Manager, Cyber Security
$158.82k - $269.99kICF International Inc
This role is contingent upon a contract award. ICF is seeking an experienced Cybersecurity Manager to lead cybersecurity governance, risk management, compliance coordination, and security integration for a complex federal technology services program. This role will be responsible for ensuring cybersecurity requirements are addressed across systems, applications, integrations, cloud services, product delivery, and operational support functions. The ideal candidate has demonstrated experience supporting federal cybersecurity programs that require RMF alignment, assessment documentation, POA&M management, contingency planning, vulnerability coordination, cybersecurity reporting, and integration with engineering and product delivery teams. This role requires strong knowledge of federal cybersecurity requirements, practical risk management judgment, and the ability to coordinate across technical, program, operations, assessor, and client stakeholder groups. Job Location: This position is remote within the United States. Please note that ICF monitors employee work locations, restricts access from foreign locations and IP addresses, and prohibits the use of personal VPN connections. What You'll Be Doing
ICF is a global advisory and technology services provider, but we're not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future. We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer. Together, our employees are empowered to share their expertise and collaborate with others to achieve personal and professional goals. For more information, please read our EEO policy. We will consider for employment qualified applicants with arrest and conviction records. Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process. To request an accommodation, please email View email address on click.appcast.io and we will be happy to assist. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
Read more about workplace discrimination rights or our benefit offerings which are included in the Transparency in (Benefits) Coverage Act.
Candidate AI Usage Policy At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate or assist with responses during interviews (whether in-person or virtual) is not permitted. This policy is in place to maintain the integrity and authenticity of the interview process.
However, we understand that some candidates may require accommodation that involves the use of AI. If such an accommodation is needed, candidates are instructed to contact us in advance at View email address on click.appcast.io. We are dedicated to providing the necessary support to ensure that all candidates have an equal opportunity to succeed.
Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.
The pay range for this position based on full-time employment is:
$158,819.00 - $269,993.00 Nationwide Remote Office (US99)
- Lead cybersecurity governance and RMF coordination across a complex federal technology services environment.
- Develop, maintain, and coordinate cybersecurity assessment documentation, including FIPS 199 analyses, E-Authentication Risk Assessments, security control implementation statements, and supporting control artifacts.
- Support system teams, product teams, security assessors, and client stakeholders in preparing and maintaining cybersecurity evidence and compliance documentation.
- Evaluate cybersecurity risks associated with new capabilities, including applications, integrations, plug-ins, software tools, system connections, and platform changes.
- Track system security deficiencies, remediation activities, and Plans of Action and Milestones through closure.
- Lead or support development, maintenance, and testing of contingency plans for systems and services within program scope.
- Develop and maintain cybersecurity governance standard operating procedures, workflows, templates, and reporting mechanisms.
- Coordinate cybersecurity inputs into engineering, product delivery, architecture, DevSecOps, cloud, data, and service operations activities.
- Support vulnerability management, incident response coordination, risk reviews, control evidence collection, and security-related data calls.
- Partner with service operations, identity, device, network, platform, and application teams to ensure cybersecurity responsibilities are clear and evidence is maintained.
- Monitor cybersecurity risks, issues, dependencies, and compliance gaps, and escalate items requiring leadership attention.
- Translate cybersecurity requirements and risks into practical guidance for technical teams, program leadership, and client stakeholders.
- Bachelor's Degree
- U.S. Citizenship required due to federal contract requirements.
- Must be able to obtain and maintain a Federal Public Trust clearance.
- 10+ years of experience supporting cybersecurity, information assurance, security governance, risk management, compliance, or RMF activities in federal or regulated environments.
- Active CISSP, CISM, CAP, Security+, GSEC, or equivalent cybersecurity certification.
- 7+ years of experience supporting federal cybersecurity requirements, including FISMA, NIST 800-53, RMF, POA&M management, system assessment, or authorization activities.
- 5+ years of experience developing or maintaining cybersecurity assessment documentation, control implementation statements, security plans, contingency plans, risk assessments, or security artifacts.
- 5+ years of experience coordinating with system owners, security assessors, engineering teams, product teams, operations teams, or federal cybersecurity stakeholders.
- 5+ years of experience supporting vulnerability management, incident response coordination, remediation tracking, control evidence collection, or cybersecurity reporting.
- 3+ years of experience evaluating cybersecurity risks for new technologies, applications, integrations, SaaS platforms, cloud services, or system connections.
- 3+ years of experience supporting cybersecurity governance for cloud, SaaS, application modernization, DevSecOps, data, or enterprise platform environments.
- Experience supporting HHS, NIH, FDA, CMS, CDC, or other health-focused federal environments.
- Experience with Zero Trust, identity and access management, endpoint security, secure cloud architecture, secure SaaS governance, TIC 3.0, or continuous monitoring.
