a constantly evolving threat landscape.

What are the most commonly searched types of Cybersecurity Policy jobs in Reston, VA?

The most popular types of Cybersecurity Policy jobs in Reston, VA are:

What are popular job titles related to Cybersecurity Policy jobs in Reston, VA?

For Cybersecurity Policy jobs in Reston, VA, the most frequently searched job titles are:

What cities near Reston, VA are hiring for Cybersecurity Policy jobs?

Cities near Reston, VA with the most Cybersecurity Policy job openings:

Infographic showing various Cybersecurity Policy job openings in Reston, VA as of August 2026, with employment types broken down into 1% As Needed, 81% Full Time, 17% Part Time, and 1% Contract. Highlights an 93% Physical, 1% Hybrid, and 6% Remote job distribution, with an average salary of $138,328 per year, or $66.5 per hour.

Senior Cybersecurity Governance & Policy Specialist Level II with Security Clearance

Rividium, Inc

Washington, DC • On-site

Other

Re-posted 4 days ago


Job description

Title Senior Cybersecurity Governance & Policy Specialist Level III Full-Time/Part-Time Full-Time Description The Senior Cybersecurity Governance & Policy Specialist - Level III serves as the principal cybersecurity governance and policy advisor supporting the Department of Homeland Security (DHS) Intelligence Enterprise (DHS IE) Chief Information Security Officer (CISO). This senior-level position is responsible for developing, implementing, and maintaining enterprise-wide cybersecurity governance frameworks, policies, standards, and procedures that ensure compliance with Federal, DHS, and Intelligence Community (IC) cybersecurity mandates. The Senior Cybersecurity Governance & Policy Specialist provides strategic leadership in cybersecurity governance by interpreting complex Federal regulations, Executive Orders, National Security Memoranda (NSMs), Intelligence Community Directives (ICDs), and NIST guidance into actionable organizational policies and implementation strategies. This position serves as a key liaison among DHS leadership, cybersecurity stakeholders, auditors, and Intelligence Community partners while supporting enterprise governance initiatives, regulatory compliance, and cybersecurity modernization efforts. The ideal candidate is an experienced cybersecurity governance professional with exceptional analytical, policy development, technical writing, and executive communication skills, capable of advising senior leadership on cybersecurity governance and compliance across highly classified environments. Key Responsibilities * Serve as the principal Cybersecurity Governance and Policy Advisor to the DHS Intelligence Enterprise Chief Information Security Officer (CISO). * Develop, maintain, and update enterprise-wide cybersecurity policies, standards, procedures, and governance frameworks supporting DHS Intelligence Enterprise operations. * Analyze and interpret Federal laws, Executive Orders, National Security Memoranda (NSMs), Office of Management and Budget (OMB) guidance, DHS directives, Intelligence Community Directives (ICDs), and cybersecurity standards to ensure organizational compliance. * Develop cybersecurity governance guidance aligned with: * NIST Risk Management Framework (RMF) * NIST SP 800-53 * CNSSI 1253 * ICD 503 * DHS Sensitive Systems Policy Directive 4300C * NIST AI Risk Management Framework (AI RMF) * Classified Supply Chain Risk Management (C-SCRM) guidance * Conduct policy gap analyses and recommend implementation strategies for new and revised Federal, DHS, and Intelligence Community cybersecurity requirements. * Identify requirements for updates to the DHS 4300C Instruction Manual, Security Common Controls Catalog, Supply Chain Risk Management (SCRM) policies, and related governance documentation. * Coordinate policy implementation activities with Governance, Risk, and Compliance (GRC) administrators and cybersecurity engineering teams. * Research newly issued Executive Orders, Intelligence Community policies, National Security Memoranda, and other cybersecurity directives; prepare implementation guidance and compliance recommendations for DHS leadership. * Develop cybersecurity governance strategies supporting emerging technologies, including Zero Trust Architecture (ZTA), Artificial Intelligence (AI), Machine Learning (ML), cloud security, and cybersecurity modernization initiatives. * Prepare responses, supporting documentation, and corrective action plans for: * Federal Information Security Modernization Act (FISMA) audits * Office of Inspector