Mitigation & Vulnerability SME

2 weeks ago


Washington, United States SiloSmashers Full time
Job DescriptionJob Description

k



GENERAL POSITION DESCRIPTION

The Mitigation and Vulnerability SME Level III will support an Operations & Maintenance team as a part of a large, complex cybersecurity, engineering and PMO contract for a federal customer.

The Mitigation and Vulnerability SME Level III will be responsible for coordinating and streamlining the vulnerability management program. The candidate will also engage directly with various operational teams ensuring vulnerabilities are detected, prioritized, and remediation/mitigation actions are executed. The successful candidate will play a key role in operational reporting & metrics capability, ultimately ensuring the federal organization being supported can adequately be measured towards compliance to the standard set for enterprise vulnerability management.


The ideal candidate will be self-driven, possess the inherent interest to continue learning new technologies to solve problems and have a collaborative and continual improvement mindset in all facets of the role.


ROLE RESPONSIBILITIES

  • Closely collaborates with cybersecurity and other stakeholder teams to drive identification and remediation of security vulnerabilities
  • Develops and executes continuous process improvement for vulnerability management and risk reduction.
  • Extensive experience using MECM to drive organization and execution of vulnerability management
  • Implements, defines and improves current policies, standards, and procedures related Vulnerability Management: vulnerability scanning, vulnerability reporting, coordination of patch management,
  • Collaborates closely and regularly with operations & maintenance peers, Information System Security Officers (ISSOs), compliance and engineering stakeholders to identify, plan and deploy mitigation strategies at the enterprise level.
  • Maintains and supports day to day operations and configuring/troubleshooting all aspects of SCCM effectively, including patch management, software distribution, Operating System Deployment, reporting, and
  • Experience with managing ServiceNow tickets
  • Makes recommendations for organization-wide system improvements, optimization or maintenance efforts
  • Experience with managing Splunk
  • Experience with security mitigation, vulnerability, and risk management, performing IT Security software update/upgrade, and implementing risk management framework.
  • Experience in IT Operations security management including mitigation planning and recommendation, working directly analyzing vulnerability and applying patches/removing vulnerabilities on Microsoft Windows devices (Servers and workstations); Microsoft operating system, active directory, Server, and hardware issues such as servers and appliances.
  • Experience supporting Microsoft enterprise environment involving the understanding of software such as Active Directory, DHCP, DNS, and file and print servers, supporting server performance tuning and monitoring tools.
  • Experience with IP networking issues as it relates to local area networks while working with Network Engineers to troubleshoot advanced network issues.
  • Experience deploying and managing secure video teleconferencing, audio- visual, and COMSEC equipment.
  • Monitors and provides metrics on threat level of vulnerabilities
  • Works with multi-functional teams to ensure systems development does not expose new threat vectors
  • Assists in the design and development of threat mitigation strategy, prioritize identified threats, managing risks associated with threats

SOFT SKILLS:

  • Inherent experience with collaborating with cross-functional teams within the organization, and other offices to ensure the integration and compatibility of network solutions with other IT systems and applications.
  • Strong "solutions-oriented" and collaborative mindset to drive solutions and execution for the good of the mission and team.
  • Excellent written and verbal communication skills; ability to understand and effectively communicate technical concepts in a compelling, persuasive manner to non-technical persons.
  • Excellent ability to interact skillfully and diplomatically with numerous counterparts and build rapport, including contract stakeholders, government representatives and vendors
  • Proven proficiency facilitating challenging conversations across all levels of the organization
  • Must have a high level of EQ to "bring out the best" in team members, both internal and external
  • Experience and composure to be the conductor of a very complex and challenging technical "orchestra."
  • Solid goal-oriented thinking, while possessing the business acumen to align projects to business outcomes
  • Flexibility and ability to swiftly adapt to a customer environment and positively integrate oneself
  • Strong analytical, problem-solving, and decision-making capabilities, with a data-driven mindset
  • Team player with the ability to work in a fast-paced environment with a continuous process improvement culture Demonstrated outstanding level of professionalism in providing project review support, including ability to exercise good judgment, discretion, tact, and diplomacy
  • Sound business ethics, including the protection of proprietary and confidential information

