1

Cybersecurity Risk Management Jobs in Silver Spring, MD

Senior Cybersecurity Engineer

Washington, DC · On-site

$63.96 - $105.54/hr

Support Risk Management Framework (RMF) and Assessment & Authorization (A&A) activities * Review system architectures, designs, and configurations to ensure compliance with cybersecurity requirements

Senior Cybersecurity Engineer

Washington, DC · On-site

$63.96 - $105.54/hr

Support Risk Management Framework (RMF) and Assessment & Authorization (A&A) activities * Review system architectures, designs, and configurations to ensure compliance with cybersecurity requirements

Ability to obtain and maintain a government security clearance if required Are you passionate about cybersecurity, risk management, and protecting critical systems from evolving threats? PEMCCO is ...

Senior Cybersecurity Engineer

Washington, DC · On-site

$88.11 - $145.39/hr

Support Risk Management Framework (RMF) and Assessment & Authorization (A&A) activities * Review system architectures, designs, and configurations to ensure compliance with cybersecurity requirements

Showing results 41-60

Cybersecurity Risk Management information

See Silver Spring, MD salary details

$58.9K

$137.5K

$192.3K

How much do cybersecurity risk management jobs pay per year?

As of Aug 9, 2026, the average yearly pay for cybersecurity risk management in Silver Spring, MD is $137,453.00, according to ZipRecruiter salary data. Most workers in this role earn between $114,700.00 and $155,100.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.
What are popular job titles related to Cybersecurity Risk Management jobs in Silver Spring, MD? For Cybersecurity Risk Management jobs in Silver Spring, MD, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management jobs in Silver Spring, MD look for? The top searched job categories for Cybersecurity Risk Management jobs in Silver Spring, MD are:
What cities near Silver Spring, MD are hiring for Cybersecurity Risk Management jobs? Cities near Silver Spring, MD with the most Cybersecurity Risk Management job openings:
Infographic showing various Cybersecurity Risk Management job openings in Silver Spring, MD as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 13% Part Time, and 3% Contract. Highlights an 87% Physical, 3% Hybrid, and 10% Remote job distribution, with an average salary of $137,453 per year, or $66.1 per hour.

Senior Cybersecurity Engineer

PEMCCO, Inc.

Washington, DC

$63.96 - $105.54/hr

Full-time

Medical, Dental, Vision, PTO

Posted 18 days ago


Job description

Pay: $63.96-$105.54 hourly, depending on experience

Benefits: Medical, Dental, Vision, Paid Time Off, Paid Holidays, Employee Assistance Program, and other company-sponsored benefits
Security Clearance: Ability to obtain and maintain a government security clearance if required

Are you a cybersecurity professional who enjoys protecting critical systems, leading security initiatives, and solving complex security challenges in mission-driven environments?


PEMCCO is seeking a Senior Cybersecurity Engineer to design, implement, assess, and maintain cybersecurity capabilities that protect government information systems, networks, applications, and data. This role is ideal for a seasoned cybersecurity professional who enjoys security engineering, risk management, compliance, vulnerability management, and strengthening organizational security posture.

This opportunity is a strong fit for candidates with experience in cybersecurity engineering, information assurance, information security, system security, risk management, RMF, A&A, security architecture, vulnerability management, or incident response.

About PEMCCO

PEMCCO supports complex technical and operational programs by providing skilled professionals who help customers achieve mission success. We offer opportunities to work on impactful projects, collaborate with experienced teams, and contribute to innovative solutions that support critical government operations.

Job Overview

As a Senior Cybersecurity Engineer, you will serve as a senior cybersecurity professional responsible for protecting mission-critical systems and supporting organizational security objectives. You will lead cybersecurity engineering initiatives, assess security risks, develop mitigation strategies, support compliance efforts, and work closely with stakeholders to ensure cybersecurity requirements are integrated throughout the system lifecycle.

This position offers the opportunity to work on complex security challenges while helping organizations maintain resilient, compliant, and secure environments.

