1

Cybersecurity Risk Management Jobs in Silver Spring, MD

Identify, analyze, and document cybersecurity risks across FAA systems and modernization initiatives. * Support Risk Management Framework (RMF) activities, including risk assessments, control ...

Identify, analyze, and document cybersecurity risks across FAA systems and modernization initiatives. * Support Risk Management Framework (RMF) activities, including risk assessments, control ...

About the Team We are seeking a highly skilled Principal cybersecurity engineer to architect the development of our internal suite of Cybersecurity Risk Management and Automation tools. This role ...

This support includes, but is not limited to, cybersecurity solutions (including network, operating ... Experience leading risk management efforts to achieve and maintain authorization for systems using ...

Risk Management Lead

Fort Belvoir, VA · On-site

$131K - $237K/yr

This support includes, but is not limited to, cybersecurity solutions (including network, operating ... Experience leading risk management efforts to achieve and maintain authorization for systems using ...

next page

Showing results 1-20

Cybersecurity Risk Management information

See Silver Spring, MD salary details

$58.9K

$137.5K

$192.3K

How much do cybersecurity risk management jobs pay per year?

As of Jun 24, 2026, the average yearly pay for cybersecurity risk management in Silver Spring, MD is $137,453.00, according to ZipRecruiter salary data. Most workers in this role earn between $114,700.00 and $155,100.00 per year, depending on experience, location, and employer.

What is the role of a risk manager in cybersecurity?

A cybersecurity risk manager identifies, assesses, and prioritizes security risks to an organization’s information systems. They develop strategies to mitigate threats, implement security controls, and ensure compliance with industry standards, often using tools like risk assessment frameworks and security audits. Their role is essential in protecting digital assets and supporting overall cybersecurity posture.

Is security risk management a good career?

Security risk management is a valuable career in cybersecurity, focusing on identifying and mitigating threats to organizational assets. It often requires knowledge of security frameworks, risk assessment tools, and certifications like CISSP or CISM. The field offers strong job growth, competitive salaries, and opportunities across various industries.

What are some common challenges faced by professionals in Cybersecurity Risk Management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive in Cybersecurity Risk Management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What is risk management in cyber security?

In cybersecurity risk management, professionals identify, assess, and prioritize potential security threats to an organization’s information systems. They implement strategies and controls to mitigate or accept risks, often using frameworks like NIST or ISO 27001, and may hold certifications such as CISSP or CISM to ensure effective risk handling.

Can you make $500,000 a year in cyber security?

Cybersecurity risk management professionals can potentially earn $500,000 or more annually, especially at senior levels, in leadership roles, or with extensive experience and specialized certifications like CISSP or CISM. High salaries are often associated with executive positions, consulting, or working in large organizations with complex security needs.
What are popular job titles related to Cybersecurity Risk Management jobs in Silver Spring, MD? For Cybersecurity Risk Management jobs in Silver Spring, MD, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Risk Management jobs in Silver Spring, MD look for? The top searched job categories for Cybersecurity Risk Management jobs in Silver Spring, MD are:
What cities near Silver Spring, MD are hiring for Cybersecurity Risk Management jobs? Cities near Silver Spring, MD with the most Cybersecurity Risk Management job openings:
Cyber Risk Analyst

Cyber Risk Analyst

Peraton

Chantilly, VA • On-site

Full-time

Posted 9 days ago


Peraton rating

8.2

Company rating: 8.2 out of 10

Based on 53 frontline employees who took The Breakroom Quiz

45th of 204 rated it services


Job description

Responsibilities

oin Peraton in advancing the safety, efficiency, and modernization of the National Airspace System (NAS) through the FAA's Brand New Air Traffic Control System (BNATCS) contract. As a trusted partner to the Federal Aviation Administration, Peraton helps deliver the systems and services that keep our nation's skies safe and connected. We're looking for innovative professionals who thrive in mission-critical environments and are passionate about shaping the future of air traffic management. This is your chance to make an impact on one of the world's most vital transportation infrastructures, working alongside leaders in aviation, engineering, data science, and systems integration.