POSITION REQUIREMENTS

  • Must be a U.S. Citizen
  • Bachelor's Degree
  • Ability to obtain a DHS Public Trust clearance
  • 10+ years experience
  • ONE of the following certifications:
    • Microsoft Azure Fundamentals (AZ900) OR
    • AWS Certified Cloud Practitioner (CCP) OR
    • Microsoft M365 Fundamentals certification

"PLUS" ATTRIBUTES

  • Possess a current DHS EOD clearance
  • Supported a DHS Component


Job Posted by ApplicantPro


  • Washington, United States Techcella Full time

    Company DescriptionTechcella is a niche organization providing our business partners with unparalleled service and delivery of projects in a short period of time. Our specialized staff has extensive experience in several domains in the market, including Federal Government, telecommunications, finance, defense, e-commerce, and education. We pride ourselves on...


  • Washington, United States Techcella Full time

    Company DescriptionTechcella is a niche organization providing our business partners with unparalleled service and delivery of projects in a short period of time. Our specialized staff has extensive experience in several domains in the market, including Federal Government, telecommunications, finance, defense, e-commerce, and education. We pride ourselves on...


  • Washington, United States Techcella Full time

    Company DescriptionTechcella is a niche organization providing our business partners with unparalleled service and delivery of projects in a short period of time. Our specialized staff has extensive experience in several domains in the market, including Federal Government, telecommunications, finance, defense, e-commerce, and education. We pride ourselves on...


  • Washington, United States Techcella Full time

    Company DescriptionTechcella is a niche organization providing our business partners with unparalleled service and delivery of projects in a short period of time. Our specialized staff has extensive experience in several domains in the market, including Federal Government, telecommunications, finance, defense, e-commerce, and education. We pride ourselves on...


  • Washington, United States SAIC Full time

    Description SAIC is seeking a highly skilled Senior Vulnerability Analyst with a strong technical background to join our team in support of a critical US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for Patch and Vulnerability Management, contributing to the security and integrity of vital...


  • Washington, Washington, D.C., United States SAIC Career Site Full time

    Description SAIC is seeking a highly skilled Senior Vulnerability Analyst with a strong technical background to join our team in support of a critical US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for Patch and Vulnerability Management, contributing to the security and integrity of vital...


  • Washington, United States Information Protection Solutions Full time

    Job DescriptionJob DescriptionRESPONSIBILITYAnalyze and manage risk management issues by identifying, measuring, and making decisions on operational or enterprise risks for an organization. Conduct web application and code testing for all systems and applications, and open source dependencies, providing analysis and risk assessments for vulnerabilities...

  • Cloud Security SME

    1 day ago


    Washington, United States Maveris Full time

    Job DescriptionJob DescriptionMaveris is an IT and cybersecurity services company committed to helping organizations create secure digital solutions to accelerate their mission. We are Veteran-owned and proud to serve customers across the Federal Government and private sector. We have an opening for a full-time, permanent Cloud Security SME to join our...


  • Washington, United States Summit Technologies Full time

    Summit Technologies, Inc. is looking for a Senior Vulnerability Analyst. You will support IT Security management by conducting technical reviews, analyzing, reporting, and utilizing technical solutions in the areas of vulnerability management, issue analysis, response development and execution. This position requires working 2 days per week on site and is...


  • Washington, United States Summit Technologies, Inc. Full time

    Job DescriptionJob DescriptionSummit Technologies, Inc. is looking for a Senior Vulnerability Analyst. You will support IT Security management by conducting technical reviews, analyzing, reporting, and utilizing technical solutions in the areas of vulnerability management, issue analysis, response development and execution. This position requires working 2...


