1

Senior Cyber Security Risk Analyst Jobs in Reston, VA

Senior Cybersecurity Analyst

Arlington, VA

$114K - $147K/yr

Senior Analysts have the knowledge, skills, abilities and initiative to deliver timely, practical ... of the Risk Management Framework (RMF) process to achieve/renew Authority to Operate (ATO)

Senior Cybersecurity Analyst

Arlington, VA · On-site

$114K - $147K/yr

Technomics is a growing employee-owned, decision analytics company that specializes in cost and ... of the Risk Management Framework (RMF) process to achieve/renew Authority to Operate (ATO)

MANTECH seeks a motivated, career and customer-oriented Senior Cyber Security Analyst to join our team in Springfield, VA . In this role, you will play a vital part in protecting mission-critical ...

MANTECH seeks a motivated, career and customer-oriented Senior Cyber Security Analyst to join our team in Springfield, VA . In this role, you will play a vital part in protecting mission-critical ...

This role focuses on cybersecurity engineering, risk management, and compliance across the cloud ... Strong analytical, communication, and collaboration skills * Ability to work independently and yet ...

Senior Cyber Security Analyst

Chantilly, VA · On-site

$102K - $132K/yr

Core One is seeking Senior Cyber Security Analyst to support our IC program. This position requires ... Knowledge of risk management standards, CNSSP 1253, FIPS 140-2, 199, 200, and NIST SP 800-37, 800 ...

Senior Cyber Security Analyst

Chantilly, VA · On-site

$102K - $132K/yr

Core One is seeking Senior Cyber Security Analyst to support our IC program. This position requires ... Knowledge of risk management standards, CNSSP 1253, FIPS 140-2, 199, 200, and NIST SP 800-37, 800 ...

next page

Showing results 1-20

Senior Cyber Security Risk Analyst information

See Reston, VA salary details

$23.9K

$118.3K

$156.6K

How much do senior cyber security risk analyst jobs pay per year?

As of Jun 9, 2026, the average yearly pay for senior cyber security risk analyst in Reston, VA is $118,293.00, according to ZipRecruiter salary data. Most workers in this role earn between $104,000.00 and $134,200.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Senior Cyber Security Risk Analyst, and why are they important?

To thrive as a Senior Cyber Security Risk Analyst, you need in-depth knowledge of risk assessment methodologies, cyber security frameworks (such as NIST or ISO 27001), and a strong background in IT or computer science, often supported by a bachelor's degree and relevant certifications. Familiarity with risk management tools, vulnerability scanning platforms, and security information and event management (SIEM) systems is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders are critical soft skills for excelling in this role. These competencies help ensure organizations can proactively identify, assess, and mitigate security risks, thereby protecting sensitive assets and maintaining compliance.

What is the difference between Senior Cyber Security Risk Analyst vs Cyber Security Risk Analyst?

AspectSenior Cyber Security Risk AnalystCyber Security Risk Analyst
CertificationsCCSP, CISSP, CISACCSP, CISSP, CISA
Work EnvironmentMore strategic, leadership roles, mentoringOperational, technical risk assessments
ResponsibilitiesOversees risk management programs, policy developmentPerforms risk assessments, vulnerability analysis

The main difference lies in experience and scope. Senior Cyber Security Risk Analysts typically handle strategic planning and leadership, while Cyber Security Risk Analysts focus on technical risk assessments. Both roles require similar certifications and work within the same industry environment, but the senior position involves more oversight and decision-making responsibilities.

How does a Senior Cyber Security Risk Analyst typically collaborate with other departments to manage organizational risks?

A Senior Cyber Security Risk Analyst often works closely with IT, compliance, legal, and business units to assess and mitigate cybersecurity risks across the organization. This collaboration involves conducting risk assessments, sharing findings with relevant stakeholders, and developing strategies to address vulnerabilities. Effective communication and teamwork are essential, as the analyst must translate technical risks into business impacts and ensure all departments understand their roles in risk management. Regular meetings and cross-functional projects are common, fostering a proactive security culture throughout the organization.

What does a Senior Cyber Security Risk Analyst do?

A Senior Cyber Security Risk Analyst is responsible for identifying, assessing, and mitigating potential cybersecurity threats to an organization. They analyze security risks, develop strategies to protect sensitive data, and ensure compliance with industry regulations and best practices. Their role often involves conducting risk assessments, recommending security improvements, and collaborating with IT and business teams to strengthen the organization's overall cybersecurity posture.
What are the most commonly searched types of Cyber Security Risk Analyst jobs in Reston, VA? The most popular types of Cyber Security Risk Analyst jobs in Reston, VA are:
What cities near Reston, VA are hiring for Senior Cyber Security Risk Analyst jobs? Cities near Reston, VA with the most Senior Cyber Security Risk Analyst job openings:
Infographic showing various Senior Cyber Security Risk Analyst job openings in Reston, VA as of May 2026, with employment types broken down into 100% Full Time. Highlights an 67% In-person, and 33% Hybrid job distribution, with an average salary of $118,293 per year, or $56.9 per hour.
Manager, Cybersecurity Risk Management

Manager, Cybersecurity Risk Management

Bechtel Corporation

Reston, VA • On-site

Other

Posted 25 days ago


Bechtel rating

8.1

Company rating: 8.1 out of 10

Based on 62 frontline employees who took The Breakroom Quiz

123rd of 352 rated engineering


Job description

Requisition ID: 292696 

  •  Relocation Authorized: None 
  • Telework Type: Part-Time Telework 
  • Work Location: Reston, VA
Extraordinary teams building inspiring projects:

Since 1898, we have helped customers complete more than 25,000 projects in 160 countries on all seven continents that have created jobs, grown economies, improved the resiliency of the world's infrastructure, increased access to energy, resources, and vital services, and made the world a safer, cleaner place. 

