1

Federal Cybersecurity Jobs in Virginia (NOW HIRING)

Manager, Cyber Security

Reston, VA · Remote

$115K - $156K/yr

This role requires strong knowledge of federal cybersecurity requirements, practical risk management judgment, and the ability to coordinate across technical, program, operations, assessor, and ...

Manager, Cyber Security

Reston, VA · On-site

$115K - $156K/yr

This role requires strong knowledge of federal cybersecurity requirements, practical risk management judgment, and the ability to coordinate across technical, program, operations, assessor, and ...

IT Cyber Security Travel Required: Up to 10% Clearance Required: Ability to Obtain Public Trust ... This role emphasizes federal security requirements, ATO support, POA&M management, incident ...

The ideal candidate will serve as a senior technical authority, leading cybersecurity initiatives across complex environments while ensuring compliance with federal security requirements, industry ...

The ideal candidate will serve as a senior technical authority, leading cybersecurity initiatives across complex environments while ensuring compliance with federal security requirements, industry ...

The ideal candidate will serve as a senior technical authority, leading cybersecurity initiatives across complex environments while ensuring compliance with federal security requirements, industry ...

Help ensure alignment with DoD and Federal cybersecurity requirements, directives, and best practices. Required Qualifications * Eight or more years managing cybersecurity projects of similar size ...

Cloud Cybersecurity Manager (CCM)

Alexandria, VA · On-site

$118K - $160K/yr

... Federal cybersecurity requirements, directives, and best practices. Qualifications : Required : • Eight or more years managing cybersecurity projects of similar size and complexity in a cloud ...

S. Citizenship required • Experience implementing and supporting enterprise cybersecurity solutions • Experience supporting Department of Defense or Federal cybersecurity environments • ...

Cloud Cybersecurity Manager (CCM)

Alexandria, VA · On-site

$118K - $160K/yr

... Federal cybersecurity requirements, directives, and best practices. Qualifications : Required : • Eight or more years managing cybersecurity projects of similar size and complexity in a cloud ...

next page

Showing results 1-20

Federal Cybersecurity information

See Virginia salary details

$56.5K

$131.8K

$184.4K

How much do federal cybersecurity jobs pay per year?

As of Jul 27, 2026, the average yearly pay for federal cybersecurity in Virginia is $131,822.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,000.00 and $148,700.00 per year, depending on experience, location, and employer.

Can you make $500,000 a year in cyber security?

Federal cybersecurity professionals can potentially earn $500,000 or more annually, especially at senior levels, in leadership roles, or with specialized skills such as penetration testing or security architecture. Achieving this income typically requires extensive experience, advanced certifications like CISSP or CISA, and often involves working in high-demand environments or consulting roles. Such salaries are more common in senior management, executive positions, or highly specialized consulting contexts rather than entry-level roles.

What is the difference between Federal Cybersecurity vs Cybersecurity Analyst?

AspectFederal CybersecurityCybersecurity Analyst
Required CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Work EnvironmentGovernment agencies, federal facilitiesPrivate companies, organizations, government
Employer & Industry UsageFederal government, defense, intelligenceVarious industries including finance, tech, healthcare
Common Search & ComparisonYesYes

Federal Cybersecurity professionals focus on protecting government systems and data within federal agencies, often requiring security clearances. Cybersecurity Analysts work across multiple industries, analyzing security threats and implementing defenses in private and public sectors. While both roles require similar certifications and skills, their work environments and employer types differ significantly.

How much does federal cyber security pay?

Federal cybersecurity professionals typically earn between $70,000 and $130,000 annually, depending on experience, education, and security clearance level. Entry-level positions may start lower, while senior roles with specialized skills and certifications can pay significantly more.

What are the key skills and qualifications needed to thrive in Federal Cybersecurity, and why are they important?

To excel in Federal Cybersecurity, you need a strong understanding of information security principles, risk management, and federal compliance frameworks, usually supported by a relevant degree and security clearances. Familiarity with tools like SIEM systems, vulnerability scanners, and certifications such as CISSP or Security+ are typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for this role. These competencies are essential to safeguard sensitive government data, ensure regulatory compliance, and respond effectively to evolving cyber threats.

Can I make $200,000 a year in cyber security?

Federal cybersecurity professionals, especially those in senior or specialized roles such as cybersecurity managers or senior analysts, can earn $200,000 or more annually, often with experience, advanced certifications like CISSP, and working in high-demand environments. Entry-level positions typically have lower salaries, but with experience and skill development, reaching high compensation is possible.