At Peraton, you won't just support the mission - you'll define it.

Help protect the systems that keep U.S. airspace safe, resilient, and trusted. We are seeking a Cyber Risk Analyst to support cybersecurity risk identification, assessment, and mitigation across modernization initiatives aligned with the Federal Aviation Administration (FAA).  This is an ideal role for a cybersecurity professional who thrives at the intersection of risk analysis, compliance, and mission impact.

Work Location:

  • This position is 100% on-site, primarily located in Chantilly, VA, with an alternate work location available in Bowie, MD. Candidates must be able to work on-site at one of these locations based on program requirements.
Your Impact:

In this role, you will be at the center of cybersecurity decision-making-analyzing risk, advising leadership, and ensuring emerging technologies are deployed securely and responsibly. You'll work across engineering, operations, and compliance teams to translate technical vulnerabilities into clear, actionable risk insights that shape how aviation systems are protected.

  • Identify, analyze, and document cybersecurity risks across FAA systems and modernization initiatives.

  • Support Risk Management Framework (RMF) activities, including risk assessments, control validation, and mitigation planning.

  • Evaluate system compliance with NIST standards, FISMA, FedRAMP, and FAA cybersecurity requirements.

  • Conduct risk assessments, gap analyses, and threat evaluations for new and existing systems.

  • Translate technical findings into clear risk statements and executive-level recommendations.

  • Support system authorization (ATO), continuous monitoring, and audit readiness activities.

  • Collaborate with system owners, ISSOs, architects, and engineers to track and reduce cybersecurity risk.

  • Monitor remediation efforts and validate closure of cybersecurity findings.

  • Support development and maintenance of risk registers, POA&Ms, and compliance artifacts.

  • Prepare reports, dashboards, and briefings for FAA leadership and program stakeholders.

  • Ability to clearly communicate cyber risk to both technical and non-technical audiences.
Why This Role Matters

Cyber risk management is essential to maintaining trust in the National Airspace System. As a Cyber Risk Analyst, you help ensure that new technologies are introduced responsibly, vulnerabilities are addressed proactively, and leadership has the insight needed to make informed decisions. Your work directly supports the FAA's mission to protect national infrastructure, reduce cyber risk, and maintain the safest and most reliable aviation system in the world. This role is not just about compliance-it's about enabling secure innovation at a national scale.

Qualifications

Basic Qualifications:

  • U.S. Citizenship Required.
  • Must have the ability to obtain / maintain a Public Trust clearance.
  • Bachelor's degree and 5 years experience or Masters degree and 3 years experience or Associate's degree and 7 years experience or HS diploma/equivalent and 9 years experience. 
  • Demonstrated experience supporting cyber risk management or compliance in federal or regulated environments
  • Strong knowledge of NIST 800-53, NIST RMF, FISMA, and cybersecurity risk methodologies
  • Experience supporting system authorization, POA&M management, and continuous monitoring
  • Demonstrated experience supporting security control assessments, risk scoring, and mitigation tracking for enterprise systems.
  • Familiarity with incident response coordination.
Preferred Qualifications
  • Experience supporting FAA, DOT, or other federal aviation systems.
  • Familiarity with aviation systems, critical infrastructure, or safety-critical environments.

  • Experience with FedRAMP cloud environments and shared responsibility models.

  • Knowledge of Zero Trust principles and risk-based security architectures.

  • Industry certifications such as CISSP, CISM, CRISC, or Security+.

  • Experience using GRC tools or risk tracking platforms.

  • Familiarity with NextGen FAA modernization efforts.

#BNATC

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range$86,000 - $138,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Employment Type: FULL_TIME

What Peraton employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Peraton logo

About Peraton

Sourced by ZipRecruiter

At Peraton, we re at the forefront of delivering the next big thing every day. We re the partner of choice to help solve some of the world s most daunting challenges, delivering bold, new solutions to keep people around the world safer and more secure.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Herndon, VA, US

Year founded

2017