Vulnerability Management and Attack Surface Reduction Lead

3 months ago


McLean, United States Booz Allen Hamilton Full time
Vulnerability Management and Attack Surface Reduction Lead

Key Role:

Work as a Vulnerability Management Lead, including leading and supporting the development and delivery of a diverse range of attack surface reduction consulting and operations service programs to a portfolio of our commercial and government clients. Operate as a part of a team that delivers world-class Cybersecurity attack surface reduction and related vulnerability management to large enterprise customer and government clients. Deliver vulnerability management and other attack surface reduction security services to our large enterprise clients in support of their overall Cyber defense programs. Recommend and document Attack Surface Reduction (ASR) and related Threat and Vulnerability Management improvements based on assessment, operations, and analysis work proactively. Perform vulnerability attack surface assessments and threat modeling to identify control weaknesses and assess the effectiveness of existing controls. Perform root cause analysis on identified vulnerabilities and attack surface weaknesses to determine feasible technical solutions and help to triage risks and prioritize remediation activities.

Basic Qualifications:

  • 6+ years of experience with building and running Cybersecurity Intelligence or vulnerability management programs

  • 3+ years of experience in a management, leadership, or supervisory role

  • Experience with fundamental technologies, including all aspects of Cybersecurity, such as Threat Intelligence, Vulnerability Management, Incident Response, and Threat Hunting and advise how these components how to best integrate into client environments

  • Knowledge of SBOM, CVEs, CVSS, ICS/OT, and MITRE ATT&CK Framework

  • Ability to integrate Vulnerability Management principles into an operational landscape

  • Ability to identify, derive, and report on quality outcome-driven metrics

  • TS/SCI clearance

  • Bachelor's degree

Additional Qualifications:

  • Possession of excellent analytical, networking, and relationship building skills

  • Possession of excellent verbal and written communication skills

Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCIclearance is required.

Create Your Career:


Grow With Us
Your growth matters to us—that’s why we offer a variety of ways for you to develop your career. With professional and leadership development opportunities like upskilling programs, tuition reimbursement, mentoring, and firm-sponsored networking, you can chart a unique and fulfilling career path on your own terms.

A Place Where You Belong
Diverse perspectives cultivate collective ingenuity. Booz Allen’s culture of respect, equity, and opportunity means that, here, you are free to bring your whole self to work. With an array of business resource groups and other opportunities for connection, you’ll build your community in no time.

Support Your Well-Being
Our comprehensive benefits package includes wellness programs with HSA contributions, paid holidays, paid parental leave, a generous 401(k) match, and more. With these benefits, plus the option for flexible schedules and remote and hybrid locations, we’ll support you as you pursue a balanced, fulfilling life—at work and at home.

Your Candidate Journey
At Booz Allen, we know our people are what propel us forward, and we value relationships most of all. Here, we’ve compiled a list of resources so you’ll know what to expect as we forge a connection with you during your journey as a candidate with us.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $96,600.00 to $220,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

Work Model
Our people-first culture prioritizes the benefits of flexibility and collaboration, whether that happens in person or remotely.

  • If this position is listed as remote or hybrid, you’ll periodically work from a Booz Allen or client site facility.
  • If this position is listed as onsite, you’ll work with colleagues and clients in person, as needed for the specific role.

EEO Commitment

We’re an equal employment opportunity/affirmative action employer that empowers our people to fearlessly drive change – no matter their race, color, ethnicity, religion, sex (including pregnancy, childbirth, lactation, or related medical conditions), national origin, ancestry, age, marital status, sexual orientation, gender identity and expression, disability, veteran status, military or uniformed service member status, genetic information, or any other status protected by applicable federal, state, local, or international law.



  • McLean, United States Softworld Inc Full time

    Job Title: Vulnerability Management Consultant Job Location: McLean VA 22102 Onsite Requirements: managing vulnerabilities remediating findings managing patches. Job Description: Requirements: The candidate shall possess the knowledge and skills set forth in the Specialized Cybersecurity and Privacy Support Services BOA, Section H.3.f. for Labor...


  • McLean, United States Softworld, a Kelly Company Full time

    Job Title: Vulnerability Management ConsultantJob Location: McLean VA 22102Onsite Requirements:managing vulnerabilitiesremediating findingsmanaging patches.Job Description: Requirements: The candidate shall possess the knowledge and skills set forth in the Specialized Cybersecurity and Privacy Support Services BOA, Section H.3.f. for Labor Category 7, Senior...


  • McLean, United States Softworld, a Kelly Company Full time

    Job Title: Vulnerability Management ConsultantJob Location: McLean VA 22102Onsite Requirements:managing vulnerabilitiesremediating findingsmanaging patches.Job Description: Requirements: The candidate shall possess the knowledge and skills set forth in the Specialized Cybersecurity and Privacy Support Services BOA, Section H.3.f. for Labor Category 7, Senior...


  • McLean, United States Vosago Full time

    As an AI/Machine Learning SME Lead your responsibilities will include:Leading the exploration of cuttingedge AI frameworks and methodologies conducting indepth research to understand their capabilities and applications.Overseeing the teams documentation of the entire lifecycle of AI model creation deployment and operation focusing on identifying potential...


  • McLean, Virginia, United States Blackwatch International Full time

    Blackwatch International Corporation, a leading provider of information technology (IT) infrastructure and cybersecurity services, seeks a skilled Data Management and Analysis Team Lead with Security Clearance.As a key member of our team, you will oversee the execution of vulnerability scans, analysis of scan results, and reporting on findings. Your...


  • McLean, United States MITRE Full time

    Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work...


  • McLean, Virginia, United States Alarm Full time

    The Senior Cloud Security Engineer will identify security risks in the corporate network, communicate those risks to management, and assist with mitigation efforts. Common technologies this position will need to work with include vulnerability scanning, intrusion detection, SIEM, database monitoring, and file integrity monitoring. The Senior Security...

  • Project Integrator

    4 weeks ago


    McLean, United States Arcfield Full time

    OverviewArcfield was purpose-built to protect the nation and its allies through innovations in digital transformation, space mission engineering and launch assurance, miniaturized sensors and satellites, advanced modeling and simulation, cybersecurity, and conventional and hypersonic missile support. Headquartered in Chantilly, VA with 16 global offices,...


  • McLean, United States The Rehancement Group Full time

    The Rehancement Group, Inc. (TRG) is a professional services and consulting firm committed to our government customers. We provide highly qualified professionals to support the mission of our clients.TRG is seeking an experienced Operational Energy Project Manager to provide support to the Office of the Deputy Assistant Secretary of Defense for Energy...

  • Category Manager

    4 days ago


    McLean, Virginia, United States TEGNA Full time

    About TEGNATEGNA Inc. is a leading media company that serves the greater good of our communities. Our mission is to empower people through innovative storytelling, impactful investigations, and cutting-edge marketing solutions. With a strong presence in 51 U.S. markets, we reach approximately 39 percent of all television households nationwide. Our company is...

  • Senior Technical Lead

    4 weeks ago


    Mclean, United States Request Technology, LLC Full time

    ***Hybrid, 3 days onsite, 2 days remote******We are unable to sponsor as this is a permanent full-time role***A prestigious company is looking for a Senior Technical Lead Toolchain. This tech lead will need 10+ years of experience with toolchain development with Atlassian, Jira, Bitbucket, Confluence, Jenkins, etc. The tech lead must be heavy in cloud (AWS,...


  • MCLEAN, United States Guidehouse Full time

    Job Family:Digital ConsultingTravel Required:Up to 10%Clearance Required:Ability to Obtain Public TrustWhat You Will Do:We seek candidates with extensive knowledge of and hands‐on experience with Security Software Development to develop and enhance the security features of software applications and systems. Key activities include creating new security...


  • McLean, United States Booz Allen Hamilton Full time

    Job Number: R0205991 Technical Program Manager, LeadThe Opportunity: We‘re a fast-paced, highly collaborative software engineering team building and launching capability for Enterprise web-based systems in the cybersecurity field. We‘re looking for a passionate, customer-focused Technical Program Manager (TPM) in software engineering and...


  • McLean, United States ManTech Full time

    Description & Requirements ManTech is seeking a highly skilled and motivated Cyber Detection and Response Analyst to join our dynamic Cyber Incident Response Team.  As a key member of the team, you will be responsible for proactively monitoring, detecting, analyzing, and responding to cybersecurity incidents within our large enterprise network. Your...

  • App Dev

    4 months ago


    McLean, United States Ampcus Full time

    Job Title: App Dev - Java - Lead/ Software Engineer - Java Location: Richmond, VA/ Mclean, VA – Hybrid (Mon & Fri remote/Tue-Thu onsite) Duration: ~ months assignment with the possibility of extension Job Description: Key Responsibilities: Develop REST API using Java/spring boot and Cloud native controls. Responsible for overall design,...


  • McLean, United States Booz Allen Hamilton Full time

    University - Cybersecurity ConsultantThe Opportunity: When our country’s Cybersecurity is on the line, simply reacting is not enough – we need a plan. And when that plan needs to support our clients, we need strategic policy and technical solutions. That’s why we need you, a Cybersecurity engineer, with the skills to analyze the risks that determine...


  • McLean, United States LaBine and Associates Full time

    Location: Mclean, VASecurity Clearance: US Citizen/ClearableWe are expanding our North American Team and are actively seeking a talented Professional Services Lead to join our dynamic team at our McLean, VA office.As a Professional Services Lead, you will play a pivotal role in ensuring customer success by proactively engaging with customers, preventing...


  • Mclean, United States Request Technology, LLC Full time

    ***We are unable to sponsor for this permanent full-time role******Position is bonus eligible***Prestigious Enterprise Company is currently seeking a Senior Technical Lead Toolchain Solutions Engineer with extensive Atlassian and AWS cloud experience. Candidate will be accountable for strategic leadership of Modern Delivery Toolchain as a Product. That...


  • McLean, United States Request Technology, LLC Full time

    ***We are unable to sponsor for this permanent full-time role******Position is bonus eligible***Prestigious Enterprise Company is currently seeking a Senior Technical Lead Toolchain Solutions Engineer with extensive Atlassian and AWS cloud experience. Candidate will be accountable for strategic leadership of Modern Delivery Toolchain as a Product. That...


  • McLean, United States Request Technology, LLC Full time

    ***We are unable to sponsor for this permanent full-time role******Position is bonus eligible***Prestigious Enterprise Company is currently seeking a Senior Technical Lead Toolchain Solutions Engineer with extensive Atlassian and AWS cloud experience. Candidate will be accountable for strategic leadership of Modern Delivery Toolchain as a Product. That...