What You'll Do

  • Design, implement, and maintain cybersecurity solutions for information systems, networks, and applications
  • Lead cybersecurity engineering efforts supporting system development, modernization, and sustainment activities
  • Conduct cybersecurity risk assessments, vulnerability analyses, and security control evaluations
  • Develop and implement mitigation strategies for identified vulnerabilities and security findings
  • Support Risk Management Framework (RMF) and Assessment & Authorization (A&A) activities
  • Review system architectures, designs, and configurations to ensure compliance with cybersecurity requirements
  • Develop and maintain cybersecurity documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action & Milestones (POA&Ms)
  • Support continuous monitoring activities and evaluate the effectiveness of implemented security controls
  • Investigate cybersecurity incidents, analyze impacts, and support remediation efforts
  • Coordinate with engineers, system administrators, developers, and government stakeholders to integrate cybersecurity requirements throughout the system lifecycle
  • Evaluate emerging threats, technologies, and security best practices and recommend improvements
  • Prepare technical reports, briefings, and recommendations for leadership and customer representatives
  • Provide technical guidance and mentorship to junior cybersecurity personnel

What You Bring

Required Qualifications

  • Master's degree in Cybersecurity, Computer Engineering, Electrical Engineering, Computer Science, Mathematics, or a related field
  • Ten (10) years of experience in cybersecurity, information assurance, information security, cybersecurity engineering, system security, or a related field
  • Advanced knowledge of cybersecurity principles, technologies, and best practices
  • Knowledge of Risk Management Framework (RMF), NIST standards, and DoD cybersecurity requirements
  • Knowledge of security architecture, security engineering, and system security concepts
  • Ability to assess cybersecurity risks and develop effective mitigation strategies
  • Ability to interpret and apply cybersecurity policies, regulations, and standards
  • Strong analytical, organizational, and problem-solving skills
  • Experience investigating security events and identifying root causes
  • Strong written and verbal communication skills
  • Ability to communicate effectively with both technical and non-technical audiences
  • Ability to lead technical efforts and mentor team members
  • Ability to prepare and review technical documentation, reports, and security artifacts
  • Ability to obtain and maintain a government security clearance if required
  • Must meet applicable DoD 8140 workforce qualification requirements if required by contract

Preferred Experience

  • Advanced cybersecurity training or specialized coursework in security engineering, risk management, or cybersecurity operations
  • Experience supporting Department of Defense or Federal Government programs
  • Experience leading RMF and A&A efforts
  • Experience supporting security control assessments and continuous monitoring activities
  • Experience in cybersecurity architecture, vulnerability management, or incident response
  • Experience mentoring cybersecurity professionals and supporting team development

Why Join PEMCCO?

  • Support critical government and customer missions through advanced cybersecurity efforts
  • Lead initiatives that help protect systems, networks, applications, and sensitive information
  • Work alongside experienced cybersecurity, engineering, and IT professionals
  • Gain exposure to complex security environments and emerging cybersecurity technologies
  • Contribute to security modernization, risk management, and compliance programs
  • Expand your expertise across multiple cybersecurity disciplines
  • Build a rewarding career in a collaborative and mission-focused environment

Work Environment

  • Professional office and technical work environments
  • Work may be performed at company facilities, customer locations, or designated project sites as needed
  • Regular use of computers, cybersecurity tools, and communication systems
  • Frequent collaboration with cybersecurity professionals, engineers, administrators, customers, and stakeholders

Benefits

  • Medical Insurance
  • Dental Insurance
  • Vision Insurance
  • Paid Time Off
  • Paid Holidays
  • Employee Assistance Program
  • Additional company-sponsored benefits

Apply Today

If you're an experienced cybersecurity professional looking to lead security initiatives, solve complex security challenges, and help protect mission-critical systems, we encourage you to apply.

Join PEMCCO and help strengthen the cybersecurity capabilities that protect the systems, networks, and information supporting mission success.

Equal Opportunity Employer

PEMCCO, Inc. is an equal opportunity employer. The Company does not discriminate on the basis of race, color, sex, sexual orientation, gender identity or expression, religion, national origin, age, disability, genetic information, military or veteran status, pregnancy, childbirth and related medical conditions, or any other characteristic protected by applicable federal, state, or local law.