General (OIG) audits * Joint Compliance Inspection Program (JCIP) reviews * Intelligence Community oversight activities * Develop executive-level communications, policy memoranda, briefing papers, white papers, reports, and PowerPoint presentations for the CISO, senior executives, and DHS Intelligence Enterprise leadership. * Present cybersecurity governance updates during executive leadership meetings, Intelligence Community Oversight Program (ICOP) sessions, governance boards, and cybersecurity working groups. * Monitor cybersecurity policy compliance across DHS Intelligence Enterprise Components and prepare compliance status reports, metrics, and executive dashboards. * Manage and maintain cybersecurity governance content on A-LAN and C-LAN SharePoint portals, ensuring policies, standards, guidance, and reference materials remain current. * Maintain centralized governance calendars, working group schedules, action item trackers, and policy repositories. * Represent DHS Intelligence Enterprise in Intelligence Community cybersecurity governance working groups, interagency meetings, and collaborative policy initiatives. * Provide mentorship and technical guidance to junior governance analysts and cybersecurity policy specialists.Minimum Qualifications * Active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance. * Minimum 10 years of progressively responsible experience in cybersecurity governance, policy development, information assurance, or cybersecurity compliance supporting Federal Government or Intelligence Community programs. * Demonstrated expertise in: * Cybersecurity governance * Policy development * Regulatory compliance * Information assurance * Risk Management Framework (RMF) * Security policy implementation * Expert knowledge of: * NIST SP 800-53 * NIST Risk Management Framework (RMF) * CNSSI 1253 * ICD 503 * DHS Sensitive Systems Policy Directive 4300C * Intelligence Community cybersecurity policies and overlays * Demonstrated experience translating complex Federal and Intelligence Community cybersecurity requirements into practical organizational policies, standards, and implementation guidance. * Experience supporting cybersecurity audits, inspections, compliance reviews, and corrective action planning. * Exceptional technical writing, analytical, and verbal communication skills with demonstrated experience preparing executive-level reports, presentations, policy memoranda, and briefing materials. * Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Information Assurance, Public Administration, Political Science, or a related discipline. * Master's degree is preferred.Preferred Qualifications * Current Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) certification. * Certified Authorization Professional (CAP) certification. * Experience supporting DHS Intelligence & Analysis (I&A) or other Intelligence Community cybersecurity organizations. * Experience supporting Federal Information Security Modernization Act (FISMA) audits, Office of Inspector General (OIG) reviews, and Joint Compliance Inspection Program (JCIP) assessments. * Experience with Governance, Risk, and Compliance (GRC) platforms such as RSA Archer. * Experience supporting cybersecurity governance initiatives involving Zero Trust Architecture (ZTA), Artificial Intelligence (AI), cloud security, and Supply Chain Risk Management (SCRM). * Experience managing SharePoint collaboration sites and enterprise governance repositories.Required Certifications The following current certification is required: * Certified Information Systems Security Professional (CISSP) or * Certified Information Security Manager (CISM)Preferred certification: * Certified Authorization Professional (CAP)Clearance Requirement Active Top Secret/Sensitive Compartmented Information (TS/SCI) Clearance Required About the Organization Established in 2008, RiVidium, Inc. (dba TripleCyber) is a VA-Verified SDVOSB and an SBA-Certified 8(a) company. To prepare our clients for the future, RiVidium has balanced all parts of our organization to attract the finest employees in order to 'Strive to be the missing element defining tomorrow's technology'. RiVidium keeps pace and surpasses its competitors by meeting challenges of advancements in Logistics, Human Capital, Cyber, Intelligence & Technology. EOE Statement We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law. If you need a reasonable accommodation for any part of the employment process, please contact Human Resources (HR) at . This position is currently accepting applications.