What is federal cybersecurity?

Federal cybersecurity refers to the practices, policies, and technologies used by government agencies in the United States to protect their digital systems and sensitive information from cyber threats. This includes defending against unauthorized access, data breaches, and cyberattacks targeting federal networks and critical infrastructure. Professionals in this field work to ensure the confidentiality, integrity, and availability of government data and services, often collaborating with other agencies and private sector partners. Federal cybersecurity is vital for national security, public trust, and the effective operation of government services.

Can you work for the government in cyber security?

Yes, individuals can work for the government in cybersecurity roles such as cybersecurity analysts, engineers, or specialists. These positions often require security clearances, relevant certifications like CISSP or Security+, and adherence to government security protocols and policies.

What Are Federal Cyber Security Jobs?

Federal cyber security jobs involve providing cyber security services for the United States government or a government agency. Your responsibilities vary depending on the area in which you work. As a federal cyber security analyst, you assess current security systems, define risk levels and threats, and suggest improvements to cyber security systems. A cyber security consultant offers assessments and suggestions about how to counteract cyber crime and how to respond to a data breach or system hack. A federal cyber security program manager creates strategies and systems to protect government sites and data assets and implements these programs.

What are some common challenges faced by professionals in Federal Cybersecurity roles?

Federal Cybersecurity professionals often encounter challenges such as staying ahead of rapidly evolving cyber threats, complying with strict government regulations, and managing complex legacy systems. They must also coordinate with multiple agencies and stakeholders to ensure cohesive security strategies, which requires strong communication and collaboration skills. Additionally, balancing security needs with user accessibility and maintaining awareness of the latest federal cybersecurity frameworks are essential aspects of the role.
What are the most commonly searched types of Federal Cybersecurity jobs in Virginia? The most popular types of Federal Cybersecurity jobs in Virginia are:
What are popular job titles related to Federal Cybersecurity jobs in Virginia? For Federal Cybersecurity jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Federal Cybersecurity jobs in Virginia look for? The top searched job categories for Federal Cybersecurity jobs in Virginia are:
What cities in Virginia are hiring for Federal Cybersecurity jobs? Cities in Virginia with the most Federal Cybersecurity job openings:
Infographic showing various Federal Cybersecurity job openings in Virginia as of July 2026, with employment types broken down into 2% Locum Tenens, 87% Full Time, 8% Part Time, and 3% Contract. Highlights an 85% Physical, 5% Hybrid, and 10% Remote job distribution, with an average salary of $131,822 per year, or $63.4 per hour.
Manager, Cyber Security

Manager, Cyber Security

ICF

Reston, VA • Remote

$115K - $156K/yr

Full-time

Posted 8 days ago


Job description

This role is contingent upon a contract award.

ICF is seeking an experienced Cybersecurity Manager to lead cybersecurity governance, risk management, compliance coordination, and security integration for a complex federal technology services program. This role will be responsible for ensuring cybersecurity requirements are addressed across systems, applications, integrations, cloud services, product delivery, and operational support functions.

The ideal candidate has demonstrated experience supporting federal cybersecurity programs that require RMF alignment, assessment documentation, POA&M management, contingency planning, vulnerability coordination, cybersecurity reporting, and integration with engineering and product delivery teams. This role requires strong knowledge of federal cybersecurity requirements, practical risk management judgment, and the ability to coordinate across technical, program, operations, assessor, and client stakeholder groups.

Job Location: This position is remote within the United States.

Please note that ICF monitors employee work locations, restricts access from foreign locations and IP addresses, and prohibits the use of personal VPN connections.

