Demo

Cyber Security Risk Lead

Trilogy Federal
Arlington, VA Full Time
POSTED ON 3/27/2025
AVAILABLE BEFORE 4/25/2025
Trilogy Federal provides financial management, information technology (IT) consulting, program management services, and strategic consulting to federal agencies. Trilogy has an extensive history helping federal clients achieve their most ambitious business modernization and optimization goals with the ability to deliver targeted subject matter expertise and full life cycle support.

Trilogy Federal is seeking a Cyber Security Risk Lead to support the Department of Veterans Affairs (VA). The ideal candidate will be a seasoned cybersecurity professional with expertise in risk management and compliance, excelling in a fast-paced, client-focused environment. This role requires a proactive, strategic leader to join our team, ensuring the security and integrity of VA corporate IT systems, including legacy applications and DevSecOps-driven initiatives.

The selected Cyber Security Risk Lead must hold at least one of the following active certifications: CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or GIAC Security Leadership Certification (GSLC). This position will oversee cybersecurity risk assessments, mitigation strategies, and compliance efforts, aligning with VA’s Veteran-focused Integration Process (VIP) Lean-Agile framework and stringent federal security standards.

Please note this position is contingent upon award (Q2/Q3 2025), and may require occasional customer site visits in D.C.

Primary Responsibilities:

  • Lead cybersecurity risk management for VA corporate IT systems, identifying, assessing, and prioritizing risks across legacy and DevSecOps environments (e.g., AWS, Azure).
  • Develop and implement risk mitigation strategies, ensuring compliance with VA security standards (e.g., FISMA, NIST 800-53, FIPS 140-2, HIPAA) and VA Handbook 6500.
  • Conduct regular security assessments, vulnerability scans, and penetration testing, collaborating with DevOps and Cloud Engineers to harden systems and CI/CD pipelines.
  • Oversee the integration of security controls (e.g., encryption, access management, monitoring) into development and deployment processes, aligning with Agile delivery cycles.
  • Serve as the primary point of contact for VA stakeholders, including the Information Security Officer (ISO) and Contracting Officer’s Representative (COR), on cybersecurity risk and compliance matters.
  • Utilize VA-approved tools (e.g., Jira, GitHub, ServiceNow) to document risk assessments, track remediation efforts, and contribute to Biweekly Status Reports on security posture and incidents.
  • Ensure alignment with the VIP Lean-Agile framework by embedding security practices into Agile ceremonies (e.g., sprint planning, retrospectives) and supporting incremental delivery.
  • Coordinate with Solution Leads and Data Architects to secure data migrations, cloud deployments, and enterprise asset management systems (e.g., IBM Maximo).
  • Monitor emerging threats and regulatory changes, advising on the adoption of technologies like AI-driven security analytics to enhance VA OIT’s cybersecurity resilience.
  • Mentor team members on cybersecurity best practices, risk management frameworks, and federal compliance, contributing to Trilogy’s staff development and technical excellence initiatives.
  • Manage incident response planning and execution, ensuring rapid resolution of security breaches and minimal impact on VA operations.
  • Drive exceptional customer satisfaction by delivering proactive, Veteran-centric cybersecurity solutions that safeguard VA systems and data.


Minimum Requirements:

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • One of the following certifications required: CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or GIAC Security Leadership Certification (GSLC).
  • 8 years of experience in cybersecurity, risk management, or a related leadership role, with a focus on federal or VA IT environments.
  • Proven expertise in risk assessment, security compliance, and mitigation strategies, with hands-on experience using tools like Nessus, Qualys, Splunk, or Tenable.
  • Strong leadership and analytical skills, with the ability to manage complex security challenges in a dynamic, fast-paced environment.
  • Familiarity with VA security standards (e.g., FISMA, NIST, HIPAA) and the VIP Lean-Agile framework is highly desirable.
  • Proficiency in MS Office Applications (Word, Excel, PowerPoint, Visio, SharePoint) and VA-approved tools (e.g., Jira, GitHub, ServiceNow).
  • Ability to adapt to evolving security threats and travel occasionally to VA sites in Washington, D.C., as needed.
  • Ability to obtain a Public Trust Clearance


Preferred Qualifications:

  • Master’s preferred
  • Additional certifications such as CEH (Certified Ethical Hacker) or CRISC (Certified in Risk and Information Systems Control) preferred.


Benefits (including but not limited to):

  • Health, dental, and vision plans
  • Optional FSA
  • Paid parental leave
  • Safe Harbor 401(k) with employer contributions 100% vested from day 1
  • Paid time off and 11 paid holidays
  • No cost group term life/AD&D plan, and optional supplemental coverage
  • Pet insurance
  • Monthly phone and internet stipend
  • Tuition and training reimbursement


Regarding remote positions, Trilogy Federal is able to offer virtual employment in the following states: Colorado, Connecticut, D.C., Florida, Georgia, Illinois, Maryland, New York, South Carolina, Texas, and Virginia.

Trilogy Federal is an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

This range is not a guarantee of compensation or salary, as Trilogy Federal conducts an individual equity review for every candidate based on experience, location, education, industry experience, and comparisons to internal pay bands. In addition to salary, Trilogy offers robust benefits including medical/dental/vision insurance coverage, 401(k) match, paid holidays, paid time off, tuition reimbursement, and a very supportive work/life balance.

Salary : $100,000 - $118,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cyber Security Risk Lead?

Sign up to receive alerts about other jobs on the Cyber Security Risk Lead career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$163,631 - $209,073
Income Estimation: 
$192,911 - $256,346
Income Estimation: 
$192,911 - $256,346
Income Estimation: 
$228,678 - $310,400
Income Estimation: 
$99,793 - $130,112
Income Estimation: 
$125,027 - $157,872
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Trilogy Federal

Trilogy Federal
Hired Organization Address Washington, DC Full Time
Trilogy Federal provides financial management, information technology (IT) consulting, program management services, and ...
Trilogy Federal
Hired Organization Address Washington, DC Full Time
Trilogy Federal provides financial management, information technology (IT) consulting, program management services, and ...
Trilogy Federal
Hired Organization Address Washington, WA Full Time
Trilogy Federal provides financial management, information technology (IT) consulting, program management services, and ...
Trilogy Federal
Hired Organization Address Washington, WA Full Time
Trilogy Federal provides financial management, information technology (IT) consulting, program management services, and ...

Not the job you're looking for? Here are some other Cyber Security Risk Lead jobs in the Arlington, VA area that may be a better fit.

Cyber Security Analyst

UltraViolet Cyber, Arlington, VA

AI Assistant is available now!

Feel free to start your new journey!