  • Washington, United States Gray Tier Technologies LLC Full time

    Gray Tier Technologies is seeking a Senior Vulnerability Assessor with an active Secret clearance to support our DOI customer's Security Operation Center in DC or Reston Virginia. The Department of the Interior (DOI) protects America's natural resources and heritage, honors our cultures and tribal communities, and supplies the energy to power our future....


  • Washington, United States Gray Tier Technologies LLC Full time

    Gray Tier Technologies is seeking a Senior Vulnerability Assessor with an active Secret clearance to support our DOI customer's Security Operation Center in DC or Reston Virginia. The Department of the Interior (DOI) protects America's natural resources and heritage, honors our cultures and tribal communities, and supplies the energy to power our future....

  • Cyber SME

    1 week ago


    Washington, United States Logistics Management Institute Full time

    Overview LMI seeks a skilled Cyber SME to support a Customs and Border Protection (CBP) PMO in the National Capital Region. Join our team of collaborative self-starters focused on delivering practical and efficient solutions to help our client keep U.S. borders safe and facilitate travel and trade. As part of our high-performing team, you will augment our...

  • Cyber SME

    1 week ago


    Washington, United States LMI Full time

    OverviewLMI seeks a skilled Cyber SME to support a Customs and Border Protection (CBP) PMO in the National Capital Region. Join our team of collaborative self-starters focused on delivering practical and efficient solutions to help our client keep U.S. borders safe and facilitate travel and trade. As part of our high-performing team, you will augment our...


  • Washington, United States Technica Full time

    Overview: About Technica: At Technica Corporation, our goal is to provide exceptional professional services and innovative technology solutions that meet or exceed our customers expectations. We specialize in a wide range of advanced information technology solutions from Systems Engineering to Information Assurance, and from Software Development to Product...

  • Digital Forensics

    1 week ago


    Washington, United States XOR Security Full time

    Job Title: Digital Forensics & E-Discovery Specialist - SME Location: 1 Massachusetts Ave NW Washington, District of Columbia 20001 Clearance Level: Active Secret Required Certification(s): One of the following: GCIA, GCED, GCFA, GCFE, GCTI, GNFA, GCIH, ECSA, CHFI, CISSP, Security+, Network+, CEH, CND. CCE, CFC, EnCE, CFCE, GREM SUMMARYXOR Security, an...


  • Washington, United States Southern Talent Specialists Full time

    Job DescriptionJob DescriptionJob Title: Cyber Security Subject Matter Expert (SME)Location: National Capital Region / Remote as Mission RequiresJob Overview: The Cyber Security Subject Matter Expert (SME) is a crucial role supporting our Innovation & Emerging Technology Division. This position entails providing expert knowledge and guidance in cyber...

  • DevSecOps Engineer

    3 weeks ago


    Washington, United States Latitude, Inc. Full time

    Job DescriptionJob DescriptionGrowing government contractor company looking to hire Sr. DevSecOps Engineer. Due to legal contract and the position requiring a security clearance only US Citizens can be considered for the position. The DevSecOps Engineer SME will support and provide expertise to a successful cybersecurity and privacy program for a government...

  • DevSecOps Engineer

    2 weeks ago


    Washington, United States latitude Full time

    Growing government contractor company looking to hire Sr. DevSecOps Engineer. Due to legal contract and the position requiring a security clearance only US Citizens can be considered for the position. The DevSecOps Engineer SME will support and provide expertise to a successful cybersecurity and privacy program for a government customer. The DevSecOps...


  • Richland, Washington, United States ProSidian Consulting, LLC Full time

    Job Description ProSidian Seeks a Subject Matter Expert | Nuclear Energy Subject Matter Expert (SME)  [DNE018] Engagement Team | Subject Matter Expert I Labor Category - HIGH LEVEL Non-Exempt Professional aligned under services related to NAICS: (phone number removed) located Pacific Northwest National Laboratory (PNNL) - Richland,...