Differentiated by the quality of our people and our relentless drive to deliver the most successful outcomes, we align our capabilities to our customers' objectives to create a lasting positive impact. We serve the Infrastructure; Nuclear, Security & Environmental; Energy; Mining & Metals, and the Manufacturing and Technology markets. Our services span from initial planning and investment, through start-up and operations. 

Core to Bechtel is our Vision, Values and Commitments. They are what we believe, what customers can expect, and how we deliver. Learn more about our extraordinary teams building inspiring projects in our Impact Report. 

Job Summary:

The Manager, Cybersecurity Risk Management focuses efforts on managing and reporting on cyber risks globally across Bechtel, playing a crucial role in assessing and managing risk, and driving mitigation plans associated with our wider cybersecurity program. The manager drives a comprehensive risk management program, while supporting peer cybersecurity teams in maturing and standardizing their programs. The manager identifies and mitigates security risks; provides subject matter expertise and technical guidance to process owners; partners with Service Owners, GBU Managers, IT Architecture, Operations and Support, and Software Development, to contribute to the reporting of a comprehensive view of the security risk posture and its impact on the business.

Major Responsibilities:

Risk Oversight

  • Develops and maintains a comprehensive cybersecurity risk management strategy, leads enterprise-wide cyber risk assessments and mitigation / remediation activities.
  • Collaborates with IT, legal, compliance, and business units to ensure risk mitigation strategies are embedded in operations.
  • Monitors emerging threats and risk posture and activities accordingly.
  • Presents risk analysis, metrics, and mitigation plans to management and stakeholders.
  • Identifies risk and mitigating controls for information security exceptions based on adherence to relevant company policies, standards, baselines, and industry standards (e.g., ISO 27001, NIST, GDPR, HIPAA, CIS, FedRAMP).
  • Mentors and develops junior risk analysts and cybersecurity professionals.
  • Assists with the administration and maintenance of the ServiceNow GRC platform.

Strategic Leadership, Business Partnership & Enablement

  • Translates risk insights into strategic decisions and enterprise-wide policies.
  • Contributes to the design of cybersecurity strategies by advising on risk reduction priorities related to exception and risk register trends.
  • Develops metrics to track exception mitigation rates, approval / review rates, aging, and SLA compliance.
  • Drives initiatives that reduce recurring exception requests through enterprise-wide solutions.

Analytics

  • Monitors the effectiveness of the information security exceptions process in accordance with agreed upon metrics and performance measures to drive continuous improvements.
  • Conducts root cause analysis on recurring issues to enhance process efficiency and reduce exception requests.
  • Collaborates with cross-functional teams to gather, interpret, and validate mitigating controls to ensure accuracy and relevance.
Education and Experience Requirements:
  • Requires bachelor's degree plus 8+ years experience in information security risk, with at least 3 years in a risk management role or similar function.
Required Knowledge and Skills:
  • Strong knowledge of cybersecurity frameworks, company policies, and regulatory requirements.
  • Strong expertise across commercial and government cloud services (AWS, Azure, GCP, OCI, etc.), on-premises and application environments.
  • Experience with tools such as ServiceNow, GRC tools, Power BI, and cloud technologies.
  • Strong knowledge of risk frameworks (e.g., ISO 27005, NIST, ISO, PCI, SOX, etc.).
  • Proven ability to translate complex technical concepts into plain language for decision-makers.
  • Skilled in preparing polished deliverables that support informed decision-making.
  • Team player who builds trust across technical and non-technical teams.
  • Demonstrated ability to work independently, adapt quickly, and drive tasks forward with limited direction.
  • Strong project management and delegation skills across diverse, cross-functional initiatives

Preferred:

  • Certifications such as CISSP, CISM, CRISC, or CISA.
  • 5+ years of prior experience in EPCM (Engineering, Procurement, Construction / Project Management). Prefer global company background and/or Fortune 500 and/or EPC industry.
  • Comfortable working in a highly iterative environment, both structured and unstructured.
  • Metrics and visualization tools knowledge a plus (i.e., ServiceNow, Power BI, Tableau,).
  • Advanced user of M365 Suite to prepare all project plans, deliverables, presentations, reports, and findings.
Total Rewards/Benefits:

For decades, Bechtel has worked to inspire the next generation of employees and beyond! Because our teams face some of the world's toughest challenges, we offer robust benefits to ensure our people thrive.  Whether it is advancing careers, delivering programs to enhance our culture, or providing time to recharge, Bechtel has the benefits to build a legacy of sustainable growth. Learn more at Bechtel Total Rewards

Diverse teams build the extraordinary:

As a global company, Bechtel has long been home to a vibrant multitude of nationalities, cultures, ethnicities, and life experiences. This diversity has made us a more trusted partner, more effective problem solvers and innovators, and a more attractive destination for leading talent.

We are committed to being a company where every colleague feels that they belong-where colleagues feel part of "One Team," respected and rewarded for what they bring, supported in pursuing their goals, invested in our values and purpose, and treated equitably. Click here to learn more about the people who power our legacy.

Bechtel is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity and expression, age, national origin, disability, citizenship status (except as authorized by law), protected veteran status, genetic information, and any other characteristic protected by federal, state or local law. Applicants with a disability, who require a reasonable accommodation for any part of the application or hiring process, may e-mail their request to acesstmt@bechtel.com


What Bechtel employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom