1

Information Security Manager Jobs in Silver Spring, MD

Manage and oversee the security posture of all information systems. Implement and enforce security policies, procedures, and best practices to ensure system integrity and confidentiality. * Lead the ...

IT Security Manager

Washington, DC · On-site +1

$120K - $132K/yr

IT Security Manager Work Location: Washington, DC (3 days onsite/2 days remote) Clearance: DOD Top Secret clearance Status: Exempt Salary: $120,000 - $132,000 Responsibilities: * Collect and maintain ...

Manager, Information Security

Brentwood, MD · On-site

$140 - $190/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

We are seeking a Manager, Information Security to own the company's overall security posture end-to-end. This is a hands‑on, builder‑oriented role, not a purely governance or policy‑writing ...

Showing results 21-40

Information Security Manager information

See Silver Spring, MD salary details

$64.4K

$140.3K

$206.1K

How much do information security manager jobs pay per year?

As of Aug 16, 2026, the average yearly pay for information security manager in Silver Spring, MD is $140,271.00, according to ZipRecruiter salary data. Most workers in this role earn between $113,900.00 and $165,400.00 per year, depending on experience, location, and employer.

What are some common challenges information security managers face when implementing new security protocols within an organization?

Information Security Managers often encounter resistance to change from staff when introducing new security protocols, as these measures can sometimes disrupt established workflows. Balancing security requirements with business needs is also a frequent challenge, requiring negotiation and effective communication across departments. Additionally, staying ahead of constantly evolving threats and ensuring that all team members are properly trained can be demanding, but overcoming these challenges is crucial for maintaining a robust security posture.

What is the difference between Information Security Manager vs Security Analyst?

AspectInformation Security ManagerSecurity Analyst
CertificationsCISSP, CISM, CISACompTIA Security+, GIAC Security Essentials
Work EnvironmentOversees security policies, manages teams, strategic planningMonitors security systems, analyzes threats, implements security measures
Employer & Industry UsageUsed in organizations with dedicated security teams across industriesCommon in IT departments, security operations centers

The main difference is that the Information Security Manager focuses on strategic security management and team leadership, while the Security Analyst handles day-to-day security monitoring and threat analysis. Both roles require relevant certifications and are vital in maintaining organizational security, but they differ in scope and responsibilities.

What does an information security manager do?

An Information Security Manager is responsible for overseeing an organization's information security program, ensuring that sensitive data is protected from threats such as cyberattacks and unauthorized access. They develop and implement security policies, conduct risk assessments, and manage teams to respond to security incidents. Information Security Managers also ensure compliance with relevant laws and regulations and regularly educate staff on best security practices. Their role is critical in maintaining the confidentiality, integrity, and availability of information assets.

What is an information security manager?

The job duties of an information security manager involve overseeing the effort to protect networks, computers, and data from cyber attacks, viruses, and other security breaches. In this career, your responsibilities include creating IT security features that can protect your company’s data. In addition to building systems to protect against hacking, you must also be ready to lead the response when a security breach occurs. As an information security manager, you are responsible for creating and implementing practices and policies that employees can use to protect their employer's networks and data.

What are the most commonly searched types of Information Security jobs in Silver Spring, MD?

The most popular types of Information Security jobs in Silver Spring, MD are:

What are popular job titles related to Information Security Manager jobs in Silver Spring, MD?

For Information Security Manager jobs in Silver Spring, MD, the most frequently searched job titles are:

What job categories do people searching Information Security Manager jobs in Silver Spring, MD look for?

The top searched job categories for Information Security Manager jobs in Silver Spring, MD are:

What cities near Silver Spring, MD are hiring for Information Security Manager jobs?

Cities near Silver Spring, MD with the most Information Security Manager job openings:

Infographic showing various Information Security Manager job openings in Silver Spring, MD as of August 2026, with employment types broken down into 1% As Needed, 70% Full Time, 27% Part Time, and 2% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $140,701 per year, or $67.6 per hour.

