2

Remote Cybersecurity Policy Analyst Jobs (NOW HIRING)

Applicants for this job have the flexibility to work remote from home anywhere in the Continental ... policies, procedures and work instructions. * Assist in the identification, analysis, and ...

Showing results 41-60

Remote Cybersecurity Policy Analyst information

See salary details

$43K

$99.4K

$150K

How much do remote cybersecurity policy analyst jobs pay per year?

As of Sep 12, 2026, the average yearly pay for remote cybersecurity policy analyst in the United States is $99,400.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,500.00 and $115,500.00 per year, depending on experience, location, and employer.

What is the difference between Remote Cybersecurity Policy Analyst vs Remote Cybersecurity Analyst?

AspectRemote Cybersecurity Policy AnalystRemote Cybersecurity Analyst
Primary FocusDeveloping, analyzing, and implementing cybersecurity policies and compliance standardsMonitoring, detecting, and responding to security threats and vulnerabilities
Required CredentialsCertifications like CISSP, CISA, or CISM; knowledge of policies and regulationsCertifications such as CompTIA Security+, CEH; technical security skills
Work EnvironmentMostly office-based or remote, collaborating with legal and compliance teamsPrimarily technical, often remote, working with security tools and incident response teams

The Remote Cybersecurity Policy Analyst focuses on creating and managing security policies to ensure compliance, while the Remote Cybersecurity Analyst concentrates on technical threat detection and response. Both roles often require certifications like CISSP or Security+ and can be performed remotely, but their core responsibilities differ significantly.

More about Remote Cybersecurity Policy Analyst jobs

What cities are hiring for Remote Cybersecurity Policy Analyst jobs?

Cities with the most Remote Cybersecurity Policy Analyst job openings:

What are the most commonly searched types of Cybersecurity Policy Analyst jobs?

The most popular types of Cybersecurity Policy Analyst jobs are:

What states have the most Remote Cybersecurity Policy Analyst jobs?

States with the most job openings for Remote Cybersecurity Policy Analyst jobs include:

What are popular job titles related to Remote Cybersecurity Policy Analyst jobs?

For Remote Cybersecurity Policy Analyst jobs, the most frequently searched job titles are:

Infographic showing various Remote Cybersecurity Policy Analyst job openings in the United States as of September 2026, with employment types broken down into 2% As Needed, 80% Full Time, 17% Part Time, and 1% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $99,400 per year, or $47.8 per hour.

Senior Cybersecurity Analyst

Falls Church, VA โ€ข On-site, Remote

Tlingit Haida Tribal Business Corporation
Guided Missile and Space Vehicle Manufacturingย โ€ขย 1 - 5K employees

$91K - $124K/yr

Full-time

Posted 7 days ago


Job description


Job Title: Senior Cybersecurity Analyst

Work Location: Remote or hybrid remote if near CO/VA offices

Labor Category: Exempt

Clearance Level: Secret

Travel: Up to 20%

Pay Rate: $91,000 - $124,000


About the Roleย 

This role works collaboratively with IT leadership, systems administrators, business units, compliance personnel, vendors, auditors, and other stakeholders, the Senior Cybersecurity Analyst will help establish and maintain a risk-based, defense-in-depth cybersecurity program that supports organizational operations, contractual obligations, regulatory requirements, and the protection of critical information assets. The position requires a combination of strong technical cybersecurity expertise, analytical and investigative capabilities, regulatory and compliance knowledge, documentation skills, and the ability to communicate cybersecurity risk effectively to both technical and non-technical audiences.

