1

Cybersecurity Risk Management Jobs in Reston, VA

As a Cybersecurity Analyst you will play a crucial role in ensuring the cyber security and ... You will be responsible for managing the Risk Management Framework (RMF) support for multiple ...

As a Cybersecurity Analyst you will play a crucial role in ensuring the cyber security and ... You will be responsible for managing the Risk Management Framework (RMF) support for multiple ...

Cybersecurity Engineer

Washington, DC ยท On-site

$53.33 - $88/hr

Ability to obtain and maintain a government security clearance if required Are you passionate about cybersecurity, risk management, and protecting critical systems from evolving threats? PEMCCO is ...

Cybersecurity Engineer

Washington, DC ยท On-site

$53.33 - $88/hr

Ability to obtain and maintain a government security clearance if required Are you passionate about cybersecurity, risk management, and protecting critical systems from evolving threats? PEMCCO is ...

Cybersecurity Engineer

Washington, DC ยท On-site

$53.33 - $88/hr

Ability to obtain and maintain a government security clearance if required Are you passionate about cybersecurity, risk management, and protecting critical systems from evolving threats? PEMCCO is ...

Cybersecurity Engineer

Washington, DC ยท On-site

$53.33 - $88/hr

Ability to obtain and maintain a government security clearance if required Are you passionate about cybersecurity, risk management, and protecting critical systems from evolving threats? PEMCCO is ...

Senior Cybersecurity Advisor

Washington, DC ยท On-site

$113K - $146K/yr

Provide guidance on cybersecurity risk management activities, including Risk Management Framework (RMF), Authorization to Operate (ATO), reciprocity initiatives, control selection, and continuous ...

Cybersecurity Engineer - Senior

Washington, DC ยท On-site

$63.96 - $105.54/hr

Support Risk Management Framework (RMF) and Assessment & Authorization (A&A) activities * Review system architectures, designs, and configurations to ensure compliance with cybersecurity requirements

New

Senior Cybersecurity Engineer

Washington, DC ยท On-site

$63.96 - $105.54/hr

Support Risk Management Framework (RMF) and Assessment & Authorization (A&A) activities * Review system architectures, designs, and configurations to ensure compliance with cybersecurity requirements

Cybersecurity Engineer - Senior

Washington, DC ยท On-site

$63.96 - $105.54/hr

Support Risk Management Framework (RMF) and Assessment & Authorization (A&A) activities * Review system architectures, designs, and configurations to ensure compliance with cybersecurity requirements

New

Senior Cybersecurity Engineer

Washington, DC ยท On-site

$63.96 - $105.54/hr

This role is ideal for a seasoned cybersecurity professional who enjoys security engineering, risk management, compliance, vulnerability management, and strengthening organizational security posture.

Showing results 41-60

Cybersecurity Risk Management information

See Reston, VA salary details

$59.3K

$138.3K

$193.5K

How much do cybersecurity risk management jobs pay per year?

As of Sep 12, 2026, the average yearly pay for cybersecurity risk management in Reston, VA is $138,328.00, according to ZipRecruiter salary data. Most workers in this role earn between $115,500.00 and $156,100.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Reston, VA?

For Cybersecurity Risk Management jobs in Reston, VA, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Risk Management jobs in Reston, VA look for?

The top searched job categories for Cybersecurity Risk Management jobs in Reston, VA are:

What cities near Reston, VA are hiring for Cybersecurity Risk Management jobs?

Cities near Reston, VA with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Reston, VA as of September 2026, with employment types broken down into 1% As Needed, 81% Full Time, 16% Part Time, and 2% Contract. Highlights an 86% Physical, 3% Hybrid, and 11% Remote job distribution, with an average salary of $138,328 per year, or $66.5 per hour.

Senior Cybersecurity Analyst

Falls Church, VA โ€ข On-site

Tlingit Haida Tribal Business Corp.
Guided Missile and Space Vehicle Manufacturingย โ€ขย 1 - 5K employees

$91K - $124K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

This job post hasย expired today.ย Applications are no longer accepted.


Job description

At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job descriptionโ€”it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one.

For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska.

Together We Grow โ€“ One Mission, One Team โ€“ With a Commitment to Serve

Job Title: Senior Cybersecurity Analyst

Work Location: Remote or hybrid remote if near CO/VA offices

Labor Category: Exempt

Clearance Level: Secret

Travel: Up to 20%

Pay Rate: $91,000 โ€“ $124,000

About the Role

This role works collaboratively with IT leadership, systems administrators, business units, compliance personnel, vendors, auditors, and other stakeholders, the Senior Cybersecurity Analyst will help establish and maintain a risk-based, defense-in-depth cybersecurity program that supports organizational operations, contractual obligations, regulatory requirements, and the protection of critical information assets. The position requires a combination of strong technical cybersecurity expertise, analytical and investigative capabilities, regulatory and compliance knowledge, documentation skills, and the ability to communicate cybersecurity risk effectively to both technical and non-technical audiences.

