1

Executive Cybersecurity Policy Jobs (NOW HIRING)

Cybersecurity Policy Lead Location: Washington, DC Clearance: Secret Duties and Responsibilities ... Executive Orders (EOs), OMB memos, Public Law (PL), DHS directives such as Binding Operational ...

Cybersecurity Policy Writer & Governance Lead Description - Job Summary We are seeking a strategic ... This role requires strong cross-functional collaboration, executive communication skills, and a ...

Cybersecurity Policy Writer & Governance Lead Description - Job Summary We are seeking a strategic ... This role requires strong cross-functional collaboration, executive communication skills, and a ...

next page

Showing results 1-20

Executive Cybersecurity Policy information

See salary details

$26.5K

$93.6K

$184K

How much do executive cybersecurity policy jobs pay per year?

As of Jul 27, 2026, the average yearly pay for executive cybersecurity policy in the United States is $93,552.00, according to ZipRecruiter salary data. Most workers in this role earn between $58,000.00 and $120,500.00 per year, depending on experience, location, and employer.

What is the difference between Executive Cybersecurity Policy vs Cybersecurity Analyst?

AspectExecutive Cybersecurity PolicyCybersecurity Analyst
CredentialsTypically requires executive-level certifications (CISM, CISSP), advanced degreesRequires certifications like CompTIA Security+, CISSP, or CEH
Work EnvironmentStrategic, policy development, executive meetingsTechnical, hands-on security monitoring, incident response
Employer & Industry UsageUsed by organizations to set security direction at the policy levelUsed by security teams to implement and monitor security measures

While both roles focus on cybersecurity, the Executive Cybersecurity Policy develops high-level security strategies and policies, whereas the Cybersecurity Analyst executes technical security tasks and monitors systems. The former is more strategic and policy-oriented, while the latter is hands-on and technical.

What are the key skills and qualifications needed to thrive as an Executive in Cybersecurity Policy, and why are they important?

To thrive as an Executive in Cybersecurity Policy, you need a deep understanding of cybersecurity frameworks, risk management, and regulatory compliance, often supported by a relevant degree and certifications such as CISSP or CISM. Familiarity with tools like NIST Cybersecurity Frameworks, ISO 27001, and governance, risk, and compliance (GRC) systems is typically required. Strong leadership, strategic communication, and the ability to influence cross-functional teams are essential soft skills for this role. These skills ensure effective policy development, organizational resilience, and proactive mitigation of evolving cyber threats.

How does the Executive Cybersecurity Policy role typically collaborate with technical and non-technical stakeholders within an organization?

Professionals in Executive Cybersecurity Policy roles frequently serve as a bridge between technical cybersecurity teams and executive leadership or regulatory bodies. They translate complex security concepts into actionable policy recommendations for non-technical stakeholders, while also ensuring that technical teams understand and implement these policies effectively. Collaboration often involves leading cross-departmental meetings, aligning cybersecurity initiatives with business objectives, and managing communications during incidents. This role requires strong interpersonal skills and the ability to balance diverse perspectives to achieve comprehensive cybersecurity governance.

What is Executive Cybersecurity Policy?

Executive Cybersecurity Policy refers to the high-level strategies, guidelines, and decisions made by organizational leaders to protect digital assets and information systems. This role involves developing, implementing, and overseeing policies that address cybersecurity risks, compliance, and incident response. Executives in this field work closely with IT, legal, and business teams to ensure that cybersecurity measures align with organizational goals and regulatory requirements. Their leadership is critical in fostering a security-conscious culture and responding effectively to emerging cyber threats.
What cities are hiring for Executive Cybersecurity Policy jobs? Cities with the most Executive Cybersecurity Policy job openings:
What are the most commonly searched types of Cybersecurity Policy jobs? The most popular types of Cybersecurity Policy jobs are:
What states have the most Executive Cybersecurity Policy jobs? States with the most job openings for Executive Cybersecurity Policy jobs include:

Cybersecurity Policy Analyst

Career Listings

Columbus, OH โ€ข On-site

Full-time

Medical, Dental, Retirement, PTO

Posted 2 days ago


Job description

Benefits:
  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Health insurance
  • Paid time off
  • Profit sharing
  • Training & development
  • Tuition assistance
  • Vision insurance

