1

Cybersecurity Risk Management Jobs in Washington

Cybersecurity Program Manager

Alexandria, VA

$118.80K - $160.50K/yr

Oversee cybersecurity risk management, compliance, and reporting activities. * Manage Assessment & Authorization (A&A) and Authorization to Operate (ATO) processes. * Support federal cybersecurity ...

Integrate cybersecurity & risk management activities into the system development lifecycle (SDLC), including selection, implementation, & validation of security controls * Serve as the primary ...

New

Program Risk Manager

Herndon, VA · On-site

$86K - $138K/yr

Master's degree in relevant field (e.g., Risk Management, Cybersecurity, Systems Engineering, Business Administration); OR * PMI-RMP or ISACA CRISC certification. * Experience: Progressive risk ...

Program Risk Manager

Herndon, VA · On-site

$86K - $138K/yr

Master's degree in relevant field (e.g., Risk Management, Cybersecurity, Systems Engineering, Business Administration); OR * PMIRMP or ISACA CRISC certification. * Experience: Progressive risk ...

next page

Showing results 1-20

Cybersecurity Risk Management information

See Washington salary details

$64.6K

$150.6K

$210.7K

How much do cybersecurity risk management jobs pay per year?

As of Jun 3, 2026, the average yearly pay for cybersecurity risk management in Washington is $150,592.00, according to ZipRecruiter salary data. Most workers in this role earn between $125,700.00 and $169,900.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in Cybersecurity Risk Management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in Cybersecurity Risk Management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Washington? For Cybersecurity Risk Management jobs in Washington, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management jobs in Washington look for? The top searched job categories for Cybersecurity Risk Management jobs in Washington are:
What cities in Washington are hiring for Cybersecurity Risk Management jobs? Cities in Washington with the most Cybersecurity Risk Management job openings:
Cybersecurity Program Manager

Cybersecurity Program Manager

ASSYST, Inc.

Alexandria, VA

$118.80K - $160.50K/yr

Full-time

Posted 9 hours ago


Job description

ASSYST is seeking an experienced Cybersecurity Program Manager to lead and support enterprise cybersecurity initiatives for a federal cybersecurity program. The successful candidate will be responsible for managing cybersecurity strategy, governance, compliance, and program execution while ensuring alignment with federal regulations and industry frameworks.

This role requires a seasoned professional with extensive experience in cybersecurity program management, federal compliance frameworks, risk management, and enterprise security governance. The Cybersecurity Program Manager will work closely with stakeholders across the organization to drive cybersecurity maturity, oversee program performance, and ensure the effective implementation of cybersecurity policies and controls.

Key Responsibilities:

  • Lead and manage enterprise cybersecurity programs and initiatives.
  • Develop and maintain cybersecurity strategic plans and governance frameworks.
  • Oversee cybersecurity risk management, compliance, and reporting activities.
  • Manage Assessment & Authorization (A&A) and Authorization to Operate (ATO) processes.
  • Support federal cybersecurity compliance including NIST and FISMA requirements.
  • Develop cybersecurity metrics, dashboards, and program performance reports.
  • Maintain cybersecurity policies, procedures, and documentation.
  • Provide cybersecurity guidance and strategic support to stakeholders.

Required Qualifications:

  • Master's Degree in Management, Cybersecurity, Information Systems, or related field.
  • Minimum 10 years of experience managing cybersecurity or information security teams.
  • Experience supporting federal agencies or federal cybersecurity programs.
  • Strong experience in cybersecurity governance, risk management, and compliance.
  • Experience with cloud, network, and application security programs.

Required Certifications:

  • Project Management Professional (PMP)
  • ITIL Certification
  • Certified in Risk and Information Systems Control (CRISC)
    Preferred
  • Certified Information Systems Security Professional (CISSP)

ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law.