- Experience integrating cybersecurity requirements into Agile, DevSecOps, CI/CD, product delivery, and application modernization workflows.
- Experience supporting ATO packages, security assessment activities, security control validation, audit responses, and independent verification or validation reviews.
- Experience with cybersecurity tools and repositories used for POA&M tracking, vulnerability management, audit evidence, incident coordination, SIEM/SOAR, or continuous monitoring.
- Experience aligning cybersecurity activities with NIST 800-53 Rev. 5, NIST 800-37, NIST 800-61, NIST 800-34, FedRAMP, FISMA, CISA guidance, or HHS security policy.
- Experience developing cybersecurity dashboards, executive risk reporting, compliance scorecards, and metrics-based security governance materials.
- Additional cybersecurity, cloud security, Agile, ITIL, AWS, Azure, Google Cloud, or project management certification.
ICF is a global advisory and technology services provider, but we're not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future. We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer. Together, our employees are empowered to share their expertise and collaborate with others to achieve personal and professional goals. For more information, please read our EEO policy. We will consider for employment qualified applicants with arrest and conviction records. Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process. To request an accommodation, please email View email address on click.appcast.io and we will be happy to assist. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
Read more about workplace discrimination rights or our benefit offerings which are included in the Transparency in (Benefits) Coverage Act.
Candidate AI Usage Policy At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate or assist with responses during interviews (whether in-person or virtual) is not permitted. This policy is in place to maintain the integrity and authenticity of the interview process.
However, we understand that some candidates may require accommodation that involves the use of AI. If such an accommodation is needed, candidates are instructed to contact us in advance at View email address on click.appcast.io. We are dedicated to providing the necessary support to ensure that all candidates have an equal opportunity to succeed.
Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.
The pay range for this position based on full-time employment is:
$158,819.00 - $269,993.00 Nationwide Remote Office (US99)
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Manager, Cyber Security in Reston, VA vacancy
$140k - $180k
...Senior Cybersecurity Manager Akima Global Technology (AGT) is seeking a Senior Cybersecurity Manager to lead enterprise cybersecurity... ...and audit readiness. Ensure compliance with DHS Information Security Vulnerability Management (ISVM) directives and CISA KEV catalog...SuggestedFull timePart timeFor contractorsRemote work$116.9k - $243.1k
...technology and ingenuity for clients across defense, national security, public safety, civilian, and military health organizations... ...missions and the government forward! The work As the Cyber Program Manager, you will play a critical role in supporting the overall...SuggestedContract workFor contractorsLive inWork at officeLocal area- ...held small business based in Herndon, VA. We provide program management services for government and private clients and deliver technical... ...Position Summary: CTP, Inc is seeking a Chief Information Security Officer (CISO) responsible for establishing and overseeing enterprise...SuggestedTemporary workRemote workFlexible hours
- ...Phase2 Technology is looking for a Cyber Incident Response Business Development Senior Manager to lead and grow its Incident Response business. This role involves driving business development initiatives, engaging key stakeholders, and managing strategic partner relationships...SuggestedWork at officeRemote work
- Vantor is seeking an Information System Security Officer to lead security and compliance for modern web, data, and cloud solutions. You will define and enforce security policies, manage risk assessments, and ensure adherence to frameworks such as NIST, SOC 2, and ISO 27...Suggested
- Vantor seeks an Information System Security Officer to lead security for modern web, data, and cloud solutions. You will own security... ...modeling, secure architecture review, vulnerability and patch management, and incident response planning. You’ll partner closely with engineering...
- ...Information System Security Officer Base-2 Solutions is seeking an Information System Security Officer to work with application leads... ...to Operate (ATO). The role includes following the Risk Management Framework (RMF) process for full test, partial test, continuous...
- ...Information System Security Officer (ISSO) The Information System Security Officer (ISSO) is responsible for maintaining the security posture and authorization of the system. You will manage the Risk Management Framework (RMF) lifecycle, maintain ATO documentation...For contractorsFlexible hours
- ...Information Systems Security Officer (ISSO) LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position... ...responsible for implementing and overseeing security policies, managing risk assessments, and ensuring compliance with relevant...Temporary workFor contractorsImmediate startFlexible hours
- ...S. Citizen. This position requires an active U.S. Government security clearance, applicants who do not currently hold the required... ...information assurance activities, RMF execution, vulnerability management, and continuous monitoring in an Agile Scrum environment....