SarelaTech is seeking a Cybersecurity Policy Analyst to support the Defense Logistics Agency (DLA) Enterprise Cyber Security Service Provider (CSSP). The selected candidate will provide technical expertise in the development, review, implementation, and maintenance of cybersecurity policies, procedures, and governance supporting enterprise cyber defense and Incident Response operations.
Working closely with government stakeholders, cybersecurity engineers, compliance personnel, and incident response teams, the Cybersecurity Policy Analyst will ensure cybersecurity policies, operational procedures, and documentation remain aligned with Department of Defense (DoD), Defense Logistics Agency (DLA), Risk Management Framework (RMF), and Cyber Defense requirements. This position also supports CSSP assessments, compliance reporting, cybersecurity exercises, audit readiness, and the development and delivery of cybersecurity training.
Primary Responsibilities
  • Develop, review, maintain, and update cybersecurity policies, Standard Operating Procedures (SOPs), Tactics, Techniques, and Procedures (TTPs), and operational guidance supporting DLA Enterprise Cyber Security Service Provider (CSSP) operations and Incident Response activities.
  • Ensure cybersecurity policies and documentation comply with DoD, DLA, NIST, RMF, and applicable cybersecurity directives, standards, and regulatory requirements.
  • Support CSSP assessments, inspections, audits, and compliance activities by preparing documentation, tracking metrics, compiling required artifacts, and coordinating with government stakeholders.
  • Assist DLA programs with the development and maintenance of Risk Management Framework (RMF) documentation and cybersecurity compliance packages.
  • Plan, coordinate, and support cybersecurity tabletop exercises; develop After Action Reports (AARs), lessons learned, and process improvement recommendations.
  • Develop and deliver cybersecurity training, presentations, and briefings on Incident Response policies, procedures, and compliance requirements for government personnel.
  • Prepare technical documentation, executive briefings, compliance reports, meeting minutes, and status updates to support cybersecurity governance and operational readiness.
  • Collaborate with cybersecurity operations, incident response teams, engineers, and government leadership to implement policy updates and improve enterprise cybersecurity processes.
Required Qualifications

  • Top Secret security clearance with SCI eligibility
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Assurance, or related technical discipline.
  • Seven (7) or more years of experience supporting cybersecurity policy, governance, compliance, security operations, or Incident Response programs within a DoD or Federal environment.
  • Experience developing and maintaining cybersecurity policies, SOPs, TTPs, technical documentation, or operational procedures.
  • Knowledge of DoD cybersecurity policies, Risk Management Framework (RMF), NIST guidance, and cybersecurity compliance requirements.
  • Experience supporting cybersecurity compliance activities, inspections, audits, or assessment programs.
  • Strong technical writing, documentation, analytical, and presentation skills.
  • Ability to communicate effectively with technical teams, cybersecurity leadership, and government stakeholders.
Desired Qualifications

  • Experience supporting the Defense Logistics Agency (DLA), DISA, or other DoD organizations.
  • Experience supporting Cyber Security Service Provider (CSSP) operations or assessments.
  • Knowledge of NIST SP 800-53, NIST SP 800-61, DoDI 8500.01, DoDI 8510.01 (RMF), DISA STIGs, and related cybersecurity standards.
  • Experience preparing RMF documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and other authorization artifacts.
  • Experience planning or supporting cybersecurity exercises and developing After Action Reports (AARs).
  • Experience developing and delivering cybersecurity training, briefings, or awareness materials.
  • Professional cybersecurity certifications such as Security+, CySA+, CASP+, CISSP, CISM, GSLC, or equivalent.
Preferred Skills

  • Cybersecurity policy and governance
  • Incident Response policy and procedures
  • Risk Management Framework (RMF)
  • Cybersecurity compliance and audit support
  • CSSP operations and assessment support
  • SOP and TTP development
  • Technical writing and documentation
  • Executive briefings and reporting
  • NIST and DoD cybersecurity standards
  • Microsoft Office Suite (Word, Excel, PowerPoint, Visio)
  • SharePoint and collaboration platforms