> Markdown version of [/jobs/ext/238492-cybersecurity-program-manager](https://www.wearedevelopers.com/jobs/ext/238492-cybersecurity-program-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Program Manager - **Company:** Gunnison Consulting Group Inc - **Location:** Alexandria, VA, United States - **Experience:** Expert - **Salary:** $160,000.0 - $185,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Performance Tuning, Zero Trust Network Access - **Published:** May 14, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=dff732e2a3c2f294 ## About the Role Do you have experience in Management?, Do you have a Master's degree?, * US Citizenship required * Master's degree in Management or related field * 10+ years managing information security teams (cloud, network, application) * Experience leading IT strategy, architecture, and security solution engagements * Federal agency experience of similar size/complexity * Certifications: PMP, ITIL, CRISC (mandatory); CISSP (preferred) Clearance Requirement: Ability to obtain and maintain a Public Trust. The salary range for this position depends upon multiple factors including location, the individual's knowledge, skills, competencies, and experience, and contract-specific budget constraints and organizational requirements. ## Description * Lead and oversee enterprise cybersecurity program management activities to ensure alignment with federal cybersecurity standards, agency objectives, and contract requirements. * Develop, implement, and maintain cybersecurity program management plans, strategic roadmaps, and governance frameworks to support long-term program maturity and operational effectiveness. * Manage cybersecurity program cost, schedule, performance, deliverables, risks, and resource allocation across multiple task areas and stakeholders. * Provide leadership and oversight for cybersecurity initiatives, ensuring compliance with OMB, NIST, DHS/CISA, FISMA, and other federal cybersecurity requirements and directives. * Direct the development and execution of a Continual Service Improvement (CSI) program focused on cybersecurity operational resilience, performance optimization, and risk reduction. * Establish and manage cybersecurity performance management processes, including development of KPIs, KRIs, dashboards, metrics, trend analysis, and executive reporting. * Oversee enterprise Governance, Risk, and Compliance (eGRC) activities, including policy integration, risk tracking, POA&M management, and compliance reporting. * Lead enterprise cybersecurity risk management activities, including annual risk assessments, risk identification, mitigation planning, and tracking of corrective actions. * Manage Assessment and Authorization (A&A) activities for enterprise systems and services, including continuous monitoring, ATO/ATU support, security control validation, and compliance documentation. * Direct the development, review, and maintenance of cybersecurity policies, standards, procedures, security documentation, and governance artifacts to ensure alignment with evolving federal and agency requirements. * Provide strategic cybersecurity advisory services related to emerging technologies, zero trust architecture, regulatory changes, cybersecurity trends, and agency-wide security initiatives. * Coordinate and support cybersecurity awareness, communications, and training programs to strengthen organizational security posture, stakeholder engagement, and user compliance. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Practical performance tuning for Serverless Java on AWS](https://www.wearedevelopers.com/videos/2075-practical-performance-tuning-for-serverless-java-on-aws) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Developing ASP.NET Core Microservices with Dapr: A practical guide](https://www.wearedevelopers.com/videos/1528-developing-asp-net-core-microservices-with-dapr-a-practical-guide) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [From developer to manager – what does it take to become an engineering manager?](https://www.wearedevelopers.com/magazine/42-from-developer-to-manager-what-does-it-take-to-become-an-engineering-manager) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence)