1

It Risk Manager Jobs in Washington (NOW HIRING)

Risk Manager Location: Washington, DC Metropolitan Area (Onsite) Employment Type: Full-Time ... Support initiatives related to cyber operations, IT infrastructure, cloud services, and mission ...

Risk Manager

Rockville, MD · On-site

$155K - $165K/yr

The Cybersecurity Risk Manager will work directly with the Cybersecurity Program Manager and the ... The Contractor shall comply with all agency IT security and Privacy policies and standards ...

CVP is seeking an Cybersecurity Risk Manager for a large government agency enterprise-level ... The Contractor shall comply with all agency IT security and Privacy policies and standards ...

Title: IT Audit Manager KBR is seeking an experienced IT Audit Manager to join the Internal Audit ... Develop and maintain risk-based testing strategies and audit plans covering IT General Controls ...

Risk Manager

Mclean, VA · On-site

$55 - $60/hr

Bachelor's degree in Information Technology or Risk Management (or equivalent professional qualification), Master's Degree desirable

## Manager, Cyber Risk & AnalysisApplylocations: McLean, VA: Richmond, VAtime type: Full timeposted on ... Cybersecurity and technology risk certifications such as Certified Information Systems Security ...

Title: IT Audit Manager KBR is seeking an experienced IT Audit Manager to join the Internal Audit ... Develop and maintain risk-based testing strategies and audit plans covering IT General Controls ...

Manager, Cyber Risk & Analysis As a Manager, you will apply your technical expertise, risk ... Cybersecurity and technology risk certifications such as Certified Information Systems Security ...

Title: IT Audit Manager KBR is seeking an experienced IT Audit Manager to join the Internal Audit ... Develop and maintain risk-based testing strategies and audit plans covering IT General Controls ...

Principal Risk Specialist

Mclean, VA · On-site

$121 - $138/hr

At least 3 years of Information Systems Risk Management, IT Audit, or IT Compliance Experience Preferred Qualifications * 4+ years of Information Systems Risk Management, IT Audit, or IT Compliance ...

New

Principal Risk Specialist

Mclean, VA · On-site

$99K/yr

At least 3 years of Information Systems Risk Management, IT Audit, or IT Compliance Experience Preferred Qualifications: * 4+ years of Information Systems Risk Management, IT Audit, or IT Compliance ...

Manager, Cyber Risk & Analysis As a Manager, you will apply your technical expertise, risk ... Cybersecurity and technology risk certifications such as Certified Information Systems Security ...

Showing results 21-40

It Risk Manager information

See Washington salary details

$58.3K

$126.3K

$192.5K

How much do it risk manager jobs pay per year?

As of Sep 5, 2026, the average yearly pay for it risk manager in Washington is $126,348.00, according to ZipRecruiter salary data. Most workers in this role earn between $101,900.00 and $146,100.00 per year, depending on experience, location, and employer.

What does an IT Risk Manager do?

An IT Risk Manager is responsible for identifying, assessing, and mitigating risks that could impact an organization's information technology systems and data. They develop and implement risk management strategies, policies, and procedures to protect against cybersecurity threats, data breaches, and compliance violations. IT Risk Managers also work closely with other departments to ensure security best practices are followed and often lead risk assessments, audits, and incident response planning.

What are some common challenges faced by IT Risk Managers when implementing risk mitigation strategies across different departments?

IT Risk Managers often encounter challenges such as varying levels of risk awareness among departments, resistance to new controls or procedures, and balancing business objectives with security requirements. Successful risk mitigation requires clear communication, stakeholder buy-in, and tailored training to ensure all teams understand the importance of compliance. Building strong relationships and fostering a culture of shared responsibility are key to overcoming these hurdles and ensuring effective risk management across the organization.

What are the key skills and qualifications needed to thrive as an IT Risk Manager, and why are they important?

To thrive as an IT Risk Manager, you need a solid understanding of risk assessment, information security, and compliance frameworks, often backed by a bachelor's degree in information technology or related fields. Familiarity with tools such as risk management software, GRC platforms, and certifications like CISSP, CISM, or CRISC is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are crucial soft skills in this role. These skills ensure effective identification, mitigation, and communication of IT risks, supporting organizational resilience and compliance.

What is the difference between It Risk Manager vs Cybersecurity Analyst?