What You'll Be Doing
  • Lead cybersecurity governance and RMF coordination across a complex federal technology services environment.
  • Develop, maintain, and coordinate cybersecurity assessment documentation, including FIPS 199 analyses, E-Authentication Risk Assessments, security control implementation statements, and supporting control artifacts.
  • Support system teams, product teams, security assessors, and client stakeholders in preparing and maintaining cybersecurity evidence and compliance documentation.
  • Evaluate cybersecurity risks associated with new capabilities, including applications, integrations, plug-ins, software tools, system connections, and platform changes.
  • Track system security deficiencies, remediation activities, and Plans of Action and Milestones through closure.
  • Lead or support development, maintenance, and testing of contingency plans for systems and services within program scope.
  • Develop and maintain cybersecurity governance standard operating procedures, workflows, templates, and reporting mechanisms.
  • Coordinate cybersecurity inputs into engineering, product delivery, architecture, DevSecOps, cloud, data, and service operations activities.
  • Support vulnerability management, incident response coordination, risk reviews, control evidence collection, and security-related data calls.
  • Partner with service operations, identity, device, network, platform, and application teams to ensure cybersecurity responsibilities are clear and evidence is maintained.
  • Monitor cybersecurity risks, issues, dependencies, and compliance gaps, and escalate items requiring leadership attention.
  • Translate cybersecurity requirements and risks into practical guidance for technical teams, program leadership, and client stakeholders.
What You Must Have
  • Bachelor's Degree
  • U.S. Citizenship required due to federal contract requirements.
  • Must be able to obtain and maintain a Federal Public Trust clearance.
  • 10+ years of experience supporting cybersecurity, information assurance, security governance, risk management, compliance, or RMF activities in federal or regulated environments.
  • Active CISSP, CISM, CAP, Security+, GSEC, or equivalent cybersecurity certification.
Preferred Qualifications
  • 7+ years of experience supporting federal cybersecurity requirements, including FISMA, NIST 800-53, RMF, POA&M management, system assessment, or authorization activities.
  • 5+ years of experience developing or maintaining cybersecurity assessment documentation, control implementation statements, security plans, contingency plans, risk assessments, or security artifacts.
  • 5+ years of experience coordinating with system owners, security assessors, engineering teams, product teams, operations teams, or federal cybersecurity stakeholders.
  • 5+ years of experience supporting vulnerability management, incident response coordination, remediation tracking, control evidence collection, or cybersecurity reporting.
  • 3+ years of experience evaluating cybersecurity risks for new technologies, applications, integrations, SaaS platforms, cloud services, or system connections.
  • 3+ years of experience supporting cybersecurity governance for cloud, SaaS, application modernization, DevSecOps, data, or enterprise platform environments.
  • Experience supporting HHS, NIH, FDA, CMS, CDC, or other health-focused federal environments.
  • Experience with Zero Trust, identity and access management, endpoint security, secure cloud architecture, secure SaaS governance, TIC 3.0, or continuous monitoring.
  • Experience integrating cybersecurity requirements into Agile, DevSecOps, CI/CD, product delivery, and application modernization workflows.
  • Experience supporting ATO packages, security assessment activities, security control validation, audit responses, and independent verification or validation reviews.
  • Experience with cybersecurity tools and repositories used for POA&M tracking, vulnerability management, audit evidence, incident coordination, SIEM/SOAR, or continuous monitoring.
  • Experience aligning cybersecurity activities with NIST 800-53 Rev. 5, NIST 800-37, NIST 800-61, NIST 800-34, FedRAMP, FISMA, CISA guidance, or HHS security policy.
  • Experience developing cybersecurity dashboards, executive risk reporting, compliance scorecards, and metrics-based security governance materials.
  • Additional cybersecurity, cloud security, Agile, ITIL, AWS, Azure, Google Cloud, or project management certification.

Working at ICF

ICF is a global advisory and technology services provider, but we're not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.

We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer.Together, our employees are empowered to share theirexpertiseand collaborate with others to achieve personal and professional goals. For more information, please read ourEEOpolicy.

We will consider for employment qualified applicants with arrest and conviction records.

Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals withsincerely heldreligious beliefs, in all phases of the application and employment process. To requestan accommodation,please emailCandidateaccommodation@icf.comand we will be happy toassist. All information you provide will be kept confidential and will be used only to the extentrequiredto provide needed reasonable accommodations.

Read more aboutworkplacediscriminationrightsor our benefit offerings which are included in theTransparency in (Benefits) CoverageAct.

Candidate AI Usage Policy

At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate orassistwith responses during interviews (whether in-person or virtual) is notpermitted. This policy is in place tomaintainthe integrity and authenticity of the interview process.

However, we understand that some candidates may require accommodationthat involves the use of AI. Ifsuch anaccommodation is needed, candidates are instructed to contact us in advance atcandidateaccommodation@icf.com. Weare dedicated to providingthe necessary support to ensure that all candidates have an equal opportunity to succeed.


Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is:

$158,819.00 - $269,993.00Nationwide Remote Office (US99)