1

Security Policy Analyst Jobs (NOW HIRING)

ARMADA HQ Security Clearance Required: Secret *CONTINGENT UPON AWARD Duties & Responsibilities ... The Policy Analyst will coordinate with external stakeholders to include identifying and ...

The Policy Analyst will coordinate with external stakeholders to include identifying and ... Bachelor's degree in a relevant field (Emergency Management, Security Studies, Public Policy ...

S. national security and foreign policy interests. * Demonstrated extensive understanding of ... analysis of findings and issues while identifying, articulating, documenting, and mitigating ...

Policy Analyst

Richmond, VA · On-site

$60K - $70K/yr

The Policy Analyst will drive statewide, systems‑level change in one of our five core issue areas ... Knowledge and experience in the family economic security, health equity, youth mental health, and ...

Policy Analyst

Washington, DC · Hybrid

$110K - $135K/yr

Familiarity and experience with the Department of Homeland Security (DHS). * Experience in policy ... Analyze and select appropriate responses to data and information sharing challenges. * Work with ...

POLICY ANALYST

Phoenix, AZ · On-site

$60K - $67K/yr

The Department of Economic Security, Governance & Innovation Administration, is seeking an experienced and highly motivated professional to join our team as a Policy Analyst responsible for ...

Join a dynamic team at the forefront of national security, providing advanced solutions to ... The Policy Analyst advises, assists, leads, manages, and works all policy development, review ...

Analyze national security policy issues related to DoW support of National Drug Control Program objectives, identify stakeholder equities, and assist USG personnel in developing responsive CD/CTOC ...

Louis Posting Date 05/13/2026 Security Clearance Required TS/SCI Remote Type Onsite Time Type ... The Policy Analyst advises, assists, leads, manages, and works all policy development, review ...

Showing results 21-40

Security Policy Analyst information

See salary details

$39.5K

$107.3K

$141K

How much do security policy analyst jobs pay per year?

As of Sep 12, 2026, the average yearly pay for security policy analyst in the United States is $107,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What does a security policy analyst do?

A Security Policy Analyst is responsible for developing, reviewing, and implementing policies and procedures that protect an organization’s information and assets. They analyze current security systems, identify vulnerabilities, and recommend improvements to ensure compliance with laws and industry standards. Security Policy Analysts also educate staff on security policies and may conduct risk assessments or audits to ensure policies are effective. Their work helps organizations mitigate risks and respond appropriately to security threats.

What are some common challenges security policy analysts face when implementing new policies within an organization?

Security Policy Analysts often encounter challenges such as balancing organizational needs with regulatory compliance, gaining stakeholder buy-in, and addressing resistance to change. They must ensure that new policies are both practical and enforceable, while minimizing disruption to daily operations. Collaboration with IT, legal, and business teams is key, as is effective communication to explain the rationale and benefits of policy changes. Staying current with evolving threats and regulations also adds complexity to the role.

What are the key skills and qualifications needed to thrive as a security policy analyst, and why are they important?

To thrive as a Security Policy Analyst, you need expertise in risk assessment, policy development, and an understanding of cybersecurity or physical security frameworks, often supported by a degree in security studies, public policy, or a related field. Familiarity with regulatory compliance tools, security standards (such as NIST, ISO 27001), and sometimes certifications like CISSP or CISM is typically expected. Strong analytical thinking, written communication, and stakeholder collaboration skills distinguish top performers in this role. These competencies are crucial for crafting effective security policies that mitigate risks and align with organizational and regulatory requirements.

What is the difference between Security Policy Analyst vs Security Compliance Specialist?

AspectSecurity Policy AnalystSecurity Compliance Specialist
CredentialsBachelor's in cybersecurity, IT, or related field; certifications like CISSP, CISASimilar credentials; often holds CISSP, CISA, or CompTIA Security+
Work EnvironmentGovernment agencies, corporations, consulting firmsOrganizations with regulatory requirements, auditing firms
Employer & IndustryFocus on developing and analyzing security policiesFocus on ensuring compliance with security standards and regulations
Search & Comparison IntentUnderstanding roles in security policy developmentUnderstanding roles in security compliance and audits

While both roles require cybersecurity knowledge and similar certifications, a Security Policy Analyst primarily develops and analyzes security policies, whereas a Security Compliance Specialist ensures these policies meet regulatory standards. Both roles are vital in maintaining organizational security and often work together within the same industry environments.

More about Security Policy Analyst jobs

What cities are hiring for Security Policy Analyst jobs?

Cities with the most Security Policy Analyst job openings:

What are the most commonly searched types of Security Policy Analyst jobs?

The most popular types of Security Policy Analyst jobs are:

What states have the most Security Policy Analyst jobs?

States with the most job openings for Security Policy Analyst jobs include:

What are popular job titles related to Security Policy Analyst jobs?

For Security Policy Analyst jobs, the most frequently searched job titles are:

Infographic showing various Security Policy Analyst job openings in the United States as of September 2026, with employment types broken down into 2% As Needed, 80% Full Time, 17% Part Time, and 1% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $107,334 per year, or $51.6 per hour.

Senior Security Governance and Policy Analyst

Washington, DC

Analygence
Business Management Consulting • 201 - 500 employees

Full-time

Re-posted 8 days ago


Job description

Tharros is seeking a Senior Security Governance and Policy Analyst to support a DHS Intelligence and Analysis cybersecurity program in the National Capital Region.
This role will support cybersecurity governance, policy, compliance, and executive communications across a complex mission environment. The ideal candidate can translate Federal, DHS, and Intelligence Community cybersecurity policy into practical implementation plans and help senior cybersecurity leaders drive consistent governance across cloud, on-premise, classified, and unclassified environments.
Responsibilities:
  • Serve as a senior cybersecurity governance and policy advisor supporting cybersecurity leadership.
  • Analyze cybersecurity requirements derived from policies, directives, standards, and guidance.
  • Develop and update cybersecurity policies, standards, governance documentation, and implementation recommendations.
  • Support governance activities related to RMF, FISMA, CNSSI standards, NIST 800-53, security control catalogs, supply chain risk management, AI/ML security considerations, and cybersecurity compliance.
  • Review changes to Federal, DHS, Intelligence Community, and other applicable cybersecurity policies and recommend practical implementation approaches.
  • Support updates to security policy manuals, supply chain risk management policy, security control catalogs, and related governance artifacts.
  • Coordinate with governance, risk, and compliance stakeholders to support accurate control mapping and policy implementation.
  • Research new or updated cybersecurity Executive Orders, Intelligence Community policies, national security guidance, and related requirements.
  • Support cybersecurity audit response activities, including inspection, compliance, and oversight-related efforts.
  • Prepare executive summaries, reports, talking points, briefings, stakeholder communications, and senior-leader presentation materials.
  • Support cybersecurity governance working groups, taskers, data calls, trackers, repositories, and policy reference updates.
  • Help identify opportunities to improve governance processes, streamline policy implementation, and increase consistency across cybersecurity compliance activities.