Vulnerability Management Consultant

4 days ago


McLean, United States Softworld, a Kelly Company Full time

Job Title: Vulnerability Management Consultant

Job Location: McLean VA 22102

Onsite Requirements:

  • managing vulnerabilities
  • remediating findings
  • managing patches.

Job Description:

Requirements:

  • The candidate shall possess the knowledge and skills set forth in the Specialized Cybersecurity and Privacy Support Services BOA, Section H.3.f. for Labor Category 7, Senior Vulnerability Management, with the following set of specific knowledge and experience:
    • Experience with security technologies, including vulnerability scanners and SIEM solutions. Specific systems include Tenable, Nessus, Invicti, Splunk, and other vulnerability management solutions (e.g., enterprise patch management).
    • Experience managing vulnerabilities in both on-premises systems and in cloud environments, (e.g. Amazon Web Services, Microsoft Azure, Google Cloud, and Data Centers).
    • Familiarity with relevant industry standards and regulations. This should include specific requirements of federal government institutions and general best practices for a quality VM program.
    • Experience identifying and developing mitigation strategies. This includes designing mitigations that specifically address vulnerabilities, working with system owners to patch systems, and identifying adequate solutions to remediate vulnerabilities where patching is not possible.
    • Experience analyzing data and identifying vulnerabilities. This extends beyond running a scan and identifying vulnerabilities found by the system. This includes analyzing systems, network configurations, web applications, and architectural diagrams, as well as identifying top vulnerabilities such as those listed in the OWASP "Top Ten" and understanding how those vulnerabilities work at the programmatic level.
    • Experience with workflows, forms, and other enabling technologies that may be needed to operationalize the VM program. Software needs might include ServiceNow, SharePoint, Adobe Forms, automated email messaging, PowerApps, Tableau for visualization, and Splunk.

NOTE: Along with a resume, the candidate must submit at least 2 writing samples that show experience with managing vulnerabilities, remediating findings, and/or managing patches.

Responsibilities:

  • The following duties and responsibilities include performing hands-on vulnerability scanning and management, patching systems, designing mitigation strategies, and authoring vulnerability-related products (including program doctrine, analysis reports, and other documents required as part of a formal VM program). Specific responsibilities shall include, but are not limited to, the following:
    • Author / amend the Board's VM Program document to serve as the primary tool for designing the ideal VM program for the Information Security Branch.
    • Support the implementation of a formal VM program with a variety of product types (e.g., program documents, policy documents, mitigation strategies, analysis reports, standard operating procedures).
    • Support the expansion of the VM program to include endpoints, mobile devices, cloud infrastructure, and more.
    • Research new vulnerability capabilities and recommend solutions that can be employed within the Board's infrastructure.
    • Support the deployment of new capabilities.
    • Adapt the Board's VM program as needed to support the implementation of a Zero Trust architecture.
    • Build dashboards, metrics, and reports that convey the health and stability of the VM program.
    • Generate reports to measure the Board's progress in meeting vulnerability remediation targets.
    • Apply innovative techniques, such as Artificial Intelligence and/or Machine Learning (AI/ML), to the VM program to maximize efficiencies and reduce risk to the Board.
    • Develop workflows, forms, and other procedures to enable any aspect of the VM process necessary to realize a fully operational program (e.g., workflows in ServiceNow, forms, automated email messaging, and user interfaces via PowerApps).
    • Develop and give presentations and create other communications needed to support the VM program.
    • Monitor the Board's compliance with BOD 22-01, to include tracking Board vulnerabilities against the Cybersecurity and Infrastructure Security Agency (CISA) catalog of known exploited vulnerabilities.
    • Attend meetings as required, take meeting notes / minutes, capture action items on behalf of the Cybersecurity Operations Unit, and provide that information back to the team.

** 3rd party and subcontract staffing agencies are not eligible for partnership on this position. 3rd party subcontractors need not apply.

This position requires candidates to be eligible to work in the United States, directly for an employer, without sponsorship now or anytime in the future.

This client is a US Federal Government contractor and is legally required to hire US Citizens. US Citizens will only be considered for this role. **



  • McLean, United States Softworld Inc Full time

    Job Title: Vulnerability Management ConsultantJob Location: McLean VA 22102Onsite Requirements:managing vulnerabilitiesremediating findingsmanaging patches.Job Description: Requirements


  • McLean, United States Softworld Inc Full time

    Job Title: Vulnerability Management Consultant Job Location: McLean VA 22102 Onsite Requirements: managing vulnerabilities remediating findings managing patches. Job Description: Requirements: The candidate shall possess the knowledge and skills set forth in the Specialized Cybersecurity and Privacy Support Services BOA, Section H.3.f. for Labor...


  • McLean, United States Softworld, a Kelly Company Full time

    Job Title: Vulnerability Management ConsultantJob Location: McLean VA 22102Onsite Requirements:managing vulnerabilitiesremediating findingsmanaging patches.Job Description: Requirements: The candidate shall possess the knowledge and skills set forth in the Specialized Cybersecurity and Privacy Support Services BOA, Section H.3.f. for Labor Category 7, Senior...


  • McLean, United States Softworld Inc Full time

    Job Title: Vulnerability Management ConsultantAt Softworld Inc, we are seeking a skilled Vulnerability Management Consultant to join our team.Key Responsibilities:Manage vulnerabilities to ensure the security and integrity of our systems.Remediate findings to prevent potential security breaches.Manage patches to ensure timely and effective resolution of...