- ...Engineer serves as a subject matter expert in ensuring system security compliance and risk management throughout the program life cycle. This role involves... ...) and ATO efforts by coordinating with stakeholders, cyber teams, and Authorizing Officials (AO). Implement and...Full timeInterim roleFlexible hours
- ...defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover... ...Officer (ISSO) to support federal cybersecurity and Risk Management Framework (RMF) activities for enterprise information systems....For contractors
$180k - $220k
...sitting over a six-person team that owns and operates roughly 32 security tools across a mature enterprise environment. The right person... ...is a principal-level security engineer who wants to step into management while staying close to the technical work, not a people...$144.9k - $265.8k
...working world. Consulting - Cybersecurity - Identity and Access Management - Manager At EY, we are all in to shape your future with... ...and hybrid identity programs. ~ Translating business, security and regulatory needs into practical identity architecture, migration...Summer holidayFlexible hours$80k - $90k
...and cross‑functional coordination to reduce risk and improve security posture. Responsibilities Incident Response and Network... ...analysis of suspicious binaries and scripts. Vulnerability Management: Support vulnerability scanning, prioritize findings, and coordinate...Full timePart time- ...Cyber Analyst Position Base-2 Solutions is seeking a Cyber Analyst to support intelligence analysis related to cyber-relevant national security issues. This role contributes to all-source analytic production by evaluating complex information, integrating reporting...
$177.7k - $202.8k
## Senior Cyber Program ManagerApplylocations: McLean, VA: Richmond, VAtime type: Full timeposted... ...7Senior Cyber Program ManagerAs a Senior Manager for the Cyber Strategy and Reporting team... ...or auditing in the fields of information security or risk management* 5+ years of...Full timePart timeH1bLocal areaImmediate start$144.9k - $265.8k
...solutions using Microsoft Entra, Okta, Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS, GCP, and hybrid... ...(e.g., provisioning, authentication, authorization, identity management) Design and re-engineer processes for centralized cloud access...Work experience placementSummer holidayFlexible hours- ...critical component of our nation’s safety and security. Make an impact by using your expertise... ...to make a personal impact as a Project Manager. GDIT is your place to make meaningful... ...Manager joining us as a member of the client’s Cyber Systems Team, specializing in providing...Work at office
- ...will leverage your expertise in government cybersecurity standards and regulations to monitor, analyze, and respond to potential security incidents and threats. Your role will ensure that our government clients' systems meet the stringent security requirements necessary...
$100k - $120k
...Job Summary The Cybersecurity Analyst (Security & AI Governance) is responsible for protecting... ...intelligence (AI) initiatives from cyber threats and misuse. This role serves as... ...AI governance, Shadow AI oversight, risk management, and continuous improvement initiatives....Temporary work$86k - $138k
...Information System Security Manager (ISSM) Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative...Contract workTemporary workShift work- ...with challenging Cybersecurity and IT data management recruiting needs, Flex Staffing... ...cloud environments. This effort requires security assessment support, the knowledge/development... ...accreditation model, PPS compliance, and patching, Cyber Security Vulnerability Assessments (CSVA...Remote workFlexible hours1 day per week
$100k - $120k
...Communications is looking for a Cybersecurity Analyst to protect information assets and oversee AI governance initiatives. You will monitor security systems, respond to incidents, and ensure compliance with cybersecurity standards. The position requires a degree in Cybersecurity...- ...: Significant experience with analyzing and tracking cyber threats at the strategic, operational and tactical level... .... Experience with evolving CTI out of a traditional security function is a plus. Ability to manage multiple, simultaneous projects while being able to...Remote workShift work
$100k - $120k
...Deutschland GmbH is seeking a Cybersecurity Analyst specializing in Security & AI Governance to protect information assets and oversee... ...skills. Responsibilities include monitoring security systems, managing incidents, and assessing vulnerabilities. They will work with IT...$77.6k - $176k
Responsibilities Design, implement, and manage policies and procedures to ensure database and software security. Apply advanced consulting skills or extensive technical expertise and full industry knowledge. Develop innovative solutions to complex problems. Work without...Contract work- ...customer-oriented Senior Information System Security Officer (ISSO) to join our team in... ...according to risk assessment parameters Manage the risks to ISs and other FBI assets by... ...Computer Science, Cybersecurity, or other cyber discipline Clearance Requirements:...Work at office
$130k - $150k
...Overview : CDT is looking to add a Senior Information Systems Security Officer to provide advice and assistance to secure... ...networked environment. Working knowledge of configuration management; system maintenance; and integration testing. Proficient...Civilian ContractorFor contractorsWork experience placementWork at office$160.2k - $195.8k
...Title: Senior Information System Security Officer (ISSO) Belong. Connect. Grow. with KBR! KBR's National Security Solutions team... ...of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions. Collaborative Environment...Temporary workLocal areaRelocation packageFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manager, Cyber Security. Be the first to apply!
Related searches
- cyber Reston, VA
- cyber sales Reston, VA
- remote cyber security Reston, VA
- cybersecurity administrator Reston, VA
- cyber security Reston, VA
- cyber security incident responder Reston, VA
- cybersecurity software engineer Reston, VA
- IT cyber security Reston, VA
- cyber security sales Reston, VA
- cybersecurity specialist Reston, VA