What You'll Be Doing

  • Monitor, investigate, and respond to cybersecurity alerts, incidents, vulnerabilities, and threats across enterprise, endpoint, cloud, network, and application environments.
  • Support compliance withย NIST SP 800-171, CMMC, and applicable federal/DoD cybersecurity requirements, including protection of CUI and FCI.
  • Implement, assess, document, and continuously monitor cybersecurity controls and maintain SSPs, POA&Ms, policies, procedures, and compliance evidence.
  • Conduct cybersecurity risk assessments, vulnerability assessments, and security reviews; prioritize findings and coordinate remediation efforts.
  • Support internal and external audits, CMMC assessments, customer reviews, and other cybersecurity compliance activities.
  • Analyze security logs, alerts, and threat intelligence using tools such asย SIEM, EDR, Microsoft 365, Azure, Entra ID, firewalls, and endpoint security platforms.
  • Participate in incident response activities, including investigation, containment, remediation, recovery, documentation, and post-incident reviews.
  • Assess and improve security configurations, system hardening, patch management, endpoint protection, network security, cloud security, and data protection controls.
  • Support identity and access management, includingย MFA, Conditional Access, privileged access, least privilege, RBAC, and periodic access reviews.
  • Evaluate security posture acrossย Microsoft 365, GCC High, Azure, Entra ID, Active Directory, and other enterprise platforms.
  • Support third-party/vendor risk management, technology security reviews, change management, and cybersecurity assessments for new systems and services.
  • Develop cybersecurity metrics, dashboards, risk registers, vulnerability reports, and compliance reporting for leadership.
  • Develop and maintain cybersecurity policies, standards, procedures, incident response plans, and security documentation.
  • Support security awareness programs, phishing simulations, cybersecurity training, and organization-wide security initiatives.
  • Provide cybersecurity guidance to employees, IT teams, leadership, vendors, auditors, and assessors.
  • Stay current on emerging threats, vulnerabilities, regulations, cybersecurity frameworks, and industry best practices.
  • Serve as a senior cybersecurity resource and escalation point for complex security, risk, compliance, and incident response matters; mentor junior team members as appropriate.
  • Participate in after-hours incident response or emergency cybersecurity support as required.
  • Perform other cybersecurity, information assurance, risk management, and compliance duties as assigned.

What We're Looking For

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field; equivalent education, certifications, training, and experience may be considered.
  • 7+ years of cybersecurity, information security, information assurance, risk management, or related IT security experience, includingย 3+ years in a senior-level cybersecurity roleย within a complex enterprise environment.
  • Strong knowledge ofย NIST SP 800-171, CMMC, and federal/DoD contractor cybersecurity requirements, including protection of CUI and FCI.
  • Experience withย SSPs, POA&Ms, security controls, compliance evidence, risk assessments, audits, and CMMC readiness/assessments.
  • Experience withย vulnerability management, including scanning, analysis, prioritization, remediation, and validation.
  • Hands-on experience withย SIEM, EDR, endpoint security, firewalls, identity/security monitoring tools, and cybersecurity incident response.
  • Experience securingย Microsoft 365/GCC High, Azure, Entra ID, and Active Directory, including MFA, Conditional Access, RBAC, privileged access, and identity security.
  • Working knowledge ofย Windows Server, endpoint technologies, network infrastructure, TCP/IP, VLANs, firewalls, VPNs, virtualization, cloud services, and network security.
  • Experience withย endpoint protection, EDR, encryption, system hardening, secure configurations, access controls, patch management, and configuration management.
  • Experience conductingย cybersecurity risk assessments, control gap analyses, security reviews, and risk mitigation activities.
  • Ability to translate technical and regulatory requirements into practical security controls, procedures, technical requirements, and remediation plans.
  • Experience withย vendor/third-party risk management, cybersecurity policies and procedures, incident response planning, and security documentation.
  • Strong analytical, investigative, problem-solving, communication, and organizational skills, with the ability to manage multiple cybersecurity priorities.
  • Ability to work independently and collaborate effectively with IT teams, leadership, business units, vendors, auditors, assessors, and other stakeholders.
  • Ability to provideย senior-level technical guidance and mentoringย to IT and cybersecurity personnel.
  • Ability to supportย after-hours incident response or emergency cybersecurity activitiesย as required.
  • Must be legally authorized to work in the United States and meet all applicableย U.S. Government/DoD background, eligibility, and security requirements.
  • Must possess or be able to obtain and maintain anย active U.S. Government security clearanceย at the level required for assigned contracts.

Physical Demands & Work Environment

  • Ability to work in an office environment with prolonged periods of sitting and computer use.
  • Ability to travel domestically up to 20% as business needs require.
  • Ability to lift up to 25 pounds occasionally.