Demo

Cybersecurity Policy Analyst

Tech20 solutions
Baltimore, MD Full Time
POSTED ON 4/8/2026
AVAILABLE BEFORE 6/7/2026

Job Overview
Role Description (Short):Supports federal client’s Policy Drafting and Updates work activity by researching, analyzing, drafting, and revising cybersecurity policy and supplemental documentation to ensure alignment with NIST 800-53 and other related federal security standards, mandates, and agency requirements, while helping maintain the broader security policy ecosystem. 4. Key Responsibilities: *      Research, analyze, draft, and update cybersecurity policy language for the ISP, POMS, AIMS, CUI, and related supplemental documents. *      Evaluate the impact of policy changes on related ecosystem documents and recommend updates needed to maintain consistency across the security policy environment. *      Maintain and update mappings between Client policy artifacts, the NIST Cybersecurity Framework, and NIST control families. *      Conduct policy gap assessments and identify discrepancies, redundancies, and missing requirements tied to federal cybersecurity and privacy mandates. *      Support annual and ongoing reviews of POMS, CUI, and other policy ecosystem documentation, including document ownership, retirement, replacement, and change tracking. *      Prepare draft responses, impact briefs, research summaries, and supporting materials for audit requests, policy inquiries, acquisition support, and executive-level discussions. *      Assist with policy waiver lifecycle support, SRB-related coordination, meeting notes, and action item tracking. *      Support development of planning documentation, templates, training resources, and communication materials related to cybersecurity policy changes. *      Help maintain and enhance the security policy ecosystem through collaboration tools, inventories, and change management practices. 5. Required Qualification: *      Bachelor’s degree in cybersecurity, information systems, public policy, law, technical writing, business, or a related discipline. *      Experience drafting, reviewing, updating, and validating written cybersecurity policy, standards, procedures, or governance documentation in a federal or similarly regulated environment. *      Working knowledge of NIST SP 800-53 and other related security standards and mandates applicable to federal cybersecurity policy work, including:o     FISMAo     OMB Circular A-130o     FIPS 199 and FIPS 200o     NIST Cybersecurity Framework (CSF) 2.0o     NIST SP 800-37 Risk Management Framework (RMF)o     FedRAMPo     Other applicable OMB memoranda, federal mandates, and agency-level cybersecurity policy drivers. *      Demonstrated ability to use policy knowledge to validate and review existing written policy for completeness, consistency, compliance impact, and alignment with current federal requirements. *      Strong analytical skills, including the ability to interpret new publications and mandates and translate them into actionable policy revisions. *      Strong written and verbal communication skills, including the ability to prepare draft policy language, briefings, correspondence, and audit support materials. *      Experience using Jira, Confluence, ServiceNow, and the Microsoft 365 Office Suite, including Teams, Word, Excel, PowerPoint, and SharePoint. *      Ability to work independently and collaboratively across policy, compliance, audit, and technical stakeholder groups. *      Ability to hold a position in Public Trust6. Preferred Qualification: *      Experience supporting federal information security policy programs, policy modernization, or enterprise policy ecosystem management. *      Familiarity with acquisition security language, supply chain risk policy support, CUI documentation, and audit artifact development. *      Experience tracking policy changes, maintaining document inventories, and supporting publication workflows. *      Knowledge of Section 508 formatting, document lifecycle governance, and change management practices. *      Relevant certifications such as Security , CGRC, CISSP, or policy/governance-related training.

Pay: $55.00 - $60.00 per hour

Work Location: Hybrid remote in Baltimore, MD 21201

Salary : $55 - $60

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cybersecurity Policy Analyst?

Sign up to receive alerts about other jobs on the Cybersecurity Policy Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$114,790 - $146,930
Income Estimation: 
$142,618 - $183,267
Income Estimation: 
$115,647 - $153,495
Income Estimation: 
$99,793 - $130,112
Income Estimation: 
$125,027 - $157,872
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Not the job you're looking for? Here are some other Cybersecurity Policy Analyst jobs in the Baltimore, MD area that may be a better fit.

  • Jobs via Dice Baltimore, MD
  • Dice is the leading career destination for tech experts at every stage of their careers. Our client, DTEL Engineering & Consultants Inc, is seeking the fol... more
  • 16 Days Ago

  • The Maryland General Assembly Annapolis, MD
  • MARYLAND GENERAL ASSEMBLY DEPARTMENT OF LEGISLATIVE SERVICES RECRUITMENT NOTICE Position: Policy Analyst I – Office of Policy Analysis Salary : $75,000 (en... more
  • 10 Days Ago

AI Assistant is available now!

Feel free to start your new journey!