Information Security Manager Jobs in District of Columbia
Information Security Manager jobs in District of Columbia are concentrated in Washington DC, with additional demand in nearby Arlington and Bethesda, where federal agencies, defense contractors, and major institutions like Booz Allen Hamilton, Leidos, and CISA drive consistent hiring at the senior and leadership level. The most in-demand specialties include federal security compliance, cloud security architecture, and zero-trust implementation, reflecting the district's heavy reliance on government-adjacent work. District of Columbia is among the most active markets in the country for this role. Find a role that fits below and apply directly.
Find JobsOverview
Showing 5 of 83+ Information Security Manager jobs





- Washington DC Metro Area, District of Columbia
- Point Mugu, California
- Patuxent River, Maryland
- Huntsville, Alabama
Title:
Information System Security Manager (ISSM)KBR is seeking an Information System Security Manager (ISSM) to join our team. This position is primarily remote, however the ISSM must be able to go into the DoD installation space for meetings and work on ad ad-hoc and sometimes immediate basis
Why Join Us?
- Innovative Projects: KBR’s work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.
- Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.
- Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.
The selected applicant will provide cybersecurity and Risk Management Framework (RMF) support to systems and applications for the Test Resource Management Center (TRMC). Will work with military, government, and contractor personnel to provide technical and policy direction grounded in Department of Defense (DoD) policy, and act as the Subject Matter Expert (SME) with the cybersecurity domain and lead ISSOs. The application will, at times, be the liaison between end users, application developers, and senior leadership within the DoD and across the Test and Evaluation community.
Responsibilities:
- Deliver documentation to include: Executive level briefings, Assessments, Self-Assessments, RMF packages, and supporting RMF documentation
- Review Cybersecurity tool reports, ACAS, HBSS, for the purposes of reporting and compliance
- Software Certification package development
- Work directly with the TRMC SISO on all TRMC RMF packages and ATO Status updates
- Support security engineering projects and solution delivery.
- Lead security audit and compliance activities for each system responsible for
- Responsible for auditing all artifacts provided in each RMF package to determine system readiness for ATO packet submissions.
- Provide recommendations to the SISO, PM, and AO regarding remediation and mitigation of identified vulnerabilities on test reports and plan of action and milestones (POA&Ms).
- Monitor system status updates and report to senior leadership.
- Includes monthly executive reports, vulnerability reports, JFHQ DODIN reporting and briefing.
- Monthly executive briefing to SISO, PM on security metrics
- Interface with PMs and SISO on issues needing input/concurrence
- Draft and present RMF deliverables to senior leadership
- Attending Executive Program Reviews as the ISSM
- Work with outside agencies on Memorandums of Understanding / Interconnection Service Agreements, and other senior level agreements etc.
- Work directly with a distributed team to reduce travel
- Travel 25% of time
Basic Qualifications:
- *TS/SCI required*
- A minimum of 2 years of Information Technology Information Assurance, or Cyber Security engineering experience.
- A minimum of 2 years of experience in conducting security assessments by reviewing security controls with the ISSO/ISSM and guide programs through RMF process.
- Bachelor’s Degree in Engineering, Computer Science, or 8 years IT field experience in lieu of degree; Master’s Degree preferred
- Experience working with Special Access Programs (SAP)
- Proven expertise with assessing security controls in accordance with NIST Special Publications (i.e.: NIST 800 Series)
- Proven in-depth knowledge of Cybersecurity principles technologies, and processes.
- Experience with NIST 800-53, Security Development
- Familiarity with performing assessments for Unclassified and Classified environments
- Ability to adapt to process changes
- Ability to interface with senior leadership
- Ability to support high visibility or high priority projects
- Possession of excellent oral and written communication skills
Basic Compensation:
$155,000 - $190,000 (For DC area Only)
$155.000 - $190,000 (For Point Mugu, California Only)
$145,000 - $185,000 (For Maryland only)
The offered rate will be based on the selected candidate’s knowledge, skills, abilities and/or experience and in consideration of internal parity.