  • McLean, United States Softworld Inc Full time

    Job Title: Vulnerability Management ConsultantAt Softworld Inc, we are seeking a skilled Vulnerability Management Consultant to join our team.Key Responsibilities:Manage vulnerabilities to ensure the security and integrity of our systems.Remediate findings to prevent potential security breaches.Manage patches to ensure timely and effective resolution of...


  • McLean, United States Booz Allen Hamilton Full time

    Vulnerability Management and Attack Surface Reduction LeadKey Role:Work as a Vulnerability Management Lead, including leading and supporting the development and delivery of a diverse range of attack surface reduction consulting and operations service programs to a portfolio of our commercial and government clients. Operate as a part of a team that delivers...

  • Management Consultant

    2 months ago


    McLean, United States Orbis Operations Full time

    Job DescriptionJob DescriptionDescriptionOrbis is seeking an experienced management consultant to lead qualitative research and program evaluation activities for a client in the US Intelligence Community.  On this multi-year project, the consultant will have the opportunity to demonstrate intellectual agility by leading research design, data collection, and...


  • McLean, United States Nexient LLC Full time

    Req ID:290554NTT DATA Services strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Director of Security Consulting to join our team in Cheyenne, Wyoming (US-WY), United States (US).Overview of...


  • McLean, United States NuvoLogic Full time

    NuvoLogic Consulting is a management consulting company in the Northern Virginia area. We engage with public and private sector clients with a primary focus on financial services and mortgage finance. We help our clients in the areas of finance, accounting and operations to support CFO, budget, audit readiness, and risk management functions; business and...


  • McLean, United States NuvoLogic Consulting Full time

    Job DescriptionJob DescriptionNuvoLogic Consulting is a management consulting company in the Northern Virginia area. We engage with public and private sector clients with a primary focus on financial services and mortgage finance. We help our clients in the areas of finance, accounting and operations to support CFO, budget, audit readiness, and risk...


  • McLean, United States Booz Allen Hamilton Full time

    Job Number: R0203167General Management Consultant The Opportunity: To groweffectively, organizations need help looking at their operation from the outside. Whether standing up a new organization, transforming an existing one, or transitioning an organization, including a merger or split-up, our clients need a consultant who will take the time to learn the...


  • McLean, United States NuvoLogic Consulting Full time

    Job DescriptionJob DescriptionNuvoLogic Consulting is a management consulting company in the Northern Virginia area. We engage with public and private sector clients with a primary focus on financial services and mortgage finance. We help our clients in the areas of finance, accounting and operations to support CFO, budget, audit readiness, and risk...


  • McLean, United States NuvoLogic Full time

    NuvoLogic Consulting is a management consulting company in the Northern Virginia area. We engage with public and private sector clients with a primary focus on financial services and mortgage finance. We help our clients in the areas of finance, accounting and operations to support CFO, budget, audit readiness, and risk management functions; business and...


  • McLean, United States Guidehouse Full time

    Job Family: IT Risk & Controls Consulting Travel Required: Up to 10% Clearance Required: Active Top Secret SCI with Polygraph What You Will Do: The IT Security Audit Consultant will support stakeholder engagement and technical delivery for efforts supporting federal agencies with IT controls assessments and program evaluations. This is an ideal role for...


  • McLean, United States Infinitive Inc Full time

    Job DescriptionJob Description*Candidates must be local to the Washington D.C. metro area. About Infinitive:Infinitive is a data and AI consultancy that enables its clients to modernize, monetize and operationalize their data to create lasting and substantial value. We possess deep industry and technology expertise to drive and sustain adoption of new...


  • McLean, United States CoolSnail Full time

    Job DescriptionJob DescriptionJob Description: IT Consulting Business Development ManagerPosition Overview: CoolSnail Technologies is an emerging startup with a focus on delivering IT consulting and staffing solutions. Currently, our primary objective is to establish ourselves in this domain. Looking ahead, we have plans to expand into product development....


  • McLean, United States Saliense Consulting LLC Full time

    Job DescriptionJob DescriptionSaliense is a growing Management and Technology Consulting Solutions provider based out of Tysons, VA. We work to solve our client’s toughest challenges within the Defense, Civilian, Financial, and Healthcare industries. Our diverse employees support vital missions for government and commercial customers. For more information,...

  • Program Manager

    2 months ago


    McLean, United States Potomac Haven Inc Full time

    Job DescriptionJob DescriptionDescription:We are seeking an experienced Program Manager to join our team in support of Information System Support services for Air National Guard Readiness Center (ANGRC).Key Responsibilities:Manage project team comprised of Information Assurance Support Lead, RMF Manager, Local Registration Authority Personnel (LRA) and...


  • McLean, United States CrossCountry Full time

    From the beginning, our goal was to establish an advisory firm that stands apart from the rest – one that is grounded in our Core Values and dedicated to creating a positive experience not just for our clients, but for our people too. We firmly believe in the strength of collaboration, enthusiasm, generosity, and perseverance as the driving forces behind...


  • McLean, United States Cross Country Consulting Full time

    From the beginning, our goal was to establish an advisory firm that stands apart from the rest – one that is grounded in our Core Values and dedicated to creating a positive experience not just for our clients, but for our people too. We firmly believe in the strength of collaboration, enthusiasm, generosity, and perseverance as the driving forces behind...