Information Security Specialist Jobs in District of Columbia
Information Security Specialist jobs in District of Columbia are among the most active in the nation, concentrated heavily in federal government contracting, defense agencies, and cybersecurity-focused consulting firms that make the region a global center for the field. Most hiring is in Washington D.C., Bethesda, and Arlington, where major employers like Booz Allen Hamilton, Leidos, and SAIC consistently maintain large security workforces. Demand runs from entry-level analysts to senior architects, with clearance-eligible professionals and those specializing in FISMA compliance, threat intelligence, and cloud security in particularly high demand. Scan the live roles below and apply to whichever ones fit.
Find JobsOverview
Showing 5 of 83+ Information Security Specialist jobs





- Washington DC Metro Area, District of Columbia
- Point Mugu, California
- Patuxent River, Maryland
- Huntsville, Alabama
Title:
Information System Security Manager (ISSM)KBR is seeking an Information System Security Manager (ISSM) to join our team. This position is primarily remote, however the ISSM must be able to go into the DoD installation space for meetings and work on ad ad-hoc and sometimes immediate basis
Why Join Us?
- Innovative Projects: KBR’s work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.
- Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.
- Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.
The selected applicant will provide cybersecurity and Risk Management Framework (RMF) support to systems and applications for the Test Resource Management Center (TRMC). Will work with military, government, and contractor personnel to provide technical and policy direction grounded in Department of Defense (DoD) policy, and act as the Subject Matter Expert (SME) with the cybersecurity domain and lead ISSOs. The application will, at times, be the liaison between end users, application developers, and senior leadership within the DoD and across the Test and Evaluation community.
Responsibilities:
- Deliver documentation to include: Executive level briefings, Assessments, Self-Assessments, RMF packages, and supporting RMF documentation
- Review Cybersecurity tool reports, ACAS, HBSS, for the purposes of reporting and compliance
- Software Certification package development
- Work directly with the TRMC SISO on all TRMC RMF packages and ATO Status updates
- Support security engineering projects and solution delivery.
- Lead security audit and compliance activities for each system responsible for
- Responsible for auditing all artifacts provided in each RMF package to determine system readiness for ATO packet submissions.
- Provide recommendations to the SISO, PM, and AO regarding remediation and mitigation of identified vulnerabilities on test reports and plan of action and milestones (POA&Ms).
- Monitor system status updates and report to senior leadership.
- Includes monthly executive reports, vulnerability reports, JFHQ DODIN reporting and briefing.
- Monthly executive briefing to SISO, PM on security metrics
- Interface with PMs and SISO on issues needing input/concurrence
- Draft and present RMF deliverables to senior leadership
- Attending Executive Program Reviews as the ISSM
- Work with outside agencies on Memorandums of Understanding / Interconnection Service Agreements, and other senior level agreements etc.
- Work directly with a distributed team to reduce travel
- Travel 25% of time
Basic Qualifications:
- *TS/SCI required*
- A minimum of 2 years of Information Technology Information Assurance, or Cyber Security engineering experience.
- A minimum of 2 years of experience in conducting security assessments by reviewing security controls with the ISSO/ISSM and guide programs through RMF process.
- Bachelor’s Degree in Engineering, Computer Science, or 8 years IT field experience in lieu of degree; Master’s Degree preferred
- Experience working with Special Access Programs (SAP)
- Proven expertise with assessing security controls in accordance with NIST Special Publications (i.e.: NIST 800 Series)
- Proven in-depth knowledge of Cybersecurity principles technologies, and processes.
- Experience with NIST 800-53, Security Development
- Familiarity with performing assessments for Unclassified and Classified environments
- Ability to adapt to process changes
- Ability to interface with senior leadership
- Ability to support high visibility or high priority projects
- Possession of excellent oral and written communication skills
Basic Compensation:
$155,000 - $190,000 (For DC area Only)
$155.000 - $190,000 (For Point Mugu, California Only)
$145,000 - $185,000 (For Maryland only)
The offered rate will be based on the selected candidate’s knowledge, skills, abilities and/or experience and in consideration of internal parity.
Additional Compensation:
KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus, relocation benefits, short-term incentives, long-term incentives, or discretionary payments for exceptional performance.
KBR Benefits
KBR offers a selection of competitive lifestyle benefits which could include 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development.
Belong, Connect and Grow at KBR
At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team’s philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver – Together.
KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.
See All 83 Information Security Specialist Jobs in District of Columbia
Find roles in District of Columbia that match your experience and apply in just a few clicks.
Find JobsInformation Security Specialist Jobs by City in District of Columbia
Where District of Columbia roles are concentrated, by current openings.
Information Security Specialist Job Market in District of Columbia
A snapshot from current District of Columbia openings, updated as new roles post.
Who's Hiring


What District of Columbia Employers Look For
The qualifications that appear most often in information security specialist jobs across District of Columbia.
- Active security clearance or eligibility for a federal government clearance
- Bachelor's degree in cybersecurity, computer science, or information technology
- CompTIA Security+ or CISSP certification required by most federal contractors
- Experience with FISMA, NIST frameworks, and federal compliance requirements
- Proficiency with security tools such as SIEM platforms, vulnerability scanners, and firewalls
- Familiarity with cloud security environments including AWS GovCloud or Azure Government
Information Security Specialist Jobs in District of Columbia: Frequently Asked Questions
How do you become a information security specialist in District of Columbia?
The most direct path in the District of Columbia is a bachelor's degree in cybersecurity or computer science combined with an industry certification such as CompTIA Security+ or CISSP, which are standard requirements across federal agencies and contractors operating in the region. Because so much of the local market is tied to federal work, obtaining or being eligible for a security clearance significantly broadens your opportunities. There is no D.C.-specific state license for this role, but clearance eligibility and federal compliance knowledge are effectively prerequisites for the majority of local positions.
How much do information security specialists make in District of Columbia?
Information security specialists in District of Columbia earn a median of about $135,090 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $86,280 for the lowest 10% to over $189,510 for the top 10%. Pay rises with experience, specialty, and employer.
Which companies hire information security specialists in District of Columbia?
District of Columbia information security specialist roles are posted by Peraton, MANTECH, and Everforth ECS and others right now, based on current listings on Migrate Mate as of September 2026. The D.C. market is heavily anchored in federal contracting, so large defense and technology firms with long-term government relationships dominate the hiring landscape.
Which District of Columbia cities have the most information security specialist jobs?
Washington and Pentagon have the most information security specialist openings in the District of Columbia area. Washington D.C. itself drives the bulk of demand through federal agencies and their contractors, while Bethesda and Arlington attract significant hiring from defense contractors and consulting firms that cluster near agency headquarters and the Pentagon.
Are there remote information security specialist jobs in District of Columbia?
Yes, but they are less common than in many tech roles because a large share of D.C.-area positions involve classified systems or on-site federal requirements. About 50% of information security specialist openings tied to District of Columbia are remote or hybrid as of September 2026, reflecting the clearance-dependent nature of much of the local work. The roles most likely to offer remote flexibility are those focused on commercial cybersecurity, threat analysis, or cloud security rather than cleared federal programs.
How can I get hired as a information security specialist in District of Columbia with little or no experience?
The most realistic entry point in the D.C. market is a CompTIA Security+ certification combined with an internship or junior analyst role at a federal contractor, where many large firms like Booz Allen Hamilton and Leidos run early-career programs targeting recent graduates. Starting in adjacent roles such as IT help desk, network support, or systems administration at a government contractor gives you the access and clearance sponsorship opportunities that are hard to find elsewhere. Building familiarity with NIST frameworks and federal compliance concepts, even without direct work experience, distinguishes candidates for junior compliance analyst and security operations center positions.
Where can I find and apply to information security specialist jobs in District of Columbia?
You can find and apply to information security specialist jobs in District of Columbia on Migrate Mate, which lists current openings from employers hiring in the region right now. Search through the available roles, identify the ones that match your experience and clearance level, and apply directly to each one that fits.
See All 83 Information Security Specialist Jobs in District of Columbia
Find roles in District of Columbia that match your experience and apply in just a few clicks.
Find Jobs