What Youโ€™ll Be Doing
  • Monitor, investigate, and respond to cybersecurity alerts, incidents, vulnerabilities, and threats across enterprise, endpoint, cloud, network, and application environments.
  • Support compliance with NIST SP 800-171, CMMC, and applicable federal/DoD cybersecurity requirements, including protection of CUI and FCI.
  • Implement, assess, document, and continuously monitor cybersecurity controls and maintain SSPs, POA&Ms, policies, procedures, and compliance evidence.
  • Conduct cybersecurity risk assessments, vulnerability assessments, and security reviews; prioritize findings and coordinate remediation efforts.
  • Support internal and external audits, CMMC assessments, customer reviews, and other cybersecurity compliance activities.
  • Analyze security logs, alerts, and threat intelligence using tools such as SIEM, EDR, Microsoft 365, Azure, Entra ID, firewalls, and endpoint security platforms.
  • Participate in incident response activities, including investigation, containment, remediation, recovery, documentation, and post-incident reviews.
  • Assess and improve security configurations, system hardening, patch management, endpoint protection, network security, cloud security, and data protection controls.
  • Support identity and access management, including MFA, Conditional Access, privileged access, least privilege, RBAC, and periodic access reviews.
  • Evaluate security posture across Microsoft 365, GCC High, Azure, Entra ID, Active Directory, and other enterprise platforms.
  • Support third-party/vendor risk management, technology security reviews, change management, and cybersecurity assessments for new systems and services.
  • Develop cybersecurity metrics, dashboards, risk registers, vulnerability reports, and compliance reporting for leadership.
  • Develop and maintain cybersecurity policies, standards, procedures, incident response plans, and security documentation.
  • Support security awareness programs, phishing simulations, cybersecurity training, and organization-wide security initiatives.
  • Provide cybersecurity guidance to employees, IT teams, leadership, vendors, auditors, and assessors.
  • Stay current on emerging threats, vulnerabilities, regulations, cybersecurity frameworks, and industry best practices.
  • Serve as a senior cybersecurity resource and escalation point for complex security, risk, compliance, and incident response matters; mentor junior team members as appropriate.
  • Participate in afterโ€‘hours incident response or emergency cybersecurity support as required.
  • Perform other cybersecurity, information assurance, risk management, and compliance duties as assigned.
What Weโ€™re Looking For
  • Bachelorโ€™s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field; equivalent education, certifications, training, and experience may be considered.
  • 7+ years of cybersecurity, information security, information assurance, risk management, or related IT security experience, including 3+ years in a senior-level cybersecurity role within a complex enterprise environment.
  • Strong knowledge of NIST SP 800-171, CMMC, and federal/DoD contractor cybersecurity requirements, including protection of CUI and FCI.
  • Experience with SSPs, POA&Ms, security controls, compliance evidence, risk assessments, audits, and CMMC readiness/assessments.
  • Experience with vulnerability management, including scanning, analysis, prioritization, remediation, and validation.
  • Handsโ€‘on experience with SIEM, EDR, endpoint security, firewalls, identity/security monitoring tools, and cybersecurity incident response.
  • Experience securing Microsoft 365/GCC High, Azure, Entra ID, and Active Directory, including MFA, Conditional Access, RBAC, privileged access, and identity security.
  • Working knowledge of Windows Server, endpoint technologies, network infrastructure, TCP/IP, VLANs, firewalls, VPNs, virtualization, cloud services, and network security.
  • Experience with endpoint protection, EDR, encryption, system hardening, secure configurations, access controls, patch management, and configuration management.
  • Experience conducting cybersecurity risk assessments, control gap analyses, security reviews, and risk mitigation activities.
  • Ability to translate technical and regulatory requirements into practical security controls, procedures, technical requirements, and remediation plans.
  • Experience with vendor/thirdโ€‘party risk management, cybersecurity policies and procedures, incident response planning, and security documentation.
  • Strong analytical, investigative, problemโ€‘solving, communication, and organizational skills, with the ability to manage multiple cybersecurity priorities.
  • Ability to work independently and collaborate effectively with IT teams, leadership, business units, vendors, auditors, assessors, and other stakeholders.
  • Ability to provide seniorโ€‘level technical guidance and mentoring to IT and cybersecurity personnel.
  • Ability to support afterโ€‘hours incident response or emergency cybersecurity activities as required.
  • Must be legally authorized to work in the United States and meet all applicable U.S. Government/DoD background, eligibility, and security requirements.
  • Must possess or be able to obtain and maintain an active U.S. Government security clearance at the level required for assigned contracts.
Physical Demands & Work Environment
  • Ability to work in an office environment with prolonged periods of sitting and computer use.
  • Ability to travel domestically up to 20% as business needs require.
  • Ability to lift up to 25 pounds occasionally.
Why Us?

At Tlingit Haida Tribal Business Corporation (THTBC), our work goes beyond delivering exceptional servicesโ€”we are driven by a mission to create meaningful impact. When you join our team, you become part of an organization that values purpose, performance, and people.

We offer the opportunity to work in dynamic, fast-paced environments where your contributions directly impact mission success. Our teams are built on collaboration, accountability, and a commitment to excellence, ensuring you are supported while being challenged to grow.

Join us and be part of a team where your work matters.

Benefits

We offer a comprehensive and flexible benefits package designed to support your health, well-being, and financial security. Benefits include:

  • Medical, Dental, and Vision coverage
  • TRICARE Supplemental
  • Critical Illness insurance
  • Company-Paid Life and Short-Term Disability insurance
  • Optional Long-Term Disability
  • Paid Leave
  • 401(k) Retirement Plan
  • Identity Theft Protection
  • Employee Discounts
  • Wellness Seminars

For union represented positions, benefits and leave are provided in accordance with the applicable Collective Bargaining Agreement.

Pre-Employment Screening: All candidates must successfully complete pre-employment screening, which may include a criminal background check, motor vehicle record review, and 5-panel drug screening, in accordance with company policy and applicable laws.

Equal Employment Opportunity: We are proud to be an equal opportunity employer and are committed to full compliance with all applicable federal, state, and local employment laws. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, gender identity or expression, age, marital status, sexual orientation, veteran status, disability, pregnancy, parental status, or any other status protected by applicable law.

Reasonable Accommodation: If you have a disability or medical condition and require a reasonable accommodation at any stage of the hiring process, please notify the designated recruiter so we can provide appropriate assistance.

#J-18808-Ljbffr