AspectIt Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCISSP, Security+, CEH
Work EnvironmentOversees risk management strategies across IT systemsMonitors and responds to security threats and incidents
Industry UsageUsed in organizations with complex IT infrastructuresCommon in security-focused roles across industries

The It Risk Manager focuses on identifying and managing IT risks at an organizational level, ensuring compliance and risk mitigation strategies. In contrast, a Cybersecurity Analyst primarily monitors security threats and responds to incidents. While both roles require similar certifications and work within the IT security domain, the It Risk Manager has a broader scope related to risk management policies, whereas the Cybersecurity Analyst concentrates on threat detection and response.

What are popular job titles related to It Risk Manager jobs in Washington?

For It Risk Manager jobs in Washington, the most frequently searched job titles are:

What job categories do people searching It Risk Manager jobs in Washington look for?

The top searched job categories for It Risk Manager jobs in Washington are:

What cities in Washington are hiring for It Risk Manager jobs?

Cities in Washington with the most It Risk Manager job openings:

Infographic showing various It Risk Manager job openings in Washington as of August 2026, with employment types broken down into 84% Full Time, 9% Part Time, 2% Temporary, and 5% Contract. Highlights an 77% Physical, 2% Hybrid, and 21% Remote job distribution, with an average salary of $126,348 per year, or $60.7 per hour.

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 14 days ago


Job description

Job Title: Risk Manager
Location: Washington, DC Metropolitan Area (Onsite)
Employment Type: Full-Time
Clearance: ActiveTS or Q level clearance is required
Who We Are
Management Solutions, LLC (MSLLC) is an award-winning management consulting firm delivering solutions for our partners' most complex challenges. Since 2002, we have supported federal and commercial clients through expertise in project and program strategy, delivery and implementation, engineering and technical advisory services, workforce solutions, and digital solutions.
We are distinguished by our reputation for managing mission-critical projects and helping organizations improve performance through innovative, people-centered solutions. MSLLC has been recognized as Small Business of the Year by the U.S. Small Business Administration, the Department of Energy, and Oak Ridge National Laboratory and has been named one of the Top Employers in the Greater Knoxville area.
Why Join Our Team
At Management Solutions, we believe our people are the foundation of our success. We are committed to fostering a collaborative and caring culture where employees feel valued, supported, and empowered to grow. We seek professionals who think critically, solve complex problems, and are dedicated to building and sustaining a high-performing, people-centered organization.
Job Summary
Management Solutions is seeking a Risk Manager to support delivery of mission-critical services within a federal IT and cybersecurity environment. This role is client-facing and supports program leadership in identifying, assessing, monitoring, and mitigating risks associated with large, complex federal initiatives involving cyber operations, IT modernization, and mission systems.
The Risk Manager provides subject matter expertise in enterprise risk management, program risk governance, and strategic planning to help the organization meet mission-critical objectives. This role includes establishing and maintaining risk management processes, facilitating risk-informed decision-making, and supporting program execution in a highly regulated federal environment. The position requires strong analytical skills, technical knowledge, leadership capability, and the ability to engage effectively with senior government stakeholders, including Intelligence Community organizations.
This position is required to be performed onsite within the Washington, DC metropolitan area.
Key Responsibilities:
Risk Management & Client Delivery
  • Serve as the Risk Manager supporting delivery of consulting services within a federal IT and cybersecurity environment.
  • Provide subject matter expertise in enterprise risk management, operational risk, cyber risk, and program risk management.
  • Develop, maintain, and execute comprehensive risk management strategies aligned with program objectives and contractual requirements.
  • Facilitate identification, assessment, prioritization, and mitigation of risks impacting mission-critical operations.
  • Support government leadership in implementing risk-informed decision-making processes.
  • Ensure risk management activities align with client strategic goals and federal mission requirements.
  • Maintain consistent billable utilization aligned with organizational and contract expectations.
  • Represent the organization professionally in all client engagements.

Risk Governance & Program Execution
  • Establish and maintain risk management frameworks, methodologies, and governance processes.
  • Lead risk identification and assessment activities across technical, operational, cybersecurity, financial, and organizational domains.
  • Develop and maintain risk registers, risk dashboards, and mitigation plans.
  • Facilitate recurring risk review boards, governance meetings, and stakeholder working groups.
  • Coordinate with project and program leadership to ensure risks are appropriately managed throughout the program lifecycle.
  • Monitor emerging threats, vulnerabilities, and operational impacts that could affect program execution.
  • Support integration of risk management activities into project planning, scheduling, and execution processes.
  • Ensure risk documentation is maintained and aligned with federal requirements and organizational standards.