Additional Compensation:
KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus, relocation benefits, short-term incentives, long-term incentives, or discretionary payments for exceptional performance.
KBR Benefits
KBR offers a selection of competitive lifestyle benefits which could include 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development.
Belong, Connect and Grow at KBR
At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team’s philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver – Together.
KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.
See All 83 Information Security Manager Jobs in District of Columbia
Find roles in District of Columbia that match your experience and apply in just a few clicks.
Find JobsInformation Security Manager Jobs by City in District of Columbia
Where District of Columbia roles are concentrated, by current openings.
Information Security Manager Job Market in District of Columbia
A snapshot from current District of Columbia openings, updated as new roles post.
Who's Hiring


What District of Columbia Employers Look For
The qualifications that appear most often in information security manager jobs across District of Columbia.
- Active security clearance at the Secret or Top Secret level required by most DC employers
- CISSP or equivalent certification strongly preferred across federal and contractor roles
- Bachelor's degree in information security, computer science, or a related technical field
- Seven or more years of progressive experience in cybersecurity or information assurance
- Demonstrated experience with NIST frameworks, RMF, and federal compliance standards
- Proven ability to manage security operations teams and lead incident response programs
Information Security Manager Jobs in District of Columbia: Frequently Asked Questions
How do you become a information security manager in District of Columbia?
Information security managers in District of Columbia do not need a state-issued license, but the path to hiring here is shaped by federal requirements. Most roles require a security clearance processed through federal channels, along with credentials like the CISSP or CISM. Employers typically want a bachelor's degree in a technical field and several years in cybersecurity roles. Experience with the Risk Management Framework and federal agency environments gives candidates a clear advantage in the DC market.
How much do information security managers make in District of Columbia?
Information security managers in District of Columbia earn a median of about $195,190 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $126,520 for the lowest 10% to over $286,280 for the top 10%. Pay rises with experience, specialty, and employer.
Which companies hire information security managers in District of Columbia?
Employers hiring information security managers in District of Columbia right now include Peraton, MANTECH, and Everforth ECS, based on current listings on Migrate Mate as of September 2026. The DC market is particularly active among federal contractors, defense agencies, and civilian government departments that maintain large in-house security programs.
Which District of Columbia cities have the most information security manager jobs?
The cities with the most information security manager openings in District of Columbia are Washington and Pentagon. Washington DC anchors the market as home to federal agencies and major contractors, while Arlington and Bethesda attract significant demand from defense firms and health-focused government bodies like NIH and HHS with large, permanent security teams.
Are there remote information security manager jobs in District of Columbia?
Yes, though the federal and contractor nature of much DC work limits fully remote options more than in other markets. About 50% of information security manager openings tied to District of Columbia are remote or hybrid as of September 2026, reflecting clearance and on-site requirements common in government settings. Strategic, policy-focused, and compliance-oriented portions of the role are most likely to offer remote flexibility.
How can I get hired as a information security manager in District of Columbia with little or no experience?
The most realistic entry path in DC is moving into a security analyst or IT auditor role at a federal contractor or agency, then building toward management. Large employers like Booz Allen Hamilton and Leidos regularly bring on entry-level analysts through structured associate programs. Earning a CompTIA Security+ or initiating a clearance sponsorship early matters significantly here. Transitioning from adjacent roles in IT governance, network administration, or compliance within a federal environment is a well-established route to management.
Where can I find and apply to information security manager jobs in District of Columbia?
You can find and apply to information security manager jobs in District of Columbia on Migrate Mate, which lists current openings in the district. Find roles that fit your experience and clearance level and apply directly to the employers posting them.
See All 83 Information Security Manager Jobs in District of Columbia
Find roles in District of Columbia that match your experience and apply in just a few clicks.
Find Jobs