Information Systems Security Manager - Advanced with Security Clearance

Rividium, Inc

Springfield, VA • On-site

Other

Re-posted 16 days ago


Job description

Title Information Systems Security Manager - Advanced Full-Time/Part-Time Full-Time Description RiVidium Inc. is seeking an individual to be responsible for the cybersecurity of a program, organization, system, or enclave. Responsibilites and abilities for this position shall include, but not limited to: * Acquire and manage the necessary resources, including leadership support, financial resources, and key security personnel, to support information technology (IT) security goals and objectives and reduce overall organizational risk. * Acquire necessary resources, including financial resources, to conduct an effective enterprise continuity of operations program. * Advise senior management (e.g., Chief Information Officer [CIO]) on risk levels and security posture. * Advise senior management (e.g., CIO) on cost/benefit analysis of information security programs, policies, processes, systems, and elements. * Advise appropriate senior leadership or Authorizing Official of changes affecting the organization's cybersecurity posture. * Collect and maintain data needed to meet system cybersecurity reporting. * Communicate the value of information technology (IT) security throughout all levels of the organization stakeholders. * Collaborate with stakeholders to establish the enterprise continuity of operations program, strategy, and mission assurance. * Ensure that security improvement actions are evaluated, validated, and implemented as required. * Ensure that cybersecurity inspections, tests, and reviews are coordinated for the network environment. * Ensure that cybersecurity requirements are integrated into the continuity planning for that system and/or organization(s). * Ensure that protection and detection capabilities are acquired or developed using the IS security engineering approach and are consistent with organization-level cybersecurity architecture. * Establish overall enterprise information security architecture (EISA) with the organization's overall security strategy. * Evaluate and approve development efforts to ensure that baseline security safeguards are appropriately installed. * Evaluate cost/benefit, economic, and risk analysis in decision-making process. * Identify alternative information security strategies to address organizational security objectives. * Identify information technology (IT) security program implications of new technologies or technology upgrades. * Interface with external organizations (e.g., public affairs, law enforcement, Command or Component Inspector General) to ensure appropriate and accurate dissemination of incident and other Computer Network Defense information. * Interpret and/or approve security requirements relative to the capabilities of new information technologies. * Interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program. * Lead and align information technology (IT) security priorities with the security strategy. * Lead and oversee information security budget, staffing, and contracting. * Manage the monitoring of information security data sources to maintain organizational situational awareness. * Manage the publishing of Computer Network Defense guidance (e.g., TCNOs, Concept of Operations, Net Analyst Reports, NTSM, MTOs) for the enterprise constituency. * Manage threat or target analysis of cyber defense information and production of threat information within the enterprise. * Monitor and evaluate the effectiveness of the enterprise's cybersecurity safeguards to ensure that they provide the intended level of protection. * Oversee the information security training and awareness program. * Participate in an information security risk assessment during the Security Assessment and Authorization process. * Participate in the development or modification of the computer environment cybersecurity program plans and requirements. * Prepare, distribute, and maintain plans, instructions, guidance, and standard operating procedures concerning the security of network system(s) operations. * Provide enterprise cybersecurity and supply chain risk management guidance for development of the Continuity of Operations Plans. * Provide leadership and direction to information technology (IT) personnel by ensuring that cybersecurity awareness, basics, literacy, and training are provided to operations personnel commensurate with their responsibilities. * Ability to apply techniques for detecting host and network-based intrusions using intrusion detection technologies. * Ability to integrate information security requirements into the acquisition process; using applicable baseline security controls as one of the sources for security requirements; ensuring a robust software quality control process; and establishing multiple sources (e.g., delivery routes, for critical system elements). * Ability to identify critical infrastructure systems with information communication technology that were designed without system security considerations.Requirements for this position shall include: * Bachelor's degree or higher from an accredited college or university (Prefer an accredited Computer Science, Cyber Security, Information Technology, Software Engineering, Information Systems, or Computer Engineering degree, or a degree in a Mathematics or Engineering field.) * CISSP-ISSMP or GSLC - IAT, IAM, or IASAE Level 3 CertificationAbout the Organization Established in 2008, RiVidium, Inc. (dba TripleCyber) is a VA-Verified SDVOSB and an SBA-Certified 8(a) company. To prepare our clients for the future, RiVidium has balanced all parts of our organization to attract the finest employees in order to 'Strive to be the missing element defining tomorrow's technology'. RiVidium keeps pace and surpasses its competitors by meeting challenges of advancements in Logistics, Human Capital, Cyber, Intelligence & Technology. EOE Statement We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law. If you need a reasonable accommodation for any part of the employment process, please contact Human Resources (HR) at . This position is currently accepting applications.