Governance, Risk & Reporting
  • Track and report risk status, mitigation effectiveness, and risk trends across the program.
  • Develop executive-level risk briefings, dashboards, metrics, and reporting artifacts.
  • Provide periodic risk assessments and strategic recommendations to senior government leadership.
  • Conduct qualitative and quantitative risk analyses to support program decision-making.
  • Maintain risk governance processes and associated documentation.
  • Support audits, inspections, assessments, and compliance reviews related to risk management activities.
  • Ensure traceability of risks, mitigation actions, decisions, and residual risk acceptance.
  • Support initiatives related to cyber operations, IT infrastructure, cloud services, and mission systems.
  • Coordinate with cybersecurity, engineering, and operational stakeholders to identify and mitigate technology-related risks.
  • Ensure risks associated with cybersecurity, information assurance, and compliance requirements are appropriately assessed and managed.
  • Support risk management activities related to federal cybersecurity frameworks and federal requirements.
  • Evaluate impacts of emerging cyber threats and vulnerabilities on mission operations.
  • Translate complex cyber and technical risks into actionable insights for non-technical stakeholders and executive leadership.
  • Support risk assessments involving classified environments and sensitive mission systems.

Stakeholder Engagement & Communication
  • Interface with senior government leadership, stakeholders, and clients to support risk-informed decision-making.
  • Facilitate risk working groups, executive briefings, and governance meetings.
  • Present risk assessments, mitigation strategies, and recommendations to leadership audiences.
  • Coordinate across multiple organizations to ensure risk visibility and accountability.
  • Support high-visibility communications and executive engagements involving program risk posture.
  • Foster collaboration between technical, operational, and leadership stakeholders to address complex risk challenges.

Required Qualifications
  • Minimum of 10 years of relevant professional experience in risk management, program management, cybersecurity, enterprise governance, or related disciplines within federal environments.
  • Bachelor's degree from an accredited university in a relevant field.
  • A postgraduate degree in a related field may substitute for up to 6 years of required experience.
  • Demonstrated expertise in enterprise risk management, governance, risk assessment methodologies, and federal program execution.
  • Experience developing and managing risk management frameworks, risk registers, mitigation strategies, and executive reporting.
  • Strong understanding of cybersecurity, IT operations, cloud technologies, and federal mission environments.
  • Experience supporting federal agencies.
  • Demonstrated ability to brief senior government leadership and facilitate executive-level decision-making.
  • Proven ability to coordinate across multiple stakeholders in complex operational and technical environments.
  • Strong analytical, organizational, and communication skills.
  • Ability to operate independently within a complex program structure.
  • Hold a Q clearance or TS/SCI clearance.
  • Ability to work onsite within the Washington, DC metropolitan area.

Preferred Qualifications
  • Certified Risk Management Professional (PMI-RMP), Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Security Professional (CISSP), Project Management Professional (PMP), or equivalent certification.
  • Experience or familiarity with Intelligence Community directives, governance structures, and mission environments.
  • Experience supporting federal cybersecurity programs, security operations, or enterprise IT modernization initiatives.
  • Knowledge of federal governance and risk frameworks, including NIST Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), FISMA, FedRAMP, and related standards.
  • Experience conducting cyber risk assessments and supporting Authority to Operate (ATO) processes.
  • Prior experience in a consulting or professional services environment.
  • Possession of an active Top Secret/SCI or Q clearance is required.

Work Authorization: U.S. Citizenship required due to federal contract requirements.
Working Conditions: This position is primarily performed in an office environment or a home office setting. Employees will be required to use a computer and other office equipment for extended periods.
What We Offer:
Management Solutions offers a comprehensive benefits package including: Medical, Rx, Dental and Vision Insurance, company paid short-term disability and life insurance, 401k plan with up to a 5% match with immediate vesting, Flexible Spending Accounts, PTO, paid holidays, and more!
Management Solutions is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. We encourage applications from individuals of all backgrounds and experiences.
Disclaimer:
This job description is intended to convey information essential to understanding the scope of the position and is not a complete list of skills, efforts, duties, responsibilities or working conditions associated with it.
Management Solutions LLC is an Equal Employment Opportunity (EEO) employer. It is the policy of the Company to provide equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.