Information Security Officer Jobs in District of Columbia
Information Security Officer jobs in District of Columbia are among the most active in the country, concentrated in federal contracting, defense intelligence, financial regulation, and government agency work at every level from analyst-track to senior executive. Most openings are in Washington proper, with additional clusters in nearby Northern Virginia overflow locations and Bethesda, where major employers like Booz Allen Hamilton, Leidos, and the Department of Homeland Security maintain substantial security operations. Demand is strongest for professionals with clearance-eligible backgrounds, zero-trust architecture expertise, and FISMA compliance experience. Scan the live roles below and apply to whichever ones fit.
Find JobsOverview
Showing 5 of 50+ Information Security Officer jobs




PMdigital.ai is looking for an Information Systems Security Officer to join our growing team. This work will be performed primarily in a remote/virtual environment but may require on-site activities at IHSC Headquarters in Washington, DC on an as-needed basis, as determined by the Government.
Summary: Performs substantive cybersecurity risk-management, security-authorization, continuous-monitoring, vulnerability-management, compliance, security-documentation, and incident-support work for assigned IHSC IT systems and solutions. The ISSO develops, maintains, coordinates, analyzes, and tracks cybersecurity artifacts and activities required to support Government security decisions. The designated Government Authorizing Official retains authority to authorize system operation and accept system risk.
Duties and Responsibilities • Develop, maintain, coordinate, and track security-authorization and Risk Management Framework documentation and supporting evidence. • Develop and maintain system-security documentation, control narratives, security plans, risk documentation, POA&M information, continuous-monitoring records, and other required cybersecurity artifacts. • Collect, analyze, validate, and organize security-control implementation evidence. • Conduct security-control, compliance, vulnerability, risk, and documentation analyses and document findings. • Support security assessment and authorization activities by preparing required packages, coordinating artifacts, tracking deficiencies, and resolving documentation issues. • Maintain authorization-package status, milestones, dependencies, risks, issues, and outstanding actions. • Support continuous-monitoring activities, including analysis and tracking of security controls, vulnerabilities, findings, remediation activities, and required evidence. • Analyze vulnerability and security findings, document risk and remediation information, and track approved remediation activities. • Support incident-response coordination, documentation, status tracking, evidence collection, technical-response activities within the authorized scope, and required reporting. Authorized Government officials retain responsibility for official incident-response direction, reporting determinations, and applicable risk decisions. • Develop cybersecurity status reports, dashboards, briefings, risk summaries, and other required products. Coordinate cybersecurity activities with system owners, technical teams, privacy personnel, data personnel, project/program personnel, and applicable Government security stakeholders. • Assess alignment with applicable NIST, FISMA, DHS, ICE, and other applicable cybersecurity requirements and document gaps and corrective actions. • Maintain cybersecurity documentation in authorized Government repositories and systems.
Required Knowledge, Skills, and Abilities • Demonstrated experience supporting Federal cybersecurity, information-security, Risk Management Framework, security-authorization, or continuous-monitoring activities. • Knowledge of NIST cybersecurity standards and guidance, Federal information-security requirements, vulnerability management, security controls, and risk management. • Ability to develop and maintain high-quality security-authorization and cybersecurity documentation. • Ability to analyze security findings, vulnerabilities, evidence, and compliance requirements. • Strong technical writing, analytical, organizational, coordination, and communication skills. • Experience supporting Federal or similarly regulated information systems is preferred. • Relevant industry-recognized cybersecurity certification is preferred.
See All 50 Information Security Officer Jobs in District of Columbia
Find roles in District of Columbia that match your experience and apply in just a few clicks.
Find JobsInformation Security Officer Jobs by City in District of Columbia
Where District of Columbia roles are concentrated, by current openings.
Information Security Officer Job Market in District of Columbia
A snapshot from current District of Columbia openings, updated as new roles post.
Who's Hiring



What District of Columbia Employers Look For
The qualifications that appear most often in information security officer jobs across District of Columbia.
- Active or clearance-eligible security clearance required for most District of Columbia federal contracting roles
- Bachelor's degree in cybersecurity, information technology, or a closely related field
- CISSP, CISM, or equivalent professional certification strongly preferred by District of Columbia employers
- Demonstrated experience managing FISMA, NIST, or FedRAMP compliance programs
- Minimum five to ten years of progressive information security leadership or program management experience
- Strong communication skills for briefing senior government officials and executive stakeholders
Information Security Officer Jobs in District of Columbia: Frequently Asked Questions
How do you become a information security officer in District of Columbia?
There is no District of Columbia-issued state license specific to information security officers, so the path runs through education, federal compliance credentials, and security clearances. Most District of Columbia employers expect a bachelor's degree in a technical field, professional certifications such as CISSP or CISM, and familiarity with NIST and FISMA frameworks. Because much of the District of Columbia market is federal or federally adjacent, obtaining or maintaining eligibility for a security clearance is often the single most decisive hiring factor.
How much do information security officers make in District of Columbia?
Information security officers in District of Columbia earn a median of about $135,090 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $86,280 for the lowest 10% to over $189,510 for the top 10%. Pay rises with experience, specialty, and employer.
Which companies hire information security officers in District of Columbia?
Companies currently hiring information security officers in District of Columbia include MANTECH, CACI International, and C3EL, per current listings on Migrate Mate as of September 2026. Beyond private contractors, federal agencies headquartered in the District, including the Department of Homeland Security and the Department of Justice, are consistent large-volume hirers of information security officers across seniority levels.
Which District of Columbia cities have the most information security officer jobs?
The cities with the most information security officer openings in District of Columbia are Washington. Washington dominates because it is home to the federal government and the dense contractor ecosystem built around it, while Bethesda and any Northern Virginia-adjacent postings reflect the overflow of defense intelligence and cybersecurity firms that serve federal clients from just outside district boundaries.
Are there remote information security officer jobs in District of Columbia?
Yes, but they are less common than in purely analytical tech roles because much of the District of Columbia market involves classified systems, government facilities, or federal contractor environments that require on-site presence. About 47% of information security officer openings tied to District of Columbia are remote or hybrid as of September 2026, and those tend to cover policy, risk advisory, or non-classified program management functions rather than hands-on security operations.
How can I get hired as a information security officer in District of Columbia with little or no experience?
The most realistic entry path in District of Columbia is through a junior cybersecurity analyst or IT security specialist role at a federal contractor, where structured mentorship and clearance sponsorship are common even for candidates without extensive experience. Large District of Columbia-area contractors such as Booz Allen Hamilton and Leidos run associate and early-career programs designed to bring on candidates who hold CompTIA Security+ or are actively pursuing a CISSP. Starting in adjacent roles like systems administration, network operations, or IT auditing within a federal agency or contractor is another well-worn path into a full information security officer track.
Where can I find and apply to information security officer jobs in District of Columbia?
You can find and apply to information security officer jobs in District of Columbia on Migrate Mate, which lists current openings in the district across federal contractors, government agencies, and private-sector employers. Search the listings, find the roles that match your clearance level, certifications, and experience, and apply directly to the ones that fit.
See All 50 Information Security Officer Jobs in District of Columbia
Find roles in District of Columbia that match your experience and apply in just a few clicks.
Find Jobs